Configuring AD between to Remote sites with NAT on both sides



I've been tasked with setting up a remote site which is configured as a
child domain (remote.hq.site.com) in our forest (hq.site.com). We have a T1
link between us but no site-to-site vpn to allow our private subnets to talk
to one another. At our site, we have both external and internal addreses. At
the remote site all systems have internal addresses and some systems map to
external addreses. There is a Cisco Pix on both sides but we do not have a
VPN concentrator at the remote office.

As a result I am having issues with DNS between the sites because of
communication errors. Is it possible to configure Windows 2003 DC's as vpn
endpoints so that we can hve IP traffic route properly between us?

Can anyone point me to documentation for configurin AD between to remote
subnets that are being NAT'ed?

Thanks


.



Relevant Pages

  • Re: Remote Access and ISA Server in SBS 2003?
    ... I am glad to hear the Remote Access Wizard is working fine now. ... there is no difference in VPN between SBS 4.5 and SBS ... Error Message: VPN Connection Error 800: Unable to Establish Connection ... the external NIC of the SBS Server. ...
    (microsoft.public.windows.server.sbs)
  • RE: VPN Problem with a domain account versus local computer account
    ... logon domain remotely. ... allow VPN client access, and there is a client computer that is configured ... Enable remote access on domain user accounts ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS VPN setup?
    ... Do you really think it is easier to set up a RWW in SBS 2003 R2 Standard as you claim? ... Note that almost all routers are not designed to allow more than one PPTP VPN from the same remote IP address, (the PPTP protocol does allow for the possibility of multiple tunnels, but they must share a control channel, which means it can't be done from separate remote computers behind one NAT router without fairly exotic packet handling) so if you need multiple users at one site you really need site-to-site VPN. ...
    (microsoft.public.windows.server.sbs)
  • RE: Connecting to resources over a SBS 2003 VPN
    ... > Regarding your concern in the latest reply, we can run Remote Access Wizard ... Check 'VPN access' and click Next. ... > Microsoft CSS Online Newsgroup Support ... > This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote User Management
    ... The problem is management of remote computers and compliance verification. ... when they do not have network connectivity the ... So those desktops and laptops are out, ... We have been considering installing Site-Link VPN appliances at the users ...
    (microsoft.public.windows.server.active_directory)

Loading