Just Added

Configuring Cisco ASA to use MS-CHAPv2 with RADIUS

AuthLite's RADIUS service expects two-factor authentication requests to use the MS-CHAPv2 protocol, but there is no obvious way to turn this on in a Cisco ASA.

Access Denied error on install

When installing AuthLite on the first domain controller in your organization you receive a pop-up "General access denied error"

AuthLite PowerShell provider

Administrators can use Microsoft(r) Windows PowerShell to gain programmatic access to the AuthLite data store.

AuthLite and Citrix

Instructions for using AuthLite to add two-factor security to Citrix through the Citrix Web Interface.

Service marked for deletion

During installation, you receive the message "The specified service has been marked for deletion"

RDP and Network Level Authentication

The RDP client version 6 and later collect credentials before establishing a remote session. AuthLite credentials cannot be entered here, so extra measures must be taken to log in as an AuthLite integrated user.

Program a key over RDP

Normally AuthLite keys can only be programmed when directly connected to the computer running the configuration program, not over remote desktop. There is a work around.

Unattended deployment of AuthLite

In medium/large organizations, visiting each workstation to install the AuthLite software is not practical. This article contains pointers on deploying with Group Policy Objects (GPO)

Installation on Server Core

AuthLite can be installed on 2008 Server Core R2, but not R1 because it lacks the .NET framework

Exclude by IP address

You want to add an IP address to the ClearTunnel Excluded Sites list.

Web filters are not working

You have installed a web filter and it appears to be having no effect even though you configured the settings properly.

SecureNAT connections fail with Captivate

When you configure Captivate to authenticate SecureNAT users, the connections are blocked, or the captive portal screen is never shown.

OpenSSL certificate authority

A list of steps to create a ClearTunnel signing certificate using OpenSSL instead of a Microsoft certificate authority.

Could not find the old certificate key

When attempting to renew the ClearTunnel certificate, you receive an error message stating "I could not find the old certificate key in the ISA settings, so it's not possible to renew it."

Using "Content Types" tab

If you wish to use the "Content Types" tab for HTTPS traffic, you need to add these configuration items to avoid issues.

IE6 hangs

When using ClearTunnel 1.2 and Internet Explorer 6, some pages never "finish" loading and IE is unable to open new connections.

Local Host workaround and KB941634

ClearTunnel version 1.2 and later requires an extra "Local Host" rule if the ISA Server 2006 version is less than 5.0.5721.250.

Redirection in ISA 2006

WebDirect is compatible with ISA 2006, but is it necessary?

OnRouting error in Alerts/Event log

HTTPS pages don't display; "OnRouting could not set the forwarding request pending event" errors are logged in the ISA alerts.

Certificate Wizard error

The ClearTunnel certificate wizard may fail with an RPC error even when all fields are correct. There are two possible solutions.