Hi Danny, I tried this at Slamdunk networks with our Windows 2000 clients at a remote office that were having time out errors authenticating to our DC over an IPSEC tunnel created between a Sonic Wall router and their Cisco router due to latency.
Seem to fix the issue, however it still had slow logons on the clients. Morale of the story? Stick a DC at the remote site, make it a GC and specify the correct cost for the link it has. Jose -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Danny Sent: Wednesday, April 26, 2006 12:25 PM To: [email protected] Subject: [ActiveDir] Forcing Kerberos to use TCP instead of UDP Has anyone? http://support.microsoft.com/?id=244474 RE: http://www.mail-archive.com/[email protected]/msg41616.html I am concerned about the impact on this environment. Thanks, ...D List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
