Re: VPN bi-directional access



Philip,

Thanks for this. It is the conclusion I came to too. XP cannot do
this, so I have 2 obvious options:

1) Run the process to which the connection is attempted on Server 2003
(ISA?), and use this to establish a site-site VPN.

2) Buy a VPN router and connect the XP machine to it. The router can
establish the site-site VPN, and then the XP client is just running on
its own LAN. The tunnelling will be done by the local and remote
routers. XP is not involved in establishing the VPN. It talks only over
a physical adapter and so will accept inbound connections.

What do you think?

Thanks for the ISA links. I'll give these a read.

.



Relevant Pages

  • Re: NAT is not a mechanism for securing a network.. but.. HELP!
    ... > If it does NAT/masquerading, a DoS attack is very easy from inside. ... have to pass from the router first somehow. ... inbound connections so one could slip in? ...
    (comp.security.firewalls)
  • Re: a new sendmail question
    ... server, and send the message through the ISP's SMTP server. ... Unless you provide your own internal DNS service so that the name resolves internally to the private address of the host you want to accept email, you will try to deliver it to the outside interface of the router. ... Even if the router is configured to forward inbound connections from the external interface to the receiving host, most routers won't do this if the connection originates on the internal interface. ...
    (Fedora)