I don't really know offhand. What you can do is run the support tool netdiag on the
remote server to verify that it is logged onto the domain. Problems reported for dns,
dclist, Kerberos, or secure channel would indicate a problem. Also try enabling
auditing of logon events on that server and look in the security log in Event Viewer
to see if more detailed info is given on logon failure. --- Steve
http://support.microsoft.com/default...b;en-us;321708 -- netdiag and how to
install support tools
"Jack Tan" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> The VPN is set up between the remote server and a VPN router using IPSec. I
> think the tunnel is established once the computer routs the first packet to
> each other.
>
> I have no problem with file sharing, DNS and other things. I can use TS with
> a local account, but not domain account. What can go wrong?
>
> "Steven L Umbach" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
>> Do you have a persistent site to site VPN tunnel?? If you have a
> connection on the
>> server itself the computer will not be able to find the AD domain
> controller during
>> boot up. You should be able to TS over the internet to port 3389 using a
> local
>> account and then VPN into your network if need be. --- Steve
>>
>> "Jack Tan" <(E-Mail Removed)> wrote in message
>> news:(E-Mail Removed)...
>> > Hi all,
>> >
>> > I have a web server co-located in the ISP location. I have succesfully
> set
>> > up the VPN connection between that server and our office location. That
>> > machine also joined the domain. A couple of days ago I installed the
>> > Exchange Server on the Domain Controller machine. I guessed it tighten
> the
>> > security and after that I am no longer loginto the remote server using
>> > Domain user/password. Since that web server is located in ISP place, I
> can
>> > only log in through the terminal service.
>> >
>> > The error was:
>> > Logon rejected for DOMAIN-NAME\administrator. Unable to obtain Terminal
>> > Server User Configuration. Error: Access is denied.
>> >
>> > At that server boots up, it seemed that it could not talk to domain
>> > controller:
>> >>>The Security System could not establish a secured connection with the
>> > server cifs/domain-server.DOMAIN-NAME.com. No authentication protocol
> was
>> > available.
>> >>>The Security System detected an authentication error for the server
>> > cifs/domain-server.domain-name.com. The failure code from
> authentication
>> > protocol Kerberos was "There are currently no logon servers available to
>> > service the logon request.
>> > (0xc000005e)".
>> >
>> >
>> > If I log into with the local administrato to that server, the SET L
> comamnd
>> > gives the result to that server itself. However, all DNS settings are
>> > correct.
>> >
>> > any one can give me an idea how to resovle this?
>> >
>> > Thanx Jack
>> >
>> >
>>
>>
>
>