Port 88 forwarding for offsite users to authenticate with DC

So after researching, I decided to do some port forwarding on port 88 from offsite Mikrotik routers using public IP address x.x.x.x to port 88 in the main office, so users can authenticate with the domain controller for interactive logon.

If port forwarding is done from port 88 using specific real IP x.x.x.x (field office 1) to port 88 real IP y.y.y.y (main office) the offsite user then should be able to authenticate for credentials.

My concern is how far this setup can be vulnerable to attacks?


Category: authentication Time: 2016-07-30 Views: 0

