Questions tagged [direct-access]

Direct Access is a new technology from Microsoft Available for Windows 7 Enterprise and Ultimate working with Windows Server 2008 R2 that provides seemless network connectivity not matter if you are in your Lan or in the Internet.

61 questions
1
vote
1 answer

Direct Access on Server 2012

Scenario: Windows Server 2012 with the Remote Access role installed. IP set to static, registered DNS. 3 domain controllers, all running Server 2003 (I suspect this may be the issue) Done so far: DNS registered, firewall turned off after IPsec was…
user78214
1
vote
1 answer

What can cause a DirectAccess IPSec Main Mode Error "no policy configured"

We have Microsoft's DirectAccess VPN set up on Server 2008 R2 with end-to-edge security, and we're having trouble with the manage-out tunnel. The DirectAccess client has DC/DNS and intranet connectivity, it can ping/rdp/etc to intranet hosts.…
Mike Haboustak
  • 448
  • 4
  • 7
1
vote
1 answer

Can a Windows DirectAccess Server also be a RRAS server?

We are upgrading our domain to Windows server 2008 R2 and I was wondering if anyone here has ever tried to make a directaccess server run RRAS so that you could also support standard VPN clients as well
Tyson Navarre
  • 472
  • 3
  • 9
  • 23
1
vote
1 answer

UAG Direct Access - Exporting GPO to offline hosts

I'm probably missing something here, but I couldn't find any reference to this. I have a host that is using Direct Access from a remote location. We had to make changes on the server side and ofc, update the GPO. Is there a way to manually push…
Oren
  • 33
  • 2
  • 8
1
vote
0 answers

DirectAccess not connecting on clients with temporary ipv6 addresses

Our DirectAccess solution is working fine. We have hundreds of clients connected every day. But sometimes, clients with Temporary IPv6 Addresses are not connecting. Even after performing: Restart connection Restart interface Restart OS None of the…
rui
  • 25
  • 4
0
votes
0 answers

Direct Access support for IoT Enterprise

The company where I work has a set of kiosk devices which we install at remote sites. For the new version of these devices, we are looking at running Windows IoT Enterprise as the OS. With this change, our existing MDM solution is not supported.…
Foxtrek_64
  • 9
  • 1
  • 4
0
votes
1 answer

DirectAccess Certificate Authentication Breaks After New Certificate Authority Deployed

An environment had two Windows Certificate Authorities, publishing a computer certificate via auto-enrollment for DirectAccess authentication. Customer CA 1 Customer CA 2 The Certificate authorities needed operating system to be upgraded, so two…
0
votes
0 answers

Troubleshooting Direct Access on Windows Server 2016

To get in compliance with the new NIST 800-171 standard, we are re-evaluating our VPN for remote employees, and the head honcho would really like to use DirectAccess for any employees that will come in contact with CUI. The issue is I for the life…
0
votes
0 answers

Direct Access on Sever 2012R2 - SSL Certificate

I have a question in regards to certificates when implementing Direct Access on a Server with 2 NICs. One directly connected to internet and the other internally configured. I have *.domain.com wildcard cert on my main DC and I'm wondering how to…
0
votes
1 answer

RemoteApps over DirectAccess. Login Failed?

In our company most of our employees are mobile, so we have a DirectAccess environment setup to allow for access to the internal network remotely. We also have a RemoteApp setup so we can easily deploy programs to the employees. Unfortunately, these…
0
votes
1 answer

Clients unable to connect to DA-server

I just setup a new server for directaccess. This domain previously had directaccess but it has been removed if it makes any difference. Anyway, everything is green checked in server manager. Public certificate is installed and I have checked…
Mattias A
  • 1
  • 1
  • 2
0
votes
2 answers

Put a server or two behind a proxy

A little background on why I'm asking this question. We've been recently getting DDoS and other attacks on our Direct Access servers, and when these attacks come in, it dramatically slows down the network connections on all the other servers in our…
0
votes
1 answer

Windows 7 Ent DirectAccess client cannot browse over SMB

Environment is IP-HTTPS DirectAccess with a 2012 DA server and a mix of Windows 7 Enterprise and Windows 10 Pro clients. I have one Windows 7 Enterprise client that shows up as connected to DA and can ping/RDP/https to intranet resources, but cannot…
0
votes
1 answer

What counts as a 'valid http response' for testing an NLS server?

Direct Access detects you are inside the network by making an SSL connection to a system within your network. The steps to validate include resolving the name, making an https connect, validating the certificate, and CRL. From the linked Microsoft…
Zoredache
  • 128,755
  • 40
  • 271
  • 413
0
votes
1 answer

DirectAccess in DMZ - internal firewall rules

I'm looking at deploying DirectAccess in our network but have some concerns over the requirement to have the DirectAccess server be domain joined, particularly because it's going to be in the DMZ. The firewall rules on the external firewall are…
peblos
  • 1
  • 2