VPN Authentication to w2k domain

Unanswered Question
Mar 11th, 2009

Hello Everyone,

I am haivng a problem with getting an ASA 5505 to suthenticate directly against a w2k domain. There is no radius server involved. I am using Kerberos. We are getting an errors message back stating that the clocks on the ASA and teh serv er are more than 5 minutes off and the authentication request is being denied.

The clocks are within 5 seconds of each other and in the same time zones.

I am not sure if teh issue os due to having a w2k AD instead of a w2k3.

Has anyone run into this before?

Thanks in advance! All replies rated.

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Ivan Martinon Wed, 03/11/2009 - 09:48

Yep heard of that lots of times, can you try to make your win2k an ntp server and point your ASA to it as an NTP client?


This Discussion