Site-to-Site VPN with Safe@Office 225 and 110 Firewalls.

Site-to-Site VPN with Safe@Office 225 and 110 Firewalls.

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Site-to-Site VPN with Safe@Office 225 and 110 Firewalls. red_foreman 12-29-2005
Posted by red_foreman on December 29, 2005, 5:03 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
This is kind of long, and I apologize in advance for it, but it's a
very perplexing problem, that deserves attention, and a thorough
explanation.

I have a main office with a 225 appliance, and a remote office with a
110 appliance. We've created the VPN tunnel, and are connected to the
main site using the tunnel just fine, but are having difficulties
joining the domain at the main office.

Main Office IP Scheme
192.168.10.X
CheckPoint device 10.1 as gateway and it does DHCP and is supposed to
be passing DNS thru to the clients.
The DC is a static 10.10 address
DNS and DHCP is being handled to clients other than the server.

Remote Office IP Scheme
192.168.20.X
CheckPoint device 20.1 as gateway and it does DHCP
Clients are using 20.1 as DNS servers, and can surf fine.

This I believe is totally a DNS issue. But since we can surf, DNS is
actually ok, just can't join the domain. I have verified the SRV
records on the DC, supplied the DNS numbers at the main site to the
remote site, and can surf, but not join.

Problems are as follows:
1. The clients cannot join the domain, nor can they authenticate to the
domain, but can search for the 192.168.10.10 address and can find it.

2. At a client PC, nslookup returns no server name, and the 20.1
gateway address.

3. Cannot ping the NetBIOS name of the server, but can ping by IP
address.

If you need more information, please ask, I can answer almost anything.
I've been working with this client for 2 weeks now everyday, trying to
resolve the problem.

Any help is appreciated, and if you made it this far, I greatly
appreciate it.

Red_Foreman


Posted by wendy on December 30, 2005, 6:44 am
If you were  Registered and logged in, you could reply and use other advanced thread options

Dear Red ...

Did you specify the dns servers in network > edit at the remote Safe@ ?
Do you use a wins server as well ?
Which firmware are both appliances ?
You can also try editing a lmhost file on 1 pc to see if it makes any
change .

If you need more assistance then register at http://www.sofaware.com
and open a support ticket .

Me or one off my colleagues will assist you then .

Happy New Year !
Wendy Rakovistki .


Similar ThreadsPosted
Firewalls November 12, 2004, 12:58 pm
Firewalls November 12, 2004, 6:37 pm
Win XP SP2 & Firewalls November 22, 2004, 12:33 pm
DSM-320 & firewalls November 26, 2004, 12:57 am
too many firewalls? November 29, 2004, 10:27 pm
Too much firewalls? February 23, 2005, 8:29 pm
firewalls March 21, 2005, 11:52 am
Pix and ISA firewalls May 18, 2005, 6:55 pm
Firewalls and AOL August 20, 2005, 3:02 pm
Too many firewalls? November 12, 2005, 5:06 pm

The site map in XML format XML site map

Contact Us | Privacy Policy