<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: WinXP Pro PC cannot ping Win2003 DC after Windows Firewall configuration.</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/</link>
	<description></description>
	<pubDate>Mon, 09 Nov 2009 09:53:21 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
		<item>
		<title>By: Labnuke99</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/#comment-57947</link>
		<dc:creator>Labnuke99</dc:creator>
		<pubDate>Thu, 20 Nov 2008 19:26:16 +0000</pubDate>
		<guid isPermaLink="false">#comment-57947</guid>
		<description>Lots of problems can be solved at the physical or logical layers like this. Thanks for the update!</description>
		<content:encoded><![CDATA[<p>Lots of problems can be solved at the physical or logical layers like this. Thanks for the update!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Technochic</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/#comment-57938</link>
		<dc:creator>Technochic</dc:creator>
		<pubDate>Thu, 20 Nov 2008 16:13:16 +0000</pubDate>
		<guid isPermaLink="false">#comment-57938</guid>
		<description>Great to know, thanks for posting your discovery!</description>
		<content:encoded><![CDATA[<p>Great to know, thanks for posting your discovery!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Erin0201</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/#comment-57904</link>
		<dc:creator>Erin0201</dc:creator>
		<pubDate>Wed, 19 Nov 2008 20:26:09 +0000</pubDate>
		<guid isPermaLink="false">#comment-57904</guid>
		<description>Alright, well the problem lies with our faulty switch.  We have been having connection problems with this dell switch for awhile now.  I will post back if anything changes, but currently all seems well since I've switched the connections over to the hub rather than the switch. 

Thanks everyone :)
Erin</description>
		<content:encoded><![CDATA[<p>Alright, well the problem lies with our faulty switch.  We have been having connection problems with this dell switch for awhile now.  I will post back if anything changes, but currently all seems well since I&#8217;ve switched the connections over to the hub rather than the switch. </p>
<p>Thanks everyone <img src='http://itknowledgeexchange.techtarget.com/itanswers/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
Erin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Erin0201</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/winxp-pro-pc-cannot-ping-win2003-dc-after-windows-firewall-configuration/#comment-57896</link>
		<dc:creator>Erin0201</dc:creator>
		<pubDate>Wed, 19 Nov 2008 18:07:41 +0000</pubDate>
		<guid isPermaLink="false">#comment-57896</guid>
		<description>The only difference in the settings is on my pc it states our .com address instead of the .local address for the DNS suffix search list.  But the .local address is listed on the test pcs and on the DC.
And of course DHCP is not enabled on the DC vs. all 3 workstations.

No, the workstations DNS settings are not only for the internal DC for our domain.  They are for the DC and the backup DC at our corporate.  They have both ip addresses listed as the DNS servers with the primary WINS server being our backup DC at corporate.

For pinging 4.2.2.2 and yahoo.com my desk pc received a timeout from both.  The two test pcs received ping request timeout for the 4.2.2.2 and could not find host yahoo.com. Please check the name and try again for the yahoo.com

The event logs show errors such as:
No Domain Controller is available for domain X due to the following:
There are currently no logon servers avaialbe to service the logon request.
Make sure that the computer is connected to the network and try again.   If the problem persist, please contact your domain administrator.
--
The time provider NtpClient is configured to acquire time from one or more time sources, however, none of the sources are currently accessible.  No attempt to contact a source will be made for 959 minutes.  NtpClient has no source of accurate time.  (I have already checked to make sure that the test pcs are on the same time as the primary DC)
--
The kerberos subsytem encountered a PAC verification failure.  This indicates that the PAC from the client X in realm x.LOCAL had a PAC which failed to verify or was modified.  Contact your system admin.
--
(This is a new one today that I've noticed, but that doesn't mean it wasn't there yesterday.  The event viewer is flooded with the antivirus trying to get updates)
The system failed to register host (A) resource records (RRs) for network adapter with settings: -( All of the settings are correct including the DNS server list and primary domain suffix x.Local.)
Sent update to server: &#60;?&#62;
The reason the system could nto register these RRs was because either (a) the DNS server does not support the DNS dynamic update protocol, or (b) the authoritative zone for the specified DNS domain name does not accept dynamic updates.
--

Let me know if you need anything else.  I am definitely at a loss here.  Everything "appears" to be right which is what I can't quite figure out and these are the only 2 pcs that are experiencing this in an environment with over 80 pcs.  And it only happened after configuring windows firewall which was supposed to "open" ports not deny all communication. ;)

Thanks so much for your help!
Erin</description>
		<content:encoded><![CDATA[<p>The only difference in the settings is on my pc it states our .com address instead of the .local address for the DNS suffix search list.  But the .local address is listed on the test pcs and on the DC.<br />
And of course DHCP is not enabled on the DC vs. all 3 workstations.</p>
<p>No, the workstations DNS settings are not only for the internal DC for our domain.  They are for the DC and the backup DC at our corporate.  They have both ip addresses listed as the DNS servers with the primary WINS server being our backup DC at corporate.</p>
<p>For pinging 4.2.2.2 and&nbsp;&lt;a href="http://yahoo.com" title="http://yahoo. " target="_blank"&gt;yahoo.com&lt;/a&gt; my desk pc received a timeout from both.  The two test pcs received ping request timeout for the 4.2.2.2 and could not find host&nbsp;&lt;a href="http://yahoo.com" title="http://yahoo. " target="_blank"&gt;yahoo.com&lt;/a&gt;. Please check the name and try again for the&nbsp;&lt;a href="http://yahoo.com" title="http://yahoo. " target="_blank"&gt;yahoo.com&lt;/a&gt;</p>
<p>The event logs show errors such as:<br />
No Domain Controller is available for domain X due to the following:<br />
There are currently no logon servers avaialbe to service the logon request.<br />
Make sure that the computer is connected to the network and try again.   If the problem persist, please contact your domain administrator.<br />
&#8211;<br />
The time provider NtpClient is configured to acquire time from one or more time sources, however, none of the sources are currently accessible.  No attempt to contact a source will be made for 959 minutes.  NtpClient has no source of accurate time.  (I have already checked to make sure that the test pcs are on the same time as the primary DC)<br />
&#8211;<br />
The kerberos subsytem encountered a PAC verification failure.  This indicates that the PAC from the client X in realm x.LOCAL had a PAC which failed to verify or was modified.  Contact your system admin.<br />
&#8211;<br />
(This is a new one today that I&#8217;ve noticed, but that doesn&#8217;t mean it wasn&#8217;t there yesterday.  The event viewer is flooded with the antivirus trying to get updates)<br />
The system failed to register host (A) resource records (RRs) for network adapter with settings: -( All of the settings are correct including the DNS server list and primary domain suffix x.Local.)<br />
Sent update to server: &lt;?&gt;<br />
The reason the system could nto register these RRs was because either (a) the DNS server does not support the DNS dynamic update protocol, or (b) the authoritative zone for the specified DNS domain name does not accept dynamic updates.<br />
&#8211;</p>
<p>Let me know if you need anything else.  I am definitely at a loss here.  Everything &#8220;appears&#8221; to be right which is what I can&#8217;t quite figure out and these are the only 2 pcs that are experiencing this in an environment with over 80 pcs.  And it only happened after configuring windows firewall which was supposed to &#8220;open&#8221; ports not deny all communication. <img src='http://itknowledgeexchange.techtarget.com/itanswers/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>Thanks so much for your help!<br />
Erin</p>
]]></content:encoded>
	</item>
</channel>
</rss>
<!-- dynamic -->