This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Issue with Active Directory Authentication with XG230 via MPLS

Hi,

I try to be clearer as possible hoping this precious community can give me a solution to the problem.

SITE A

Zone LAN | 172.16.1.0/24

Zone LAN Gateway | 172.16.1.254 -> Firewall XG230

Zone WAN -> Internet

Zone MPLS [LAN] | 10.10.11.0/28 Gateway 10.10.11.1

Static Routing | 172.16.11.0/24 > 10.10.10.1

SITE B

Zone LAN > 172.16.11.0/24

Zone LAN Gateway 172.16.11.1 -> Firewall XGS136

Zone MPLS [LAN] > 10.10.11.16/28 Gateway 10.10.11.17

Two AD Server with 1 domain IPs: 172.16.11.210

Static Routing | 172.16.1.0/24 > 10.10.10.17

LAN traffic is working fine but I can't no longer authenticate SSL VPS users with AD because the servers 172.16.11.210/211 are unreachable. MPLS is new and suppressed the WIFI Bridge between buildings. With the WIFI Bridge everything was working fine.

Even the WIFI auth with WPA2 enterprise is not working at SITE A. OK at Site B

tcpdump shows that XG230 using 10.10.11.2 as IP to send authentication packets to SITE B instead of using is IP (172.16.1.254)

How can this be solved?

Thanks in advance any reply is appreciated.



This thread was automatically locked due to age.