Question solve the WSUS on VPN server

Hi all

I have 18 sites connected by cisco SA520 is our main office through broadband connections. I can ping my main server at the remote locations. I of the GPO that is written in my XP SP3 of remote computers by telling them the name of my server of wsus http://my-server but they don't connect to the wsus for updates windows server. When I open an IE window on a remote computer and type in http://my-server get the administration page of Cisco A DNS error occurred while opening the page.

The Cisco device is a DHCP server, has my office main DNS and IP addresses in the network settings on the WINS servers. Clients get the DNS and WINS entries on remote sites to my main site.

Any help would be greatly appreciated.

Thank you

Willis

With the FULL domain name, you still receive the error DNS and the Cisco management page?  When you do a nslookup check what address IP it solves in and this is the correct IP address of your wsus Server?

This server is NAT'ed on the outside?  Is this a separate machine or WSUS reside on the domain controller itself?  Do you have other services such as sharepoint installed on the same server?  Have you installed WSUS on a port different for example 8530?  Did you modify the entry of WSUS IIS host header?

http://support.Microsoft.com/default.aspx?scid=kb;en-us;294382

http://www.wsuswiki.com/WSUSServerFAQ

Check the WSUS port: http://technet.microsoft.com/en-us/library/bb632477.aspx

Make sure that WSUS is assigned an IP address in IIS.  Make sure the port 80 443, or 8530 are open in the firewall.

Of what you mentioned earlier, it seems to resolve the address to the address of the ASA which is why you get the Cisco administration page.

A remote client, perform an nslookup check and make sure it is resolve correctly.  If it is to do a tracert and check she was going through the tunnel.  After a running-config rubbed.  Also, in the GPO, you can only use the IP address of the server ex: http://10.10.10.15 or http://10.10.10.15:8530.

Is this the only DNS problem that you are experiencing?  Group Policy is being processed correctly?  Have you checked for any additional errors eventvwr.exe?

Tags: Cisco Security

Similar Questions

  • A question about the fix (R2 Windows Server 2012)

    "A snapshot can be damaged when the suppliers of Volume Shadow Copy Service (VSS) snapshots take more than 10 seconds to create on a computer that is running Windows 7 or Windows Server 2008 R2."

    For this problem, you are given a Hotfix.But if the support of Windows Server R2 fix 2012, I want to know. I found this fix to surpport.

    Impatient of you can give me an answer.

    Thank you very much!

    "A snapshot can be damaged when the suppliers of Volume Shadow Copy Service (VSS) snapshots take more than 10 seconds to create on a computer that is running Windows 7 or Windows Server 2008 R2."

    For this problem, you are given a Hotfix.But if the support of Windows Server R2 fix 2012, I want to know. I found this fix to surpport.

    Impatient of you can give me an answer.

    Thank you very much!

    Hello

    Windows Server is supported on TechNet. Please click on [show all]

    on the left side of this page to select the most appropriate forum https://social.technet.microsoft.com/Forums/en-us/home

    Don

  • I use NookStudy. I took it for a day, and now it says there is a problem connecting to server time. How can I solve the problem of time server

    The time server on my laptop got somehow changed so that it prevents me to access a NookStudy.  {F750E6C3-38EE-11D1-85E5-00C04FC295EE} program seems to be the problem.  What can I do?

    Hi Stahwkn,

    You can click on this link and post your question here:

    http://www.barnesandnoble.com/nookstudy/College/support/index.asp

    hope this helps

    B Eddie

  • Questions regarding the management of windows server data.

    my master wants me to describe me the entire windows server 2012 secondary storage system, but as I've mentioned in this regard him now he wants me to write about data for windows server management. can someone expalain me a little on this subject and where can I find information about it.

    SF

    I suspect that your teacher wants you to discover by yourself by reading (or Googling) it.

    On another note server should consider the Technet site
    (http://social.technet.microsoft.com/Forums/en-us/home)

  • Error message when I run delete the query in SQL Server 2008.

    Error message when I run delete the query in SQL Server 2008 SP3.

    Error message:

    MSG 0, level 11, State 0, line 0
    A serious error occurred on the current command.  The results, if any, should be discarded.

    I never got any problem since 5 years.

    Please let me know what is the cause of the problem.

    You can get a response better/faster if repost you your question in the instances of SQL Server dedicated from Microsoft here:

    http://social.technet.microsoft.com/Forums/en-us/category/sqlserver .

    Thank you.   :)

    (I'm sorry, but I can't move this thread for you because the two forums are working on separate platforms)

  • Can I use my product key for Windows Server 2008 after the downgrade to Windows Server 2003?

    Can I use my product key for windows 2008 after it downgrade to windows 2003?

    Hello
    Your question of Windows 7 is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for the IT Pro TechNet public. Please post your question in the TechNet Windows 7 Server forum.
     
    http://social.technet.Microsoft.com/forums/en/category/WindowsServer/

  • The on wins 2003 Server crypt32 error event

    Event type: WARNING

    Event source: crypt32

    Event category: no

    Event ID: 6

    Date: 27/03/2011

    Time: 13:59:38

    User: n/a

    Computer: 3K 058901

    Description:

    Reached crypt32 50 events and will suspend logging for 60 minutes

    I had this error on my Wins 2003 server, which is running the application on this matter. The server was hang somewhere and the application does not work well. Please, help me to check.

    Thank you

    Hi Robertsgrec,
     

    Your question of Windows is more complex than what is generally answered in the Microsoft Answers forums as you receive an error in Windows Server machine. Appropriate in instances of Windows Server.

    Please post your question in the Forums of Windows Server.

  • Misconfigured remote VPN server by using IPSEC client

    I'm trying to figure out what I did wrong in my setup.  The environment is:

    ASA 5505 running 8.2 with 6.2 ASDM.

    Version of the VPN Client 5.0.05.0290

    I installed VPN ipsec clients both anyconnect and connected successfully to the remote access VPN server. However, the client doesn't show any returned package.  Thinking that I have badly configured, I have reset to the default value of the factory and began again.  Now I only have the configured ipsec vpn and I have exactly the same symptoms.  I followed the instructions to configure the ipsec vpn in Document 68795 and double-checked my setup and I don't know what I did wrong.  Because I can connect to the internet from inside network and I can connect to the VPN from outside of the network (and the ASDM Watch monitor an active connection with nothing sent to the client) I believe this is a road or an access rule preventing communication but I can't quite figure out where (and I tried the static routes to the ISP and a wide variety of access rules before rinsing to start) above).

    a basic threat threat detection
    Statistics-list of access threat detection
    no statistical threat detection tcp-interception
    WebVPN
    internal group vogon strategy
    attributes of vogon group policy
    Protocol-tunnel-VPN IPSec
    Split-tunnel-policy tunnelspecified
    value of Split-tunnel-network-list vogon_splitTunnelAcl
    username password privilege encrypted 0987654321 zaphod 15
    username password encrypted AaBbCcDdEeFf privilege 0 arthur
    username arthur attributes
    VPN-group-policy vogon
    tunnel-group vogon type remote access
    tunnel-group vogon General attributes
    address pool VPN_Pool
    strategy-group-by default vogon
    tunnel-group vogon ipsec-attributes
    pre-shared-key *.
    !
    class-map inspection_default
    match default-inspection-traffic
    !
    !
    type of policy-card inspect dns preset_dns_map
    parameters
    message-length maximum 512
    Policy-map global_policy
    class inspection_default
    inspect the preset_dns_map dns
    inspect the ftp
    inspect h323 h225
    inspect the h323 ras
    inspect the rsh
    inspect the rtsp
    inspect esmtp
    inspect sqlnet
    inspect the skinny
    inspect sunrpc
    inspect xdmcp
    inspect the sip
    inspect the netbios
    inspect the tftp
    !
    global service-policy global_policy
    context of prompt hostname
    Cryptochecksum:xxxxxxxxxxxxxxxxxxxxxx

    Looks like a typo for the Pool of IP subnet mask.

    You currently have:

    mask 10.92.66.10 - 10.92.66.24 255.255.0.0 IP local pool VPN_Pool

    It should be:

    mask 10.92.66.10 - 10.92.66.24 255.255.255.0 IP local pool VPN_Pool

    Please kindly change the foregoing and test, if it still does not work, please please add the following:

    management-access inside

    Policy-map global_policy
    class inspection_default

    inspect the icmp

    Then try to VPN in and see if you can ping 10.92.65.1 and let us know if this ping works.

    Please also share the output of: "cry ipsec to show his" after the trial, if it does not work.

  • The console of Windows Server Update Services (WSUS) falls down when you search for updates and displays the following error message:

    An unexpected error has occurred.
    Click the node server reset to try to connect to the server again

    Event type: error
    Event source: Windows Server Update Services
    Event category: no
    Event ID: 7053
    Date:
    Time:
    User: n/a
    Computer:
    Description: The WSUS administration console has encountered an unexpected error. Maybe it's a transient error; try to restart the administration console.
    Cause
    This can happen if the application cache is damaged.

    Hello

    Post your question in the TechNet Server Forums, as your question kindly is beyond the scope of these Forums.

    http://social.technet.Microsoft.com/forums/WindowsServer/en-us/home?category=WindowsServer

    See you soon.

  • Y does it does anyone know how many client can connect at the same time on the Microsoft VPN server?

    Hello everyone

    Is there anyone know how many client can be connected same time on microsoft VPN Server?

    Thank you

    Original title: VPN Windows Server 2012

    Hello

    Post your question in the TechNet Server Forums, as your question kindly is beyond the scope of these Forums.

    http://social.technet.Microsoft.com/forums/WindowsServer/en-us/home?category=WindowsServer

    See you soon.

  • is conneting to the vpn server can increase my download speed?

    I got cyberghost vpn,

    connection to the different vpn server can increase my download speed?

    Hi Amelia,.

    Thanks for posting in Microsoft Community!

    The question you posted would be better suited in the TechNet community.
    http://social.technet.Microsoft.com/forums/en-us/w7itpronetworking/threads

    I hope this helps!

  • Help with the easy VPN server with LDAP

    Hello

    I used to be able to set up our easy VPN server with local authentication.

    But now, I'm trying to use LDAP authentication to match with our policies.

    Can someone help me please to check the config and tell me what is wrong with him?

    My router is a Cisco1941/K9.

    Thank you in advance.

    Ryan

    Current configuration: 5128 bytes
    !
    ! Last configuration change at 13:25:16 UTC Tuesday, August 28, 2012, by admin
    ! NVRAM config update at 05:03:14 UTC Monday, August 27, 2012, by admin
    ! NVRAM config update at 05:03:14 UTC Monday, August 27, 2012, by admin
    version 15.2
    horodateurs service debug datetime msec
    Log service timestamps datetime msec
    no password encryption service
    !
    router host name
    !
    boot-start-marker
    boot-end-marker
    !
    !
    !
    AAA new-model
    !
    !
    AAA group ASIA-LDAP ldap server
    Server server1.domain.net
    !
    AAA authentication login ciscocp_vpn_xauth_ml_1 local
    AAA authentication login ASIA-LDAP-AUTHENTIC ldap group ASIA-LDAP
    local VPN_Cisco AAA authorization network
    Group ldap AAA authorization network ASIA-LDAP-ASIA-LDAP group authorization
    !
    !
    !
    !
    !
    AAA - the id of the joint session
    !
    !
    No ipv6 cef
    !
    !
    !
    !
    !
    IP domain name domaine.net
    IP cef
    !
    Authenticated MultiLink bundle-name Panel
    !
    Crypto pki token removal timeout default 0
    !
    Crypto pki trustpoint TP-self-signed-765105936
    enrollment selfsigned
    name of the object cn = IOS - Self - signed - certificate - 765105936
    revocation checking no
    rsakeypair TP-self-signed-765105936
    !
    !
    TP-self-signed-765105936 crypto pki certificate chain
    certificate self-signed 01
    30820229 30820192 A0030201 02020101 300 D 0609 2A 864886 F70D0101 05050030
    2 060355 04031325 494F532D 53656 C 66 2 AND 536967 6E65642D 43657274 30312E30
    69666963 37363531 30353933 36301E17 313230 36323630 39323033 0D 6174652D
    355A170D 2E302C06 1325494F 03550403 32303031 30313030 30303030 5A 303031
    532D 5365 6C662D53 69676E65 642D 4365 72746966 69636174 652 3736 35313035
    06092A 86 4886F70D 01010105 39333630 819F300D 00308189 02818100 0003818D
    C1B7E661 4893D83A EFE44B76 92BAA71A 6375 854 C 88 D 4533E51A 49791 551D8EF7
    F82E2432 E65B401D 27FE4896 2105B38A CB1908C1 9AE2FC19 8A9393C3 1 B 618390
    EE6CB1CC 5C8B8811 04FA198E 16F3297B 6B15F974 13EE4897 97270547 31 74270
    4590ACA6 68606596 97C5D4D5 462CACA0 CDDAC35A 17415302 CFD4E329 8E7E542D
    02030100 01A 35330 03551 D 13 51300F06 0101FF04 05300301 01FF301F 0603551D
    23041830 1680142E FF686472 569BCCF1 552B 1200 1 060355 5B660F30 D35060DB
    1D0E0416 04142EFF 9BCCF155 68647256 2B1200D3 5060DB5B 660F300D 06092 HAS 86
    01010505 00038181 00558F64 05207 D 35 AA4BD086 4579ACF6 BCF6A851 4886F70D
    1D0EA15B 75DBFA45 E01FBA5C 6F827C42 1A50DD11 8922F1E5 3384B8D8 8DD6C222
    0187E501 82C1C557 8AD3445C A4450241 75D771CF 3A6428A6 7E1FC7E5 8B418E65
    74D265DD 06251C7D 6EF39CE9 3 D FE03F795 692763 AE865885 CFF660A5 4C1FF603
    3AF09B1E 243EA5ED 7E4C30B9 3A
    quit smoking
    license udi pid CISCO1941/K9 sn xxxxxxxxxxx

    ISM HW-module 0
    !
    !
    !
    secret admin user name of privilege 15 5 $1 rVI4$ WIP5x6at0b1Vot5LbdlGN.
    ryan privilege 0 0 pass1234 password username
    !
    redundancy
    !
    !
    !
    !
    !
    !
    !
    crypto ISAKMP policy 1
    BA 3des
    preshared authentication
    Group 2
    !
    Configuration group customer isakmp crypto VPN_Group1
    xxxxxxxxxxxx key
    DNS 10.127.8.20
    pool SDM_POOL_1
    ACL 100
    netmask 255.255.255.0
    ISAKMP crypto ciscocp-ike-profile-1 profile
    match of group identity VPN_Group1
    authentication of LDAP-ASIA-AUTHENTIC customer list
    whitelist ISAKMP ASIA-LDAP-authorization of THE
    client configuration address respond
    virtual-model 1
    !
    !
    Crypto ipsec transform-set esp-SHA-ESP-3DES-3des esp-sha-hmac
    !
    Profile of crypto ipsec CiscoCP_Profile1
    game of transformation-ESP-3DES-SHA
    set of isakmp - profile ciscocp-ike-profile-1
    !
    !
    !
    !
    !
    !
    !
    interface Loopback0
    IP 10.127.15.1 255.255.255.0
    !
    the Embedded-Service-Engine0/0 interface
    no ip address
    Shutdown
    !
    interface GigabitEthernet0/0
    IP xxx.xxx.xxx.xxx 255.255.255.224
    automatic duplex
    automatic speed
    !
    interface GigabitEthernet0/1
    IP 10.127.31.26 255.255.255.252
    automatic duplex
    automatic speed
    !
    type of interface virtual-Template1 tunnel
    IP unnumbered Loopback0
    ipv4 ipsec tunnel mode
    Tunnel CiscoCP_Profile1 ipsec protection profile
    !
    local IP SDM_POOL_1 10.127.20.129 pool 10.127.20.254
    IP forward-Protocol ND
    !
    IP http server
    local IP http authentication
    IP http secure server
    IP http timeout policy slowed down 60 life 86400 request 10000
    !
    IP route 0.0.0.0 0.0.0.0 GigabitEthernet0/0
    IP route 10.0.0.0 255.0.0.0 10.127.31.25
    IP route 10.127.20.128 255.255.255.128 GigabitEthernet0/0
    !
    Note access-list 100 category CCP_ACL = 4
    access-list 100 permit ip 10.0.0.0 0.255.255.255 everything
    !
    !
    !
    !
    !
    !
    !
    LDAP attribute-map ASIA-username-map
    user name of card type sAMAccountName
    !
    Server1.domain.NET LDAP server
    IPv4 10.127.8.20
    map attribute username-ASIA-map
    bind authenticates root-dn CN = xxx\, S1234567, OU = Service accounts, OR = Admin, OU = Acc
    DC = domain, DC = net password password1
    base-dn DC = domain, DC = net
    bind authentication-first
    !
    !
    control plan
    !
    !
    !
    Line con 0
    line to 0
    line 2
    no activation-character
    No exec
    preferred no transport
    transport of entry all
    output transport lat pad rlogin lapb - your MOP v120 udptn ssh telnet
    StopBits 1
    line 67
    no activation-character
    No exec
    preferred no transport
    transport of entry all
    output transport lat pad rlogin lapb - your MOP v120 udptn ssh telnet
    StopBits 1
    line vty 0 4
    transport telnet entry
    !
    Scheduler allocate 20000 1000
    end

    Router #.

    Ryan,

    It seems that you are facing the question where it is indicated in the section:

    Problems with the help of "authentication bind first" with user-defined attribute maps:

    * Then you are likely to see a failure in your authentication attempt. You will see the error message "Invalid credentials, result code = 49.  The newspapers will look something like the journals below: *.

    Which is the same error you see. Go ahead and replace in your attribute map and test again.

    If you remove the command "bind-first authentication' configuration above, everything will work correctly.

    https://supportforums.Cisco.com/docs/doc-17780

    Tarik Admani
    * Please note the useful messages *.

  • How to connect to the CISCO VPN server without using the CISCO VPN client (from dialog Windows VPN)

    Hello world

    I have a cisco router 2800 installed in our company
    and I have it configured as a VPN server for professional help (cisco configuration)
    with the ease of the VPN Server Wizard
    Can I connect to this server using windows XP or 7 dialog VPN?

    Hello

    Your question of Windows 7 is more complex than what is generally answered in the Microsoft Answers community. It is better suited for the IT Pro TechNet public. Please post your question in the TechNet Forum. You can follow the link to your question:
    http://social.technet.Microsoft.com/forums/en-us/w7itpronetworking/threads

    I hope this helps!

  • Unable to connect to the VPN server

    Hello

    I'm on Sierra, iOS macOS 10 and Mac OS Server 5.2 (on a Mac mini).  (All dated September 21, 2016)

    Because PPTP is no longer supported, I am trying to create L2TP.  Unfortunately, when I try to connect to the server, I get the error "the VPN server has failed. Please check the server address and try to reconnect. »

    I do not think it is a problem of networking: back to my Mac is not enabled, the appropriate ports are transmission (UDP 500, 1701, 4500) and server says that the service is accessible.

    When I check the logs from the server after a connection attempt, I find:

    21/09/16 21:08:09.994 raccoon [75993]: can't find configuration.

    21/09/16 21:08:13.285 raccoon [75993]: can't find configuration.

    21/09/16 21:08:16.578 raccoon [75993]: can't find configuration.

    21/09/16 21:08:19.884 raccoon [75993]: can't find configuration.

    Any suggestions?

    Does anyone know where the configuration file is supposed to be on the server, so I can look at?

    Thanks for your help!

    Hi Rick,

    -Check that the folder/etc/racoon exist and the folder contains psk.txt and racoon.conf.

    -Installed with the operating system.

    Cheers, dwbrecovery

  • I forgot my secret question to apple id answer... How could I solve the problem?

    I forgot my secret question to apple id answer... How could I solve the problem?

    Hello

    If you set an alternate e-mail address, you can reset your security questions. Follow the instructions here to check if this option is available:

    - If you forgot your Apple ID - Apple Support security questions answered

    Otherwise, you will need to contact the Apple Support. The information is available here:

    - Contact Apple for assistance with the security of the Apple ID - Apple Support accounts

    (I'm afraid that no one here can reset security for you - it is a community based on the user, not the Apple Support).

Maybe you are looking for