Re: adding a route to the client

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



"jogdial" <jogdial@xxxxxxxxx> wrote in message
news:f3f1b392-9998-4d9b-828b-710f0be48982@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
As stated before, if I add a net route statement to my client, using
the clients PPP DHCP assigned address that is obtained during the VPN
negotiation, I can talk to these additional segments fine. I was just
trying to find a way of automating this.

Sorry, I do not think there is any other way.
You're just going to have to do it the way you are doing it.
If you are going to leave the VPN up and try to do other things on the LAN
as well,...then you are stuck doing it this way.

I'm just telling you that according to the way Remote Access VPN is designed
to work,...the correct way is to:
1. enable "use gateway on remote network"
2. do not leave the VPN up for long periods of time, but only activate it,
perform the related taks and shut it down.
3. do not try to do tasks involving other subnets on the local LAN/WAN at
the same time the VPN is up.

7. Because the 152.x.x.x network is not a valid RFC Private Address Range

I take exception with what you are saying there. If you own an
address space, you can do whatever you like with it..

I said if they didn't own it....
If they own it,..then fine.

99.99% of the time when people quote non-RFC Private Addesses in these
groups they do not own them and are arbitrarily trying to use them on their
private LANs. So I operate on that assumption and tell them about the
problems with it. If they tell me afterwards that they do own them, then
fine,...but it is still a bad idea security-wise using Internet Routable
Addresses on a private LAN and it is waistfull with the limited supply of
Public IP#s that exist.


--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------
Understanding the ISA 2004 Access Rule Processing
http://www.isaserver.org/articles/ISA2004_AccessRules.html

Troubleshooting Client Authentication on Access Rules in ISA Server 2004
http://download.microsoft.com/download/9/1/8/918ed2d3-71d0-40ed-8e6d-fd6eeb6cfa07/ts_rules.doc

Microsoft Internet Security & Acceleration Server: Partners
http://www.microsoft.com/isaserver/partners/default.mspx

Microsoft ISA Server Partners: Partner Hardware Solutions
http://www.microsoft.com/forefront/edgesecurity/partners/hardwarepartners.mspx
-----------------------------------------------------


.



Relevant Pages

  • Re: View entire network via vpn
    ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ... on the VPN as I was able to on XP without doing RDC. ...
    (microsoft.public.isa.configuration)
  • Re: Natting external IP Address
    ... The other option is to stop using the VPN Applicant to restrict Internet ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ... Nortel VPN Client that block access to internet website and permit ONLY ...
    (microsoft.public.isa)
  • September 22 Chat: ISA Server 2004 Enabling Remote Client (VPN) Access
    ... With ISA Server 2004 Standard Edition, ... control how these VPN clients access the corporate network. ... This alias is for newsgroup purposes only. ...
    (microsoft.public.de.german.isaserver)
  • Re: View entire network via vpn
    ... Just don't use Network Browsing. ... connecting the every single machine on the LAN over VPN, ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa.configuration)
  • Re: View entire network via vpn
    ... Just don't use Network Browsing. ... connecting the every single machine on the LAN over VPN, ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa.configuration)