Ñ¡Öиմ´½¨ºÃµÄ·Ö·¢µã£¬¹´Ñ¡¡¾°üÀ¨ÔÚCRLÖС£¿Í»§¶ËÓÃËüÀ´Ñ°ÕÒÔöÁ¿CRLµÄλÖῺÍ
¡¾°üº¬ÔÚ°ä·¢µÄÖ¤ÊéµÄCDPÀ©Õ¹ÖС¿¡££¨Í¼19£©
Ôٴεã»÷¡¾Ìí¼Ó¡¿£¬ÓÃÀ´ËµÃ÷CRLµÄÁбíλÖᣡ¾Î»Öá¿ÊäÈ롾\\\\da1\\crldist$\\¡¿´Ë´¦ÎªDA1ÖеÄÒþ²Ø¹²ÏíÎļþ¼Ð£¬±äÁ¿ÃûÒÀÈ»¹´Ñ¡¡¾¡¿¡¾¡¿¡¾¡¿£¬½áβ´¦Ìí¼Ó¡¾.crl¡¿¡££¨Í¼
20£©
È·¶¨ºó£¬Õë¶Ôµ±Ç°·Ö·¢µã¹´Ñ¡¡¾·¢²¼CRLµ½´ËΪֹ¡¿ºÍ¡¾·¢²¼ÔöÁ¿CRLµ½´ËλÖá¿£¨Í¼
21£©
´Ëʱ£¬CRLÀ©Õ¹É趨Íê³É£¬È·¶¨ºó½«»áÖØÆôADÖ¤Êé·þÎñ¡£
СÌùÊ¿£º¹ØÓÚΪʲôҪÉèÖÃCRL·Ö·¢µã¡£
DirectAccess ·þÎñÆ÷Ϊͨ¹ý IP-HTTPS µÄÁ¬½ÓʹÓõÄÖ¤Êé¡£ÓÉÓÚ DirectAccess ¿Í»§¶Ë¶Ô DirectAccess ·þÎñÆ÷Ìá½»µÄ HTTPS Ö¤ÊéÖ´ÐÐÖ¤ÊéµõÏú¼ì²é£¬Òò´Ë±ØÐëÈ·±£¿Éͨ¹ý Internet ·ÃÎÊÔÚ´ËÖ¤ÊéÖÐÅäÖõÄÖ¤ÊéµõÏúÁбí (CRL) ·Ö·¢µã¡£Èç¹û DirectAccess ¿Í»§¶ËÎÞ·¨·ÃÎÊÕâЩ CRL ·Ö·¢µã£¬Ôò»ùÓÚ IP-HTTPS µÄ DirectAccess Á¬½ÓµÄÉí·ÝÑéÖ¤»áʧ°Ü¡£ÓйØÎª Active Directory Ö¤Êé·þÎñ (AD CS) ÅäÖà CRL ·Ö·¢µãµÄÐÅÏ¢£¬Çë²ÎÔÄ\Ö¸¶¨ CRL
·Ö·¢µã\¡£
9. ÆôÓÃ×Ô¶¯×¢²á¼ÆËã»úÖ¤Êé
Ôٴδò¿ª×é²ßÂÔ±à¼Æ÷£¬±à¼¡¾DA Policy¡¿£¬ÒÀ´ÎÕ¹¿ª¡¾¼ÆËã»úÅäÖá¿-¡¾²ßÂÔ¡¿-¡¾Windows ÉèÖá¿-¡¾°²È«ÉèÖá¿-¡¾¹«Ô¿²ßÂÔ¡¿-¡¾×Ô¶¯Ö¤ÊéÉêÇëÉèÖá¿-ÓÒ»÷¡¾Ð½¨¡¿-¡¾×Ô¶¯Ö¤ÊéÉê
Çë¡¿£¬Ö¤ÊéÄ£°åÑ¡Ôñ¡¾¼ÆËã»ú¡¿¼´¿É¡££¨Í¼22£©
ÖÁ´Ë£¬DC»·¾³×¼±¸ÒѾÍê³É£¬ÏÂһƪ£¬½«¼ÌÐø½éÉÜDA¡¢ÍøÂçλÖ÷þÎñÆ÷¼°¿Í»§¶ËµÄ»·
¾³×¼±¸£¬¾´Çë¹Ø×¢
¸æ±ðVPN£º´øÄã½øÈ¥ÄÚÍøÊÀ½ç£¨¶þ£©¡ª¡ª Direct Access
Ö®DA¼°ÆäËû·þÎñÆ÷×¼±¸Æª
¡¾IT168 ר¸å¡¿ £¨½ÓÉÏÆª£©±¾ÎĽéÉÜDA¡¢ÍøÂçλÖ÷þÎñÆ÷¼°¿Í»§¶ËµÄ»·¾³×¼±¸¡£
DA¼°ÆäËû·þÎñ»·¾³×¼±¸
Ò»¡¢DA1ÅäÖÃ
1. °²×°IIS½ÇÉ«£¬×÷Ϊһ¸ö¼òµ¥µÄWEB·þÎñÆ÷£¬ÉèÖÃĬÈϼ´¿É¡£
2. ΪDA·þÎñÆ÷ÉêÇëÒ»¸öweb·þÎñÆ÷Ö¤Êé¡£
ÔÚMMCÖдò¿ª¡¾Ö¤Êé¡¿£¬Ö¤Êé¹ÜÀíÑ¡Ôñ¡¾¼ÆËã»úÕÊ»§¡¿-¡¾±¾µØ¼ÆËã»ú¡¿-¡¾Ö¤Êé¡¿-¡¾¸ö
ÈË¡¿-¡¾ÉêÇëÐÂÖ¤Êé¡¿£¬Ö¤Êé×¢²á²ßÂÔÑ¡ÔñĬÈϼ´¿É¡££¨Í¼1£©
°Ù¶ÈËÑË÷¡°77cn¡±»ò¡°Ãâ·Ñ·¶ÎÄÍø¡±¼´¿ÉÕÒµ½±¾Õ¾Ãâ·ÑÔĶÁÈ«²¿·¶ÎÄ¡£Êղر¾Õ¾·½±ãÏ´ÎÔĶÁ£¬Ãâ·Ñ·¶ÎÄÍø£¬Ìṩ¾µäС˵×ÛºÏÎÄ¿â¸æ±ðVPN:´øÄã½øÈ¥ÄÚÍøÊÀ½çDirect AccessÉèÖà - ͼÎÄ(4)ÔÚÏßÈ«ÎÄÔĶÁ¡£
Ïà¹ØÍÆ¼ö£º