Re: Cannot join to domain over VPN




"maverick" <maverick@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:FEF10069-EE57-4876-AAEF-60E38D806AB4@xxxxxxxxxxxxxxxx
Hi All,

I have 2 Sites which are connected by VPN.I tried to install a DC at
site2,
and this machie which needs to point its DNS to the DC in Site1 is correct
and pings and resolves fine.When I try to join this machine to the domain,
it doesnt do it and comes up with 'Semaphore timeout'.

If the VPN is unfiltered, and the DNS is correct, the only think left is
reliability and speed & delay (latency). If you get these right then it
is just like being on the same LAN.

You seem to have a message suggesting timing problems (but sometimes
those come from failures too.)

I had a word with the network guy who confimred that all ports are wide
open, so shouldnt be a port/firewall
problem(clean portquery)..Changing MTU size and stuff also proved
futile.What do i do to get this to work?
Can somebody shed some light please?

Do you have ONLY the DOMAIN's DNS servers set it in the "new DC to
be" IP configuration? You must NOT mix the ISP or any other DNS server
into that list, even as alternate.

Show us your unedited "IPConfig /all" from both DC1 and DC2.

Try pathping to see what sort of timing issue you might have.

Try NSLookup and make sure you are resolving DNS from the (current) DC.

--
Herb Martin, MCSE, MVP
http://www.LearnQuick.Com
(phone on web site)


.



Relevant Pages

  • Re: sys vol check
    ... instead of the local DNS server and two ISP DNS servers. ... I need to configure the DHCP to use all three internal DNS servers ... If DNS zones are AD Integrated are writtable. ...
    (microsoft.public.windows.server.active_directory)
  • Re: sys vol check
    ... You've 3 DC DNS servers one in each Site with different subnets. ... You've A forward lookup Zone named CORP.DLECINC.COM and a reverse lookup ... The clients should use only their local DNSserver in ther NIC ...
    (microsoft.public.windows.server.active_directory)
  • Re: Win2k3 and Slow Logons
    ... > various DNS settings from the server and my router set up. ... for internal DNS servers, but it must NOT be listed on any ... >>>>bad world of the Internet. ...
    (microsoft.public.windows.server.dns)
  • Re: Prevent Caching of real world domain in W2K3 sp1 DNS.
    ... resolve anything usda.gov on either of my main DNS servers. ... and the cache is quite full. ...
    (microsoft.public.windows.server.dns)
  • Re: DNS + Forwarders
    ... forward from a site that doesn't have it's own internet service to a DNS ... As to forwarders I agree again. ... The two DCs in head office are the main DNS servers. ...
    (microsoft.public.win2000.dns)