Re: Need to setup Gateway-Gateway VPN, but SBS has 2 nic

Tech-Archive recommends: Fix windows errors by optimizing your registry



Ok, you need to verify that the LAN sides of the two routers are on different subnets. That is:

Main Office: 192.168.61.1 ( I tend to use the reverse of the SBS insternal network here, just becuase it is easy to remember)

Branch Office: 192.168.161.1

Or some arrangment like this. I tend to stay away from 192.168.0.x and 192.168.1.x as those are used by home devices. As I remember the Netgear settings out of the box they use 192.168.123.1, but you can't leave them both on the same subnet.

Then, you need to be certain that the ports you need are forwarded to the SBS server. For VPN that is 1723 (and 3389 if you want to TS directly) in addition to the usual ones for SBS to do email and RWW.

-
Larry
Please post the resolution to your
issue so others may benefit
-
Get Your SBS Health Check at
www.sbsbpa.com


On Sep 7, 4:03 am, Larry Struckmeyer[SBS-MVP] <lstruckme...@mis-
wizards.com> wrote:

Hi Jack:

In general you should be able to create the VPN between the routers,
then
run the CEICW and the Remote Access Wiz and be able to connect from
the remote
office to the SBS.
You don't say what the purpose of the VPN and remote connections are,
but in most cases we have found RWW to be a better solution than
opening files accross the internet.

-
Larry
Please post the resolution to your
issue so others may benefit
-
Get Your SBS Health Check atwww.sbsbpa.com
Main office - SBS2k3 standard, 2 nic
Remote office - a few laptops
Netgear FVS318 is installed on both sites.
To make Gateway-Gateway VPN work, do I have to remove 1 nic from the
server or I have other options?

Thanks in advance

Jack

Thanks Larry.

The purpose to setup VPN is to ease server access for remote laptop
users and smooth remote access. Those laptop users do not have
computers in main office and they rarely come to visit main office
neither.

They are currently using below two solutions to access the main server
- Through the terminal server in main office.
The licenses are costly. We need to keep buying the licenses for the
TS and the licenses for MS Office since the laptop users are growing
in the remote office.
Also, the steps to access the TS thru RWW are cumbersome.
- Through the "Shortcut to Small Business Server" on their desktop of
Windows.
As we all know, this is the software VPN, which compromises the
performance.
Therefore, we are thinking about to set up a site-site hardware VPN to
increase the performance and simplify the steps for laptop users to
access main server. Please correct me if this does not make sense?

We are doing testing these days. We successfully established the VPN
tunnel between the two Netgear routers, the laptops can ping the
router in main office. However, the PC in main office cannot ping the
router in remote office and the laptops cannot access the server from
remote office. We think the culprit is the dual nic setup in main
server. We hope we could make the VPN work without touching the
current 2 nic setup on server which offers firewall protection. Is
this feasible?

thank you for sharing!

jack



.



Relevant Pages

  • Re: Remote Access and ISA Server in SBS 2003?
    ... I am glad to hear the Remote Access Wizard is working fine now. ... there is no difference in VPN between SBS 4.5 and SBS ... Error Message: VPN Connection Error 800: Unable to Establish Connection ... the external NIC of the SBS Server. ...
    (microsoft.public.windows.server.sbs)
  • RE: SBS 2003 sudden services problem over router based vpn
    ... I understand that your remote cannot receive POP3 emails through VPN ... SBS Server through routers. ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN clients unable to connect to other resources.
    ... gateway matches the IP of the remote client, and DNS and WINS point to the ... remote (although it takes close to a minute to connect, ... This is just regular Windows VPN, ... VPN server, remote routing and access running on the SBS 2003 server ...
    (microsoft.public.windows.server.sbs)
  • RE: Remote connectivity problems
    ... do you mean you have added a remote client to SBS ... If you have hardware VPN tunnel setup using Linksys or others, ... In this scenario you have to configure the SBS Server computer to enable ...
    (microsoft.public.windows.server.sbs)
  • Re: Connecting a remote workstation to a domain
    ... If you have more than a couple of remote workstations connecting to the SBS ... server via VPN, you really need to consider a Terminal Server in the main ... "Log in using a dial up connection" checkbox, ... roaming profile then synchronizes with the server over the VPN); ...
    (microsoft.public.windows.server.sbs)