PDA

View Full Version : Active Directory & Multi-WAN


hans@toplanguagejobs.com
01-15-2008, 03:48 AM
Hi, I happened upon Untangle through an ad on ONLamp.com and it caught my attention.

I have a few questions regarding the professional edition. As far as I can tell in the documentation, it says Untangle supoprts Active Directory integration. I was wondering what exactly this means.

It says more specifically:

"Active Directory Integration - enables policy management and reporting by Active Directory user name. This simplifies monitoring and policy set-up."

Does this mean you can truly replace a Windows server and have Untangle be your PDC / AD server and apply AD group policies through Untangle?

I ask because our current implementation implements Samba as a PDC, but you don't get much in terms of AD policies. Everything needs to be implemented instead as old NT4-style policies through Poledit, to generate a NT policy file you keep in the NETLOGON folder, but this has serious limitations and annoyances. It doesn't even support Micvrosoft Group Policy editor.

Some more detailed information would be appreciated.

Also, does Untangle support Multi-WAN and VPN's? Our current solution supports Multi-WAN, but at the cost of being unable to set up a VPN, for whatever technical reasons and it would be nice to have that feature.

Many thanks,
Hans

mdh
01-15-2008, 05:54 AM
hans,

Welcome! The statement you quoted means that we will be able to use AD user names in policy controls and reporting rather than IP addresses, which can't tell you who did what in a DHCP world. It does NOT mean that we replace AD...our usage of external directories are currently limited to AD. We do not currently support multi-WAN, failover or load balancing. There is a single external interface, a single internal, and an optional single DMZ. If you have an external router that handles the multiple connections, you can use multiple public IPs with Untangle. We currently use OpenVPN, a SSL-based VPN. Beginning in version 5.1 (right around the corner), we will allow passthrough of IPsec and PPTP VPN's. PPTP pass through works on a limited basis now when in bridge mode, but it will work properly beginning in 5.1. The VPN supplied by Untangle will remain SSL-based.