NT Domain authorization

Christian, Chris chris_christian "at" nscorp.com
Mon, 28 Sep 1998 22:56:06 +0000


We are thinking about using VNC as a method of remotely
administering/supporting NT machines out at a large number of remote
sites.  We are using the VNC Server as a service on the remote NT
machines.  For security we use a different port, keep the VNC Server
service stopped (until needed), and then of course a password.  This
level of security is adequate for now, but we would like to be able to
authenticate connections via the NT Domain User Database.  Instead of
having to distribute out new passwords (via the registry) when a Domain
Admin leaves the company.  As well, some kind of auditing/logging
features that would show: which Computer Name/ IP Address and time the
connection came from, the Domain Username, etc.

We love VNC just the way it is, but if we want to get VNC approved as a
secure administration tool in our company, we need more security options
to show our internal audit group.  And I apologize if any of these
question have already been asked.


Chris M. Christian
Senior Developer
Norfolk Southern Corp.

---------------------------------------------------------------------
The VNC mailing list     -   see http://www.orl.co.uk/vnc/intouch.html
---------------------------------------------------------------------