Re: [ActiveDir] RPC Netlogon to AD

2004-09-08 Thread Lara Adianto
authentication. This can be set using a grouppolicy.Which policy ? Group Policy -- Computer Configuration -- Windows Settings --Security Settings -- Local Policies -- Security Options -- ? Thanks lara Lara Adianto [EMAIL PROTECTED] wrote: Hi list, In the process of authenticating a user login to OWA

[ActiveDir] RPC Netlogon to AD

2004-09-06 Thread Lara Adianto
Hi list, In the process of authenticating a user login to OWA, I noticed that the front end server use DC RPC RPC_Netlogon to authenticate the user to AD. However, as the stub data is encrypted, I couldn't really figure out how the authentication is actually done. Is it NTLM ? Kerberos ? or

Re: [ActiveDir] exchange 2003 dcpromo

2004-09-06 Thread Lara Adianto
Joe: Honestly you shouldn't install Exchange or any back offfice products on domain controllers. May I know what's the reason ? I'm curious. thank you, lara La vie, voyez-vous, ca n'est jamais si bon ni si

[ActiveDir] Form based auth kerberos

2004-08-27 Thread Lara Adianto
Hello, How does form-based authentication of OWA 2003 authenticate users actually ?Using basic authentication where username password are sent in clear ?Will kerberos work with form-based authentication ? thank you,lara

[ActiveDir] the truth about kerberos auth for owa

2004-08-27 Thread Lara Adianto
Hi, Can anyone help me to confirm whether the following flow of kerberos authentication for OWA 2003 is correct ? I can only In the directory security tab, I only enabled integrated windows authentication for exchange web site. Let's say there are 3 parties involved:- AD (in windows 2000

[ActiveDir] owa logon

2004-08-26 Thread Lara Adianto
Hi, does anybody know which dll is responsible to pop up the logon dialog box of owa 2003 (form based authentication is disabled) ?does the dll that process the auth is different when form based auth is enabled and when form based auth is disabled ? thank

Re: [ActiveDir] owa logon

2004-08-26 Thread Lara Adianto
that IE used to pop-up the dialog box ? Form-based authentication uses logon.asp to get user credential, and relies on owaauth.dll in the exchweb/bin/auth directory for the authentication. I wonder whether the non-form based auth also relies on owaauth.dll... -lara- Lara Adianto [EMAIL PROTECTED

[ActiveDir] unable to generate ssl cert

2004-08-23 Thread Lara Adianto
Hello, I have a problem of generating SSL cert for owa 2003 form based authentication.My environment is as follows:PC A -- acts as DC, domain=example.comPC B -- where ms exchange 2003 and cert authority is installed, configured to be the member of domain=example.com I have tested OWA without

[ActiveDir] citrix installed in the same machine as exchange

2004-08-20 Thread Lara Adianto
Hi, Is it okay to install citrix metaframe xp presentation server 3.0 in the same machine as microsoft exchange server ? When i wanted to install it, it gave a warning that microsoft exchange might not work properly and need to be reinstalled. Both citrix and exchange are supposed to be in the

Re: [ActiveDir] citrix installed in the same machine as exchange

2004-08-20 Thread Lara Adianto
in event viewer... Thanks again lara Lara Adianto [EMAIL PROTECTED] wrote: Hi, Is it okay to install citrix metaframe xp presentation server 3.0 in the same machine as microsoft exchange server ? When i wanted to install it, it gave a warning that microsoft exchange might not work properly

Re: [ActiveDir] replacing AD with openldap

2004-08-11 Thread Lara Adianto
that might prevent me to achieve my objective above... Perhaps the experts out there can give me some hints or tips ? thanks again, =lara= Lara Adianto [EMAIL PROTECTED] wrote: I suppose the first question that comes to mind is, why? Exchange OWA is going to require you to eventually identify

[ActiveDir] replacing AD with openldap

2004-08-10 Thread Lara Adianto
Hi, One of Outlook Web Access 2003's authentication method is basic authentication which does an ldap query to Active Directory for the username password. Is it possible to configure it to query an external ldap server (such as Openldap) instead of to active directory ? My objective is to

Re: [ActiveDir] replacing AD with openldap

2004-08-10 Thread Lara Adianto
I suppose the first question that comes to mind is, why? Exchange OWA is going to require you to eventually identify and authenticate to ActiveDirectory. What's the use of doing it in openldap first?I have openldap server populated with the user credentials...and I don't want to replicate this

[ActiveDir] exchange 2003 dcpromo

2004-08-03 Thread Lara Adianto
Hi, Is it true that we shouldn't run dcpromo when exchange 2003 is installed in a domain controller ? I had a problem with the DC..so I dcpromo-ed it and then rebuild it from the beginning. Now I can't start the services needed by exchange. Not sure when dcpromo is the root of the problem, but I

[ActiveDir] cannot login into win2k server bec of domain controller problem

2004-07-28 Thread Lara Adianto
Hi, I had this famous AD problem in my win2k server: LSASS.EXE - System Error, security accounts manager initialization failed because of the following error: Directory Service cannot start. Error status 0xc2e1. Please click OK to shutdown this system and reboot into directory services

RE: [ActiveDir] Using Security Configuration Template instead of Ksetup...

2004-04-16 Thread Lara Adianto
(YOURREALM) -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Lara Adianto Sent: Wednesday, April 14, 2004 1:53 AM To: [EMAIL PROTECTED] Subject: [ActiveDir] Using Security Configuration Template instead of Ksetup... Hello, In 'Step

[ActiveDir] Using Security Configuration Template instead of Ksetup...

2004-04-14 Thread Lara Adianto
Hello, In 'Step-by-step Guide to Kerberos 5 Interoperability' document, it is stated as follows: To deploy realm configuration data to multiple computers, use the security configuration template mechanism instead of using Ksetup explicitly on individual computers Is there any good document /

RE: [ActiveDir] failed to locate a DC...

2004-04-08 Thread Lara Adianto
for specific errors. Good Luck, Athif -Original Message- From: Lara Adianto [mailto:[EMAIL PROTECTED] Sent: Tuesday, April 06, 2004 3:12 PM To: [EMAIL PROTECTED] Subject: RE: [ActiveDir] failed to locate a DC... I have indicated in my prev mail that I can't do dcpromo at all

[ActiveDir] failed to locate a DC...

2004-04-06 Thread Lara Adianto
Hello, I have been struggling with this problem for almost a day, and hope to get a hand through this mailing list. The problem is that I can't make a windows2000 prof. client to join a w2k domain. I'm using a win2k server as the DNS and AD server. When I tried to add the client to the domain,

RE: [ActiveDir] Can Microsoft Active Directory be configured to authenticate to an external ldap server ??

2004-03-26 Thread Lara Adianto
t of users for the computer (",) I can now authenticateusing Kerberos Realm. Thanks for all who have replied to my mail, - lara - Lara Adianto [EMAIL PROTECTED] wrote: Thanks to Brent and Arden who have given me someinsights, though I'm not fully successful yet, but Ican see a progress...Apparen

RE: [ActiveDir] Can Microsoft Active Directory be configured to authenticate to an external ldap server ??

2004-03-25 Thread Lara Adianto
, Lara Adianto wrote: Thank you Robbie, but I still can't get it to work :-( When a win2k client tries to log in using my linux kerberos realm, it fails with error message: The system could not log you on. Make sure that the username and password are correct. Letters

Re: [ActiveDir] Can Microsoft Active Directory be configured to authenticate to an external ldap server ??

2004-03-23 Thread Lara Adianto
this helps! - Robbie Robbie Foust, IT Analyst Systems and Core Services Duke University Lara Adianto wrote: Thanks for all the replies guys..(I love this mailing list) :-) After spending sometimes understanding the kerberos concept in windows, I believe that to achieve my goal

Re: [ActiveDir] Can Microsoft Active Directory be configured to authenticate to an external ldap server ??

2004-03-22 Thread Lara Adianto
University Lara Adianto wrote: Hi guys, As what the subject title said: can Microsoft Active Directory be configured to authenticate to an external ldap server (openLDAP in my case) ? To make things clearer, this is the objective that I want to achieve: I want

[ActiveDir] Can Microsoft Active Directory be configured to authenticate to an external ldap server ??

2004-03-18 Thread Lara Adianto
Hi guys, As whatthe subject title said: can Microsoft Active Directory be configured to authenticate to an external ldap server (openLDAP in my case) ? To make things clearer, this isthe objective that I want to achieve: I want authentication of Microsoft Active Directory's clients to be doneby