That's the article I used to setup my ports =) any other ideas what I might be doing wrong? I really hate to just keep poking more holes through. -----Original Message----- From: Gallop, George [mailto:George.Gallop@xxxxxxxxxx] Sent: Monday, January 07, 2002 3:04 PM To: [ISAserver.org Discussion List] Subject: [isalist] RE: Authentication http://www.ISAserver.org http://support.microsoft.com/directory/article.asp?ID=KB;EN-US;Q179442 This may help, it is not specific to ISA and sorry I have not tested it. :) -----Original Message----- From: Stephen Herrera [mailto:sherrera@xxxxxxxxxx] Sent: Tuesday, 8 January 2002 7:27 AM To: [ISAserver.org Discussion List] Subject: [isalist] Authentication http://www.ISAserver.org Hello all, I have a setup as follows: Internet ISA 1 DMZ ISA2 LAN My problem is that I want to allow a machine in the DMZ to authenticate to domain controller on the LAN. I have setup packet filters and protocol rules allowing the following: 1. Any RPC server 2. NetBios 3. LDAP 4. kerberos I have published the DNS servers to the DMZ as I am having the DMZ use my internal DNS servers. After all of this I am still getting netlogon failure. Figured I would try and get some help before I turn my ISAs into total swiss cheese. Just can't think of anything else to open up and feel like perhaps I have opened too much already. Thanks in advance for any help provided. Steve ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: george.gallop@xxxxxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub') ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: sherrera@xxxxxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub')