Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations biv343 on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN/RRAS issues

Status
Not open for further replies.

Oxalic

Programmer
Aug 24, 2005
2
GB
Hi all,

I hope someone can help me here, it's driving me nuts :-(

We have a server with 2 NICs installed. The first NIC is connected to the LAN and has internet access, through a Linux firewall, to a second firewall/ADSL router.

The second NIC in the server is connected directly to the second firewall/ADSL router and has a public, static IP assigned to it.

We are attempting to setup a VPN through the 2nd NIC to the LAN. Using the RRAS wizard gets the VPN server setup OK and we can connect to the LAN through the VPN. Our trouble is...once the RRAS wizard is complete and the RRAS service starts, the server loses internet access (because the default gateway changes to the VPN NIC), stop the RRAS service and internet access returns (but obviously the VPN doesn't work).

Is our setup fundamentally flawed or are we missing something to get the VPN and server internet access working at the same time?

Any help greatly appreciated
 
Microsoft VPN client does not support split tunneling. I've managed to get split tunneling working with the MS client, but only though manually adding static routes, and they're different every time the client connects. So as for the MS client, no can do..no split tunneling.

Try some other clients, maybe one of them will support split tunneling. I use Kerio VPN (supports split tunneling) but that client is proprietary to the VPN server, so that will be no good for you.
 
Thanks for the reply pmf71, I had a feeling someone would say that :-(

Looks like I'll have to scout around.

Thanks
 
If it's any help..

I agree with pmf71 regarding the statics.. we have a single NIC VPN server which although not ideal gets around the problem.

 
Did you enter default gateway on Internal NIC? leave it blank and if you want to browse from your server via your firewall, just enter the proxy address on IE.
MS Vpn Client doesn't support split tunneling? Can you just uncheck Use gateway on remote network option on client side? I disabled that option so users can do split tunneling.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top