- Newest
- Most votes
- Most comments
You are on the right track analysing networking. Ensure that the subnet the image builder is in has a path to your domain controller and is able to do a DNS lookup, preferably on a domain controller. Security groups, routes and VPC DHCP Option Sets are all items to troubleshoot.
Thanks for your help.
The Image builder is in the same subnet as the domain controller.
I have created a DHCP Option Set and specified only the DNS server, which is the IP of the domain controller.
Now the Image Builder starts, but won't let me connect to it. It just hangs at "You are connecting as an administrator."
I do see the AppStream instance in Active Directory so we are making progress.
I have another image builder that is not using a Directory Config for Active Directory. When I do an NSLookup on the domain I get this:
DNS request timed out. timeout was 2 seconds. Server: UnKnown Address: <Domain Controller IP>
Non-authoritative answer: Name: <domain>.us-east-1.ec2-utilities.amazonaws.com Addresses: some IPs that aren't mine
I can ping the DC by its IP, but apparently DNS still isn't right.
Ok, I got it to work. I think the reason it was hanging up was Group Policy. I moved the OU to somewhere with fewer GPOs and it loaded.
The main thing that fixed my problem was creating the DHCP Option Set and specifying the EC2 domain controller as DNS server, etc.
Thanks!
Relevant content
- asked 4 years ago
- asked 10 months ago
