Nested Groups in Windows Groups Condition


i have tmg authenticating vpn connections via radius on windows 2008 sp2 nps server.  the respective network policy includes windows groups condition.  referenced group in condition is domain local group called "allowvpn".  group contains several other groups, 1 of domain local group called "allit", includes domain admins group.  found not authenticate using the domain admin account until added domain admins directly "allowvpn" group.

is there issue nesting groups more 1 level down?  notice other groups members of "allowvpn" global groups.  do nested groups need global groups work?

thanks answers.

hi cfs3rd,

 

thanks posting here.

 

so have same issue including domain admins group other globe groups members of “allowvpn” ?

is domain admins group belonged domain nps server registers ?

 

i have tested scenario according descriptions can’t reproduce it, members of domain admins group, group nested “allit” dial in no problem , both groups domain local .

 

what error prompt or error number when failed dial in when domain admins group member of “allit” ?

 

thanks.

 

tiger li


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.


Windows Server  >  Network Infrastructure Servers



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file