Solved

Windows 2003 Server Domain Controller Firewall Enabled Communication Problems.

Posted on 2007-04-09
4
386 Views
Last Modified: 2012-05-05
We operate in a W2K3 AD domain.  The domain has two DCs replicating one another.  The Primary DC is W2K3 R2 SP-2, and the alternate DC is W2K3, SP-2.  If I enable the firewall on either of these DCs, FRS will not replicating (Event ID:13508), and clients cannot resolve DNS or possibly RPC connection problems.  I can say that if the firewalls are disabled these problems go away.  I followed the steps as per article KB555381 (How to configure Windows Server 2003 SP1 Firewall for a Domain Controller) on both DCs and the communications problems still exist.  I modified the registry and opened all the suggested ports, enabled the firewalls and rebooted both DCs.  After the reboot and the firewalls enabled the same problems exist.  At this point I disabled the firewalls until we can figure out how to correct the problem.  Any feedback would be appreciated.  
0
Comment
Question by:cmp119
4 Comments
 
LVL 70

Accepted Solution

by:
KCTS earned 250 total points
ID: 18875261
The recommended way to set this up is to use the Security Configuration WIzard. See http://www.microsoft.com/windowsserver2003/technologies/security/configwiz/default.mspx
There are lots of links on in the article to detailed information and downloads.
0
 
LVL 48

Assisted Solution

by:Jay_Jay70
Jay_Jay70 earned 250 total points
ID: 18880912
cmp119,

not sure who wrote this but he has my vote 100%
http://www.howtonetworking.com/donot/2003wf25.htm

Regards,

James
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Last week, our Skyport webinar on “How to secure your Active Directory” (https://www.experts-exchange.com/videos/5810/Webinar-Is-Your-Active-Directory-as-Secure-as-You-Think.html?cid=Gene_Skyport) provided 218 attendees with a step-by-step guide for…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question