Networking Forums

Networking Forums > Computer Networking > Windows Networking > Can not log in from remote server via VPN

Reply
Thread Tools Display Modes

Can not log in from remote server via VPN

 
 
Jack Tan
Guest
Posts: n/a

 
      09-13-2004, 05:11 PM
Hi all,

I have a web server co-located in the ISP location. I have succesfully set
up the VPN connection between that server and our office location. That
machine also joined the domain. A couple of days ago I installed the
Exchange Server on the Domain Controller machine. I guessed it tighten the
security and after that I am no longer loginto the remote server using
Domain user/password. Since that web server is located in ISP place, I can
only log in through the terminal service.

The error was:
Logon rejected for DOMAIN-NAME\administrator. Unable to obtain Terminal
Server User Configuration. Error: Access is denied.

At that server boots up, it seemed that it could not talk to domain
controller:
>>The Security System could not establish a secured connection with the

server cifs/domain-server.DOMAIN-NAME.com. No authentication protocol was
available.
>>The Security System detected an authentication error for the server

cifs/domain-server.domain-name.com. The failure code from authentication
protocol Kerberos was "There are currently no logon servers available to
service the logon request.
(0xc000005e)".


If I log into with the local administrato to that server, the SET L comamnd
gives the result to that server itself. However, all DNS settings are
correct.

any one can give me an idea how to resovle this?

Thanx Jack


 
Reply With Quote
 
 
 
 
Steven L Umbach
Guest
Posts: n/a

 
      09-14-2004, 12:44 AM
Do you have a persistent site to site VPN tunnel?? If you have a connection on the
server itself the computer will not be able to find the AD domain controller during
boot up. You should be able to TS over the internet to port 3389 using a local
account and then VPN into your network if need be. --- Steve

"Jack Tan" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Hi all,
>
> I have a web server co-located in the ISP location. I have succesfully set
> up the VPN connection between that server and our office location. That
> machine also joined the domain. A couple of days ago I installed the
> Exchange Server on the Domain Controller machine. I guessed it tighten the
> security and after that I am no longer loginto the remote server using
> Domain user/password. Since that web server is located in ISP place, I can
> only log in through the terminal service.
>
> The error was:
> Logon rejected for DOMAIN-NAME\administrator. Unable to obtain Terminal
> Server User Configuration. Error: Access is denied.
>
> At that server boots up, it seemed that it could not talk to domain
> controller:
>>>The Security System could not establish a secured connection with the

> server cifs/domain-server.DOMAIN-NAME.com. No authentication protocol was
> available.
>>>The Security System detected an authentication error for the server

> cifs/domain-server.domain-name.com. The failure code from authentication
> protocol Kerberos was "There are currently no logon servers available to
> service the logon request.
> (0xc000005e)".
>
>
> If I log into with the local administrato to that server, the SET L comamnd
> gives the result to that server itself. However, all DNS settings are
> correct.
>
> any one can give me an idea how to resovle this?
>
> Thanx Jack
>
>



 
Reply With Quote
 
Jack Tan
Guest
Posts: n/a

 
      09-14-2004, 03:48 AM
The VPN is set up between the remote server and a VPN router using IPSec. I
think the tunnel is established once the computer routs the first packet to
each other.

I have no problem with file sharing, DNS and other things. I can use TS with
a local account, but not domain account. What can go wrong?

"Steven L Umbach" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Do you have a persistent site to site VPN tunnel?? If you have a

connection on the
> server itself the computer will not be able to find the AD domain

controller during
> boot up. You should be able to TS over the internet to port 3389 using a

local
> account and then VPN into your network if need be. --- Steve
>
> "Jack Tan" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
> > Hi all,
> >
> > I have a web server co-located in the ISP location. I have succesfully

set
> > up the VPN connection between that server and our office location. That
> > machine also joined the domain. A couple of days ago I installed the
> > Exchange Server on the Domain Controller machine. I guessed it tighten

the
> > security and after that I am no longer loginto the remote server using
> > Domain user/password. Since that web server is located in ISP place, I

can
> > only log in through the terminal service.
> >
> > The error was:
> > Logon rejected for DOMAIN-NAME\administrator. Unable to obtain Terminal
> > Server User Configuration. Error: Access is denied.
> >
> > At that server boots up, it seemed that it could not talk to domain
> > controller:
> >>>The Security System could not establish a secured connection with the

> > server cifs/domain-server.DOMAIN-NAME.com. No authentication protocol

was
> > available.
> >>>The Security System detected an authentication error for the server

> > cifs/domain-server.domain-name.com. The failure code from

authentication
> > protocol Kerberos was "There are currently no logon servers available to
> > service the logon request.
> > (0xc000005e)".
> >
> >
> > If I log into with the local administrato to that server, the SET L

comamnd
> > gives the result to that server itself. However, all DNS settings are
> > correct.
> >
> > any one can give me an idea how to resovle this?
> >
> > Thanx Jack
> >
> >

>
>



 
Reply With Quote
 
Steven L Umbach
Guest
Posts: n/a

 
      09-14-2004, 04:33 PM
I don't really know offhand. What you can do is run the support tool netdiag on the
remote server to verify that it is logged onto the domain. Problems reported for dns,
dclist, Kerberos, or secure channel would indicate a problem. Also try enabling
auditing of logon events on that server and look in the security log in Event Viewer
to see if more detailed info is given on logon failure. --- Steve

http://support.microsoft.com/default...b;en-us;321708 -- netdiag and how to
install support tools

"Jack Tan" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> The VPN is set up between the remote server and a VPN router using IPSec. I
> think the tunnel is established once the computer routs the first packet to
> each other.
>
> I have no problem with file sharing, DNS and other things. I can use TS with
> a local account, but not domain account. What can go wrong?
>
> "Steven L Umbach" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
>> Do you have a persistent site to site VPN tunnel?? If you have a

> connection on the
>> server itself the computer will not be able to find the AD domain

> controller during
>> boot up. You should be able to TS over the internet to port 3389 using a

> local
>> account and then VPN into your network if need be. --- Steve
>>
>> "Jack Tan" <(E-Mail Removed)> wrote in message
>> news:(E-Mail Removed)...
>> > Hi all,
>> >
>> > I have a web server co-located in the ISP location. I have succesfully

> set
>> > up the VPN connection between that server and our office location. That
>> > machine also joined the domain. A couple of days ago I installed the
>> > Exchange Server on the Domain Controller machine. I guessed it tighten

> the
>> > security and after that I am no longer loginto the remote server using
>> > Domain user/password. Since that web server is located in ISP place, I

> can
>> > only log in through the terminal service.
>> >
>> > The error was:
>> > Logon rejected for DOMAIN-NAME\administrator. Unable to obtain Terminal
>> > Server User Configuration. Error: Access is denied.
>> >
>> > At that server boots up, it seemed that it could not talk to domain
>> > controller:
>> >>>The Security System could not establish a secured connection with the
>> > server cifs/domain-server.DOMAIN-NAME.com. No authentication protocol

> was
>> > available.
>> >>>The Security System detected an authentication error for the server
>> > cifs/domain-server.domain-name.com. The failure code from

> authentication
>> > protocol Kerberos was "There are currently no logon servers available to
>> > service the logon request.
>> > (0xc000005e)".
>> >
>> >
>> > If I log into with the local administrato to that server, the SET L

> comamnd
>> > gives the result to that server itself. However, all DNS settings are
>> > correct.
>> >
>> > any one can give me an idea how to resovle this?
>> >
>> > Thanx Jack
>> >
>> >

>>
>>

>
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
remote reporting server John Hiebert Windows Networking 1 02-11-2008 07:06 PM
"The client could not connect to the remote computer. Remote connections..." - Server 2003 Maestro Windows Networking 4 10-25-2007 06:58 PM
"The client could not connect to the remote computer. Remote connections..." - Server 2003 Maestro Windows Networking 5 10-17-2007 01:14 AM
Migrating to Windows Server 2003 from Windows Server 2000 and using Remote Desktop Client Navodit Windows Networking 1 09-13-2006 07:38 PM
Remote connection to server Emile Windows Networking 6 03-23-2006 12:01 PM



1 2 3 4 5 6 7 8 9 10 11