?
Solved

NLB, ADFS, DNS issues?

Posted on 2014-12-21
1
Medium Priority
?
240 Views
Last Modified: 2015-01-05
Hello Experts,

I have a client that after site migration, users unable to be replicated to O365, password synchronization failed . IT team unable to ping VIP of Windows network load balancer.

As workaround, a DNS record pointing to a single ADFS server instead of VIP of WLB was created in the DNS zone . After creating a DNS record, email and dirsync was reestablished.  If we revert changes to original state [ADFS servers in a nlb using VIP address] email, users and password synchronization stops

Company runs ADFS server  [2008 R2 servers] and Exchange Hybrid, Windows 2008 Forest/domain fuctional level

Any ideas on why we are unable to ping VIP of Windows network load balancer? ADFS servers are in a DMZ network, before migration of site everything was ok, they did not change any IPs or any settings on the network load balancer, and the WIndows NLB is setup for multicast on the 2 nodes of the NLB

if the NLB cluster of ADFS was deployed is down, email, and users/password sync will stop, but if anything changed, why it stopped?

How can we fix this issue? do you believe is a DNS, ADFS, or office 365 issue or Windows network load balancer issue?

Should we upgrade ADFS servers to 2012 R2 to fix the Windows network load balancer issue[ if determined is NLB root cause]
Please, provide instructions step-by-step to fix this issue
0
Comment
Question by:Jerry Seinfield
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 28

Accepted Solution

by:
Dan McFadden earned 2000 total points
ID: 40512589
Before any upgrading, my first instinct is to verify if there is a firewall blocking access to the VIP.  No ping, no sync, no access reeks of a security device not configured for a new service point.

Dan
0

Featured Post

On Demand Webinar - Networking for the Cloud Era

This webinar discusses:
-Common barriers companies experience when moving to the cloud
-How SD-WAN changes the way we look at networks
-Best practices customers should employ moving forward with cloud migration
-What happens behind the scenes of SteelConnect’s one-click button

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article provides a convenient collection of links to Microsoft provided Security Patches for operating systems that have reached their End of Life support cycle. Included operating systems covered by this article are Windows XP,  Windows Server…
In the absence of a fully-fledged GPO Management product like AGPM, the script in this article will provide you with a simple way to watch the domain (or a select OU) for GPOs changes and automatically take backups when policies are added, removed o…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Suggested Courses
Course of the Month8 days, 4 hours left to enroll

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question