Re: weird gateway to gateway vpn issue

From: Bruno GUERPILLON (spam_at_gerpion.com)
Date: 08/27/04


Date: Fri, 27 Aug 2004 14:47:09 +0200

David P wrote:
|| bruno,
||
|| each site has their own internal DNS and DHCP server. Each client at
|| each site is configured to connect to the local site ISA server.
||
|| As stated, works fine if the vpn link is broken. but then the vpn
|| link is automatically re-established and then the other site can no
|| longer connect to Web pages.

Any info in the event viewer ?

|| "Bruno GUERPILLON" <spam@gerpion.com> wrote in message
|| news:OgyuOtCjEHA.644@tk2msftngp13.phx.gbl...
||| David P wrote:
||||| Bruno,
|||||
||||| The only protocol rules I have on server A on site A is for HTTP
||||| allow. ( FTP, FTP Download Only,Gopher, HTTP,HTTPS) and a real
||||| player rule (PNM client, PNM Server, RTSP,RTSPServer) and I have
||||| the same for server B on site B.
|||||
||||| I can get out to web sites only from one site, If i want to get to
||||| web sites from site B I have to disconnect the gateway to gateway
||||| VPN. Once disconnected the VPN re-establishes itself and users on
||||| site B can get out to the internet but users on site A then
||||| cannot !
|||||
|||
||| Weird is the exact word.
||| Does both site got a DNS for internet name resolution ?
||| Does clients configured to only use their ISA ?
||| Is there any DHCP on the sites ?
|||
||| Bruno
|||
|||||
||||| "Bruno GUERPILLON" <spam@gerpion.com> wrote in message
||||| news:OFVPGsAjEHA.1048@tk2msftngp13.phx.gbl...
||||||
|||||| "David P" <dp@cways.co.uk> a écrit dans le message de
|||||| news:uA7gc33iEHA.3712@TK2MSFTNGP15.phx.gbl...
||||||| I have a weird issue.
|||||||
||||||| Scenario is single Windows 2003 domain with 2 sites. each site
||||||| has a domain controller that connects over the internet through
||||||| RRAS dial on demand gateway to gateway vpn links. Both sites
||||||| are part of the same windows 2003
||||||| domain and replication works fine between remote and hub domain
||||||| controllers.
|||||||
||||||| Each VPN gateway at each site is running ISA 2000 SP2.
|||||||
||||||| The vpn's work fine and I can access resources on the remote
||||||| sites. The issue I am having is that only one site can connect
||||||| to the internet through their local ISA server at any one time.
|||||||
||||||| If I am on site A and the gateway to gateway is up only site B
||||||| can connect
||||||| to the internet through ISA. If I disconnect the VPN gateway on
||||||| site A. site A can then connect to the internet through ISA but
||||||| site B then cannot connect to the internet through ISA and so on
||||||| !!!!! The gateway to gateway
||||||| vpn is a persistent connection too.
|||||||
||||||| I can resolve web sites to IP address's on the local ISA
||||||| server's no problem at all times.
|||||||
||||||| What am I doing wrong ??? I have to implement another 2
||||||| additional sites next week so would like this bottomed.
|||||||
||||||| Thanks in anticipation
|||||||
|||||||
||||||
|||||| Hi David
||||||
|||||| How are defined your protocols rules on each ISA ?
||||||
|||||| Regards
||||||
|||||| Bruno GUERPILLON



Relevant Pages

  • Re: The Web site cannot be found - errors
    ... problems connecting with the internet. ... Internet Connection Wizard from the server. ... > files and ISA cache on all ...
    (microsoft.public.windows.server.sbs)
  • RE: Internet Usage Reports
    ... There is no other application on the SBS server box that can monitor ... internet activities as your needs rather than ISA server. ... Microsoft Internet Security and Acceleration Server 2004 is the ... Microsoft is providing this information as a convenience to you. ...
    (microsoft.public.windows.server.sbs)
  • RE: ISA 2004 Rules
    ... internet website from the ISA server itself. ... All Users or SBS Internet Users ... Then can you access this problematic page from the workstation side this ...
    (microsoft.public.windows.server.sbs)
  • Re: Connect the SBS to a remote IIS for Internet Printing
    ... the server can access the Internet with no problems at all. ... Checking network connection, and after a few seconds it says The ... the problem is cause by the configuration of ISA. ...
    (microsoft.public.windows.server.sbs)
  • Re: Internet slow after SBS 2003 SP1 install
    ... you may found the root cause since DNS server is response to name ... resolution and help find destination site when you access internet. ... Microsoft CSS Online Newsgroup Support ... >> To enable ISA log: ...
    (microsoft.public.windows.server.sbs)