Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Domain login through BEFSR11

Status
Not open for further replies.

Scanner

MIS
Apr 14, 1999
109
US
My network consists of approximately 200 machines (20 are servers and all are in a single NT4 Domain) and I have a large room with 25+ machines that I need to have on a different IP scheme.

The room is fed by a single BEFSR11 Router. I've reserved the IP address for the WAN port on my W2K DHCP server (on the main segment of network) and the router is issuing valid IP addresses to the rest of the room from the LAN port.

In other words...
1. Internet access to and from the room is OK.
2. Drives on assets in main network segment can be mapped via IP address
3. LMHOSTS files have been configured on workstations so assets can also be mapped via NETBIOS name successfully

My question is this...

I can't authenticate to the NT4 domain from within the room. I can see all assets, but every machine is restricted to using cached account settings (all clients are W2kPro or XPPro).

I'm not sure if it's a router question or perhaps my LMHOSTS file isn't set up exactly right. Is there anyone that has had this issue and may be able to point me in the right direction?

Thanks!!

Scanner
 
It probably wont work unless you swap the LAN side and WAN side of your router and the you may try forwarding ports 135-139 on your router to your domain controller. Your domain controller may need to have the linksys router IP set as its default gateway for this to work. I think that will work, but it is mainly speculation on the way things should work. It may have problems because of the NAT'ing, but who knows. If you do that, then you will have to forward ports for web browsing also. You might need to set up a proxy. The problem is that the linksys is really just a one wat router with NAT. I think the wrt54g with hacked firmware could facilitate what you are looking to do better, but again not sure. If you really want this to work on a full time bases, then build yourself a linux firewall. Good luck, and let me know if that does indeed work.

-Todd

Learn Windows 2003 Server Videos:

 
The only DNS entries for your clients should be the IP of the LAN DNS server. See for possible help faq779-4017

But I have an additional concern. I am stunned that you are using a BEFSR11 for routing of 200 workstations and servers. This is the wrong device, without the guts as a router to handle your needs. I can easily swamp the store and forward capabilities of this router with one connected workstation.

Give some though to having a network engineer from HP, IBM or CISCO analyze your site.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top