Problems with Windows Logon using VPN

F

Frank

I work remotely for my company. To provide access to the company
network I tunnel in using a VPN. I'm no expert, but let me explain how
logon works as far as I understand it:

1. Computer is setup in the corporate domain on-site
a. Computer name assigned, put in domain
b. User account defined (user name, password)

2. Computer is shipped out to me, I hook it up to my broadband
connection.

3. I log on to the domain with user name and password setup in step 1.
a. Since I'm not actually on the domain, the cached password
credentials are used and I'm allowed to log on.
b. Once logged on, I establish a VPN connection to the corporate
network and things are good to go.

Now the problem...

From time to time I forget to change my password and it expires. When
this happens, the cached credentials do not match and logon access to
the domain is denied. With WinNT and Win2000 the fix for this was to
logon using a dialup connection. The dialup connection (modem) would
tunnel in before logon. Once connected in this manner the domain is
available so the cache is ignored. I am allowed to logon and I can
change my password. This updates the cache on my local machine at the
same time. After performing this logon using a dialup connection, I
would simply logout and log back on in the normal manner with the new
password -- with the updated cache everything worked fine.

Well, I forgot to change my password again, but this time I have WinXP
(latest Service Packs applied). When I logon, it tells me I can't
because the corporate domain is not available. I switch to the logon
using dialup connection. The dialup connection succeeds, but the logon
continues to fail with the same error message. It doesn't seem to
recognize the established dialup connection. How can I resolve this out
of synch password?

The IT guys at my company have already un-expired my password, but my
machine must still think it is expired as it keeps giving me the error
message.

Any help is greatly appreciated.

-Frank
 
R

Rick \Nutcase\ Rogers

Hi Frank,

I'm not an expert on these things, but this may help:

Cannot Access Network Resources After You Establish a Dial-Up Networking
Connection and Log On to the Domain
http://support.microsoft.com/?kbid=326570

If you don't want to get the patch it describes, you can still use the
workaround.

--
Best of Luck,

Rick Rogers aka "Nutcase" MS-MVP - Windows
Windows isn't rocket science! That's my other hobby!

Associate Expert - WinXP - Expert Zone
 
F

Frank J. Lagattuta

Thanks for the info. I have already tried that hotfix,
but it did not help. I caved in and sent the computer off
to the corporate office where it can be directly connected
to the network. Once it is synched up they will ship it
back to me and all should be working fine. Lesson
learned: don't forget to update your password before it
expires if you are a remote user.

-Frank
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top