Re: Multihomed server 2000
- From: "Ace Fekay [MVP]" <PleaseAskMe@xxxxxxxxxxxxxx>
- Date: Thu, 30 Mar 2006 06:35:00 -0500
In news:OdBLBL3UGHA.4436@xxxxxxxxxxxxxxxxxxxx,
DPM <dm@xxxxxxxx> stated, which I commented on below:
I finally resolved this by enabling tracing and pouring over the
logs. Even though I used Windows authentication, I expected the RRAS
server to use the local user list, but because the server is a domain
member it went back to the DC for authentication, and the user there
did not have dialin permission. Why that got reported as an
authentication timeout only Microsoft knows, I guess.
ISA reported it as such because it couldn't authenticate the user account,
however, if you look in the security Event logs, you should see the failure
attempt.
Last item, if you're still reading: I set the RRAS server to assign
IPs from a static pool (192.168.100.x). I added a static route
(0.0.0.0/0.0.0.0) to the VPN NIC, and now I can get to the internet
through the VPN. But I can't get to other computers in the
192.168.0.x net, other than the server itself (192.168.0.5) and the
default gateway (192.168.0.1). I can ping these, but no others.
Also, with the VPN established I can ping 192.168.200.200 (the client
NIC) but not the assigned VPN address (192.168.100.103, say).
I think you mean you cannot use the single NetBIOS name to ping or connect
to. Try connecting via FQDN. If you can do that, then it appears you'll need
WINS to provide NetBIOS name resolution across subnets, which is not
possible by default.
I think I don't clearly understand how packets get routed: if my LAN
is 192.168.0.x, my VPN adapter 192.168.200.x and the VPN address
192.168.100.x, how do I set the routes so that a client attached
through the VPN can see all the resources on the LAN net?
WINS, if you mean by NetBIOS names.
Thanks for bearing with me on this journey.
Regards,
Dean
No problem, Dean.
Ace
.
- Follow-Ups:
- Re: Multihomed server 2000
- From: DPM
- Re: Multihomed server 2000
- References:
- Multihomed server 2000
- From: DPM
- Re: Multihomed server 2000
- From: Robert L [MS-MVP]
- Re: Multihomed server 2000
- From: Bill Grant
- Re: Multihomed server 2000
- From: DPM
- Re: Multihomed server 2000
- From: Ace Fekay [MVP]
- Re: Multihomed server 2000
- From: DPM
- Re: Multihomed server 2000
- From: DPM
- Multihomed server 2000
- Prev by Date: transfer data to remote sql db ?
- Next by Date: Re: Browsing Server 2003 redirected folders with XP is slow!!!
- Previous by thread: Re: Multihomed server 2000
- Next by thread: Re: Multihomed server 2000
- Index(es):
Relevant Pages
|