Re: [Freeipa-users] Give laptops bidirectional anywhere access to freeipa and /home/

2010-05-12 Thread Rob Crittenden
Rob Townley wrote: Microsoft is touting "Direct Access" as a main reason to upgrade to Win2008R2 / Win7. Microsoft makes it seem like a magical feature, but could be done using existing technology. The reality is that discontinuous offline access to ActiveDirectory was not thought out well in the

Re: [Freeipa-users] Give laptops bidirectional anywhere access to freeipa and /home/

2010-05-12 Thread Christian Horn
On Wed, May 12, 2010 at 12:24:00PM -0500, Rob Townley wrote: > > Yes, it is a machine level as opposed to user level vpn. tinc would > have to run all machines to make it the easiest to use. With freeipa, > that could be easy. > > The keys currently are RSA public / private keypairs. > > Does

Re: [Freeipa-users] Give laptops bidirectional anywhere access to freeipa and /home/

2010-05-12 Thread Rob Townley
The main difference between tinc vpns and traditional vpns is that tinc is bidirectional and does not require the user to enter a username password. So if the computer is turned on, the remote machine is reachable by the IT department. If it is a windows machine, you may want to verify antivirus

Re: [Freeipa-users] Give laptops bidirectional anywhere access to freeipa and /home/

2010-05-12 Thread Simo Sorce
On Wed, 12 May 2010 12:24:00 -0500 Rob Townley wrote: > The main difference between tinc vpns and traditional vpns is that > tinc is bidirectional and does not require the user to enter a > username password. So if the computer is turned on, the remote > machine is reachable by the IT department

Re: [Freeipa-users] Give laptops bidirectional anywhere access to freeipa and /home/

2010-05-12 Thread Dmitri Pal
Rob Townley wrote: > The main difference between tinc vpns and traditional vpns is that > tinc is bidirectional and does not require the user to enter a > username password. So if the computer is turned on, the remote > machine is reachable by the IT department. If it is a windows > machine, you