<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Add computer to a domain trough NAT in Cisco Catalyst Center</title>
    <link>https://community.cisco.com/t5/cisco-catalyst-center/add-computer-to-a-domain-trough-nat/m-p/3790235#M643</link>
    <description>&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;I have a firewall ASA5516-X&amp;nbsp; and have this issue that i don't know if it could be accomplished.&lt;/P&gt;&lt;P&gt;I have read in a blog that this can't be done, but first I would like to ask here.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have 2 firewalled networks.&lt;/P&gt;&lt;P&gt;Over PORT1 I have a network that has a Windows Server 2016 Domain Controller with its DNS.&lt;/P&gt;&lt;P&gt;Over PORT2 I have another firewalled network with different range.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created an Access Rule in between the 2 subnetwork in which I permit all the traffic for all of these ports&lt;/P&gt;&lt;P&gt;&amp;nbsp; &lt;A href="https://support.microsoft.com/en-us/help/179442/how-to-configure-a-firewall-for-domains-and-trusts" target="_blank"&gt;https://support.microsoft.com/en-us/help/179442/how-to-configure-a-firewall-for-domains-and-trusts&lt;/A&gt;&lt;/P&gt;&lt;P&gt;and a NAT .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- I can ping from 10.10.10.20 to 10.10.10.10&lt;/P&gt;&lt;P&gt;- I modified on PC 10.10.10.20 the file windows\drivers\hosts a line to say that TESTING.COM = 10.10.10.10&lt;/P&gt;&lt;P&gt;so I can ping TESTING.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But when I try to add PC to the domain TESTING.COM it fails.&lt;/P&gt;&lt;P&gt;"An existing connection was forcibly closed by the remote host."&lt;/P&gt;&lt;P&gt;(error code 0x00002746 WSAECONNRESET)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 634px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/28900i1B328F0FF84BA7FF/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 09 Mar 2019 01:30:22 GMT</pubDate>
    <dc:creator>Tacko</dc:creator>
    <dc:date>2019-03-09T01:30:22Z</dc:date>
    <item>
      <title>Add computer to a domain trough NAT</title>
      <link>https://community.cisco.com/t5/cisco-catalyst-center/add-computer-to-a-domain-trough-nat/m-p/3790235#M643</link>
      <description>&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;I have a firewall ASA5516-X&amp;nbsp; and have this issue that i don't know if it could be accomplished.&lt;/P&gt;&lt;P&gt;I have read in a blog that this can't be done, but first I would like to ask here.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have 2 firewalled networks.&lt;/P&gt;&lt;P&gt;Over PORT1 I have a network that has a Windows Server 2016 Domain Controller with its DNS.&lt;/P&gt;&lt;P&gt;Over PORT2 I have another firewalled network with different range.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created an Access Rule in between the 2 subnetwork in which I permit all the traffic for all of these ports&lt;/P&gt;&lt;P&gt;&amp;nbsp; &lt;A href="https://support.microsoft.com/en-us/help/179442/how-to-configure-a-firewall-for-domains-and-trusts" target="_blank"&gt;https://support.microsoft.com/en-us/help/179442/how-to-configure-a-firewall-for-domains-and-trusts&lt;/A&gt;&lt;/P&gt;&lt;P&gt;and a NAT .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- I can ping from 10.10.10.20 to 10.10.10.10&lt;/P&gt;&lt;P&gt;- I modified on PC 10.10.10.20 the file windows\drivers\hosts a line to say that TESTING.COM = 10.10.10.10&lt;/P&gt;&lt;P&gt;so I can ping TESTING.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But when I try to add PC to the domain TESTING.COM it fails.&lt;/P&gt;&lt;P&gt;"An existing connection was forcibly closed by the remote host."&lt;/P&gt;&lt;P&gt;(error code 0x00002746 WSAECONNRESET)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 634px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/28900i1B328F0FF84BA7FF/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 09 Mar 2019 01:30:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-catalyst-center/add-computer-to-a-domain-trough-nat/m-p/3790235#M643</guid>
      <dc:creator>Tacko</dc:creator>
      <dc:date>2019-03-09T01:30:22Z</dc:date>
    </item>
  </channel>
</rss>

