We have a new Juniper SSL VPN device that can't seem to get an IP address
from our 2003 AD DHCP server. The devices is NAT'd in our firewall's DMZ.
I've been running Ethereal on the server to read TCP dumps, opening various
ports on the firewall between the DMZ and LAN but still haven't had a
breakthrough. The DHCP logs don't mention any instance, successful or
unsuccessful, of the VPN device attempting to get an address, even though
there is info in the TCP dumps. Juniper tech is wondering if there are any
restrictions that would limit who can get an IP address?
|