Duplicate User ID in Multiple Domains
hi all,
if have following scenario wpa2/tls environment,
forest a
--domain a
-----user = domaina\qw12345
--domain b
-----user = domainb\qw12345
when wireless connection established using tls, users in both domains present qualified user names; including domain.
even though domainb\qw12345 supplies domain being "b" when connects, nps server uses user account own domain "a", identical 1 in b.
as result, instead of authenticating user b\qw12345, uses a\qw12345 different user.
this behavior occurs on users have identical samaccountname's in both domains.
has ever seen this?
tia
generally, 2 way trusted domains, nps know domain needs contact authentication.
but network access servers delete or modify domain name specified user. result, network access request authenticated against default domain, might not domain user account.
nps: default domain
http://technet.microsoft.com/en-us/library/dd197452(v=ws.10).aspx
i think should check if network access servers have such kind of behavior. if need ask manufacture help.
hope helps.
Windows Server > Network Access Protection
Comments
Post a Comment