Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations biv343 on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Using Windows VPN server to secure Wireless Lan

Status
Not open for further replies.

twscott

IS-IT--Management
Jun 1, 2003
2
US
I have set up a wireless lan inside my building (10 APS in all). They are all operating perfectly with wonderful roaming and signal strength. All of the APs are plugged into one 24 port switch and are assigned IP Addresses of 172.16.0.5 - 172.16.0.15. Also running on this same network is a windows 2000 box with routing and remote access set up as a VPN server. This Box has 3 nic cards in it. 2 of them reside on the wireless network with ip addresses 172.16.0.1 and 172.16.0.2, one of the nics hands out DHCP addresses to any wireless clients that associate with an AP. The other nic is used for VPN connections to the RRAS Server. The third nic card connects to my windows 2000 domain and has an ip address of 199.x.x.206

This set up works and the VPN connection is established and can be seen from the RRAS MMC.

The Problem that I am having is that my internet connection provided by a department higher up than me is proxied. So in internet explorer on all clients you have to enter the proxy info of proxy.xxxxxx.edu port 8080. This info is entered into the RRAS server and it can connect to the internet just fine. All of the wireless clients on the other hand are not able to connect to the internet at all. In internet explorer it says that the proxy information is not used for VPN and dial up connections. Is there a way to make the VPN traffic use the proxy? Through a registry edit or some other means that I have not been able to find yet?

Thanks,
Tom
 
Twscott,

Not sure if this will work in your case but it's worth a try. Bring up the properties for your VPN connection, highlight TCP/IP and click the Properties button. Click "Advanced" then, on the General tab uncheck the "Use default gateway on remote network" box.

Hope it helps.

SL
 
How are your users initiating the VPN? Do they manually make the VPN connection, or is it started automatically when starting IE?

Are you just providing internet access to the wireless, or is there access to your domain involved as well?

Have you verified that any traffic is getting across your VPN? On that note, from a wireless client, try to 'ping proxy.xxxx.edu' to make sure you have basic connectivity there. If yo get a 'host unkonwn' error, try to ping using the IP address of that server. If that works, try 'tracert proxy.xxxx.edu'. (Again, you may need to use the IP if you have dns problems as well.) Report your results, be specific.

BTW, for now I would leave the "Use dafault gateway on remote network" box alone.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top