First, check your logs to see what, if anything, is being blocked by the 
firewall.

Second, you don't mention M$ networking as being allowed, which suggests 
that the PDC isn't really talking to the BDC.

hermit1


At 04:02 PM 7/3/00 +0530, Vinod P. Thomas wrote:
>Hi,
>
>This is an overview of the network we're working on:
>
>Network                            IP Addresses                        NAT 
>on FW
>Private                                pvt. 172.16.X.x 
>/21            hidden behind 1 public IP
>DMZ                                  pvt. 172.16.Y.x / 21           static 
>to a public IP
>
>The whole network is in the same NT domain.The mail server is in the DMZ, 
>running Exchange 5.5..SP3 onWinNT4.0. We just moved the mail server from 
>the private network to the DMZ.
>
>The problem is, we don't find database sync'ing happening between the mail 
>server(NT BDC) and the PDC which is in the private network. Otherwise, the 
>mail server is functioning normally wrt sending and receiving mails. This 
>sync'ing is essential, else, a user changing his password will have 
>authentication problems the next time he tries logging onto the mail 
>server as Exchange uses NT for authentication.
>
>As far as FW policy goes, between the pvt n/w and the DMZ, the following 
>services have been enabled:
>http, https, smtp, pop3.
>
>Does this problem have anything to do with the FW or is this an NT-related 
>problem? Whichever, could you help me out here?
>
>Thanks and regards.
>Vinod.
>--
>Vinod P Thomas
>Network Support Engineer
>Euclid Network Solutions, Inc.
>1/36, Hanumanthappa Layout
>Ulsoor Road, Bangalore-560042
>
>Tel         : 91-80-5580141/2/3/4
>Fax        : 91-80-5580145
>Website : www.euclidnet.com
>



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to