Re: PPTP Site-to-Site VPN problem



Sergio,
Ok I think it is a routing problem.
use tracert -d to the remote server and workstations and see where it fails.
Could you post the results?
I assume that both servers are multi-homed servers. (2 NICs)

"Sergio Ricci" wrote:

> Yes. Deafult g/w points to the the internal NIC of the RRAS server.
>
> One thing I didn't mention if that both servers are DC's.
>
> Thanks for replying.
> Sergio
>
> "Wendel Hamilton" <WendelHamilton@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in
> message news:0F15E7AE-11C1-4B7A-8476-5A85144B857D@xxxxxxxxxxxxxxxx
> > Sergio,
> > Does your clients default gateway point to your RRAS servers?
> >
> >
> > "Sergio Ricci" wrote:
> >
> >> Hi,
> >>
> >> I've setup (or tired to) a site to site VPN using RRAS in Windows 2003
> >> SP1
> >> but have a few issues that I hope you may be able to help me resolve:
> >>
> >> Subnet 192.168.30.0/24<------------------------------------------>Subnet
> >> 192.168.31.0/24
> >>
> >> ClientsA-------Server1----Router1--------Internet--------Router2---Server2-----ClientsB
> >>
> >> I have setup demand dial connections on both servers (windows 2003+SP1)
> >> and
> >> they appear to work OK. Note that there are demand dial connections on
> >> both
> >> servers pointing to the other server. The servers can ping each other.
> >> The
> >> clients can ping the servers on their subnets but cannot ping any host on
> >> the other subnet.
> >>
> >> All this has led me to think (from other posts I have read) that there
> >> may
> >> be an issue with the user account and demand dial interface name but I
> >> believe I have go them correct.
> >>
> >> Essentially I would like clients on one subnet to be able to
> >> transparently
> >> access and connect to servers/clients/hosts on the other subnet.
> >>
> >> I'm probably missing something quite obvious but at this moment just
> >> can't
> >> see what it is.
> >>
> >> Some other bit's of info that you may need: when I originally configured
> >> RRAS on both servers I did a custom configuration and selected: NAT,
> >> Demand
> >> Dial, Firewall, LAN Routing (from memory). All clients have internet
> >> access.
> >>
> >> If you require any further info, please let me know.
> >>
> >> Thanks in advance for any help/pointers.
> >>
> >> Kind regards,
> >> Sergio
> >>
> >>
> >>
>
>
>
.



Relevant Pages

  • Re: PPTP Site-to-Site VPN problem
    ... > Sergio Ricci wrote: ... >> (hence why I pointed out several times that the servers had SP1 ... > be relevant at all but have a look at the hotfix and related article to ...
    (microsoft.public.windows.server.networking)
  • Re: using wmi trough the firewalls
    ... "Sergio" wrote in message ... > I want to connect to wmi interface of some server of my WAN. ... > This servers stand on an private network behind a cisco-pix firewall. ...
    (microsoft.public.win32.programmer.wmi)
  • Re: Help with setting up Sites.
    ... Site A - respresenting physical site B ... servers is increasing by the day. ... Do you have any DCs at SiteB? ... clients servers in the relevant sites to authenticate against them. ...
    (microsoft.public.windows.server.active_directory)
  • Re: adding machine to domain with NATed IPs
    ... sounds that the DCs are not reaching the>> clients ... can the servers pint the clients by IP and Name? ... we specified these IPs as DNS server within ...
    (microsoft.public.windows.server.active_directory)
  • Re: Computer Browsing Service - anyone want to contribute for a good conversation?
    ... Do you have all client machines and servers ... Browse lists are built and exchanged by the computer browser service. ... It doesn't matter which subnet your clients are in. ... The most common cause of master browser failures is multihomed ...
    (microsoft.public.windows.server.networking)