Jump to content

Person1

Member
  • Posts

    3
  • Joined

  • Last visited

  • Donations

    0.00 USD 
  • Country

    United States

About Person1

Person1's Achievements

0

Reputation

  1. cluberti, That is a very good option! I am going to look more into setting up ADAM to see if it is what I am looking for. Thanks! Eric
  2. Thanks for the reply! The everyone group issue definately needs to be addressed. It is just going to take more time than I have since I have to get this SFTP site up and running ASP. We are using a third party product Globalscape EFT Server. We have to use AD because of the way there Gateway DMZ server interfaces with the back end server. There are also a few other options we are going to use that are easier done with AD. Thanks, Eric
  3. We have a 2003 Active Directory domain. We are currently working on setting up an SFTP Server for our company in which the software will talk to an AD domain for user credentials. We want to use an AD domain for this because of some of the extra features it offers. I am trying to decide where I want to setup the SFTP users since they will be external users. By external I mean customer throughout the world. Currently we have no external users in our AD environment and I am trying to figure out how to add them in the most secure manner. I don't want them to have access to anything other than the SFTP server. Here are the options as I see them: 1. Create a new OU in our domain. Create a new group called SFTP or whatever we want to name it. Then create the user accounts for the external users and add them to the SFTP group. For each user set the SFTP group to the primary and remove them from the Domain users group. One issue with this setup is that we misued the Everyone group in the past and we currently do not have the time to go back to everywhere it was used and fix it. So the external users in theory would have access to some shares because of the use of the Everyone group. 2. Setup a new Domain under our Forest. 3. Setup a child domain under our Domain. 4. Setup a completely different Forest and domain for this. Any opinions would be greatly appreciated. Which option would you choose or is there another way of doing this that I am not thinking of? Thanks! Eric
×
×
  • Create New...