SSL VPN LDAP AD authentication stopped working
Hello all,
I am using AD authentication for SSL VPN users at all sites I am responsible for, and this works great. However, at one site the Exchange server required lockdown of secure protocols, ciphers, hashes and key exchanges; this Exchange server runs on the DC (SBS2011), and since those changes the FG won't authenticate users against AD-LDAP anymore.
See here https://www.nartac.com/Products/IISCrypto
The changes implemented help to secure the mail server against various attacks, and one of the changes is to disable SSL v2 and v3, as they are vulnerable, in favour of TLS.
Is there any way the FG-LDAP authentication can be made to work in such a situation, for instance using TLS?
Thanks in advance.
