Solved

Smooth wall won't let my domain user connected to their profile.

Posted on 2013-01-25
3
689 Views
Last Modified: 2013-01-28
Hello guys, I need some help, I just implemented a smooth wall fire wall at my office but when user login, they can't see the server the domain controler. I get the error that states that it had to load the last roaming profile. The firewall is doing dhcp. All computers could go out to the Internet with no problem.
0
Comment
Question by:papichulodr69
  • 2
3 Comments
 
LVL 28

Accepted Solution

by:
Ryan McCauley earned 500 total points
ID: 38825550
Can the clients connect to the domain controller properly, just not load their roaming profiles from wherever they're being stored? Is the firewall blocking the traffed between the clients and the server? If you can log in without an issue (try logging in on a workstation as a user that's never logged in there before to confirm - if you're using the same username/password, it can be logging in with cached credentials).

Once you're logged in, can you manually browse to the network location hosting your roaming profile? The user should be able to view the files related to their own profile - if you're not able to do this, then the ports related to Windows file sharing may be blocked by your new firewall.

For starters, here are the basic ports that your clients need to be able communicate over in order to run basic login and file share browsing:

http://msmvps.com/blogs/rexiology/archive/2006/04/05/89389.aspx

From the article:

TCP 135 : MS-RPC
TCP 1025 & 1026 : AD Login & replication
TCP 389 : LDAP
TCP & UDP 53 : DNS
TCP 445 : SMB , Microsoft-ds
TCP 139 : SMB
UDP 137 & 138 : NetBIOS related
UDP 88 : Kerberos v5

Can you confirm that clients are able to communicate over those ports?
0
 

Author Comment

by:papichulodr69
ID: 38826959
Ok i will check
0
 

Author Closing Comment

by:papichulodr69
ID: 38828028
I also forgot to add the internal DNS as the primary DNS server.
0

Featured Post

Do email signature updates give you a headache?

Do you feel like you are constantly making changes to email signatures? Are the images not formatting how you want them to? Want high-quality HTML signatures on all devices, including on mobiles and Macs? Then, let Exclaimer solve all your email signature problems today.

Join & Write a Comment

Setting up Secure Ubuntu server on VMware 1.      Insert the Ubuntu Server distribution CD or attach the ISO of the CD which is in the “Datastore”. Note that it is important to install the x64 edition on servers, not the X86 editions. 2.      Power on th…
It’s 2016. Password authentication should be dead — or at least close to dying. But, unfortunately, it has not traversed Quagga stage yet. Using password authentication is like laundering hotel guest linens with a washboard — it’s Passé.
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…

759 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now