Quantcast
Channel: Network Infrastructure Servers forum
Viewing all articles
Browse latest Browse all 5877

DirectAccess client enables IPHTTPS interface when inside corporate network at remote sites

$
0
0
We have 4 offices connected via an MPLS network. I've installed the DA server in the main office. We're using a PKI for NLS and IPsec certs and a self-signed cert for IPHTTPS. For the most part everything works great. When a DA client is in the main office all DA settings are disabled and the client acts as it should. When on the internet the IPHTTPs tunnel is established and remote access works.
 
My problem is when the same DA client connects at one of the remote offices. When at a remote office the IPHTTPS interface is active. The NRPT is not. No tunnel is actually established but I find Event 4012, NCSI event logs showing that the Inside/Outside probe failed. This in and of itself would not be a big deal as the tunnel is never established however it does seem to cause Outlook to prompt for a password. I know this has something to do with our OWA site being resolvable inside the network, but I'm at a loss as to why this only happens with the IPHTTPS interface is active with no tunnel established.
 
The NLS site appears to be working from the remote offices. I can ping NLS via DNS name and can open the https NLS website in a browser.
 
Anyone have any ideas as to why this would be happening?

Viewing all articles
Browse latest Browse all 5877

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>