Re: Unable to ping VPN Client

Tech-Archive recommends: Fix windows errors by optimizing your registry



I have the same issue.
It appears to only be with XPSP2 clients.

I have to do more research, but my guess is that if they start their PC off Domain, they run the standard Firewall GPO, not the Domain Firewall GPO.
Starting the VPN does not reset the Firewall to the Domain Profile. (and if it did, I would hope it switches back to Standard when the VPN is terminated)

If that is the case, then I would have to open RDP, ping, SMS tools, etc in the Standard Firewall GPO; which would basically open up the machines when offsite.

Hopefully, they add a patch to the XP firewall that will have it recheck Domain connectivity whenever a VPN is started or stopped and change Profiles accordingly.



--
--
Steven

May you have the peace and freedom that come from abandoning all hope of having a better past.
--- - --- - - - - - - - -- - - - --- - ------ - - --- - - -- - - - -- - - -
"Neta Amit" <namit@xxxxxxxxxxxxx> wrote in message news:%23S%230xiIMGHA.3944@xxxxxxxxxxxxxxxxxxxxxxx
Hi,

Your scenario should work just fine.

Did you set up rules to allow traffic between the VPN network and the LAN / LocalHost?

Regards,

--Neta

Neta Amit
PM - Microsoft ISA Server

=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.





"ssor" <ssor@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:9D1E7B54-BA5A-47AC-892E-1B8E3DE438C5@xxxxxxxxxxxxxxxx
> Hi,
>
>
>
> I have an ISA 2004 SP2 on a Windows 2003. When the VPN client connected, it
> has an IP address and from my ISA server or any host on my Lan I cannot ping
> that VPN client's IP address or RDP to it, can anyone please help?
>
>
> Thanks
>
> SSOR
>