Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

remote users having problems connecting to VPN

Status
Not open for further replies.

nuzzy

MIS
Aug 16, 2001
42
US
I am having issues with people trying to VPN into our Windows 2003 Server VPN. Sometimes they get in, other times the get Event ID 20189 saying they are using a bad name or password which isn't the case. They click once to login in and the System log show numerous attempts within seconds of each other with failures. Sometimes it fails so often that it locks out their account. As I mentioned earlier, sometimes they get right in. It is inconsistent.

Can anyone help?

Thank You

 
For a start...
Run the Pathping command from the server to a remote, then the individual remotes to the server (or gateway). If the results show a large amount of lost packets at any router(s) along the way, you need to adjust the MTU size(from any end point which show high losses). Routers dropping packets will cause no connections, intermittent, or lost connections.


........................................
Chernobyl disaster..a must see pictorial
 
Hi technome,

Thanks for the response. I was thinking the same thing and checked with our provider, who ran tests on the circuit and found no packet loss occuring.

Any other possible ideas?

Thanks!

George
 
Checking with your provider has limits...

I trust providers as much as I trust used car salesman or POP providers.

Likely your remotes all use different routers enroute to your office (unless they are all on the same block). Each remote needs to be checked.

At least pathping from the server to a site which has routers which do not dump packets, such as google.com eg.
Pathping This will verify your providers claim and your internal devices

Pathpings to the remotes would be better, which would pick up any routers which drop packets. You really need to do it from within the network, as the issue might be internal..NIC or router or gateway router. A few perscent of packet losses of all devices enroute is acceptible.

With the older RDP client software you can lower the security. With a VPN tunnel I use the lowest RDP security level, less overhead.

Should have asked earlier, are you using a VPN gateway router device or RRAS ?



........................................
Chernobyl disaster..a must see pictorial
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top