Networking Forums

Networking Forums > Computer Networking > Windows Networking > Need a port for Trusted Domain

Reply
Thread Tools Display Modes

Need a port for Trusted Domain

 
 
alecarnero
Guest
Posts: n/a

 
      08-26-2008, 02:50 PM
I m trying to make trusted relatioship between two windows 2003 servers ,
one server "damasco" is conected directly to the DSL Modem
and the other is behind a WRT54G router, i need to map a port for make the
trusted domain???

when i use the trusted relationship can not continue
Thanks by any help

Alejandro Carnero



 
Reply With Quote
 
 
 
 
Ace Fekay [MVP Direcrtory Services]
Guest
Posts: n/a

 
      08-26-2008, 11:15 PM
In news:(E-Mail Removed),
alecarnero <(E-Mail Removed)> requesting assistance, typed the
following:
> I m trying to make trusted relatioship between two windows 2003
> servers , one server "damasco" is conected directly to the DSL Modem
> and the other is behind a WRT54G router, i need to map a port for
> make the trusted domain???
>
> when i use the trusted relationship can not continue
> Thanks by any help
>
> Alejandro Carnero



There are over 29 ports besides the ephemeral ports (UDP >1023) that need to
be open for domain communication (trusts and more) to work.

Also, it will not work across a NAT. Nat cannot translate the RPC, Kerberos
and LDAP calls. Remember, NAT translates packets, and RPC for one, is
encrypted, therefore it cannot read it to translate it. If the WRT54G is set
to NAT (they are be default), it will NOT work unless you configure a VPN
tunnel through it.

If it is setup to route, and not NAT, and you will need to open up all the
ports. Read the following article please to get a better understanding of
what is required. Ignore the fact it's titled Windows 2000, for it is the
same with 2003 and 2008.

Active Directory Replication over Firewalls
http://technet.microsoft.com/en-us/l.../bb727063.aspx

--
Regards,
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT,
MVP Microsoft MVP - Directory Services
Microsoft Certified Trainer

For urgent issues, you may want to contact Microsoft PSS directly.
Please check http://support.microsoft.com for regional support phone
numbers.

Infinite Diversities in Infinite Combinations

 
Reply With Quote
 
Lanwench [MVP - Exchange]
Guest
Posts: n/a

 
      08-26-2008, 11:28 PM
alecarnero <(E-Mail Removed)> wrote:
> I m trying to make trusted relatioship between two windows 2003
> servers , one server "damasco" is conected directly to the DSL Modem
> and the other is behind a WRT54G router, i need to map a port for
> make the trusted domain???
>
> when i use the trusted relationship can not continue
> Thanks by any help
>
> Alejandro Carnero


Set up a VPN tunnel between them. As Ace points out, it isn't "a port."
I'd recommend getting two compatible firewall appliances (I like Sonicwalls)
for security & to make the IPSEC VPN connection. Ditch the Netgear and don't
have anything connected directly into the DSL modem - have the ISP disable
NAT and filtering once you've got your own firewall appliance in place.


 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      08-27-2008, 04:09 PM
My favorite Steve Riley line in the article:

--Turns the firewall into "Swiss cheese"--

--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------


 
Reply With Quote
 
Ace Fekay [MVP Direcrtory Services]
Guest
Posts: n/a

 
      08-28-2008, 04:44 AM
In news:Oefug%(E-Mail Removed),
Phillip Windell <(E-Mail Removed)> requesting assistance, typed the
following:
> My favorite Steve Riley line in the article:
>
> --Turns the firewall into "Swiss cheese"--


I use that too!! LOL. It's the truth!

Ace

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
trusted domain problem Alejandro Windows Networking 3 12-05-2008 09:15 PM
trusted domain authentication Urs Wegmller Windows Networking 2 07-15-2008 12:53 PM
Win2k can't see trusted domain Billdat Windows Networking 0 06-25-2007 07:40 PM
trusted domain orc Wireless Networks 2 05-13-2006 08:29 AM
logon to a different trusted domain MGB Windows Networking 1 02-25-2004 11:56 PM



1 2 3 4 5 6 7 8 9 10 11