RDS 2012 R2: Broker HA round-robin-name fails

remote desktopwindows-server-2012windows-server-2012-r2

I have these servers…

Name : DC1
Roles: PDC, File/Print, RD License, SQL 2012

Name : DC2 
Roles: BDC, RD Webaccess

Name : SVRDS1
Roles: RD Broker (primary), RD Host session

Name : SVRDS2
Roles: RD Broker, RD Host session

Name : SVRDS3
Roles: RD Broker, RD Host session, RD Gateway

I've set up a round-robin dns (called rd.mycompany.local) for the SVRDS1, SVRDS2 and SVRDS3.

This round-robin name is set up in broker HA round-robin name.

If I log on externally via webaccess (I see that the round-robin name is used as address), I get an error … "An authentication error has occurred (Code: 0x607)".

If I change the round-robin name in the broker HA to SVRDS1.mycompany.local, then I log on perfectly fine.

If I change the round-robin name in the broker HA to SVRDS2.mycompany.local or SVRDS3.mycompany.com, then I get the error again … "An authentication error has occurred (Code: 0x607)".

I'm lost to where to start to look.

Why is it only one of my rd hosts that works with the round-robin dns name?

Why doesn't it work with the round-robin dns name rd.mycompany.com?

Thanks.

Best Answer

Problem solved by calling MS.

They changed CAP and RAP to default values and lowered the security on collection to low.

Furthermore I found out it's only possible to use collection by using webaccess. I thought I could use Remote Desktop App and the broker address as "Computer Address", but that's not possible.