Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Contivity VPN / Linksys WPC11 wireless all traffic bound over VPN

Status
Not open for further replies.

WirelessVPNProblem

Programmer
Nov 17, 2002
2
CA
Hey guys I've finally gotten my wireless to work with VPN. However it seems all my traffic is being ported through the VPN. It's supposed to split them my internet connection should handle normal stuff and the VPN just the work extranet stuff. I see my bytes go up as I am on it, along with being unable to connect to certain servers I'm almost certain all my traffic is going through Contivity VPN Client. Any ideas how to fix it?

Thanks,
and by the way Linksys is horrible :) I had to downgrade my router software to make my wireless VPN work. Makes no sense.. upgrades should be _better_ not worse.

Steve
 
OK, I can't tell you how to fix this but i can tell you whats happening, when you enable VPN on an interface either an outgoing request (dial up or dsl via a nic' etc) or on a server waiting for a VPN connection to come in, by default filters are applied to that interface which only allow L2TP and PPTP traffic, this is why all web browsing etc has stopped for you, if the network you are connected to via VPN allows web access then you should still be able to connect but will be controlled by their firewall rules, I have a similar problem, I wish to allow vpn access to my server at home but as soon as i do all web browsing stops for user on my home lan and all other incoming connections are refused (ftp etc). Microsoft make reference to the packet filter here and imply that it can be turned off but don't tell you how.


Hope the above helps, if you find out how to dissable the filter let me please.

Dave.
 
Well I guess I'm lucky my work accepts internet connections. However I would like to seperate the traffic to ensure they aren't tracking where I am going while I'm connected to work.

btw, when I do a tracert I can see it's going through the 10.whatever address and through the internet of work not my home router.

Any ideas guys?
Steve
 
This is probably what is going on. The Contivity Extranet Switch (CES) that you are tunneling to does not have split tunneling enabled. This means all traffic (including internet destined) will be routed down the vpn tunnel. If split tunneling is turned off on the CES than there is no way for you to get internet traffic to route through your original default gateway (your dsl, cable modem, dial, etc....) connection. Once your tunnel establishes to the CES, it changes your default gateway to the IP address that is assigned to you from the CES.

If you try to alter your routing table after you establish a VPN session in an attempt to route internet traffic out your original default gateway (before you tunneled in) the Nortel client will drop your connection. The only way around this will be for the admins of the CES to enable split-tunneling. I hope this helps.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top