|
Question : Remote networks over vpn
|
|
Hi all
We have a problem setting up a remote network over a VPN connection. We currently have set up a Windows 2003 SBS std Domain, the VPN link is provided by two Multitech RF560s which have a direct Ipsec tunnel between them. We have a 2000 stand alone server on the remote site which is on a seperate subnet.
The problem we have is if we try and browse the the server we get an error saying no long on servers available, when we log the server on we get event errors saying cannot obtain domain controler for your network event id 1000 and it takes a long time to long on.
We can ping the domain contoller ok, we can resolve pc names with dns and nslookup resolves the domain name ok and returns servers name and ip address.
Any help would be greatfull
Darren
|
Answer : Remote networks over vpn
|
|
Remember to set all your dc's and remote site clients to use TCP when authenticating with kerberos http://support.microsoft.com/default.aspx?scid=kb;en-us;244474 Problems arise if kerbors authentication is performed using UDP packets over an IPSEC vpn. This results in remote dc's being unable to replicate and long login times for remote pc's authenticating with the dc.
|
|
|