Delayed access to AD resources without internet connectivity

Home Forums Microsoft Networking and Management Services Active Directory Delayed access to AD resources without internet connectivity

This topic contains 1 reply, has 2 voices, and was last updated by  Ossian 4 months, 3 weeks ago.

Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts

  • ACubedM
    Member
    #167632

    My company requires that all AD and AD-related services administration be done on a system that has no connectivity to the internet. We have built two Windows Server 2016 RDS systems for all of our admins to use. These systems are blocked from internet access via a perimeter firewall rule.

    The issue is that accessing any AD related administration (AD Users & Computers, GP Management Console, AD-integrated DNS administration and Powershell scripts) is delayed by about 20 -30 seconds when you first access the tool or if you have not used an already running tool for 15 – 20 minutes. This is usually seen by clicking on another OU or object in ADUC, trying to add a record in DNS or clicking on a GPO.

    The issue only happens on these two systems. As a test, we removed the internet restriction on one system and the issue went away.

    We have run network traces and didn’t see anything that stood out. Some process is obviously hanging and then timing out. We just cannot find it. Any help would be appreciated. Thanks.


    Ossian
    Moderator
    #192059

    I have a vague memory about checking certificate chains of trust causing such delays. Looked online and couldn’t find anything, but the morning coffee hasn’t kicked in yet :twisted:

Viewing 2 posts - 1 through 2 (of 2 total)

You must be logged in to reply to this topic.