[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

ISA 2006 problems

Posted on 2009-04-29
7
Medium Priority
?
686 Views
Last Modified: 2012-05-06
I have ISA server 2006 sp1 on windows 2003 sp2 working in Active directory Domain
having the errors
Kerberos Event ID 4 and Event ID 5719 Authentication failure ( tried to test with \\domain name\sysvol\domain name give logon failure)

puplished exchange server donot work ( out side users web logon or pop3 report that they cannot access the mail and keep asking about the password again and again all internal users have no problems working with MAPI and connected directly to exchange server) I think this problem related to the event ID 4 and 5719

All internal users can access internet without problem

all other servers have no problem related to Active directory domain controllers or member servers
 
0
Comment
Question by:AhmedAwad
  • 4
  • 3
7 Comments
 
LVL 39

Expert Comment

by:ChiefIT
ID: 24288929
How many nics do you have?
0
 

Author Comment

by:AhmedAwad
ID: 24302904
I have 2 NICs Cars
0
 
LVL 39

Expert Comment

by:ChiefIT
ID: 24306017
That might be the issue, instead of ISA.

Nics bind certain services and communications protocols to it. So, if you have two nics, the server might be confused.

ISA is a prolific firewall that will block connections unless configured right. However, if two nics are on the server, you may be looking at the server looking happy, but is confused as to what nic it needs to go out on for proper communications. Usually when I see the error of 5719, it means that the server is confused as to what nic it needs to go out on for these services, while the client is hounding it for services. Also, it could mean that you are using 2003 server SP1 and the MTU channels are incorrect.

Let me give you a thread to go to. This will allow you to look at the communications protocols needed for domain services. This includes, DHCP, DNS, netbios and internet services through a gateway. Please follow the steps to configuring both nics. If at all possible, disable the second nic thereafter. Only one connection to a small domain of, let's say 250 nodes or less, is needed.

http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/2003_Server/Q_23806816.html
0
Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 

Author Comment

by:AhmedAwad
ID: 24374694
The 2 NICs one for wan connection and the other is for Lan as its working as ISA server this can't be a problem as the ISA manage connections
0
 
LVL 39

Expert Comment

by:ChiefIT
ID: 24393841
Go to the command prompt and type:

Ipconfig /flushDNS
Net stop netlogon
Net start netlogon

Then, verify your SRV records in DNS are not pointing to the OUTSIDE nic.
0
 

Accepted Solution

by:
AhmedAwad earned 0 total points
ID: 24405552
I have solved this issue by deleting the isa computer account in ths active directory and rejoining again it solve this issue and still have one problem that the web based users cannot log in to exchange but POP3 users can without problem this is my problem now
0
 
LVL 39

Expert Comment

by:ChiefIT
ID: 24453485
This is best resolved in Exchange zone under a new question. You should accept your answer  ID: 24405552 for this question to get a refund of points, then open up a new question for exchange. If Mestha/Simon replies, your looking at one of the best exchange administrators I have ever seen.
0

Featured Post

Prepare for your VMware VCP6-DCV exam.

Josh Coen and Jason Langer have prepared the latest edition of VCP study guide. Both authors have been working in the IT field for more than a decade, and both hold VMware certifications. This 163-page guide covers all 10 of the exam blueprint sections.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Organizations create, modify, and maintain huge amounts of data to help their businesses earn money and generally function.  Typically every network user within an organization has a bit of disk space to store in process items and personal files.   …
Numerous times I have been asked this questions that what is it that makes my machine log on so slow, there have been cases where computers took 23 minute exactly after taking password and getting to the desktop. Interesting thing was the fact th…
Look below the covers at a subform control , and the form that is inside it. Explore properties and see how easy it is to aggregate, get statistics, and synchronize results for your data. A Microsoft Access subform is used to show relevant calcul…
With just a little bit of  SQL and VBA, many doors open to cool things like synchronize a list box to display data relevant to other information on a form.  If you have never written code or looked at an SQL statement before, no problem! ...  give i…

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question