IPv6 readyNote: This archive passes through spamassassin. Every mail marked with the subject "*****SPAM*****" has exceed a certain threshold of spam-like behaviour.

[Users] w2k ipsec policy access for user

From: Thomas.Esders_at_net-and-works.de
Date: Tue Apr 30 2002 - 14:16:55 CEST


Hi,

this is more a w2k question, but anyways...

I established a connection from a w2k standalone client via marcus tool to
my freeswan-box. so far so good. everything runs fine. now, here is the
problem:

everybody, who has an account on the client w2k-box can use the
vpn-connection, because he has access to the certificate and is able to
create ipsec policys... now i would like to solve this problem by not
allowing all users to create ipsec policys, but i donīt know how. i found
the registry-key hklm\software\policies\microsoft\windows\ipsec which seems
to deal with the policies, but restricting the userrights to this key seems
no to be enough.

Question: anybody out there that had the same problem and found a nice
solution to it? if so, please share your experiance... Thanks,

Thomas Esders

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:19:56 CEST