This checklist provides the tasks required to install DirectAccess on a single server.

Ensure that your network meets the requirements for DirectAccess.

Checklist: Before You Configure DirectAccess

Install two network adapters (interfaces) on your DirectAccess server. Connect the internal network interface to your internal network.

From the Network Connections folder, configure your network connections (interfaces) with meaningful names indicating the network to which they are attached, such as “Internet” and “Internal network.”

Configure your internal network interface with a static IPv4 address configuration.

Join your DirectAccess server to your Active Directory Domain Services (AD DS) domain.

Ensure that your DirectAccess server is not a domain controller.

Connect the Internet interface to the Internet. Verify that a domain controller is not reachable from the Internet interface.

On the Internet interface, configure at least two consecutive, static, public IPv4 addresses that are resolvable and reachable on the Internet. Addresses within the address ranges,, or are not public IPv4 addresses.

Configure connection-specific DNS suffixes on your Internet and internal network interfaces.

Ensure that the DirectAccess server has a computer certificate installed with the computer authentication Enhanced Key Usage (EKU).

If the DirectAccess server is acting as the network location server, install Internet Information Services (IIS).

Install DirectAccess on the DirectAccess server.

Install DirectAccess

Run the DirectAccess Setup wizard and apply the settings.

Use the DirectAccess Snap-in to Configure DirectAccess