SP1 breakes VPN RRAS Server

Tech-Archive recommends: Fix windows errors by optimizing your registry



Have a problem with a Windows 2003 VPN RRAS Server. RRAS is configured as
"VPN Remote Access Server only", allowing only IPSEC/L2TP inbound
connections and enabling the Basic Firewall (without NAT) on the public
interface.

The server works fine, until SP1 installation. After that, the VPN Server
doesn't accept inbound connections anymore. Have found that the problem is
releated to the Basic RRAS Firewall. When removing the public interface from
the "NAT/Basic Firewall" category, the VPN Server accepts inbound
connections. But when adding the public interface to the "NAT/Basic
firewall" category, the server doesn't accept inbound connections anymore,
even when adding inbound and outbound filter rules that allow connections
from any to any over any protocol, and enabling all ICMP protocol rules.
It's also not possible to ping the external interface from a external
client.

When removing the public interface from "NAT/Basic firewall", inbound
connections work fine. Inbound connections also work fine when removing SP1,
with enabled firewalled public interface. Have installed SP1 tcp/ip hotfix
898060, no success. It's not a problem particular to one machine, I was able
to reproduce the problem with two virtual machines on my Notebook.

Have also installed hotfix 897651, but no success, same problem.

Thanks all in advance for any help or advice
Franz



.



Relevant Pages

  • Re: VPN Problem
    ... connections(for testing purposes), is a member of the domain and had me ... information to the symantec enterprise vpn software, ... before I was able to access the server. ... > Network "browsing" requires a WINS server on the remote network that is ...
    (microsoft.public.windows.server.networking)
  • Re: VPN between office and Home
    ... Hard Drive as my second location backup for my SBS2003. ... On the XP box at home, go to Control Panel -> Network Connections. ... for my second location backup my main server files. ... That is why I want to get a VPN ternnel instead of client VPN or RWW. ...
    (microsoft.public.windows.server.sbs)
  • Re: Error: cant find _ldap._tcp.dc._msdc.
    ... domain over a VPN? ... The DNS server name as listed in the DNS manager is cda.cdaxxxx.org.uk ... VPN connection to the top of the connections list. ...
    (microsoft.public.windows.server.dns)
  • Re: Connect users from remote branch office to SBS
    ... If you do want to go the hardware VPN route, the easiest would be to join ... the servers at HQ first and then take them to the remote offices. ... The number of connections with RWW depend on how many CALs ... If i choose this option how do i attach the server at office one to ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN and LAN conflicts
    ... After connecting to the RRAS, the server should have PPTP IP information. ... Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net ... > connections, applying computer settings and applying your personal settings) ...
    (microsoft.public.win2000.ras_routing)