Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Domain logon through vpn

Status
Not open for further replies.

shthco

MIS
Jan 8, 2003
11
US
I have a Windows 2000 network, which consists of 2 domain controllers, 60-70 workstations, and 4 NAS storage devices. All of this is setup on a 192.168.0.0 subnet. I an using IpCop 1.2 as my firewall/vpn endpoint.

I also have about 20 remote sales offices. Each sales office has 1 pc. Each sales office is setup on an independent subnet, so I have no overlapping subnets.

I have successfully setup an IpSec vpn between our sales offices, and our main office. Each sales office has a vpn endpoint device connected to the IpCop vpn endpoint at the main office. I can ping any pc, at any sales office. Likewise the sales offices can ping any pc in the main office.

However it would be great if the users at the remote sales offices could logon to the domain controllers like the pcs in the main office. (ie logon scripts run, drive mappings, network browsing). If anyone has any recommendations I would greatly appriciate it.

:)

 
When and how is the VPN connection established? If the VPN tunnel is up before a PC attempts to log on to the network, it should work fine (assuming DNS/WINS and routing are all configured correctly).
 
Each sales office has its own vpn/gateway endpoint device, which is the gateway for the pc at that sales office. So the vpn tunnel exsists even if the pc is turned off.

So if I configure my DNS and WINS correctly the pc at the sales office, should be able to logon and authenticate with the office servers?
 
Correct. DNS/WINS will inform your remote workstations where the DC is.
 
Great I will try it and let you know what happens. Thank you.

:)
 
P.S.
Dont need DNS/WINS if you map drives like:

NET USE F: \\IPADDRESS\SHARE password username
 
Everything is working great thanks for the help!

:)
 
I am having a similar problem. I have established PPTP connections between my Win 2K server and Win XP remote clients (I plan to move to L2TP in the future). However, no one can seem to browse the network through network neighborhood. Computers and resources can still be found through a computer search. Also, Active Directory searching is not available to remote clients. I ideally want all remote clients to operate as if they were on the LAN with network mappings, profiles, and folder redirection. Is this possible?

How can I have resources, shares, and computers appear in the network neighborhood for both the LAN and remote clients. Some have suggested a firewall blocking of Netbios, but I think I opened those ports. Others suggested installing NetBEUI.

I guess my question is can a domain logon with all the same rules and privilages be established in a client to Router/Server setup when the connection is established after the client is booted and logged on locally?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top