NAP with VPN


hi,

what best practice building vpn service nap? can add both roles on same win 2008 server or need 2 separate servers nap, vpn? 

what advantages , disadvantages ?

thanks.

 

aigars

hi deagegdbhghghgh,

 

thanks posting here.

 

there requirements should notice in scenario:

 

vpn enforcement

 

when deploy nap vpn enforcement, enforcement server server running routing , remote access service (rras). vpn server can deployed according standard vpn design, such in perimeter network. vpn nap enforcement servers have following connectivity requirements:

 

·         to authenticate , authorize network connections, vpn enforcement points must have connectivity 1 or more nap health policy servers.

 

·         if vpn network design includes perimeter network, vpn nap enforcement server typically placed in network vpn client access , lan access limited devices such firewalls.

 

·         vpn enforcement points must accessible nap client computers when first request network access , after noncompliant computers have remediated health state.

 

meanwhile, performance , reliability important factors should evaluate, please take time read articles below first , decide suited solution deployment:

 

design server placement strategy

http://technet.microsoft.com/en-us/library/dd125362(ws.10).aspx

 

nap capacity planning

http://technet.microsoft.com/en-us/library/dd125353(ws.10).aspx

 

thanks.

 

tiger li


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community memb


Windows Server  >  Network Access Protection



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS