Re: Strange VPN problem (was: Two servers, one VPN)

From: Michael A. Covington (look_at_www.covingtoninnovations.com.for.address)
Date: 05/14/04


Date: Fri, 14 May 2004 10:30:54 -0400


"Pawan Agarwal (MSFT)" <pawana@online.microsoft.com> wrote in message
news:er$7ZFZOEHA.2704@TK2MSFTNGP10.phx.gbl...
> Can you let us know the topology? If the VPN server is not behind a NAT,
it
> requires 2 NICs. Otherwise, just a single NIC will do.

*ahhhh!* That may be it.

It is not behind a NAT. There are firewalls and switches at different
levels to keep out the riffraff, but every machine on this network is known
by its actual Internet address (128.192.something.something).

There is only one Ethernet card in the machine.

Am I right in suspecting I need two Ethernet cards, installed in the same
machine, even though both are connected to the same network? And then I'll
tell RRAS that one of them is the Internet and the other is the LAN. Right?

Will I need to add static routing information or will they already know what
they're doing?

> "Michael A. Covington" <look@www.covingtoninnovations.com.for.address>
wrote
> in message news:%23Kt4kkUOEHA.1644@TK2MSFTNGP09.phx.gbl...
> > Let me add another newsgroup and restate the whole problem from the top.
> >
> > We are on a departmental LAN in a university, which is part of the
> Internet.
> > No NAT.
> >
> > We had one Windows 2000 (later 2003) server, on which we enabled VPN in
> > order to allow users to get to their files from elsewhere on the
Internet.
> >
> > At the time, we didn't check (or care) that the VPN didn't enable people
> to
> > see the rest of the LAN.
> >
> > We have now added a second server and moved onto it some of the files
that
> > people need to access.
> >
> > When users connect to the VPN, they can get to Server 1 but not Server 2
> or
> > anything else on the LAN.
> >
> > Examples:
> >
> > net view server1
> > --- list of shared resources on server1 ---
> >
> > net view server2
> > network connection not found (or words to that effect)
> >
> > What do I need to change?
> >
> > I should add that server1 has only one network card in it. Am I going
to
> > have to add a second network card even though they're both going to be
> > connected to exactly the same network? Do I just need to add some
routing
> > or something?
> >
> > Apart from the VPN problem, server1 and server2 have no trouble
> > communicating with each other; they share a lot of things constantly.
> >
> > Any help would be welcome!
> >
> >
> >
> >
>
>



Relevant Pages

  • Re: Firewall Questions
    ... No firewall. ... > sketch their idea of what they saw as a new network plan. ... > They want this firewall to be in NAT mode where everything in the LAN ...
    (comp.security.firewalls)
  • Re: Strange VPN problem (was: Two servers, one VPN)
    ... If the VPN server is not behind a NAT, ... levels to keep out the riffraff, but every machine on this network is known ... tell RRAS that one of them is the Internet and the other is the LAN. ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: 56k dial up on laptop 802.11G ?
    ... are you now a believer that I can control outgoing traffic without ... >>the definition of a network firewall. ... > that NAT is a real firewall because it functions to protect the LAN ...
    (alt.internet.wireless)
  • Re: 3 Nics - Dual (Tripe) Homed Host
    ... >>LAN with access to the Internet. ... >it would have on the NAT from the 192.168.1.0/24 network. ... two machines on the 10.0.0.0 network that needed to access machines on the ...
    (freebsd-questions)
  • Re: XP Remote Desktop over VPN problem
    ... Since the LAN is behind a router there really is no need to use two NICs in the VPN server. ... In the above example the SQL server would be running on Norman. ... Here is an example based on the above example network. ...
    (microsoft.public.windowsxp.work_remotely)