We encountered issue authenticating in wireless thru AD.
Our domain is multi-domain forest. I tried to ping all servers(resolved via nslookup) inside the domain and some of these are not reachable. Is this the possible reason if ACS resolved the server IP which is not reachable the authentication thru AD will failed? Or it will communicate to the first reachable server to authenticate via Active Directory. Also if this is a firewall issue what port do we need to allow for ACS can reach servers inside the domain.
hoping for positive response to resolved this issue.
I also attached logs during the time of incident.
Thanks