Windows 2000 IPSec question ...

General Network security, firewalls, port filtering/forwarding, wireless security, anti-spyware, as well as spam control and privacy discussions.
Post Reply
Dogmeat
New Member
Posts: 17
Joined: Mon Jan 22, 2001 12:00 am
Location: Cheyenne, WY USA

Windows 2000 IPSec question ...

Post by Dogmeat »

Why is it that when I set the "Secure Server" IPSec policy for the domain controller policy, my secondary domain controller won't talk to the main one?

Basically I installed Windows 2000 on the big machine in the server room, as the first DC/rid/whatever machine ... then I brought up a second one. This one is sitting on my desk. When I set the default IPSec policy to "Secure Server" ... I can no longer access the group policy?

So far there are on ly these two DC servers in the domain ...

I wanna experiment with this IPSec thing.

I don't see how these two DC's wouldn't be trusting each other already ...? If thats the case how do I establish a kerberos trust between the two so they'll talk?

Thanks ...
User avatar
Thorazine
Regular Member
Posts: 353
Joined: Tue Dec 14, 1999 12:00 am
Location: Washington, DC, USA

Post by Thorazine »

Take a look at Security Templates and see if you have invoked a template that is hindering the other DC from talking the "primary". Security Configuration and Analysis is also a good tool to audit the computer.

Finally, check to see if your DC's are replicating properly.
User avatar
W_I_Z_K_I_D
Regular Member
Posts: 363
Joined: Sun Jun 10, 2001 9:33 am
Location: !!!Your Computer-You Just Dont Know It YeT!!!

Post by W_I_Z_K_I_D »

YeP What He Said.... :confused:
!!!What Man Can Make
Man Can Brake!!! :irate:

Windows XP ( Service Pack 2 )
Pentium 4 (3) GHz
2.00 GB of RAM

** Zone Allarm Pro
** AVG Anti Virus
** Cookie Wall
** Pop Up Stopper
** Spy Bot
** Spy Ware Blasster
** Add Aware se Pro
** Ccleaner
** Clean Up
** Port Bloacker
** Tweek UI WIn XP
** Port Scanner


Dialup 56k
DialUp-Syd.IPrimus....56k(Motorola internal Modem)
Post Reply