[Webinar] Streamline your web hosting managementRegister Today

x
?
Solved

Widnows DCs Firewalled

Posted on 2004-09-18
2
Medium Priority
?
291 Views
Last Modified: 2010-04-19
Hey All,

   I have a secure subnet (behind a firewall) in my network and both my DCs are in the outside portion.   We're having trouble authenticating shares (you might not have permission to access this network share), and I'm sure there will be other issues with AD....   The network setup is this:

Internet
  |
Firewall
192.168.1.xxx
  |
AD Controllers & some XP Clients 192.168.1.x
  |
192.168.1.xxx
Inside Firewall running RHEL 3 & iptables firewall\
192.168.210.x
  |
some XP Clients & some windows servers 192.168.210.x

   How can I use windows services without access to the DCs & my AD?
0
Comment
Question by:smithware
2 Comments
 
LVL 51

Accepted Solution

by:
Netman66 earned 1500 total points
ID: 12093775
Place one DC inside the second firewall.  Create rules through the second firewall so that the other DC can connect to it point-to-point.

You'll need to understand what ports should be opened between these servers.

Here is a start at determining what is used:  http://support.microsoft.com/default.aspx?scid=kb;en-us;832017&Product=winsvr2003

The idea is to use the inside server to connect to and mount shares from the .1.xxx subnet as volumes in empty NTFS folders.  This will allow internal clients to only map to their local server for resources.

How to mount: http://support.microsoft.com/default.aspx?scid=kb;en-us;323424&Product=winsvr2003

0
 

Author Comment

by:smithware
ID: 12108198
Although I accepted this answer, it should be noted that the answer to the question was actually create an lmhosts file on the clients to point to the domain controllre.
0

Featured Post

Keep up with what's happening at Experts Exchange!

Sign up to receive Decoded, a new monthly digest with product updates, feature release info, continuing education opportunities, and more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

On July 14th 2015, Windows Server 2003 will become End of Support, leaving hundreds of thousands of servers around the world that still run this 12 year old operating system vulnerable and potentially out of compliance in many organisations around t…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
With just a little bit of  SQL and VBA, many doors open to cool things like synchronize a list box to display data relevant to other information on a form.  If you have never written code or looked at an SQL statement before, no problem! ...  give i…
In this video I will demonstrate how to set up Nine, which I now consider the best alternative email app to Touchdown.

590 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question