Advertisement

02.21.2008 at 09:28AM PST, ID: 23181874
[x]
Attachment Details

Group Policy is breaking crossing over subnets

Asked by barrykeel in Server Software, Windows Networking, Enterprise Firewalls

Tags: Microsoft, Server 2003, Server 2003

I have 2 networks set up for my two offices. (Main office) Site A has a 10.0.58.0 network and the (remote office) Site B has a 192.168.168.0 subnet. Eventually within the next 3 months I will set up Sites and Services in Active Directory as the remote office is in a temporay location at present. For now the 2 offices are connected with an ILAN product from our ISP. This has no IPs or routing associated with it. Think of it as an extended cable. We use Sonicwall 2040 routers running the enhanced Os at both locations. What I have done for now is plug the cables from the isp into our Sonicwall on a port assigned as a WAN port. This port is not the primary WAN port. I gave the the second wan port at Site A an ip adrress of 192.168.1.1 and the second WAN port at site B an ip address of 192.168.1.2. I created a static route in the Sonicwall for the two networks (10.0.58.0 and 192.168.168.0) using these ips. I opened the access rules to allow any protocol to or from eath network to pass thru since this is a private
netork and they do not enter the internet cloud from the ISP. Everything sees each other fine on the two networks. The users at the site B log into the domain just like at site A. In fact the users at site A moved to site B and took their machines with them. They log on as they always did as if at site A. They only issue i am now having is with Group Policy. The error on the local computers at site B is:
Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1054
Windows cannot obtain the domain controller name for your computer network. (An unexpected network error occurred.). Group Policy processing aborted.

Microsft explanation is a network connectivity issue or a configuration issue. Check DNS, run netdiag, dcdiag etc. I have and they all come back fine. Our DCs and DNS is at Site A for now and everything at Site B points to these. I can ping our DCs, WINS, DNS by IP, Netbios Name or FQDN. I can get to \\domain.com\sysvol\domain.com with no problems. I can see all computers in Network Neigborhood. This was working for the first week it was set up. The only thing that I changed was at the Sonicwall. When this was working I had the cables plugged into the same interface port on the Sonicwall but had it assigned to a Custom Zone named Point to Point which was a trusted zone and not on a WAN zone (which is not trusted). The reason for the change was I had to use another interface port as a LAN zone to handle some IP phones. I need to do some bandwidth management and that can only be done on a WAN zone at the Sonicwall. So the point to point fron Site A to Site B got put on a WAN zone. However, I am allowing all protocals across the WAN Zone. It is wide open. Of course so was the Point to Point Zone. This error is the only error I get and Group policy is aborted. Any ideas to solve this would help.Start Free Trial
[+][-]02.21.2008 at 11:51AM PST, ID: 20951187

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]02.21.2008 at 02:13PM PST, ID: 20952426

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]02.26.2008 at 08:56AM PST, ID: 20986149

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Server Software, Windows Networking, Enterprise Firewalls
Tags: Microsoft, Server 2003, Server 2003
Sign Up Now!
Solution Provided By: barrykeel
Participating Experts: 1
Solution Grade: A
 
 
 
Loading Advertisement...
20080716-EE-VQP-32 / EE_QW_2_20070628