logging on to a domain from a dislocation

G

Guest

The situation: HQ with 2 DC on W2k servers, and several other servers amongst
which the intranet server and the Exchange server. Users at the HQ log on to
the domain. Users in the dislocations, which are connected to the network by
Cisco router-internet-cisco router, are not able to logon to the domain
"there is no DC available...". The users can acess their mailboxes on the
Exchange server, and have access to the intranet. Users can ping 1 of the DC,
the other one is not added to the cisco routers. Their pcs are configured
just the same as the pcs in the HQ, that is same DNS etc.
Where do I have to look for a solution?
Thanks in advance...
 
P

Paul Bergson

There must be some port blocking going on between where the dc resides and
this workstation.

You need to be able to query dns for DC services (53), gain access to LDAP
on your DC (389), etc... Check out the link below and review the Client
requirements for access to the DC.

135/TCP
389/TCP/UDP
636/TCP
3268/TCP
3269/TCP
53/TCP/UDP
88/TCP/UDP
445/TCP
Plus high ports (There is a trick to locking this down to a single port,
read the article and if you don;t follow repost)


http://support.microsoft.com/kb/179442/en-us

--

Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
http://www.pbbergs.com

This posting is provided "AS IS" with no warranties, and confers no rights.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top