Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

WIN2K3 domain controller setup trouble 1

Status
Not open for further replies.

tman138

IS-IT--Management
Nov 27, 2001
128
US
I have a new WIN2K3 server setup as a domain controller in an existing network (mixed protocol IPX - TCP/IP) this is my first Windows server in this network. I installed McAfee, configured DNS, Active Directory, and DHCP. I configured the NIC with a static IP address 192.168.0.5 and the gateway as 192.168.0.2 (my firewall) and ran all of the patches and updates from the Internet. I set the DC to use a .local domain. I can access other windows boxes on the network, and I can ping network devices from the server, but I cannot join the domain, or ping the server from an XP workstation. If I boot the server in safe mode, I can then ping from a workstation, I could also join the domain while the server was in safe mode, but I cannot login to the DC. I could however browse to a shared volume wihout logging in. I ran DCDIAG and found no errors. I reviewed the event logs and nothing looks wrong. I understand that the default security settings are stringent and suspect that incoming IP or UDP traffic is being blocked. Where do I look from here?
 
Turn off the McAfee firewall on the server (and any other firewalls that are turned on).

Change the workstation to use the new Windows server's IP (192.168.0.5) as it's only DNS Server. You should then be able to join the workstation to the domain.

Denny
MCSA (2003) / MCDBA (SQL 2000) / MCTS (SQL 2005) / MCITP Database Administrator (SQL 2005)

--Anything is possible. All it takes is a little research. (Me)
[noevil]
 
You are the MAN! The basic firewall was set as a public interface exposed to the Internet and was using NAT. Many thanks!!
 
No problem.

Denny
MCSA (2003) / MCDBA (SQL 2000) / MCTS (SQL 2005) / MCITP Database Administrator (SQL 2005)

--Anything is possible. All it takes is a little research. (Me)
[noevil]
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top