I have a problem with DirectAccess on Windows Server 2012 R2, and it's bugging me for some time now.
Story goes like this..
I have deploy DA on server with single nic, on local network behinde NAT, for Windows 7, 8 and 8.1 clients and it was working.
After some time I have created DMZ, remove configuration of DA server, install second network card behinde NAT, for same clients and that was working as well. It was working for almost 2 years. IP-HTTPS clients.
Now I had to remove DMZ zone, so I removed configuration, remove 1 NIC, deploy again DA for server with 1 NIC and now it does not work.
Everything is green on DA server. Reboot does not help. Client DCA shows status disconnected, and I cannot ping or getto any corporate resources.
On Win 7 client ip-https interface is active (netsh interface httpstunnel show interfaces)
Netsh dnsclient show state --> enabled and client is outside network.
Since Win 7 use DTE, and I know which ipv6 address DTE has, I can ping them from client.
What I have noticed is that on Advanced Firewall, even tho there are all 4 required Connection Security Rules, nothing is showing up in Security Associations. Nothing in Main mode or Quick mode.
Runing wireshark I can see that client is asking where DA server is. Client sending helo to server, server responding and showing certificate...but I don't understand rest of log :)
I am guessing it is something with firewall but im not shure what to look or how to fix..
PS: I have tried to remove DA and install new DA server, same thing happends. Server is going thrue correct internet link, public DNS name is ok and pointing to server...
Any ides? :)