Need help with ipsec policy

Tech-Archive recommends: Fix windows errors by optimizing your registry



We are trying to setup an IPSec tunnel from one office to another as a VPN
tunnel using a Win2003 server on one side and a Cisco Router on the other..
We have followed the instructions from kb article:
http://support.microsoft.com/kb/816514/en-us#255 but we can't seem to get it
to work.

The office with the Cisco router insists their setup is correct and they
have done IPSec tunnels before. I'm inclined to believe him. To test our
setup we setup another Win2003 server at one of our satellite offices and
tried to get them to build a tunnel. Both machines were setup using the
above instructions. It seems to me that when we try to ping a netB private
IP from netA that the Windows server does not know how to route the packets.
We setup a route in RRAS on netA for the private netB subnet to go out
through the outside facing NIC with the external NIC address of netB's
server as the gateway. Now I know this is not a valid gateway as it is not
on our gateway's external subnet, but that's what the directions say to do
and I thought maybe there was some magic in the IPSec policy that made this
work.

What am I missing?

Any help would be GREATLY appreciated,
Jim


.



Relevant Pages

  • Re: How to configure for Two different IP subnets
    ... Active Directory will go haywire in a setup like that. ... AD integrates with the local DNS, so you cannot use the DNS at your ISP ... With Server 2003 Standard ... for its internal interface (ie the VPN endpoint). ...
    (microsoft.public.windows.server.networking)
  • Re: Need help with ipsec policy
    ... tunnel using a Win2003 server on one side and a Cisco Router on the ... The office with the Cisco router insists their setup is correct and they ... tried to get them to build a tunnel. ...
    (microsoft.public.windows.server.networking)
  • RE: To Setup Exchange or not to Setup Exchange...That is the Question.
    ... enough rescources to handle the load that Exchange will put on it. ... into your server in no time, so you will either have to have a very fast RAID ... You can also setup RPC over HTTP for your sales people to reteive e-mail ... phones can download a simple POP client to the phone to get E-mail. ...
    (microsoft.public.exchange.setup)
  • trouble with shared fax service
    ... I setup the shared fax service for the first time on a machine that has SBS ... Our server has one network card connected to a wireless ... Client problem: After setting up shared fax service on the server, ...
    (microsoft.public.windows.server.sbs)
  • Re: Specified network name is no longer available
    ... ISP says nothing wrong with the connection.. ... Also it works just fine if the guys make a dial up VPN connection to ... On it's own the SBS2003 server worked well, ... So Site B was setup. ...
    (microsoft.public.windows.server.sbs)