We have 2 rdp servers running win 2019 n 2022. We have have multiple clients running at multiple sites that connect. We are having an intermittent problem, where we can’t ping the server from client, so if site has 3 clients, 2 out of 3 stops working. We did a traceroute from server, and for the 2 faulty devices we get * * *. But the one host it’s ok. If we change 1 endpoint ip., we get access back. Already disabled fw, av etc
We did a wireshark capture and found that the windows server would not go through the persistent route setting, but rather the default gw, which is the firewall. The firewall would reject the packet as it does not see the initial flow, (normal behavior). Why is windows sending traffic to the default gw, when the persistant route path is up?