<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DMZ server authentication issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734945#M1002980</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are too many ports to be opened.&lt;/P&gt;&lt;P&gt;Check the link below.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it is a critical server, then &lt;/P&gt;&lt;P&gt;I suggest you do an IPSEC tunnel between the server &amp;amp; the DC inside. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tuff job but doable &amp;amp; secure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx" target="_blank"&gt;http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 19 Jun 2007 09:01:56 GMT</pubDate>
    <dc:creator>anandramapathy</dc:creator>
    <dc:date>2007-06-19T09:01:56Z</dc:date>
    <item>
      <title>DMZ server authentication issue</title>
      <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734943#M1002978</link>
      <description>&lt;P&gt;I have a DMZ (192.168.4.0/24) setup for my web server on a PIX 515.  When I put a laptop (running XP Pro) in the DMZ to test connectivity to the inside it is able to hit all the resources with a ping so I believe that traffic is flowing correctly.  Then when I tried to join the laptop to my Active Directory domain I received an error stating that "no endpoints available from the end point mapper".  This also happened with a Windows 2003 server but did not happen with a Windows 2000 server.  Has anyone else ran into this and know what port need to be opened to allow authentication traffic with the newer Windows operating systems?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been trying to troubleshoot this as  a Windows issue but I know it's not a DNS issue which is what I'm being told.  Any help is appreciated.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:32:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734943#M1002978</guid>
      <dc:creator>qbakies11</dc:creator>
      <dc:date>2019-03-11T10:32:04Z</dc:date>
    </item>
    <item>
      <title>Re: DMZ server authentication issue</title>
      <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734944#M1002979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have not come across such an issue b4, but to tell you a suggestion. You should enable logging on terminal (monitor) or console and start analysing the message which will tell you why the pix is dropping the AD join packets. This will help you in identifying the ports that need to be opened.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, Murali&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2007 06:13:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734944#M1002979</guid>
      <dc:creator>musethur</dc:creator>
      <dc:date>2007-06-19T06:13:18Z</dc:date>
    </item>
    <item>
      <title>Re: DMZ server authentication issue</title>
      <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734945#M1002980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are too many ports to be opened.&lt;/P&gt;&lt;P&gt;Check the link below.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it is a critical server, then &lt;/P&gt;&lt;P&gt;I suggest you do an IPSEC tunnel between the server &amp;amp; the DC inside. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tuff job but doable &amp;amp; secure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx" target="_blank"&gt;http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2007 09:01:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734945#M1002980</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-19T09:01:56Z</dc:date>
    </item>
    <item>
      <title>Re: DMZ server authentication issue</title>
      <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734946#M1002981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How do I enable the logging on the PIX?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2007 11:49:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734946#M1002981</guid>
      <dc:creator>qbakies11</dc:creator>
      <dc:date>2007-06-19T11:49:20Z</dc:date>
    </item>
    <item>
      <title>Re: DMZ server authentication issue</title>
      <link>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734947#M1002982</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check this link - &lt;/P&gt;&lt;P&gt;Choose what you want to log the information to &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;syslog / console etc &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a0080450bf7.html#wp1047918" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a0080450bf7.html#wp1047918&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hjh - pls rate all useful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2007 12:06:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dmz-server-authentication-issue/m-p/734947#M1002982</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-19T12:06:39Z</dc:date>
    </item>
  </channel>
</rss>

