I'm trying to change the default domain that NPS uses to authenticate users. We need to authenticate wireless users through NPS that have accounts in domain different than the NPS is in, but the server has a valid trust with the other domain. We could install an NPS in the other domain, and use a RADIUS proxy to the remote server. However, it would be simpler if we could just get NPS to change its default domain and authenticate through the trust instead. There's lots of info on the web that this used to work in IAS.
I'm trying to use the registry key cited by the following links, but it isn't working for me. I wonder if something has changed in 2008 or R2 http://blogs.technet.com/b/nap/archive/2006/09/19/457603.aspx http://technet.microsoft.com/en-us/library/bb742394.aspx http://technet.microsoft.com/en-us/library/cc958034.aspx The key is HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan \PPP\ControlProtocols\BuiltIn\DefaultDomain REG_SZ When I watch the NPS server log, the User Name comes across as testuser (no domain), but then NPS generates the fqdn user name NPSDOMAIN\testuser, instead of DOMAININREGKEY\testuser. I've both restarted the NPS service and rebooted the server. Thanks John ********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.
