Hi Danny, 

I tried this at Slamdunk networks with our Windows 2000 clients at a
remote office that were having time out errors authenticating to our DC
over an IPSEC tunnel created between a Sonic Wall router and their Cisco
router due to latency.

Seem to fix the issue, however it still had slow logons on the clients. 

Morale of the story? Stick a DC at the remote site, make it a GC and
specify the correct cost for the link it has.

Jose

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Danny
Sent: Wednesday, April 26, 2006 12:25 PM
To: [email protected]
Subject: [ActiveDir] Forcing Kerberos to use TCP instead of UDP

Has anyone? http://support.microsoft.com/?id=244474

RE:
http://www.mail-archive.com/[email protected]/msg41616.html

I am concerned about the impact on this environment.

Thanks,

...D
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to