[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] Tap-Win32 non-admin add routes


  • Subject: Re: [Openvpn-users] Tap-Win32 non-admin add routes
  • From: "John A. Sullivan III" <jsullivan@xxxxxxxxxxxxxxxxxxx>
  • Date: Tue, 07 Nov 2006 09:29:59 -0500

On Tue, 2006-11-07 at 09:22 +0300, Tony wrote:
> On Mon, 06 Nov 2006 17:50:49 +0300, Miroslav Geisselreiter <mg@xxxxxxxx>  
> wrote:
> 
> > Will it be possible to do routing on win machines without admin  
> > privileges?
> I have the same problem here.
> I add myself to the "Network Configuration Operators" group in addition to  
> my usual "Users" membership.
> Not a clean solution, but it works for me so far...
> But ues, I'd prefer to have it 100%-user-compatible.
> 
> Tony.
<snip>
My apologies for missing this original post.  We do this all the time
when we build compartmentalized network security with the ISCS network
security project (http://iscs.sourceforge.net).  If we are taking the
trouble to grant our users least privilege access on the network, we
certainly want to enforce that on the desktop.

We utilize CPAU, a batch file and a few modifications to the nullsoft
installer.  It all works fine for non-admin users without losing any of
the features of privileged access.  They do have to be able to run the
installer using runas and thus know the local admin password.  I've
posted the solution to the forum before.  If you can't find it, let me
know and I'll repost.  Hope this helps - John
-- 
John A. Sullivan III
Open Source Development Corporation
+1 207-985-7880
jsullivan@xxxxxxxxxxxxxxxxxxx

Financially sustainable open source development
http://www.opensourcedevel.com

______________________
OpenVPN mailing lists
https://lists.sourceforge.net/lists/listinfo/openvpn-users


Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-11/msg00058.html on line 209

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-11/msg00058.html on line 209