Re: VPN Tunnel Connects,can't access resources

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Why do you have two NICs in the DC? (Multihoming a DC is bad
practice and is not recommended. It causes all sorts of odd problems). Why
are the machines at site A using the server as their default gateway? Why
are they not using the Linksys? How do machines at site A access the
Internet?


I have not used the Linksys RV042 but I didn't think it was capable of
site to site VPN. If it is not, each client at site B will be setting up a
unique tunnel to the router at site A. If that is the case, it doesn't
matter what IP addressing you use at site B (as long as it is not identical
to the LAN machines at Site A). Each client will get an IP which matches the
LAN addresss at site A for its "virtual" connection. It will use this
address for communicating with the devices at site A. That is what VPN does.
The client is "virtually" on the remote LAN.

Trying to join remote clients to a domain can be a problem. You should
be able to share files if the user has logged on with a username and
password which matches an AD account. (I am talking about the original logon
to the machine, not the username entered to set up the VPN)You will probably
need to make your workgroup name the same as the Netbios name of your domain
for this to work. Then the user's workgroup/username/password sequence will
exactly match the domain/username/password of the account in AD.

<compsosinc@xxxxxxxxx> wrote in message
news:1172204219.581068.150840@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Using (2) Linksys RV042s in Gateway-to-Gateway VPN -Site A & Site B.
Each site has a Static IP from ISP. I have established the VPN tunnel,
however cannot connect to shared resource to/from either location and
I think it is related to a networking/subnet issue.We only need to
access a shared folder on our Server At Site A that has 10.10.10.150
as Internal NIC IP.

SITE A NETWORK: is a Win2K3 Domain running Active Directory with a
server that has (2) Network adapters. The NICS are setup like this:

Internal NIC:
IP=10.10.10.150
SN=255.255.255.0
GW=empty
DNS1=10.10.10.150

External NIC:
IP= 192.168.16.1
sn=255.255.255.0
GW=192.168.16.254 (this is the LAN IP of the RV042 Router at Site A)
DNS=10.10.10.150

The workstations on this domain use static IPs on LAN:
IP: 10.10.10.xxx
DG: 10.10.10.150
DNS 10.10.10.150

RV042- SITE A -SETUP:

Local Group Setup:
IP Only
Static IP from ISP
Local Security Group Type: Subnet
IP: 10.10.10.0
SN: 255.255.255.0

Remote Group Setup:
IP Only
IP Addr: Static IP for remote site
RS Group Type: Subnet
IP: 192.168.1.0
SN: 255.255.255.0

IPSEC setup matches router at Site B as follows:

Preshared key/3DES/SHA1/14400 PFS checked; Phase 2 same as Phase 1.

SITE B NETWORK:

Windows XP PCs on peer-to-peer in a worksgroup. The RV042 here is
running DHCP.
The LAN IP of the Router is: 192.168.1.1. The workstations get
192.168.1.xxx addresses.

While at Site B, I can ping & remotely administer the router at Site
A.

While at Site B, I cannot connect to \\10.10.10.150\sharedfolder. I
tried adding username from SiteB to the SiteA domain, and tried the
"Connect as User" method.

Any ideas? Should we change the SiteB network to 10.10.10.xxx based or
192.168.16.xxx-based?



.



Relevant Pages

  • Re: Installing multiple SBS VPN clients
    ... please check the Local area network routing only. ... reachable from the remote access server. ... Check to ensure the SBS Server is using a static IP address on its LAN ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • Re: Incorrect NIC Status reporting
    ... seems to me the Auto of Speed & Duplex doesn't work on some NICs. ... How to Setup Windows, Network, VPN & Remote Access on ... an Asus P4C800-E Deluxe which has an on-board LAN ... and "A network connection is unplugged". ...
    (microsoft.public.windowsxp.network_web)
  • Re: How Can I Allow Access From The Internet to Only Selected Users?
    ... big the lan is. ... for some users on my network for years. ... When the systems box opens,click the tab that says remote. ... "select remote users" and enter in th administrators group. ...
    (microsoft.public.windows.terminal_services)
  • Re: DNS Server Name
    ... one thing I see is that you have your WAN and LAN NICs on the same IP ... Then, in the network properties of the WAN NIC, change its IP ... server 'Default SMTP Virtual Server' on server ie2 does not match the DNS ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote Access Sluggish
    ... In network properties this nic is called "Server Local Area Connection" and ... Remote acces is sluggish using RDP and RWW ... whether both NICs were enabled during SBS setup and therefore the SBS ...
    (microsoft.public.windows.server.sbs)