Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Wanet Telecoms Ltd on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DNS Problem and AD trust problem

Status
Not open for further replies.

donfather

MIS
Jul 27, 2004
16
US
I am trying to get a server on my DMZ to have a domain trust with a server on my trusted network. I have a watchguard firewall in between making the connection. I created the domain on the dmz and installed DNS. Now for some reason I can't created a zone between the 2 servers in DNS. which is then not allowing me to created a trust between the 2 servers because they can't see eachother's DNS. Anything i need to look at or am i missing something???

Thanks,
 
I don't know the exact ports off hand, but if you are setting up a trust, you need a lot more than just DNS traffic open on the firewall. I'm guessing at a minimum the RPC ports (135, 139, and possibly all the dynamic ports it uses).

I would move the DMZ server onto the LAN temporarily, and monitor all the traffic between it and the DCs of the domain you want to trust. This will tell you all the ports you need to open through the firewall.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top