Home > Archive > 70-216 > May 2003 > VPN requirements!!





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author VPN requirements!!
RenatoBerana

2003-05-01, 2:34 am

do i need to have a registered domain name in order to implement VPN on my network?
Shiryu

2003-05-01, 7:29 am

You need 1 public ip address but you can use DDNS for free try this Dynu DDNS
RenatoBerana

2003-05-01, 7:47 am

THANKS A LOT SHIRYU!
cm2gj

2003-05-01, 6:28 pm

quote:
Originally posted by RenatoBerana
do i need to have a registered domain name in order to implement VPN on my network?


you DON`T need any name.
i have a full working VPN tunnel on my office. the VPN allow to join 5 remote offices, using IPSEC Tunnels and i have a PPTP tunnel who allow access to the office network from home to me and my bosses.

we connect using IP address, not name. Domain name must be registered and is not required. You can use dinamic dns allocation as shiryu expose on their post, but sincerely i don`t trust on any of this services. i don`t want to install any client on my machines / servers.

i have more than 1 year with the 2k VPN working on a superb way.
Tech Ranger

2003-05-01, 7:07 pm

cm2gj, how do you choose PPTP or L2TP. I thought that in Win2K the choice is made automatically based on the clients capabilities. I am having trouble getting a Win98 box to connect to my Win2K domain based VPN. The login doesn't accept my password.
cm2gj

2003-05-01, 8:09 pm

quote:
Originally posted by Tech Ranger
cm2gj, how do you choose PPTP or L2TP. I thought that in Win2K the choice is made automatically based on the clients capabilities. I am having trouble getting a Win98 box to connect to my Win2K domain based VPN. The login doesn't accept my password.


oh this is because i have a 3com secure gateway who have initiation / termination of ipsec vpn tunnels. with this configuration, i can join all offices.

the 2nd vpn method is made on the RRAS server. here i have a commun PPTP VPN service waiting for incoming connections. i have on the gateway a port mapping to this server, so all traffic to port 1723 (PPTP) is routerd to the RRAS server.

actually i connect clients with 2k or xp to the internal 2k VPN server fast and quickly, on a secure method and robust performance.

regarding the vpn problems you have with 98 clients... mmm... i don`t have 9x vpn clients, but maybe you must try 3rd party VPN clients, like SSH Sentinel:

http://www.ssh.com/products/security/sentinel/

or upgrade to 2k / xp

good luck
RenatoBerana

2003-05-03, 11:11 am

to cm2gj: my VPN server is connected to the internet using dialup connection only, so that means i will use the IP address statically assigned to me by my ISP, am i right CM2GJ? but when i try to connect to my vpn server from home i cant establish a connection, what could be wrong buddy? can u pls help me with this?
RenatoBerana

2003-05-03, 12:13 pm

im able to connect now on my VPN server, my problem is i'm not able to browse the network there is no entry coming on my network, even the VPN server is invisible. what do i have to configure?
cm2gj

2003-05-03, 3:26 pm

quote:
Originally posted by RenatoBerana
to cm2gj: my VPN server is connected to the internet using dialup connection only, so that means i will use the IP address statically assigned to me by my ISP, am i right CM2GJ? but when i try to connect to my vpn server from home i cant establish a connection, what could be wrong buddy? can u pls help me with this?


the ip address from your ISP is dinamic, not static....
cm2gj

2003-05-03, 3:27 pm

quote:
Originally posted by RenatoBerana
im able to connect now on my VPN server, my problem is i'm not able to browse the network there is no entry coming on my network, even the VPN server is invisible. what do i have to configure?


can you now make a connection to your vpn server?... check the tcp ip settings received after connection, you must have an additional tcp interface on the subnet of the vpn network.

check you have ip, sm, dns....

Sorry! The administrator has specified that users can only post one message every 60 seconds.
Tech Ranger

2003-05-03, 9:44 pm

quote:
Originally posted by RenatoBerana
im able to connect now on my VPN server, my problem is i'm not able to browse the network there is no entry coming on my network, even the VPN server is invisible. what do i have to configure?

can you access the resources you need with UNC paths?
RenatoBerana

2003-05-04, 12:28 am

sorry, IP assigned dynamically rather. i'll check it again today and post what ever result i get. thanks!
cm2gj

2003-05-04, 2:24 am

quote:
Originally posted by Tech Ranger
cm2gj, how do you choose PPTP or L2TP. I thought that in Win2K the choice is made automatically based on the clients capabilities. I am having trouble getting a Win98 box to connect to my Win2K domain based VPN. The login doesn't accept my password.


Today i make (using VNC) a VPN connection on my RAS server on my office. i made the client connection from HOME and work in a snap.

i don`t know about the vpn client capabilities on win98. do you have a domain on the remote vpn network? if so... remermber to enable dial in access to the user account on active directory.

and in the vpn client access configuration, click the "domain credentials" or whatever is called in english on the vpn client.

the troubleshooting steps you must follow:

1- check the vpn connection locally, try to connect a local host on the vpn network. if works, the vpn config is ok.
2- check remotely using a winXP pc. the VNC client on XP is more robust and trouble free. if don`t connect, check mapping ports on your router / gateway on the remote network.
3- if step 2 is ok, so focus on the win98 vpn client and configurations options.

i use PPTP, is more easy to configure. of course l2tp with ipsec, etc is more secure but pptp is enough on the mayority of cases.

remember: if you provide ip address to your vpn clients by the dhcp, you must configure the options on the DHCP related to scope options for dial in users..
RenatoBerana

2003-05-04, 3:06 am

im able to connect to my VPN server, user is authenticated IP adress is obtained from the list that i gave not from DHCP. I still unable to browse the network. Is there any problem with my configuration? the IP adress of my VPN server is 200.0.0.1 range of IP's is from 200.0.0.1 to 200.0.0.50.
Tech Ranger

2003-05-04, 4:01 am

quote:
Originally posted by RenatoBerana
im able to connect to my VPN server, user is authenticated IP adress is obtained from the list that i gave not from DHCP. I still unable to browse the network. Is there any problem with my configuration? the IP adress of my VPN server is 200.0.0.1 range of IP's is from 200.0.0.1 to 200.0.0.50.

As I said in my previous post, are you able to open up resources using UNC paths?
RenatoBerana

2003-05-04, 4:28 am

no im not able to access any resources using the UNC path.
Tech Ranger

2003-05-04, 7:34 am

I see that the IP you gave to the VPN server is included in the range to be distributed.
RenatoBerana

2003-05-04, 8:37 am

this IP is the internal IP add of my VPN server. The public IP that i am supplying to my VPN clients is dynamically assigned by the ISP
Tech Ranger

2003-05-04, 8:46 am

What about the IPs assigned to the VPN adapters by the VPN server or by DHCP?
cm2gj

2003-05-04, 7:37 pm

something is confusing me. please explain me all the ip address configuration on your network, link to internet, scope used, where do you install the vpn server, if you configure the scope options for dial in users and what kind of configuration do you receive after you connect to vpn server.

i test my vpn client connection, upon connection, i can`t see anything on my network places (but this machine is not joined to the domain, so is logical) but i can connect to ANY resource on the remote network using the ip address or UNC.

my home machine knows all resources by name because use my remote DNS service for name resource location.
Deja-vue

2003-05-05, 1:47 am

quote:
Originally posted by Tech Ranger
cm2gj, how do you choose PPTP or L2TP. I thought that in Win2K the choice is made automatically based on the clients capabilities. I am having trouble getting a Win98 box to connect to my Win2K domain based VPN. The login doesn't accept my password.


Tech Ranger.
To connect with Win98 machines to a Win2000 based VPN, you need the L2TP/IPSec Client, download it for free from Microsoft here
I hope this helps.
cm2gj

2003-05-05, 2:09 am

quote:
Originally posted by Deja-vue
Tech Ranger.
To connect with Win98 machines to a Win2000 based VPN, you need the L2TP/IPSec Client, download it for free from Microsoft here
I hope this helps.



good linkkkkkkkkkkkkkkkkkkkkkkk

.. anyways he is using a PPTP connection... i think.....
Tech Ranger

2003-05-05, 2:56 am

quote:
Originally posted by cm2gj
good linkkkkkkkkkkkkkkkkkkkkkkk

.. anyways he is using a PPTP connection... i think.....


How do you choose?
bbraunstein

2003-05-05, 10:55 am

I am actually struggling with the same problem. I have a remote user connecting to a VPN server on my network (everything is Win2k) and he cannot browse the network or access any other resources other than what is on the VPN Server. I know what the problem is.....that his computer is trying to use his ISP connection rather than the VPN connection when he tries to access network resources....I just can't figure out how to have the client use the VPN connection instead.

Good problem, this one has had me stumped for sometime now....
Sponsored Links





Free Braindumps | MCSE braindumps software forum

Copyright 2003 - 2008 examnotes.net