Remote Access Setup: The subject name of the network location server certificate does not resolve correctly - remote-access

Doing a quick setup of DirectAccess on Server2k19.
One nic card, NAT'd behind a firewall.
Server is PDC and will act as all parts of DirectAccess (RAS, NLS, and Application Server).
In the Remote Access Setup, everything is configured but when trying to Finish and apply, its giving me "The subject name of the network location server certificate does not resolve correctly. Ensure that the name resolves to the IP address of the internal network adapter of the server".
Domain Forest is acme.local and the Network location server is set to use a self-signed certificate, which defaults to:
S=Texas, C=USA, O=Dell Inc., L=Round Rock, CN=SERVER.acme.local
The DNS Forward Lookup zone has a record for SERVER as SERVER.acme.local. and points to the internal local IP of the server 192.168.0.8
Ive also added the same A records in DNS for : directaccess-webprobehost and directaccess-corpconnectivityhost -- both pointing to the same 192.168.0.8 IP
What am I doing wrong? I'll answer any questions promptly if there's more to drill down to. Thanks in advance.

Just try to update the group policy by the following command and then try it's working.
gpupdate /force

Related

Hostname not resolving to IP addresses for Linux computers in an AD Domain

I am joining Linux and Windows instances to an AD domain (). The machines are joining fine to the domain and I can use ssh/RDP using the AD credentials to login to the machines post domain join.
I can also get all the computer objects (host names) by running Get-ADComputer -Filter * on a windows server and providing the domain credentials. The issue is that, the host names for Linux based computers are not resolving to an IP address. Whereas all Windows hosts are resolving fine.
nslookup <windows-host> is returning host's FQDN and the IP address.
nslookup <linux-host> is returning Non-existent domain.
P.S: All these resources (windows and Linux hosts) are in the same network, using same DHCP/DNS server and can communicate to each other with no issues. Also I can resolve and connect to the AD domain from all these hosts
Any idea why this could be happening and how to resolve this ?
My use case is to get the IPs of all the computer objects in my AD domain.
Normally when using DHCP Windows will attempt to register its own A and possibly PTR records in the configured DNS, not sure about Linux. You may configure your DHCP server to update DNS for the clients (instead of leaving it to the clients themselves), i.e.:
To configure a DHCP server to register and to update client information with its configured DNS servers, follow these steps:
Open the DHCP properties for the server
Click DNS, click Properties, click to select the Enable DNS dynamic updates according to the settings below check box, and then click Always dynamically update DNS A and PTR records.
Source: https://learn.microsoft.com/en-us/troubleshoot/windows-server/networking/configure-dns-dynamic-updates-windows-server-2003

localtest.me’s server IP address could not be found

I've attempted to set up a test binding through IIS to localtest.me, but it's not resolving to my local IP address. My understanding of localtest.me is that it should resolve automatically. In Chrome is get the error message:
blog-test.localtest.me’s server IP address could not be found.
And when pinging blog-test.localtest.me I get the following error:
Ping request could not find host blog-test.localtest.me. Please check the name and try again.
In IIS I have a site that's bound to blog-test.localtest.me with the following settings:
Everything I've read online advises that localtest.me should resolve automatically? Is this the case or is there setup step I'm missing?
You can simply add this entry in your host file locally, and it will work.
On windows machine - C:\Windows\System32\drivers\etc\hosts
On *nix machine - /etc/hosts
It sounds like you didn't register the domain in either DNS or hosts file.
1.So if you are in an AD environment, please add a CNAME blog-test.localtest.me in your local DNS Forward lookup zone.
2.If you are going to access the website from public domain, then please purchase the domian from domain provider and point it to Server's public IP.
3.If you just want to access the website locally, please add the domain to hosts file.
The hosts record would looks like:
127.0.0.1 blog-test.localtest.me

How to use iis with friendly name on local network

I make a web site to my local. I set bindings local.com and www.local.com. I add hosts xml to
127.0.0.1 local.com
127.0.0.1 www.local.com
So, I can connet on my pc like
local.com,
www.local.com,
192.168.1.35
But another pc on my network can't conenct with friendly name
www.local.com,
local.com,
But same pc can connet with ip
192.168.1.35
How can that another pc connect with friendly name ?
IP Addresses are the numerical identification for each device on a computer network.
Named Addresses invented, because remembering each device Address's turned to a difficult job.
So someone must know's which names must be converted to which IP Address.
DNS Servers are responsible to do this translation. But you done that locally. Actually you don't have a DNS Server on your local System, So you can't tell to others that "WWW.Something.COM" is my Address.
If you didn't connected to the internet, you must establish a DNS Server or done this task manually in all clients:
https://helpdeskgeek.com/networking/edit-hosts-file/
Running a DNS Server is another task. you can search for DNS Server applications like https://simpledns.com/ or you can setup a DNS Server using Windows Server. for both scenarios you need to tell to your clients to add your DNS Server Address to their network Adapter settings.
or If you are connected to the Internet, you can Use a NoIP to register a free Address:
https://www.noip.com/
you then need to download an application (In Noip.com) to monitor IP changes, it will monitors your IP address and it changes and then tells to NOIP.com to translate your address into your current IP address.
Actually NOIP will registers your address globally around the Internet network and each one who can access to the internet is able to reach to your address.

Domain not attached to the Cpanel

I registered domain on the WHM and create a new user cpanel with the domain, the domain is added to the cpanel. But when i try to browse the domain name it getting server DNS address could not be found.i updated the name servers with my server name, but nothing changed.
when i try to go through myip/~newuser it going fine to the site file, but with the domain name it's not.
You have a DNS issue in this case. Please check your DNS zone with a tool like intoDns:
https://intodns.com/yourdomain.tld
See if you get any errors there. If you do, then you have issues with your DNS configuration. Be sure that you have create the parent DNS servers for your domain if you want to use the DNS from WHM (the parent DNS servers should point to your WHM server ip).
Try using external services to query your DNS server to see if it actually works (like MXToolBox etc). Or you can use nslookup or dig right from your WHM server by connecting via ssh.

New domain - Can ping Netbios and IP, but not FQDN (errors joining name)

I am having issues with my DNS. I am setting up a new domain and have Windows Server 2008 R2. The domain controller is running on Hyper-V. Of course I can ping the FQDN internally on the Domain controller but not the host server.
When pinging the Netbios name from host the DNS resolves and ping is successful. When pinging using using FQDN (server1.contoso.local) I receive Ping request could not find host server1.contoso.local. Please check the name and try again.
I have done nothing to the network besides setting up the Active Directory. IP6 is disabled. The server and DC have static IPs and my router is the DHCP provider. The DC is DNS.
setup is as follows:
IP: 192.168.0.199
Subnet: 255.255.255.0
Default gateway: 192.168.0.1 (router internal IP)
Preferred DNS: 192.168.0.100 (DC IP)
Alternate: 192.168.0.1
When I attempt to join the domain I have to use the Netbios name (FQDN will not work; could not contact active directory domain controller). I am prompted to enter domain password but then receive the following error: "The following error occurred attempting to join the domain "domain-name" An attempt to resolve the dns name of a domain controller in the domain being joined has failed. Please verify this client is configured to reach a DNS server that can resolve DNS names in the target domain."
I have disabled the firewal on both the host server and the DC. I have attempted a /flushdns and a /registerdns. No changes. When attempting to renew the ipconfig on the DC I receive the following error: "An error occurred while releasing interface Loopback Pseudo-Interface 1: the system cannot find the file specified"
Is my problem simply a missing DNS entry? I unfortunately do not know much about DNS.
Thank you in advance.
I was able to resolve this issue on my end by adding the domain name suffix to the host's NIC.
I actually just resolved my issue. One key bit of information I completely forgot to mention was that I have 2 NICs installed and in use on my server. One of them is assigned strictly to the VM Domain Controller. Because of this a virtual network connection was created. For some reason that I don't entirely understand this was affecting my ability to see the FQDN on my network. I corrected the DNS settings on the virtual NIC and all my NETBIOS woes have left.
I don't really understand why that caused the problem, but changing the virtual NIC DNS server settings which defaulted to my router instead of my DC fixed the problem.

Resources