IPCop is the guardian at the site. Remote machines have openVPN on them and do connect and the physical and TCP layer is all good. I want to be able to log into a domain controller there (I think that's the term) so that they can access functions of that *windows* domain (applications, data etc). I'm afraid I'm just to nixxy anymore...

Other installation is like mine (and yours in the future to GetNet) - IPCop is the guardian at the site, I have a box here with a full time, net-to-net VPN. Complete TCP transparency between networks. Want to be able to login to the same Windows domain on the guarded side.
In and out all morning, if you miss me I'll have to catch you later. Lotsa detritus to handle today. Thanks for the effort tho...