Assign different vlan/subnet when users use VPN in Server RAS and NPS.

Jorge Ignacio González Méndez 1 Reputation point
2021-09-02T22:33:42.693+00:00

Hello, good morning colleagues,

I have a problem, I need when my users use the VPN hosted on my RAS servers to grant them different networks or vlans, the authentication is done through an NPS server, I do not have Windows DHCP servers, I use the one on my firewall which is a watchguard firebox. The ips that will be delivered are from one of the NICs that the RAS server has, I would like to know if there is a way to deliver different subnets per active directory security group for example:

The IT team is assigned the 192.168.45.XXX/24 network and the sales team the 192.168.50.XXX/24 network and so on with each team.

in case it doesn't support it, open any other good way to be able to manage VPN permissions by groups?

Any questions remain at the order, I hope you can help me,

Cheers,

Windows for business Windows Client for IT Pros Networking Network connectivity and file sharing
Microsoft Security Microsoft Authenticator
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Limitless Technology 39,916 Reputation points
    2021-09-03T14:08:11.13+00:00

    Hello @Jorge Ignacio González Méndez

    Please have a look on below Microsoft thread discussed for VLAN assignment.

    https://social.technet.microsoft.com/Forums/en-US/63931f75-090b-44a2-984c-c5402d147dc2/rras-vpn-assign-different-ip-address-based-on-group-membership?forum=winserverNIS

    If the reply was helpful, please don’t forget to upvote or accept as answer

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.