My company requires that all AD and AD-related services administration be done on a system that has no connectivity to the internet. We have built two Windows Server 2016 RDS systems for all of our admins to use. These systems are blocked from internet access via a perimeter firewall rule.
The issue is that accessing any AD related administration (AD Users & Computers, GP Management Console, AD-integrated DNS administration and Powershell scripts) is delayed by about 20 -30 seconds when you first access the tool or if you have not used an already running tool for 15 – 20 minutes. This is usually seen by clicking on another OU or object in ADUC, trying to add a record in DNS or clicking on a GPO.
The issue only happens on these two systems. As a test, we removed the internet restriction on one system and the issue went away.
We have run network traces and didn’t see anything that stood out. Some process is obviously hanging and then timing out. We just cannot find it. Any help would be appreciated. Thanks.