cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
837
Views
0
Helpful
1
Replies

AD authentication from DMZ to Inside network

ursshared
Level 4
Level 4

We have an unusual case that we need to authenticate a machine in a dmz to an internal AD server. Has anybody done this and know how to do this? We think that when the machine does a lookup for the domain, the internal address is returned, not the translated address.

1 Reply 1

JORGE RODRIGUEZ
Level 10
Level 10

For AD auth from DMZ host to inside there are few things you need to allow if fw if AD is in inside interface. Also depending if you are natting from DMZ to inside or no_nat eiteher or you still need to permit the required AD ports.

see this article.

http://technet.microsoft.com/en-us/library/bb727063.aspx

Rgds

Jorge

Jorge Rodriguez
Review Cisco Networking products for a $25 gift card