Hi all,

I need users from registration VLAN access our Active Directory to make first 
login on thei clients. I'm working in Out of Band enforcement so I created some 
permit rules on my firewall to guarantee access from the registration VLAN to 
my domain controllers. The problem is that I can't see traffic from that VLAN 
and I discovered why. The client need to resolve these records to find the 
domain controller:


_ldap._tcp.pdc._msdcs.<my domain>
_ldap._tcp.gc._msdcs.<my domain>
_kerberos._tcp.dc._msdcs.<my domain>
_ldap._tcp.dc._msdcs.<my domain>


I tried to put them in the passthrough but it seems not working. Is there a way 
to overcome this problem? I was thinking about DNS filters but I have more than 
one DC and I don't want to put statically in a rule.


Thanks


Luca



Inviato da Outlook<http://aka.ms/weboutlook>
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to