?
Solved

Help diagnose RDP connection DROP

Posted on 2011-09-20
7
Medium Priority
?
741 Views
Last Modified: 2012-06-27
Hello all,

We got a rack in a new datacenter, and we have setup a firewall from juniper and a secure access also from juniper, after installing the first w2k8 virtual machine on the DELL R510, we created the terminal services profile on SA2000.

Everything worked fine, on the first minutes, then the RDP started being dropped, sudden frozen and sometimes it recover the connection.

After a lot of testing, i tough the problme might be the SA2000 the problem, and i configured the RDP connection direct on the internet, configured the VIP services on the SSG140 firewall, worked fine for about 15-20 minutes, then again, froze and 2 minutes later, dropped the connection.

The only strange thing on the setup is that the datacenter, gave us 2 layers of external ip, because of a gateway problem, as this is my 3rd or 4th deployment, this is the first time i receive a ip in this situation, i think the only problem could be the ip range.

I need some help diagnosing this, kind of urgent.
0
Comment
Question by:manolocruz
  • 5
  • 2
7 Comments
 
LVL 9

Expert Comment

by:Lester_Clayton
ID: 36565893
It definately sounds like a routing issue.

For troubleshooting do the following:

Take a traceroute showing the route as it works
Do a continuous PING to the IP Address (ping -t)
Take a traceroute showing the route when it fails

A Traceroute will show the path packets take when travelling from your machine to the destination.  Hopefully, it will identify which hop is failing.
0
 

Author Comment

by:manolocruz
ID: 36565994
you say traceroute from the firewall to the RDP? from the SA2000 (secure access SSLVPN) to RDP or from my local machine to the RDP?
because from the SA is just one hop, same thig from the firewall.
0
 

Author Comment

by:manolocruz
ID: 36566121
i noticed that the firewall is,from time to time, losing contact with the VIP i created for the rdp connection.

There is no TX RX errors on the SA2000 or SSG140 or on the switch.
No errors on event viewer.
Im affraid it could be something on the vmware esxi...
0
Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

 
LVL 9

Expert Comment

by:Lester_Clayton
ID: 36566146
I would suggest tracerting from your machine where you're trying to RDP from(local machine) - to the RDP server.

Doing a continuous ping would verify that you're losing communications.

Doing a traceroute will hopefully identify at which point the comms is being lost - either the VPN link itself or the ESXI server.

Is there also another machine you could ping over the VPN?  This will help rule out ESXi as being the culprit.
0
 

Author Comment

by:manolocruz
ID: 36566623
i noticed that pinging the ESXi from the virtual machine, it is losing about 7% of the ping, out of 600 tries.
I think this is too much.
0
 

Accepted Solution

by:
manolocruz earned 0 total points
ID: 36925680
problem was a trunk configured on the HP Switch, as soon as disabled a port on the switch, problem is gone.
0
 

Author Closing Comment

by:manolocruz
ID: 36947385
After trying all other solutions, including test with vmware, juniper and HP, we were able to diagnose a problem trunk on the HP Switch
0

Featured Post

Simplify Active Directory Administration

Administration of Active Directory does not have to be hard.  Too often what should be a simple task is made more difficult than it needs to be.The solution?  Hyena from SystemTools Software.  With ease-of-use as well as powerful importing and bulk updating capabilities.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A safe way to clean winsxs folder from your windows server 2008 R2 editions
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question