Sometimes it works sometimes it doesn't (VPN data issues)



I am running a windows2k3 SBS server behind a linksys firewall. I
have about three users that I would like to connect remotely using the
built in windows VPN. I have followed the recomended steps, made sure
the proper ports are opened, the server is configured correctly, and
everything seemed to be running perfectly.

Over the last few months, I've had numerous complaints about the
remote users having troubles connecting to our network. Aparently
they all can connect without an issue and work properly about 35% of
the time, but the rest, they time out waiting to verify user name and
password.

I figured this was a firewall issue blocking VPN data, but the problem
is that the firewall has been set to allow the proper ports open and
I've verified that it is indeed true (I"ve even switched firewalls,
but no luck).

The funny thing is that if I get the user to try and connect multiple
times as quick as possible by clicking cancel quickly after they see
the connection will stall and then starting the connection process
over, they can eventally connect in, but I"m sure this is exploiting
some bug as a potential security breach and either way, it is not an
efficient way to connect.

I also noticed that there are times when connected to the VPN that it
will timeout. What I mean is that the connection will still show as
active, but the data connection is effectively terminated and the
remote user is forced to disconnect and reconnect.

I have been playing around with this VPN problem at my house (with a
netgear router) and I"ve noticed that there are times I can connect
without an issue and other times it does not let me in, and about 1/2
the time I can't get in (even with the reconnect trick) I can unplug
my router at home, let it reset and then I can connect to the VPN.
While this is anoying, I have access to my router and can reset it,
but this same problem happens for users from hotels or other internet
connections where they don't have physical access to the router or its
settings.

I was under the impression that the intergrated VPN solution from MS
was a nice simple tool that was easily implimented. I have been very
pleased with it up until this point, but the data connection troubles
are getting to the point where I"m going to be forced to buy some
external VPN solution to make sure my users can always connect to our
business network.

Does anyone have an idea on what my problem is, I feel like my problem
is on the remote side, but it seems independant of all hardware/ISPs
so I"m thinking there must be some setting to change off the defaults
to allow the VPN to work without getting filtered on the remote side.

Your help is much appreciated.

Thanks,
Andrew

.



Relevant Pages

  • Re: Remote Access and ISA Server in SBS 2003?
    ... I am glad to hear the Remote Access Wizard is working fine now. ... there is no difference in VPN between SBS 4.5 and SBS ... Error Message: VPN Connection Error 800: Unable to Establish Connection ... the external NIC of the SBS Server. ...
    (microsoft.public.windows.server.sbs)
  • Re: Connecting a remote workstation to a domain
    ... If you have more than a couple of remote workstations connecting to the SBS ... server via VPN, you really need to consider a Terminal Server in the main ... "Log in using a dial up connection" checkbox, ... roaming profile then synchronizes with the server over the VPN); ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN Client
    ... Thanks for the help on losing the remote connection when you connect to VPN. ... Regarding the router port forward issue, you should point the port 1723 to ...
    (microsoft.public.windows.server.sbs)
  • Re: is sbs2003 setting up my clients firewall, greyed out
    ... You could look there and see if remote access is enabled and if the user ... configures the Windows Firewall appropriately. ... the client could not connect to the remote computer. ... basically log onto the vpn connection. ...
    (microsoft.public.windows.server.sbs)
  • Re: Outbound VPN connection & routing
    ... through VPN connection. ... You have to rerun the CEICW to make sure your SBS 2003 server have ... I suggest we try to manually create a VPN connection on the remote ...
    (microsoft.public.windows.server.sbs)