Networking Forums

Networking Forums > Computer Networking > Windows Networking > VPN connection unable to ping to non-domain hosts

Reply
Thread Tools Display Modes

VPN connection unable to ping to non-domain hosts

 
 
jud.gardner@gmail.com
Guest
Posts: n/a

 
      08-08-2007, 08:50 PM
on server2003 as domain controller running vpn server
can connect vpn and ping hosts that are members of domain, unable to
ping non-domain hosts

able to ping all hosts from local network

same problem this guy had, too bad the reply didnt read his post
before replying?
http://groups.google.com/group/micro...5a7709daab34c9

where should i be looking, security policy settings? this is for a
client, havent encountered this problem before and am unable to
recreate in test lab.

thanks in advance

 
Reply With Quote
 
 
 
 
Phillip Windell
Guest
Posts: n/a

 
      08-08-2007, 09:45 PM
Domain Membership has nothing to do with being able to Ping.
Ping would not know a Domain if it tripped over it.
A Domain is an Administration entity,...not a Network entity.
It could be that the Domain Members have the Windows Firewall turned off
(maybe even via GPO),...while the non-members have the Windows Firewall
turned on (non-members can't use the GPO).

--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------

<(E-Mail Removed)> wrote in message
news:(E-Mail Removed) ps.com...
> on server2003 as domain controller running vpn server
> can connect vpn and ping hosts that are members of domain, unable to
> ping non-domain hosts
>
> able to ping all hosts from local network
>
> same problem this guy had, too bad the reply didnt read his post
> before replying?
> http://groups.google.com/group/micro...5a7709daab34c9
>
> where should i be looking, security policy settings? this is for a
> client, havent encountered this problem before and am unable to
> recreate in test lab.
>
> thanks in advance
>



 
Reply With Quote
 
Bill Grant
Guest
Posts: n/a

 
      08-08-2007, 11:07 PM
It is also not a great idea to run a DC as a VPN server. As soon as your
first remote user conncts, the server acquires an additional IP to act as
the server end of the point to point connections. So you get all of the
problems associated with multihomed DCs.

See KB 292822 for some of the name resolution and browsing problems this
can cause.

"Phillip Windell" <(E-Mail Removed)> wrote in message
news:%(E-Mail Removed)...
> Domain Membership has nothing to do with being able to Ping.
> Ping would not know a Domain if it tripped over it.
> A Domain is an Administration entity,...not a Network entity.
> It could be that the Domain Members have the Windows Firewall turned off
> (maybe even via GPO),...while the non-members have the Windows Firewall
> turned on (non-members can't use the GPO).
>
> --
> Phillip Windell
> www.wandtv.com
>
> The views expressed, are my own and not those of my employer, or
> Microsoft, or anyone else associated with me, including my cats.
> -----------------------------------------------------
>
> <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed) ps.com...
>> on server2003 as domain controller running vpn server
>> can connect vpn and ping hosts that are members of domain, unable to
>> ping non-domain hosts
>>
>> able to ping all hosts from local network
>>
>> same problem this guy had, too bad the reply didnt read his post
>> before replying?
>> http://groups.google.com/group/micro...5a7709daab34c9
>>
>> where should i be looking, security policy settings? this is for a
>> client, havent encountered this problem before and am unable to
>> recreate in test lab.
>>
>> thanks in advance
>>

>
>



 
Reply With Quote
 
jud.gardner@gmail.com
Guest
Posts: n/a

 
      08-13-2007, 02:22 PM
> Domain Membership has nothing to do with being able to Ping.
> Ping would not know a Domain if it tripped over it.
> A Domain is an Administration entity,...not a Network entity.

Uh yeah... just trying to describe the problem, I should have prefaced
my post with "i am not an idiot"

> It could be that the Domain Members have the Windows Firewall turned off
> (maybe even via GPO),...while the non-members have the Windows Firewall
> turned on (non-members can't use the GPO).

No, then non-members would not reply to ping from the local network.


It's ok if you don't know the answer, you don't have to come up with /
something/ just to reply

 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      08-13-2007, 03:57 PM
<(E-Mail Removed)> wrote in message
news:(E-Mail Removed) ups.com...
>> Domain Membership has nothing to do with being able to Ping.
>> Ping would not know a Domain if it tripped over it.
>> A Domain is an Administration entity,...not a Network entity.

> Uh yeah... just trying to describe the problem, I should have prefaced
> my post with "i am not an idiot"
>
>> It could be that the Domain Members have the Windows Firewall turned off
>> (maybe even via GPO),...while the non-members have the Windows Firewall
>> turned on (non-members can't use the GPO).

> No, then non-members would not reply to ping from the local network.
>
>
> It's ok if you don't know the answer, you don't have to come up with /
> something/ just to reply


I can only deal with what I see in the post. I have no background on you to
know what you know or don't know. So I am trying to clarify the situation
so that we can get directly to the matter and not get distracted by things
that don't matter,...which involves telling people what things do not matter
and how things relate or do not relate with each other.

--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Two wireless hosts under the same Access Point can't ping each other kAKOBAN Wireless Internet 5 04-18-2011 05:23 PM
Remote computer able to ping DC but unable to join domain Hong Jin Windows Networking 4 03-02-2007 01:32 PM
unable to change hosts file =?ISO-8859-1?Q?Ren=E9?= Windows Networking 1 03-21-2005 06:01 PM
can't ping domain resources after VPN connection Eric L. Epps Windows Networking 4 08-26-2004 12:51 AM
Why ping cann't see two hosts =?Utf-8?B?QXJ0ZW0=?= Windows Networking 4 04-19-2004 02:36 PM



1 2 3 4 5 6 7 8 9 10 11