Re: VPN issue with SBS and Netgear FVS318

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Bucket wrote:
Hi all. I have successfully set up a network where the clients can RWW (Remote Web Workplace) and Outlook Web Access successfully, but they would also like to VPN in and get access to drives and Outlook synchronisation through the VPN.
Ports that are open and forward on to the server are -
3389 (RDP), 80 (HTTP), 443 (HTTPS), 25 (SMTP), 1723 (PPTP / VPN),4125 (RWW)
and as stated the RWW works perfectly. We are able to connect with the Microsoft VPN client in the network connections but experience random dropouts. I have created a new VPN connection on my remote client and recieve error 721 - remote computer did not respond.
I have setup the VPN connection with defaults except for stipulating the domain name. The connection hangs on verifying username and password and I am using an account with Domain admin and the correct password.


The router had VPN settings which the client configured, but I have tested with and without them enabled and the same result happens. I also have the same issue connecting to my test server at home with a Netgear DG834 ADSL modem / firewall.

Is there a port I am missing on config for VPN? Do I have to setup IPsec passwords for basic Microsoft VPN? I don't want to purchase the Prosafe VPN client software just for basic VPN.


First of all, I know for sure the DG834 works. The thing you need to
enable and forward to SBS is called PPTP in the list of services. This includes port 1723/TCP and also the GRE protocol, which is part of PPTP.
IPSEC is an entirely different kind of VPN and is not involved here.
1723/TCP and GRE are all that the PPTP VPN need.


You can enable logging on firewall rules in the DG834. It doesn't tell
you whether the rule allowed the connection or not, but if you have
allowed and forwarded the service then you can assume that it was passed
on. What you really need is similar logging at the client end, which
will tell you whether replies are getting back or not.

One trap which may get you is IP addresses. The 192.168.0 and 192.168.1
subnets are often router defaults. If the same subnet exists at the
client and SBS ends of the VPN, then routing will not work. Make sure
all subnets are different.

If you get no connection at all, then it's something very basic. The
port 1723 connection is the control channel for the VPN, the data is
passed over GRE. It is possible for the VPN connection to be set up
*and reported as being connected* without any GRE connection. As far
as I can see, you're not even getting that far, which sounds like a
firewall or routing issue at one end or other.
.



Relevant Pages

  • Re: Remote Access and ISA Server in SBS 2003?
    ... I am glad to hear the Remote Access Wizard is working fine now. ... there is no difference in VPN between SBS 4.5 and SBS ... Error Message: VPN Connection Error 800: Unable to Establish Connection ... the external NIC of the SBS Server. ...
    (microsoft.public.windows.server.sbs)
  • Re: Connecting a remote workstation to a domain
    ... If you have more than a couple of remote workstations connecting to the SBS ... server via VPN, you really need to consider a Terminal Server in the main ... "Log in using a dial up connection" checkbox, ... roaming profile then synchronizes with the server over the VPN); ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN clients unable to connect to other resources.
    ... gateway matches the IP of the remote client, and DNS and WINS point to the ... remote (although it takes close to a minute to connect, ... This is just regular Windows VPN, ... VPN server, remote routing and access running on the SBS 2003 server ...
    (microsoft.public.windows.server.sbs)
  • RE: Remote connectivity problems
    ... do you mean you have added a remote client to SBS ... If you have hardware VPN tunnel setup using Linksys or others, ... In this scenario you have to configure the SBS Server computer to enable ...
    (microsoft.public.windows.server.sbs)
  • RE: VPN connection
    ... I understand that when you try to establish a VPN ... connection from a remote client, the connection terminated in the process ... Please temporarily place a client directly connected to the external NIC ... of the SBS Server. ...
    (microsoft.public.windows.server.sbs)