IPSec transport mode issues between client and file server

From: Edward Ray (nobody_at_dufus.net)
Date: 10/22/03


Date: Wed, 22 Oct 2003 10:44:56 -0700

I have a Windows XP pro client and a Windows 2003 file server in the same
domain that I am trying to use IPSec transport mode to authenticate and
encrypt (AH + ESP) all TCP port 445 traffic between client and server.
Currently using Kerberos as authentication method. Link is established
between both clients, and I can see encrypted traffic being exchanged
between file server and client via Ethereal (http://www.ethereal.com) packet
filter.

But whenever I try to access the file share, the link fails, even though
IPSec encrypted traffic is being exchanged. The event logs show ID 541
which indicates a successful IKE exchange. Below is a command line
exchange, where X:\ is the file share drive on the server. The link is
successful, but I cannot access any files:

Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.

c:\Documents and Settings\user.DOMAIN>x:

X:\>dir
 Volume in drive X is E OF BORG
 Volume Serial Number is A0B8-68B9

 Directory of X:\

File Not Found

X:\>c:

C:\Documents and Settings\user.DOMAIN>x:

X:\>dir
 Volume in drive X is E OF BORG
 Volume Serial Number is A0B8-68B9

 Directory of X:\

File Not Found

X:\>



Relevant Pages

  • Re: Using EFS with Network Shares and SFU 3.5
    ... Windows and *nix clients. ... Windows 2K3 SP1 file server that also has the NFS server component from ... when I access an encrypted file over a network share via Windows Explorer ... On my Windows XP client, I can access my home directory on the file ...
    (microsoft.public.windows.server.security)
  • Restructure Domain Plan:
    ... Our organization consists of a single domain running in Windows 2000 ... This DC is also our main file server. ... Exchange, only internal users utilize exchange. ...
    (microsoft.public.windows.server.migration)
  • Access Denied and NO OWNER SHOWN on Networked Drive
    ... Because my new system is the beefiest one with the most hard drive space, I use it as a file server only so much in that it stores applications, patches, game mods, updates, and so forth. ... I activated the "Owner" column in Windows Explorer on both my system and the client. ...
    (microsoft.public.windowsxp.help_and_support)
  • Re: Using EFS with Network Shares and SFU 3.5
    ... Windows and *nix clients. ... Windows 2K3 SP1 file server that also has the NFS server component from ... when I access an encrypted file over a network share via Windows Explorer ... On my Windows XP client, I can access my home directory on the file server ...
    (microsoft.public.windows.server.security)
  • Re: Outlook version
    ... If you mean what the are the ideal client requirements to get the most bang ... Exchange 2003 on Windows 2003 ... *must* be Windows XP or newer due to some RPC improvements. ... > I found some months ago) about the compatibilty of outlook, ...
    (microsoft.public.exchange.clients)