Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DC's not replicating over VPN

Status
Not open for further replies.

johncan20

IS-IT--Management
Sep 1, 2004
132
GB
hi,

i have a 2nd windows 2003 SP1 DC setup on the LAN and it worked fine replicating on the LAN but i have since taken it to a remote site and installed but it wont repliacte over the VPN. i have heard of probs with replicating over checkpoint VPN but mine is cisco to stonegate.

i have looked at this but we dont use ISA or checkpoint and i dont think we are doing RPC filtering. I also dont have the key HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Rpc

any ideas how to resolve this?

thanks

John
 
I would check the DNS settings first. quoted from DNS Issues

4. If you have two or more DNS servers in different locations, you will setup primary DNS and 2nd DNS servers point to themselves as primary and each other as secondary.

Bob Lin, MS-MVP, MCSE & CNE
How to Setup Windows, Network, VPN & Remote Access on
 
Yea, I agree with msworld - I've had some problems before that were simply caused by incorred DNS settings on the server. Also, make sure that port 135 is open between the two sites. Might also be an idea to make sure port 53 is open too, just incase any DNS queries are getting blocked

Irish Poetry - Karen O'Connor
Get your Irish Poetry Published
Garten und Landschaftsbau
 
There's actually an issue with Windows 2k3 SP1 and MTUs of packets that causes replication to be especially suceptible to packet loss on VPNS.. there's details somewhere in the depths of the Microsoft KB, and a hotfix. I've hit this issue myself recently. Darned if I can find the KB article right now.. I'll keep looking.

Iso


Isaac Orr
 
[hammer]

I can't beleive I forgot about that ... my manager had this issue not that long ago with one of our customers. It happens if the MTU on the WAN device (router/firewall) is lower than the windows default of 1472. You can find out what it is by using the -f (fragment flag) and -l (packet size) of the ping command. The solution is to either apply a patch from M$ or change the MTU on your router

The KB is


Irish Poetry - Karen O'Connor
Get your Irish Poetry Published
Garten und Landschaftsbau
 
hi,

I tried applying the hotfix but it didnt work. Tried chaging the MTU on the routers and didnt work but i changed it in the reg on the remote DC and it all worked!

thanks for your help.

John
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top