Re: SMS 2003 and NAT firewall

From: Stan White [MS] (stanwh_at_microsoft.com)
Date: 03/19/04


Date: Fri, 19 Mar 2004 08:29:41 -0800

To get the full function of the SMS client, you need the IP's to be 'real'
for all the clients and servers.
In other words, the IP assigned to the client by DHCP should be the one you
see in the resource record in SMS, and the one returned when you ping the
machine from the site server.
There are numerous issues with NAT including but not limited to site
assignment, roaming, remote control and push installation.

-- 
Stan [MSFT]
--
--
This posting is provided "AS IS" with no warranties, and confers no rights.
--
--
"Gaetan Simard" <gaetan.simard@eds.com> wrote in message 
news:qirj509eip67sbcequnc7pmcoho4f50pma@4ax.com...
> The Operations Guide and Concept, Planning and Deployment Guide documents 
> are mute about SMS operations in a NAT
> environment. The word NAT is mentionned only 2 times and it is under the 
> BITS area:
>
> <<< ... BITS can send and receive information by using a virtual private 
> network (VPN), with or
> without a firewall that does not do network address translation (NAT). Use 
> of the Advanced
> Client with NAT is not supported. ... >>>
>
> If I'm to assume that the last sentence means what it says, then I need to 
> setup a primary/secondary site behind a NAT
> firewall to support my advanced clients. Am I right?
>
> How does the SMS site servers behaves in a NAT environment?
>
> The Microsoft Technet site is also quiet about SMS and NAT.
>
> Thanks.
> 


Relevant Pages

  • Re: SMS 2003 and NAT firewall
    ... To get the full function of the SMS client, you need the IP's to be 'real' ... the IP assigned to the client by DHCP should be the one you ... There are numerous issues with NAT including but not limited to site ... > How does the SMS site servers behaves in a NAT environment? ...
    (microsoft.public.sms.admin)
  • Re: SMS 2003 and NAT firewall
    ... To get the full function of the SMS client, you need the IP's to be 'real' ... the IP assigned to the client by DHCP should be the one you ... There are numerous issues with NAT including but not limited to site ... > How does the SMS site servers behaves in a NAT environment? ...
    (microsoft.public.sms.setup)
  • Re: subnet inclusion in the AD site boundary is not being seen by
    ... Are you sure the other 50 servers weren't manually assigned? ... Windows Server System MVP - SMS ... subnet to the SMS site boundaries - even though their subnet is already part ... the sms client is in the correct ad site ...
    (microsoft.public.sms.setup)
  • Re: pushing software to non domain servers
    ... You can do that by using SMS 2003 SP1, however you will need to install the ... But when the client is installed and correctly assigned to the Site the ... Remember that, if you have the servers behind of a Firewall, you will need ...
    (microsoft.public.sms.misc)
  • Re: Reassign clients
    ... > We'd like to reassign all the clients from some of our sms servers to ... > Should I remove the boundaries as soon as they are added to the new ... with SMS 2.0... ... With the 2.0 client, when you de-install the boundaries, unless you've ...
    (microsoft.public.sms.admin)

Loading