19603 - VPN Client Doesn't Show Domain Prefix At Bottom Anymore?

%3CLINGO-SUB%20id%3D%22lingo-sub-1301704%22%20slang%3D%22en-US%22%3E19603%20-%20VPN%20Client%20Doesn't%20Show%20Domain%20Prefix%20At%20Bottom%20Anymore%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1301704%22%20slang%3D%22en-US%22%3E%3CP%3EI%20brought%20this%20up%20in%20another%20post%2C%20but%20I%20figured%20I%20would%20mention%20it%20here.%3CBR%20%2F%3E%3CBR%20%2F%3EStarting%20a%20couple%20of%20fast%20ring%20updates%20ago%20and%20continuing%20with%2019603%2C%20I%20have%20noticed%20that%20the%20VPN%20client%20no%20longer%20shows%20domain%20names%20when%20you%20enter%20them%20in%20as%20your%20LDAP%20name%3A%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22CredentialUIBroker_LUrb570ft7.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F183844i90919EE607641DE3%2Fimage-size%2Fmedium%3Fv%3D1.0%26amp%3Bpx%3D400%22%20title%3D%22CredentialUIBroker_LUrb570ft7.png%22%20alt%3D%22CredentialUIBroker_LUrb570ft7.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CBR%20%2F%3E%3CBR%20%2F%3EHowever%2C%20in%201909%2C%20the%20domain%20prefix%20does%20show%3A%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22CredentialUIBroker_fAxb6XIHmn.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F183845iAA436C343C9B0D5C%2Fimage-size%2Fmedium%3Fv%3D1.0%26amp%3Bpx%3D400%22%20title%3D%22CredentialUIBroker_fAxb6XIHmn.png%22%20alt%3D%22CredentialUIBroker_fAxb6XIHmn.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CBR%20%2F%3E%3CBR%20%2F%3ESince%20the%20behavior%20with%2019603%20has%20started%2C%20I%20have%20been%20noticing%20that%20when%20connecting%20to%20a%20domain%20using%20LDAP%20credentials%20that%20I%20have%20to%20now%20enter%20the%20full%20TERMSRV%20name%20for%20a%20machine%20instead%20of%20just%20its%20regular%20name%20(I.E.%20MyComputer.MyDomain%20instead%20of%20MyComputer).%20This%20leads%20me%20to%20believe%20that%20the%20domain%20name%20is%20no%20longer%20being%20used%20in%20the%20VPN%20connection%20%2F%20client.%3CBR%20%2F%3E%3CBR%20%2F%3EIs%20this%20something%20that%20we%20can%20be%20assured%20won't%20make%20it%20into%2020h1%3F%20Where%20I%20work%2C%20we%20have%20a%20LOT%20of%20users%20who%20are%20remote%20and%20use%20VPN%20(especially%20right%20now%20with%20COVID)%20and%20they%20are%20not%20going%20to%20understand%20what%20is%20going%20on%3B%20in%20addition%2C%20I%20am%20concerned%20that%20any%20software%20we%20have%20that%20uses%20LDAP%20authentication%20may%20get%20broken.%26nbsp%3B%3C%2FP%3E%3CP%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1317418%22%20slang%3D%22en-US%22%3ERe%3A%2019603%20-%20VPN%20Client%20Doesn't%20Show%20Domain%20Prefix%20At%20Bottom%20Anymore%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1317418%22%20slang%3D%22en-US%22%3E%3CP%3EUpgraded%20to%2019608%20last%20night%2C%20this%20problem%20still%20is%20present.%3CBR%20%2F%3E%3CBR%20%2F%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F320291%22%20target%3D%22_blank%22%3E%40RedBeta%3C%2FA%3E%26nbsp%3B%3CBR%20%2F%3E%3CBR%20%2F%3EAre%20you%20still%20having%20this%20problem%20as%20well%3F%26nbsp%3B%3CBR%20%2F%3E%3CBR%20%2F%3EI%20noticed%20that%20it%20is%20also%20affecting%20RasPhone%3B%20if%20I%20use%20that%20to%20start%20a%20VPN%20connection%2C%20I%20still%20have%20to%20provide%20the%20full%20DNS%20name%20of%20a%20network%20machine%20in%20order%20to%20reach%20it%20(I.E.%20MachineName.DomainName%20instead%20of%20just%20MachineName).%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1318494%22%20slang%3D%22en-US%22%3ERe%3A%2019603%20-%20VPN%20Client%20Doesn't%20Show%20Domain%20Prefix%20At%20Bottom%20Anymore%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1318494%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F452725%22%20target%3D%22_blank%22%3E%40StephenWhiteD3G%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EYes%20issue%20is%20still%20present%20in%2019608%20and%20I%20made%20sure%20that%20all%20the%20components%20of%20name%20resolution%20are%20proper.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20have%20veeam%20backups%20%2F%20remote%20desktop%20%2F%20WSD%20Samba%20file%20shares%20that%20all%20used%20to%20work%20with%20past%20builds%2C%20still%20work%20with%20non%20insider%20builds%20that%20require%20raw%20IPs%20or%20hosts%20file%20entries%20to%20work%20with%20the%20latest%20builds%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1318825%22%20slang%3D%22en-US%22%3ERe%3A%2019603%20-%20VPN%20Client%20Doesn't%20Show%20Domain%20Prefix%20At%20Bottom%20Anymore%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1318825%22%20slang%3D%22en-US%22%3E%3CP%3EThis%20is%20troubling.%20I%20am%20almost%20certain%20then%20this%20problem%20is%20going%20to%20have%20a%20wide%20effect%20on%20particular%20types%20of%20DNS%20resolution%20when%2020h1%20goes%20live%20if%20this%20doesn't%20get%20fixed.%3CBR%20%2F%3E%3CBR%20%2F%3EHave%20you%20been%20able%20to%20find%20any%20work%20arounds%20for%20this%20on%20the%20machine%20running%20the%20fast%20ring%20build%3F%3CBR%20%2F%3E%3CBR%20%2F%3EAlso%20on%20a%20side%20note%20-%20I%20tested%20this%20on%20the%20DNS%20server%20we%20have%20for%20my%20company%20and%20the%20DNS%20server%20isn't%20even%20receiving%20any%20requests%20from%20my%2019608%20machine%20when%20I%20try%20to%20access%20a%20resource%20by%20machine%20name.%20It's%20like%20the%20fast%20ring%20Windows%20is%20doing%20something%20weird%20and%20the%20request%20is%20bad%20and%20dropping%20before%20it%20can%20make%20it%20to%20the%20DNS%20server.%3C%2FP%3E%3C%2FLINGO-BODY%3E
Contributor

I brought this up in another post, but I figured I would mention it here.

Starting a couple of fast ring updates ago and continuing with 19603, I have noticed that the VPN client no longer shows domain names when you enter them in as your LDAP name:

CredentialUIBroker_LUrb570ft7.png



However, in 1909, the domain prefix does show:

CredentialUIBroker_fAxb6XIHmn.png



Since the behavior with 19603 has started, I have been noticing that when connecting to a domain using LDAP credentials and then using RDP, I have to now enter the full TERMSRV name for a machine instead of just its regular name (I.E. MyComputer.MyDomain instead of MyComputer). This leads me to believe that the domain name is no longer being used in the VPN connection / client.

Is this something that we can be assured won't make it into 20h1? Where I work, we have a LOT of users who are remote and use VPN (especially right now with COVID) and they are not going to understand what is going on; in addition, I am concerned that any software we have that uses LDAP authentication may get broken. 



3 Replies

Upgraded to 19608 last night, this problem still is present.

@RedBeta 

Are you still having this problem as well? 

I noticed that it is also affecting RasPhone; if I use that to start a VPN connection, I still have to provide the full DNS name of a network machine in order to reach it (I.E. MachineName.DomainName instead of just MachineName). 

@StephenWhiteD3G 

 

Yes issue is still present in 19608 and I made sure that all the components of name resolution are proper.

 

I have veeam backups / remote desktop / WSD Samba file shares that all used to work with past builds, still work with non insider builds that require raw IPs or hosts file entries to work with the latest builds

This is troubling. I am almost certain then this problem is going to have a wide effect on particular types of DNS resolution when 20h1 goes live if this doesn't get fixed.

Have you been able to find any work arounds for this on the machine running the fast ring build?

Also on a side note - I tested this on the DNS server we have for my company and the DNS server isn't even receiving any requests from my 19608 machine when I try to access a resource by machine name. It's like the fast ring Windows is doing something weird and the request is bad and dropping before it can make it to the DNS server.