Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Network unable to access certain domains on server

Posted on 2014-09-25
7
Medium Priority
?
267 Views
Last Modified: 2014-10-06
Hi,

I've got an issue with a Network. It's my own corporate network. We operate an SBS2011 environment with 3 machines. We then build websites and work off a remote server.

Due to poor internet we have two Modems then a Meraki MX60W which acts as a load balancer. The issue I'm facing has only arisen in the last two days whereby we cant access our remote development server although from everywhere else it works fine.

I've rebooted the modems, plus the Meraki. Every other website works. I've also rebooted the entire SBS server, and DNS seperateley too. Local machines have been restarted. On the local machines i've tried using external DNS Server such as google (8.8.8.8) and that doesnt fix it.

There are multiple domains, all hosted on the same server. I can successfully ping but not view any HTTP traffic from the machines or my SBS server.

Any ideas?

Thanks,

Josh
0
Comment
Question by:joshhough
  • 3
  • 3
7 Comments
 
LVL 9

Expert Comment

by:Trenton Knew
ID: 40344461
are there any Firewalls running on the clients or on the network?
0
 
LVL 59

Expert Comment

by:Cliff Galiher
ID: 40344462
I suspect you have routing issues with your load balancer. The fact that the using public DNS such as Google DNS (8.8.8.8) doesn't fix the problem pretty much takes anything local out of the equation. Traffic is simply not getting from point A to point B. If it were the local machine or a local switch, you'd expect the impact to be more widespread. But the isolated nature usually would be a bad cached route, which could be modem, but usually modems are fairly dumb devices and again, the issue would usually be more widespread. That leaves the load balancer. As the most complex device, it is also going to be the most fragile. I'd probably test a direct modem connection temporarily, bypassing the Meraki for test purposes.
0
 
LVL 9

Expert Comment

by:Trenton Knew
ID: 40344464
Also, are you able to ping by hostname as well as IP, or only by ip
0
WatchGuard Case Study: NCR

With business operations for thousands of customers largely depending on the internal systems they support, NCR can’t afford to waste time or money on security products that are anything less than exceptional. That’s why they chose WatchGuard.

 
LVL 1

Author Comment

by:joshhough
ID: 40344688
Pinging by hostname works fine. If i turn the Meraki to direct connection (e.g using the Primary uplink as either WAN1 or wan 2 and disabling link aggregation) i still cant get it to work.
0
 
LVL 9

Accepted Solution

by:
Trenton Knew earned 2000 total points
ID: 40345112
if you can ping by hostname, then it is likely not a dns issue, so much as it is probably a firewall isssue.  Something is likely blocking access to port 80 from that destination or source.  Make sure your router or balancer isn't dropping packets on that port.  Make sure the server isn't blocking the traffic from the different network.  Make sure you don't have different zones set up that don't trust each other.  What kind of firewall do you have in place?  is it inside the Meraki?  outside?  On the workstations?
0
 
LVL 1

Assisted Solution

by:joshhough
joshhough earned 0 total points
ID: 40355173
Interestingly, it works perfectly now. No idea what caused it, or what happened. Meraki couldnt replicate the issue or see any packet loss'. Rackspace couldnt see any errors communicating with my servers so i guess its just one of those weird IT issues!
0
 
LVL 1

Author Closing Comment

by:joshhough
ID: 40363264
Who knows, it just works now.
0

Featured Post

Lessons on Wi-Fi & Recommendations on KRACK

Simplicity and security can be a difficult  balance for any business to tackle. Join us on December 6th for a look at your company's biggest security gap. We will also address the most recent attack, "KRACK" and provide recommendations on how to secure your Wi-Fi network today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

There have been a lot of times when we have seen the need to enter a large number of DNS entries in a forward lookup zone. The standard procedure would be to launch the DNS Manager console, create the Zone and start adding new hosts using the New…
I’m often asked about newer and larger USB drives connected to SBS2008 and 2011 failing Windows Server Backup vs the older USB drives not failing. As disk space continues to grow and drive technology change SBS2008 and some SBS2011 end up with the f…
In response to a need for security and privacy, and to continue fostering an environment members can turn to for support, solutions, and education, Experts Exchange has created anonymous question capabilities. This new feature is available to our Pr…
In a question here at Experts Exchange (https://www.experts-exchange.com/questions/29062564/Adobe-acrobat-reader-DC.html), a member asked how to create a signature in Adobe Acrobat Reader DC (the free Reader product, not the paid, full Acrobat produ…

886 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question