NAP with VPN


hi,

what best practice building vpn service nap? can add both roles on same win 2008 server or need 2 separate servers nap, vpn? 

what advantages , disadvantages ?

thanks.

 

aigars

hi deagegdbhghghgh,

 

thanks posting here.

 

there requirements should notice in scenario:

 

vpn enforcement

 

when deploy nap vpn enforcement, enforcement server server running routing , remote access service (rras). vpn server can deployed according standard vpn design, such in perimeter network. vpn nap enforcement servers have following connectivity requirements:

 

·         to authenticate , authorize network connections, vpn enforcement points must have connectivity 1 or more nap health policy servers.

 

·         if vpn network design includes perimeter network, vpn nap enforcement server typically placed in network vpn client access , lan access limited devices such firewalls.

 

·         vpn enforcement points must accessible nap client computers when first request network access , after noncompliant computers have remediated health state.

 

meanwhile, performance , reliability important factors should evaluate, please take time read articles below first , decide suited solution deployment:

 

design server placement strategy

http://technet.microsoft.com/en-us/library/dd125362(ws.10).aspx

 

nap capacity planning

http://technet.microsoft.com/en-us/library/dd125353(ws.10).aspx

 

thanks.

 

tiger li


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community memb


Windows Server  >  Network Access Protection



Comments

Popular posts from this blog

Azure MFA with Azure AD and RDS

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com