Go Back   PCMech Forums > Windows Support > Windows Legacy Support (XP and earlier)

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 02-10-2006, 08:36 PM   #1
Member (9 bit)
 
Join Date: Dec 2004
Posts: 289
Can't access certain websites

Hi all,

OK, here is a little background information: We have a High School with a server, 'mailserve' and an Elementary with a server, 'elemsrv'. They are on two different campuses.

mailserve:
Windows 2000 Server
Domain Controller (MCKEELACADEMY)
Exchange 2000
ISA

elemsrv:
Windows 2003 Server
Domain Controller (MCKEEL-ES)
ISA

We host the email accounts for elemsrv on mailserve because it's only about twelve of them. They would access their email via OWA, hosted on mailserve. Previously to about four days ago, they could access their email from everywhere, inside elemsrv, inside mailserve, at home, etc. but now, they cannot access it from inside elemsrv.

When they try to access OWA, they sign on as usual but when they try to login to exchange it prompts them with another NT authentication box asking for their password again. Say I was trying to log onto John Smith's account: smithj. I would go to the website and enter smithj as the username and enter the appropriate password. After a few seconds the same NT authentication box would pop up, only with smithj replaced by "mckeelacademy.com\smithj". I would enter in the same password as before and it just keeps prompting me again and again. If you cancel out or keep clicking on OK it'll slowly and randomly build the page, but never actually allow access to emails.

We checked the exchange directories on mailserve to make sure they had access, but as far as we know nothing was changed at all. It doesn't even make sense seeing how they could get to their email from ANYWHERE except from inside elemsrv. It makes me think elemsrv is denying access to mailserve, but they can reach other websites hosted on mailserve as well.

We've been going crazy for the past few days, I think if we don't get this thing sorted out quickly we'll end up installing Exchange on elemsrv and getting a domain for external email. Ideally it should be this way, because we are adding another elementary school this summer (which adds about 50 more accounts) and mailserve is nearly maxed out already.

Any thoughts? Thanks!
__________________
Dell Inspiron 9300
Intel Pentium M 740
17" Wide Screen XGA+ Display
1GB PC-4200 Dual Channel DDR2
256MB NVIDA GeForce Go 6800

Apple MacBook (Black)
Intel Core 2 Duo 2.16 Ghz
13" Wide screen Display
2GB Memory
PCBrandon is offline   Reply With Quote
Old 02-11-2006, 11:13 AM   #2
Member (9 bit)
 
DynamicTech's Avatar
 
Join Date: Jan 2006
Posts: 343
Quote:
we'll end up installing Exchange on elemsrv and getting a domain for external email. Ideally it should be this way, because we are adding another elementary school this summer (which adds about 50 more accounts) and mailserve is nearly maxed out already.
This is the way I look at it:
I would think forward. If you know mailserve will not handle the 50 or so additional accounts, I would go ahead and make change now, if feasible.
Why continue to drive yourselves crazy solving a problem when your efforts will be short lived?
You will be killing two birds with one stone.
But, it sounds like the mailserve is trying to log your elemsrv users onto its domain and cannot authenticate the users. Have you made any changes to either server in last few days?

Last edited by DynamicTech; 02-11-2006 at 11:21 AM.
DynamicTech is offline   Reply With Quote
Old 02-11-2006, 11:46 AM   #3
Member (9 bit)
 
Join Date: Dec 2004
Posts: 289
Well, we've made a billion changes trying to fix this problem. However, previous to when the problem started to occur nothing (that we know of) was changed. It just doesn't make sense that they would be allowed access from anywhere in the world except from inside elemsrv.

Last edited by PCBrandon; 02-11-2006 at 01:03 PM.
PCBrandon is offline   Reply With Quote
Old 02-11-2006, 12:21 PM   #4
Member (9 bit)
 
DynamicTech's Avatar
 
Join Date: Jan 2006
Posts: 343
Do users have any special login script or routine they have to go through when accessing mailserve from elemsrv? There is a very logical explanation, the trick is finding it. I would bet the answer lies somewhere between the domains/servers. Are there any deviations in group memberships and/or rights and privileges? Is the same authentication protocol being used on each domain?
You might try looking here.
DynamicTech is offline   Reply With Quote
Old 02-11-2006, 03:00 PM   #5
Member (9 bit)
 
Join Date: Dec 2004
Posts: 289
I'm not aware of any special login scripts or anything they have to do out of the ordinary to get access to our servers. They can log in to the staff only section on the website, but once they try to get to exchange OWA it denies them access.

I'll have a look at that article, thanks.
PCBrandon is offline   Reply With Quote
Old 02-13-2006, 09:56 PM   #6
Member (9 bit)
 
Join Date: Dec 2004
Posts: 289
I went to www.pcpitstop.com from elemsrv and did a trace route to mailserve. I got the following, it doesn't look good to me, what can I do to fix it?

PHP Code:
Hop# | Avg ms | Loss % | Graph | Address 
1        *       100             0.0.0.0 
2        14                      65.32.14.116 
(gig0-2.tampflp43-ubr1.tampabay.rr.com
3        *       100             0.0.0.0 
4        
*       100             0.0.0.0 
5        
*       100             0.0.0.0 
6        
*       100             Unable to reach 24.227.48.170 (www2.mckeelacademy.com
PCBrandon is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 03:50 AM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 PL2