|
Posted by red_foreman on December 29, 2005, 5:03 pm
If you were Registered and logged in, you could reply and use other advanced thread options
This is kind of long, and I apologize in advance for it, but it's a
very perplexing problem, that deserves attention, and a thorough
explanation.
I have a main office with a 225 appliance, and a remote office with a
110 appliance. We've created the VPN tunnel, and are connected to the
main site using the tunnel just fine, but are having difficulties
joining the domain at the main office.
Main Office IP Scheme
192.168.10.X
CheckPoint device 10.1 as gateway and it does DHCP and is supposed to
be passing DNS thru to the clients.
The DC is a static 10.10 address
DNS and DHCP is being handled to clients other than the server.
Remote Office IP Scheme
192.168.20.X
CheckPoint device 20.1 as gateway and it does DHCP
Clients are using 20.1 as DNS servers, and can surf fine.
This I believe is totally a DNS issue. But since we can surf, DNS is
actually ok, just can't join the domain. I have verified the SRV
records on the DC, supplied the DNS numbers at the main site to the
remote site, and can surf, but not join.
Problems are as follows:
1. The clients cannot join the domain, nor can they authenticate to the
domain, but can search for the 192.168.10.10 address and can find it.
2. At a client PC, nslookup returns no server name, and the 20.1
gateway address.
3. Cannot ping the NetBIOS name of the server, but can ping by IP
address.
If you need more information, please ask, I can answer almost anything.
I've been working with this client for 2 weeks now everyday, trying to
resolve the problem.
Any help is appreciated, and if you made it this far, I greatly
appreciate it.
Red_Foreman
|
|
Posted by wendy on December 30, 2005, 6:44 am
If you were Registered and logged in, you could reply and use other advanced thread options
Dear Red ...
Did you specify the dns servers in network > edit at the remote Safe@ ?
Do you use a wins server as well ?
Which firmware are both appliances ?
You can also try editing a lmhost file on 1 pc to see if it makes any
change .
If you need more assistance then register at http://www.sofaware.com and open a support ticket .
Me or one off my colleagues will assist you then .
Happy New Year !
Wendy Rakovistki .
|
| Similar Threads | Posted | | Firewalls | November 12, 2004, 12:58 pm |
| Firewalls | November 12, 2004, 6:37 pm |
| Win XP SP2 & Firewalls | November 22, 2004, 12:33 pm |
| DSM-320 & firewalls | November 26, 2004, 12:57 am |
| too many firewalls? | November 29, 2004, 10:27 pm |
| Too much firewalls? | February 23, 2005, 8:29 pm |
| firewalls | March 21, 2005, 11:52 am |
| Pix and ISA firewalls | May 18, 2005, 6:55 pm |
| Firewalls and AOL | August 20, 2005, 3:02 pm |
| Too many firewalls? | November 12, 2005, 5:06 pm |
|