Re: Remote site not replicating after ISA upgrade
- From: "Jorge Silva" <jorgesilva_pt@xxxxxxxxxxx>
- Date: Tue, 13 Jun 2006 23:28:50 +0100
any time...
--
I hope that the information above helps you
Good Luck
Jorge Silva
MCSA
Systems Administrator
"Ryan Novagrp" <RyanNovagrp@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:D21BA295-1846-4BE8-A536-9795666849C3@xxxxxxxxxxxxxxxx
Hi Jorge,
Thank you for your response but I've figured out that its the ISA 2004
server blocking traffic only between the home office and this one remote
site. Both ISA and AD are configured in hub and spoke layout. The crazy
thing
is all 5 other spokes are replicating traffic for AD and files with no
problem. It's a single spoke having the problem and the configuration is
literally identical to the other 5. It's not all traffic being blocked,
users
at the problem site are still able to connect over the VPN to the exchange
server here in our main office. I can also remote desktop from the home
into
the remote problem site servers. It just seems to be the server to server
replication traffic that is being blocked by ISA. So this probably isn't
the
best forum to answer this question, being its not AD issue. I appreciate
your
help regardless.
Ryan
"Jorge Silva" wrote:
Hi
Can you give more Detailed Info about ISA Remote site configuration?
- Are all sites able to reach each other?
- Do you have one VNP Connection from each site to main site (Hub Spoke),
or
you are having 1 VPN connection from each site to each site (Mesh)?
- Can all DCs ping each other By FQDN.
- Did you defined route option under network rules to each site.
- Did you defined the Firewall Access rules for each site.
How you have your DNS configuration?
Results for:
Dcdiag /d /c /v
Netdiag /debug /v
I've increased the cost on
this site link and decreased the replication interval and still having
same
issues. Anyone come across this scenario? Thanks
Are your site links transitive (default-Bridge all sites links)? If yes
you
should make sure that all sites reach each other.
When you increase the cost for site link, you should pay attention,
because
assuming that your site links are transitive (default), if the cost of
the
site link is higher than the sum of 1, 2 or more site links to the same
destination, the alternate path is chosen, and if your DCs in different
sites aren't able to reach each-others you'll have problems.
Event ID 1311: Replication configuration does not reflect the physical
network
http://technet2.microsoft.com/WindowsServer/en/Library/062e8eaa-27e0-4c5e-bc2b-2913ecce24b81033.mspx?mfr=true
--
I hope that the information above helps you
Good Luck
Jorge Silva
MCSA
Systems Administrator
"Ryan Novagrp" <RyanNovagrp@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:65BD6873-4F30-4BD3-A1C0-A179106E1007@xxxxxxxxxxxxxxxx
Recently upgraded our home office SonicWall Firewall/VPN to ISA 2004
Standard. After the upgrade I noticed replication errors in Directory
Service
and FRS logs for one of our remote sites. Mostly KCC events 1865, 1566,
1311.
Also NTDS Replication event 1232.
I've attempted MS article http://support.microsoft.com/?kbid=830746 on
both
the remote site DC and the home office DC. I've rebooted each DC after
making
the registry change and I'm still receiving the 1232 events and all
other
replication problems. Also yes this ISA 2004 Standard is running on
Server
2003 SP1, and yes I've installed ISA 2004 SP2. And all RPC traffic and
replication is running normal to my 5 other remote sites which all run
VPN
connections through ISA in exact same configuration. This one remote
site
that is having the problem just happens to have the slowest connection.
I
use
site links to control the replication traffic from the home office to
each
individual jobsite in a hub-spoke configuration. I've increased the
cost
on
this site link and decreased the replication interval and still having
same
issues. Anyone come across this scenario? Thanks,
Ryan
.
- References:
- Re: Remote site not replicating after ISA upgrade
- From: Jorge Silva
- Re: Remote site not replicating after ISA upgrade
- From: Ryan Novagrp
- Re: Remote site not replicating after ISA upgrade
- Prev by Date: Re: Remote site not replicating after ISA upgrade
- Next by Date: Re: Allowing users to log on locally at certain machines
- Previous by thread: Re: Remote site not replicating after ISA upgrade
- Next by thread: Re: Get user names to display differently in Active directory
- Index(es):
Relevant Pages
|
Loading