Re: RPC and IPSec
- From: "Paul Bergson" <pbergson@xxxxxxxxxxxxxxxxx>
- Date: Fri, 24 Mar 2006 08:06:00 -0600
This is an rpc error. The machine that the client is trying to attach to
should be the one telling the client which rpc port to use. The client
machine is provided this info on the initial connection off of port 135.
I'm a little confused on your details but have you defined the port
restrictions on ALL your source machines that this client is goint to attach
to and have any firewalls, that may be setup between, have these ports
opened up. Have you made any other mods to machines rpc definitions such as
the one in the description in the link below?
Dynamic allocation of rpc port range
http://support.microsoft.com/kb/154596/en-us
--
Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
http://www.pbbergs.com
This posting is provided "AS IS" with no warranties, and confers no rights.
"Trond E. Gjelsvik-Bakke" <Trond E.
Gjelsvik-Bakke@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:53174CBF-DED6-45F1-9DDA-0F0AD9F07986@xxxxxxxxxxxxxxxx
Hello.
I have implementet IPSec on my DC's. The IPSec is as described in Windows
Security Resource Kit. I hav used recommended IPSec filters for domain
controllers with DNS.
I have made som adjustments, as I have one Administration LAN that I have
been given full access.
When I put a client on some other LAN, and try to join this client to the
domain I get an error: "There are no more endpoints avaliable to the
endpoint
mapper"
The join then fails !!
I guess that this has something to do with IPSec rule:
Predifined RPC Range - TCP - ANY - 57901-57950 - ANY - ME - ALLOW - YES
This rule is, if I'm not wrong, limiting the ports used by RPC.
If I remove the IPSec or move the client into the Administrative LAN - It
Joins.
Does anyone have some solution on this ??
.
- Follow-Ups:
- Re: RPC and IPSec
- From: Trond E. Gjelsvik-Bakke
- Re: RPC and IPSec
- Prev by Date: Re: client logon slow when 1 DC is down
- Next by Date: Re: Logon is slow when 1 dc is down
- Previous by thread: Re: client logon slow when 1 DC is down
- Next by thread: Re: RPC and IPSec
- Index(es):
Relevant Pages
|