Quantcast
Channel: Forefront Edge Security – DirectAccess, UAG and IAG フォーラム
Viewing all articles
Browse latest Browse all 1485

DirectAccess clients DNS resolving issue

$
0
0

Hallo,

I am configured da. Then I go to DA server components monitor I see

green icons near: Teredo Relay, Teredo server, Isatap, DNS server.

Then I checked my client configuration with:

netsh namespace show effectivepolicy

I see result: 

 

DNS Effective Name Resolution Policy Table Settings

Settings for .mydomain.lt
----------------------------------------------------------------------
Certification authority                : DC=lt, DC=mydomain, CN=mydomain-ROOTCA
DNSSEC (Validation)                  : disabled
IPsec settings                           : disabled
DirectAccess (DNS Servers)       : 2002:xxxx:xxxx:1:0:5efe:172.30.16.xxx
                                                          2002:xxxx:xxxx:1:0:5efe:172.30.16.xxx
DirectAccess (Proxy Settings)           : Bypass proxy
Settings for crl.mydomain.lt
----------------------------------------------------------------------
.....


Then I trying to ping DNS servers with 2002:xxxx:xxxx:1:0:5efe:172.30.16.xxx, 2002:xxxx:xxxx:1:0:5efe:172.30.16.xxx. Ping OK.

After this I ping two external IPv4 adresses of my DirectAccess server and Ping OK too.

Then I tryining to ping fqdns of my DA server and dns server I getting "Ping request could not find host DA".

I tryed to check Teredo connectivity Link: http://technet.microsoft.com/en-us/library/ee844188(WS.10).aspx and I see problem then

run command: From the netsh advfirewall prompt, run the set store gpo=”DomainName\DirectAccess Policy-{3491980e-ef3c-4ed3-b176-a4420a810f12}” command. I see result "Unable to contacts the specified domain. Make sure that the domain is valid and accesible, and then try your request again"

Please help me resolve this problems

 



Viewing all articles
Browse latest Browse all 1485

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>