• Brian,

    Thanks for the response. I actually have a couple of scenarios to address:

    - company employees using company owned laptops that connect via a normal VPN

    - offshore development teams that connect via a site to site VPN

    For my purposes I think I will focus on the first item now as the second item involves employees from another organization connecting from a non trusted domain. This is an entire different scenario.

    Now, with our employees, we have two domains, trusted with one another. They may connect to either domain based on which servers they need to access (they have other needs besides the database servers). It sounds like we should be able to setup these users to use domain authentication regardless of (a) which domain the database server resides on and (b) which domain they connect to. Sounds like the work is on our network guys, sound about right?