Windows Server 2008 Group Policy deployment IPSec server and Domain Isolation (1)

Source: Internet
Author: User

We will continue our in-depth discussion of how to deploy IPSec NAP health policy, the example network, and the main steps to make NAP and IPSec policy work--How to install and configure a Network policy server, health registration authorization management, and a subordinate CA.

How to install and configure a Network policy server, health registration authorization management, and a subordinate CA

Now let's shift our attention to the Network policy server. Network policy servers, or NPS machines, play the role of a RADIUS server. NPS is the new name for the former Microsoft Network access server (IAS), and in fact this new NPS server has two components: RADIUS components (including new support for NAP) and RRAS components. We are not interested in the RRAS component here, so we will not discuss how to install RRAS in the configuration.

We need to follow these steps to install and configure the NPS server, health registration authorization management, and a subordinate CA on the machine:

To add a network policy server to the NAP exemption Group (exempt)

Restart the Network Policy server

Request a computer certificate for a network policy server

View the computer and health certificate installed on the Network policy server

Installing Network policy servers, health registration authorization management, and attached CAs

To configure a subordinate CA on a network policy server

Enable permission to request certificates, issue certificates, and manage certificates for health registration authorization management

Configure Health registration authorization management to use a subordinate CA to issue health certificates

Now let's take a look at the specific actions of these steps.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.