Advertisement

06.17.2008 at 12:02PM PDT, ID: 23492851
[x]
Attachment Details

Problems authenticating to domain over the WAN via VPN

Asked by Ivrnet in Virtual Private Networking (VPN), Windows 2003 Server

Tags: Microsoft, Windows, Server 2003, Sonicwall - Linksys, VPN Firewalls, TZ170 - RV082, site to site VPN tunnel

Here's the setup.

We have 2 physical locations, approximately 20 blocks apart, connected via a gateway to gateway VPN tunnel. VPN tunnel is connected and stable, and has been for months.

At Site A, I have a Sonicwall TZ170 router at 192.168.1.254. The internal LAN is 192.168.1.x. Windows Server 2003 domain controller is at Site A at 192.168.1.50. DC is also the DNS, and DHCP server, though all clients except those connecting wirelessly are using static IP's.
At Site B, I have a Linksys RV082 router at 192.168.10.1. The internal LAN is 192.168.10.x. Clients on this site are using static IP's. For their DNS information I have 192.168.1.50 and 192.168.10.1, in that order.

All computers at both locations are members of the domain. All users have a logon script, logon.bat, which deletes, then re-maps a couple of network drives, and maps 2 printers. In the last few days, I am having a number of issues.

1. Users at Site B sometimes get "domain is not available" when trying to log on. Will usually let them on after several tries or a reboot.
2. Users at Site B are sometimes not able to access the network drives. They receive "the system detected a possible attempt to compromise security make sure you can contact the server that authenticated you"
3. Intermittently not able to ping the DNS server by name. Pinging by IP works.
4. Intermittently not able to  browse network folders by name.
5. Intermittently not able to authenticate to network folders, get "domain controller could not be contacted" message.
6. Intermittently get "An error occured while connecting to... the local device name is already in use. The connection has not been restored"

So, this all points to a DNS issue, obviously. What I'm wondering is how I should have my clients configured so I can eliminate these domain logon and shared folder issues. Also, should I set up the Linksys router at Site B to use the DNS from Site A? Currently it is using  the ISP DNS. If I do this, will it affect the users internet access at Site B?

Thanks
Start Free Trial
 
Loading Advertisement...
 
[+][-]06.17.2008 at 06:08PM PDT, ID: 21808989

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Virtual Private Networking (VPN), Windows 2003 Server
Tags: Microsoft, Windows, Server 2003, Sonicwall - Linksys, VPN Firewalls, TZ170 - RV082, site to site VPN tunnel
Sign Up Now!
Solution Provided By: rowansmith
Participating Experts: 1
Solution Grade: A
 
 
[+][-]06.18.2008 at 11:56AM PDT, ID: 21815888

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]06.18.2008 at 04:28PM PDT, ID: 21818140

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20080716-EE-VQP-32 / EE_QW_2_20070628