• April 10, 2021, 12:33:20 PM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: AD Authentication Server checking fail  (Read 430 times)

Analogue Kid

  • Level 1 Member
  • *
  • Posts: 4
AD Authentication Server checking fail
« on: February 24, 2021, 05:00:29 PM »

Hello,

I created a IPSEC VPN gateway between 2 Dlink DSR-250N routers. After this, I programmed DHCP relay and VLAN at the remote router so the PCs get IP addresses through the VPN at my local Windows server. I then programmed VPN client policy authentication for mobile devices using an external auth AD server on the local DSR-250N router. Works, no problem. DHCP on the local DSR-250N is disabled.

I tried to use a similar VPN client policy config (same AD server) at the remote end and it did not work. The idea was to use the VPN tunnel to access the AD server at my end for VPN account authentication via a VPN client policy (Edge Device-Authenticate AD Server). I specified same server info in the External AD configuration and the server check failed. I tried to ping (Maintenance->Diagnostics->Network Tools) from the remote DSR-250N to the local Windows server IP address and it failed. It seems like the DSR-250N doesn't allow traffic from itself through the IPESC VPN tunnel to an another DSR-250N LAN. Pings from local to remote LAN machines (and vice versa) work.

Both DSR-250N routers have 3.17B401C_WW firmware.

Is there a way to allow the flow of traffic from within a DSR-250N to another DSR-250N router? Did I miss a something in the router configurations?

Thanks,
Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49570
  • D-Link Global Forum Moderator
    • Router Troubleshooting
Re: AD Authentication Server checking fail
« Reply #1 on: April 05, 2021, 09:21:54 AM »

Any progress on this?
Logged
Cable: 1Gb/50Mb>NetGear CAX80>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.