Solved

How to join a remote domain over IPSec?

Posted on 2006-06-27
5
593 Views
Last Modified: 2010-03-19
We have 2 offices, the main office network details below:
ADSL Modem(Static IP) -> FireWall(192.168.100.1) -> Internal network(192.168.100.2-254)
The remote office network details below:
ADSL Modem(Static IP) -> FireWall(192.168.200.1) -> Internal network(192.168.200.2-254)

The VPN(IPSec) is established between these two sites thought the FireWall, also all IP addresses fromboth sites are dynamic assigned by the firewall. The PCs in both sites can ping each only by IP Addresses but not PC names.
When I try to join in the domain, it said "A domain controller for the domain could not be contacted". I think that's why I cannot join the remote office PCs to main office domain where has one DC and DNS server.

I need a solution to solve this problem. Anyone got any ideas?

Thanks a lot
0
Comment
Question by:hhubbo
5 Comments
 

Expert Comment

by:dreamer7749
ID: 16990632
IT has relationship with what brand of firewall you used, some firewall could do it like sonicwall.
0
 
LVL 26

Expert Comment

by:jar3817
ID: 16991484
In Active Driectly clients find domain controllers (and other info) using DNS, and it sounds like your DNS setup isn't quite working. Try setting the dns server in all the workstations to the one dns server in the other location.  Once you are able to ping by DNS name you'll be able to join the domain.
0
 
LVL 79

Accepted Solution

by:
lrmoore earned 125 total points
ID: 16991753
Try creating a little 2-line LMHOSTS file and put it on the remote network PC. This LMHOST file simply identifies the domain and the domain controller. Pay attention to all the details of the file requirements as laid out here:
How to Write an LMHOSTS File for Domain Validation and Other Name Resolution Issues
http://support.microsoft.com/support/kb/articles/Q180/0/94.ASP

0
 
LVL 4

Assisted Solution

by:gbirkemeier
gbirkemeier earned 125 total points
ID: 16993607
What side is the Domain Controller on?

In order to get the UNC naming to work you need to configure WINS servers on each network.  In your DHCP configuration on the remote router create an entry for the WINS server in the other network where the DC (WINS server) resides.

If the DC is on the 192.168.100 network, then configure the clients on the 192.168.200 network with the IP address of the WINS server (usually the DC) in the 192.168.100 network.

If you have a DC on both sides of the network you will want to configue WINS replication on each server that points to the other WINS server.192.168.100 <--> 192.168.200
0
 

Author Comment

by:hhubbo
ID: 17006103
I created a couple of entries in LMHOSTs file, so I can join in the remoted domain now. Thanks lrmoore.
Also I think if I setup WINS server which would be easier to handle all my pcs. Thanks gbirkemeier.
 
0

Featured Post

Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

Join & Write a Comment

I've written instructions for one router type, but this principle may be useful for others of the same brand and even other brands of router. Problem: I had an issue especially with mobile devices that refused to use DNS information supplied via…
Meet the world's only “Transparent Cloud™” from Superb Internet Corporation. Now, you can experience firsthand a cloud platform that consistently outperforms Amazon Web Services (AWS), IBM’s Softlayer, and Microsoft’s Azure when it comes to CPU and …
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now