Share via


Can't ping FQDN and Hostname over VPN

Question

Thursday, August 18, 2016 4:59 PM

Hi, I am trying to get a RRAS VPN working however I cant ping any Hostnames over the vpn. I can only ping IP addresses. When I do ipconfig /all it says Im connected to our Main DNS server, I can also do an nslookup on the fqdn or hostname and it resolves perfectly.

I am clueless to what the problem is and I have looked everywhere.

Thanks

All replies (24)

Thursday, August 18, 2016 5:32 PM

Hello,

How is your network layout? My first thought is firewall..

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 5:43 PM

I have a client laptop with a pptp vpn to a windows server 2012 R2 RRAS server which is also our DNS server and AD Server. The firewall is disabled on the Server.


Thursday, August 18, 2016 6:03 PM

So, when you, from the laptop, type 'nslookup laptop.yourdomain.com' it resolves the IP ?

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 6:29 PM

No, the dns request times out


Thursday, August 18, 2016 7:25 PM

What if you type 'nslookup yourdomain.com', and also 'nslookup dnsadserver.yourdomain.com' ? And, just to make sure,.you can actually ping the dns/ad server from the laptop? I would also try telnet on port 53, to see if's open..from the laptop to dns/ad server

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 7:29 PM

Nslookup on both the domain and server fqdn work and return the hostname and ip


Thursday, August 18, 2016 7:34 PM

Good, I assume that was also from the laptop? But you cant ping fqdn for domain nor server from the laptop, only ip?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 7:35 PM

Correct


Thursday, August 18, 2016 7:43 PM

Try type 'ipconfig /flushdns' and then nslookup for domain and server..

And, what about ping/nslookup from server to to laptop. I assume they are on the same domain?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 7:52 PM

I flushed the dns and that did not work however I can ping the laptop from the server


Thursday, August 18, 2016 8:01 PM

You can still do nslookup on the laptop after ipconfig /flushdns, or what do you mean it didn't work?

Were they on the same domain? and how is the DNS zone set up? Were the laptop on the same subnet before VPN? And, what if you type 'tracert dnsadserver.yourdomain.com', where does it stop?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 8:08 PM

Sorry, I meant that ping did not work but nslookup did. Yes they are on the same domain. The laptop had the same subnet and when I run tracert it said unable to resolve target system name


Thursday, August 18, 2016 8:26 PM

I sort of suspect the dns info is cached, which give you the nslookup results. But then again ipconfig /flushdns in an elevated cmd on the laptop, should take care of that. Can you please confirm that you actually can telnet to dnsadserver on port 53, from the laptop?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Thursday, August 18, 2016 9:40 PM

How do I telnet the server


Thursday, August 18, 2016 9:44 PM

I figured it out and it does telnet the server


Thursday, August 18, 2016 10:08 PM

Can you post your 'ipconfig /all' print out?

/\

 

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Friday, August 19, 2016 10:08 AM

Windows IP Configuration

   Host Name . . . . . . . . . . . . : WILLIAM002
   Primary Dns Suffix  . . . . . . . : ad.tarbits.co.uk
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : ad.tarbits.co.uk
                                       lan

PPP adapter vpn.tarbits.co.uk:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : vpn.tarbits.co.uk
   Physical Address. . . . . . . . . :
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.1.140(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.255
   Default Gateway . . . . . . . . . : 0.0.0.0
   DNS Servers . . . . . . . . . . . : 192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled

Wireless LAN adapter WiFi:

   Connection-specific DNS Suffix  . : lan
   Description . . . . . . . . . . . : Realtek RTL8723BE Wireless LAN 802.11n PCI-E NIC
   Physical Address. . . . . . . . . : 2C-33-7A-61-89-7B
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.1.83(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : 19 August 2016 10:49:20
   Lease Expires . . . . . . . . . . : 19 August 2016 11:49:21
   Default Gateway . . . . . . . . . : 192.168.1.254
   DHCP Server . . . . . . . . . . . : 192.168.1.254
   DNS Servers . . . . . . . . . . . : 192.168.1.1
                                       192.168.0.1
                                       192.168.1.254
   NetBIOS over Tcpip. . . . . . . . : Enabled


Friday, August 19, 2016 12:23 PM

So your domain controller has 192.168.1.1, 192.168.01 and 192.168.1.254`?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Friday, August 19, 2016 12:24 PM

Can you show me the output of 'tracert -d 192.168.0.1' and 'tracert -d 192.168.1.1'

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Friday, August 19, 2016 2:06 PM

I have 192.168.1.254 and 192.168.0.1 because they are backup dns servers.

Here are the results

C:\Users\tarbitj>tracert -d 192.168.1.1

Tracing route to 192.168.1.1 over a maximum of 30 hops

  1     *        *        *     Request timed out.
  2    55 ms    55 ms    55 ms  192.168.1.1

Trace complete.


Friday, August 19, 2016 3:22 PM

Standalone or AD integrated? And what is routing between those networks?

/\

Best Regards,

Jesper Vindum, Denmark

Systems Administrator

Help the forum: Monitor(alert) your threads and vote helpful replies or mark them as answer, if it helps solving your problem.


Tuesday, August 23, 2016 8:15 AM

Hi,

I am checking to see if the problem has been resolved. If there's anything you'd like to know, don't hesitate to ask.

________________________________________
Best Regards,
Cartman
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected].


Friday, September 9, 2016 4:50 PM

Sorry about not replying but I started over and its all working now, thanks for all your help.


Monday, September 12, 2016 1:26 AM

Hi,

You are welcome.If you have any other question,please feel free to ask here.

Best Regards,
Cartman
Please remember to mark the replies as an answers if they help and unmark them if they provide no help.
If you have feedback for TechNet Subscriber Support, contact [email protected].