Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Unable to ping Windows 2003 Server through VPN connection...

Status
Not open for further replies.

ClaudeL

IS-IT--Management
Oct 19, 2004
2
Hi... This thread will be a bit long...

I've a PIX 515 with 3 interfaces. When I connect to it using a VPN client, I'm able to do everything within my LAN, my DMZ and even on my OUT interface.

I created rules allowing me to do everything everywhere from my VPN connection.

The fact is that I'm able to do everything except to ping 2 Windows 2003 server that are installed in my DMZ.

I've many other servers (NT4, 2000, UNIX, Novell) that are in my DMZ and that I'm able to ping, but not those two.

I checked with Cisco TAC that confirmed that it's supposed to work seamlessly, but it doesn't!

Have anyone ever saw this kind of problem before?

ThankYou in advance!...

ClaudeL
 
can you post your config

Please Read "faq35-3239"

befor posting it

b-
 
I've had a problem similar to this with 2003 server. If I assigned a static ip to the server, I could not ping it, but if I assigned a DHCP Address to it I could, I created a DHCP Server and set a reservation for the servers and all is ok. Still don't know why it was doing it to begin with though

Mark Spencer
 
Hi,

This is usually caused by a misconfiguration of the default gateway on the server. Pings may be going through but the server does not know where to send the response. I would look into it.

Lou
 
For br0ck, I'm sorry, but I don't feel confident at resleasing my script. And the fact is that it's laready been checked by Cisco Enginners and proven functional.

Thanks Robroy2003 I sure that it would work, but the fact is that my server is in the DMZ and DHCP is not available there.

For Lou0686, I already double checked that and I even did a route print -d on my server to be sure that all routes are OK and it's the case.

In anyways, the PING is not only the problem. I can't see any services that the server offer, like IIS, from my VPN connected PC.

But what's odd is that I'm able to see those services when I'm connected from my INSIDE interface without dialing a VPN connection...

I'm lost. I already tried to install another W2K3 in my DMZ to rule-out W2K3 as ano OS as being the problem. It works, I'm able to pîng and see the services.

I was wondering about one thing. A team of web developer configured there application on this server and they told me they didn't installed any firewall or restrictive stuff. But I know that there is a lot of patches that applies to IIS that are security based. Could it be it?

ClaudeL
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top