DA client not sending packets - no IPSec?


this da server / client environment built in hyper-v mix of virtual , real networks.

remote da client uses teredo , iphttps.
can ping directaccess (dns servers) listed in nrpt,
can ping internal statically configured native ipv6 addresses of internal resources, (2001:480:664a:e::/64)
can ping nat64&dns64 addresses assigned da server internal ipv4 resources. (2001:480:664a:e:b733::/96)

real dmz network, when attempts ping fqdn of server ipv address proven pingable, there no packet sent out nic (wireshark, promiscuous scanning).  message 'ping request not find host bobbysox.tidir.bctest.. please check name , try again.' again, da & internal dns servers still pingable remote client.

if remote da client part of virtual dmz network, boots , communicates da server slew of isakmp messages before establishing ipsec , using esp.

same addressing scheme, , connecting da client , external interface of da server real dmz network, ipsec never established, though isakmp still used.


recommendations in resolving/troubleshooting issue?
thank you.

-aaron



Windows Server  >  Network Infrastructure Servers



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...