Re: UDP communication with vpn client

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



We need to know more than the fact that it uses UDP.

You need to create a custom Protocol for the traffic in ISA.

Then create an Access Rule similar to this:

From: Internal, VPN Clients
To: Internal, VPN Clients
Protocol: <the protocol you created>
Users: All Users <or use specific users>

I am assuming this is a Remote Access VPN and not the Site-to-Site VPN. The
two are not that same thing.


--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------
Understanding the ISA 2004 Access Rule Processing
http://www.isaserver.org/articles/ISA2004_AccessRules.html

Troubleshooting Client Authentication on Access Rules in ISA Server 2004
http://download.microsoft.com/download/9/1/8/918ed2d3-71d0-40ed-8e6d-fd6eeb6cfa07/ts_rules.doc

Microsoft Internet Security & Acceleration Server: Partners
http://www.microsoft.com/isaserver/partners/default.asp

Microsoft ISA Server Partners: Partner Hardware Solutions
http://www.microsoft.com/forefront/edgesecurity/partners/hardwarepartners.mspx
-----------------------------------------------------

"David" <David@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:3C968233-D921-4823-9966-A415CF44AA5B@xxxxxxxxxxxxxxxx
Hello,

I posted a question on the "microsoft.public.win32.programmer.networks"
news
group.

http://msdn.microsoft.com/newsgroups/default.aspx?&lang=en&cr=US&guid=&sloc=en-us&dg=microsoft.public.win32.programmer.networks&p=1&tid=0bc088b4-ed6c-4c76-bc41-88d553b4db67

Not wanting to double post, the above link is to my original post. I was
unaware of this site before and believe I should have post here instead.

The basics of my problem are that I have an application that uses
connectionless UDP communication to communicate with other instances on a
LAN. I am attempting to use this application where one side is on a
computer
connected to a LAN via a VPN connection.

UDP packets sent by the VPN client are successfully received by an
instance
of the application on the LAN, but when the instance existing on the LAN
sends a UDP packet to the instance running on the VPN client machine, the
packet fails to make it.

The (ISA 2006) VPN server is set up using VPN and NAT configuration.

Can someone please advice on how to correct this problem? It seems that
the
VPN server is not properly advertising the remotes IP Address to the
switches
on the LAN, or some variation of this.

--
Best Regards.


.



Relevant Pages

  • Re: general question on design options
    ... Behind that I have my ISA, ... How do you get the VPN connections that terminate on the Cisco to get past ... DMZ and not the LAN. ...
    (microsoft.public.isa)
  • Re: Require Help In Setting a network Configuration over VPN.
    ... The VPN boxes have to go *beside* the ISA's,...not one behind the other. ... Then you have to choose what you want to act as the LAN Router for each LAN ... If the LAN Router is the ISA: ...
    (microsoft.public.isaserver)
  • ISA2006: RDP wird weg gefiltert bei Routing
    ... Bisher war mein ISA2006 Std., LAN IP 10.10.0.1/16, der zentrale VPN Tunnel ... Hardware Router im Einsatz von Lancom Business R800+, ... Am ISA habe ich diesen entfernten VPN Standort ...
    (microsoft.public.de.german.isaserver)
  • Re: Wo sollte ein VPN terminieren werden?
    ... eine 'lebhafte' Diskussion mit einem Kollegen wo ein VPN enden sollte. ... ein VPN niemals am LAN enden sollte. ... Server, direkt am ISA oder in der DMZ, damit ISA den Content filtern kann. ... Der Paketfilter von Linux ...
    (microsoft.public.de.german.isaserver)
  • Re: VPN mit ISA2000
    ... Für die VPN Verbindungen brauchst du folgende Ports: ... 500 UDP für L2TP ... [MVP ISA Server] ...
    (microsoft.public.de.german.isaserver)