Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Firebox 700 MUVPN With Win2000 1

Status
Not open for further replies.

resoremix

Programmer
Apr 14, 2002
44
GB
Been wrestling with this for a couple of days now and would really appreciate any help. Thanks in advance if you come to the rescue.

Firebox 700
Trusted interface primary network - 10.0.0.0/8

Trusted interface secondary (virtual) network - 172.16.1.0/12

Firebox authentication set to NT and Wins/DNS servers tab completed with 10.10.1.1 (see below)

MUVPN wizard completed specifying:
1) 10.0.0.0/8 as the network requiring access.
2) A range of 5 virtual IP addresses 172.16.1.(1-5)/12 for VPN hosts to use.
3) NT authentication.


Hosts
Windows 2K servers and clients all round

Win2k Adv Server set up as a single domain controller running Active Directory on IP 10.10.1.1


Problem
I have configured the Firebox and MUVPN scripts as above but keep getting a failed authentication. I am testing with a 56k modem dial-up account and the internet connection is made but when I connect the VPN tunnel using the MUVPN client software I immediately get the Watchguard login dialog. I enter a valid user name and password that belongs to an Active Directory (correctly named) securty group but it is not accepted. Checking the realtime event viewer on the Firebox reveals a failed login attempt.

The only thing that I am not sure of is that there are many references in the Watchguard manuals to running a WINS server on the trusted network. I do not have one running as I have never needed to given that my network only uses win2K. Do I need to as I would have thought that DNS only would suffice in this environment?

Am I missing something else / does anybody have any other ideas.

Thanks again.

 
One thing to check is that you have added an ANY service to your config, i had the same problem when using nt autentification, the WINS server is not really required and should not cause you a problem when authenticating.
 
Make sure you downloaded the 128bit (Strong) encrytion software from Watchguard for your Firebox!

Gary
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top