We used SDL for about a year where I work with pretty good success. The
"Change your password" requests did come through while using SDL. I
believe you are correct that the password change operation for Windows
domains only happens during the initial login.

We do not have very many people who only work from home, most of ours
use SecureClient on travel. Because of this, our user community
complained because every day they were in the office they had to cancel
the SDL login, so we moved away from using SDL Regarding the licensing,
we do have SecureClient licenses, rather than just SecuRemote, so I am
not sure if you have to have it for SDL to work.

Thank You,
Robert Rufener
Network Engineer
Northrop Grumman/Sperry Marine

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of Sergio
Alvarez
Sent: Thursday, 29 March 2007 3:22 p.m.
To: [email protected]
Subject: Re: [FW-1] AD Domain Password change va SecuRemote

Thanks Romey,

I don't really have much knowledge related with Microsoft stuff or
Windows
Domains, so do you know how exactly does that Kerberos change password
works?

I'm thinking first of all that if this is something the DC initiates to
the
users and these are SecuRemote users going through an IP Pool NAT, most
likely it will not work.

On any case my questions about SDL are because I believe this whole
password
change thing happens only during domain logon, do you know if I'm right
or
not?

Thanks again.

Regards



=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to