Hi
I've been struggling with this problem for over two weeks and still can't figure this one out. Hope someone can help me on this, please.
I have read dozens of articles, guides, threads...and can't find an exact situation or resolution, for my problem.
Scenario:
- Multiple physicall locations with different subnets, connected. (10.13.1.0/23 ; 10.13.2.0/23; 10.14.1.0/23; 10.15.1.0/23 and so on)
- Direct Access Server configured on Windows Server 2012 on the servers subnet 10.13.254.0/23. External proxy-pass for the internal NIC of the DA Server. (Internal NIC has a default gateway configured...in some articles this is not considered a correct configuration)
- No NLS server.
Problem:
Firstly for some clients (Windows 7, 8 and 8.1) everything works ok. They know exactly when they are inside/ouside the corporate network, when outside they connect to DA without any problem. But this only happens if the client machine is configured (added to the domain and receive the DA GPO) in a specfic subnets in this case 10.13.1.0; 10.13.2.0; 10.13.3.0. and so on. This subnets are on the same physicall location of the servers subnet.
If we configure any client (added to the domain and receive the DA GPO) on any other subnets of other physicall locations, that machine will not connect to DA (they receive the DA GPO correctly). Other symptoms are:
- Nevertheless the remote subnets are "inside" the corporate, the clients state that they are "outside corporate network" (using netsh dnsclient show state).
- The clients can't ping/access internal resources (IPV4). They can only ping the DA server by name.
- The clients establish HTTPS tunnel correctly, and without errors.
-From the internal network we can't ping those clients.
I have read a lot and still can't find a place to start...initially I thought it might be a network routing misconfiguration...but the routing guys say that everything is ok (whatever that means :) ), I have added static routes to the DA server (with no luck), and all the solutions I came across didn't really fit on my problem...basically... I'm lost!
Can someone please be kind enough to help me on this one? Much appreciated...
Sorry for the rusty English.
Cheers
Cris