V
V
Vladislav2021-08-30 02:30:01
VPN
Vladislav, 2021-08-30 02:30:01

How to change definition of wan interface as domain?

There is a Windows server 2019 server
. It has 2 network adapters
1) Wan with ip like 194.169.192.***
2)Lan 10.10.10.***
Lan The interface looks at the domain network to which the server itself is added The
setting is as follows:

wang

612c15e037815676547614.png

LAN

612c15f79ee48920295533.png

The essence of the question is this:
2 interfaces are needed for RRAS (VPN)
Since interfaces with gateways in different networks (Intranet and local) cannot function properly, the gateway is not entered on the LAN , but the connection with the domain is registered in the DNS server
When identifying this network, it is indicated as domain
The WAN interface has full settings except for DNS, is configured properly and has access to the network

. When identifying interfaces with the parameters specified above, both interfaces change the type to "Domain", changing the profile type will not work either through PS, or through regedit, or other native obvious methods(secpol.ms, gpedit.msc)

With these settings, rras will not start, and even if it did, it would be against all security rules, do you have any idea how to do this?

Answer the question

In order to leave comments, you need to log in

1 answer(s)
R
Rsa97, 2021-08-30
@Rsa97

The "domain" network type is set automatically if the computer is entered into the domain and was able to log in to the domain controller through this interface.
Thus, there are two options - take the computer out of the domain or configure the interface so that the domain controller is not visible through it.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question