Jump to content

VPN, RAS, Remote Connction Problems...


Vasichko
 Share

Recommended Posts

Ok I have a small network, I have a server and 5 client PCs. I have my RAS and VPN established. My server is running Windows 2000 Server, and all the clients XP SP2. When trying to access using Remote Desktop Connection, it gives me an error saying the PC may be busy or the network is unaccessable. Could you guys help me out a bit and let me know what may be the problem.

I do have the clients set up to be accessed remotely.

Link to comment
Share on other sites

You're aware that Remote Desktop allows you to take control of the Server or the Desktops? Are you trying to use Remote Desktop to talk to the client (XP) machines from the Server, or vice-versa?

Why do you have to use RAS and VPN? Do all of the PC's have a common Gateway or Router? Are they all on a common LAN?

If you have a VPN established, you probably won't be able to get to the tunneled PC's from the LAN while they're VPNing. Do they create a VPN session to the server, or to a remote network?

Link to comment
Share on other sites

Once they're tunneled, you may not be able to get to them via the Server. They're VPN'ing to gain access to the Internet. Your Server's IP is on the LAN. Have you hardened the Windows 2000 Server? Have you considered using a product like Microsoft ISA Server, or getting an inexpensive Router/Firewall?

Link to comment
Share on other sites

Once the tunnel is up, the PC's will use the VPN Adapter's address for their primary route. The configuration you describe is problematic if you want to be able to both browse the Internet strictly via VPN tunnels, and browse among the PC's on the LAN. You may be able to do split tunneling by telling the LAN PC's not to use the remote gateway in the VPN Connection Properties. Are you using the built in Microsoft VPN Client?

If so, you make the change as follows:

Right click My Network Places and select Properties, then right click the VPN Connection and select Properties.

post-1455-1105508863_thumb.jpg

Click on the Networking tab and click on TCP/IP:

post-1455-1105508931_thumb.jpg

Click on Advanced, and uncheck the Use default gateway on remote network to allow the PC's to "see" both the LAN, and the VPN Tunnel Networks.

post-1455-1105509030_thumb.jpg

Link to comment
Share on other sites

I'm not sure why you wish to VPN. Virtual Private Networking is a process for setting up a secure encrypted "tunnel" across an unsecure network like the Internet. Once traffic is tunneled, it's like you aren't on the original LAN. It appears to the tunneled PC like it's on the remote network (in your case the Internet). Wouldn't you be better served by Internet Connection Sharing, or a Router/Firewall? Your topology would be greatly simplified if you just used a Router/Firewall to protect your PC's, and let them communicate with each other on the LAN. You can get a Router/Firewall for less than $100.

The only place I've seen VPN used in a situation remotely similar to yours is when there is a wireless LAN involved. In that case though, the wireless users connect to a DMZ, not to the LAN itself until they authenticate.

Link to comment
Share on other sites

When you say accessing the server remotely, to you mean from you LAN using Remote Desktop on one of the PC's, or do you mean remotely from outside your LAN coming in?

How do your PC's get to the Internet? Do they all use a common Router (gateway), or does your server have 2 Network Interface Cards?

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy