I'm trying to setup a permanent VPN connection between two
sites over the internet. We've got existing firewalls in
place so after reading through all the MS documentation I
can find on the web site (inc W2K VPN Scenario and W2K
Deploying Router to Router VPN's) the best way to go seems
to be a PPTP connection using EAP-TLS certificates for
authentication. I've set all this up, an internal root CA
integrated into active directory, IAS as the radius server
on the answering router, and a router offline request cert
on the calling router as the same name as the demand dial
interface.
The error message I'm getting is on the calling router
"Event ID 20111 : A Demand Dial connection to the remote
interface VPN-LEE-TEST on port VPN3-4 was successfully
initiated but failed to complete successfully because of
the following error: Cannot find object or property."
The answering router has no logging of the event, although
I know it is getting through as I was previously getting
error messages on both routers when the answering one
wasn't configure to use EAP authentication.
Any help / ideas would be appreciated.
Cheers, James
sites over the internet. We've got existing firewalls in
place so after reading through all the MS documentation I
can find on the web site (inc W2K VPN Scenario and W2K
Deploying Router to Router VPN's) the best way to go seems
to be a PPTP connection using EAP-TLS certificates for
authentication. I've set all this up, an internal root CA
integrated into active directory, IAS as the radius server
on the answering router, and a router offline request cert
on the calling router as the same name as the demand dial
interface.
The error message I'm getting is on the calling router
"Event ID 20111 : A Demand Dial connection to the remote
interface VPN-LEE-TEST on port VPN3-4 was successfully
initiated but failed to complete successfully because of
the following error: Cannot find object or property."
The answering router has no logging of the event, although
I know it is getting through as I was previously getting
error messages on both routers when the answering one
wasn't configure to use EAP authentication.
Any help / ideas would be appreciated.
Cheers, James