Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

win2k VPN cuts off internet

Status
Not open for further replies.

Guest_imported

New member
Jan 1, 1970
0
I am trying to get up a win2k VPN server. I actually got the RAS to start up and get the ports up and running. However, then the computer is blocked away from seeing the rest of the internet, ie. can't ping web servers nor surf them. How can I fix this? Or is there a better way to accept VPN connections? I only wish it was as easy as XP is.
 
From what I've read you would have to have some sort of split tunneling or use the Internet Connection on the other side of your tunnel... Matt Wray
CCNA, MCP
mwray77518@yahoo.com
 
I'm seeing the same thing with a Nortel Contivity client. I was under the impression I did not have routing set correctly, i.e. once you log in, your gateway gets hosed up and your Internet querries get lost....but I'm still fumbling trying to find that answer.
- Blaine
 
Matt Wray is right.
Split tunneling allows routing of both private IPs through the VPN and public IPs through the non-VPN connection.

I would never recommend a Win2k server as a VPN server, when you can get cheap (Linksys), affordable and quality (SonicWall) or bulletproof (Cisco PIX or VPN Concentrator).
The processing load of VPN encryption/decryption can bog down a server.

Unless you have good security on the client (remote) end, the VPN is just a secure TUNNEL to your unprotected client. You should have at a minumum, some type of firewall and good anti-virus at the remote end, or hackers can come through the "back door".
 
Instead of starting the vpn via the wizard automatically, chose the manual setup. The settings will be the same but it won't cut you connection to the internet off.
 
It's not advisdable, but under the advanced TCP/IP properties of your VPN connection, uncheck the box that says use default gateway on remote network.

As the other posters have stated, if you plan to do this, get a personal firewall such as zone alarm installed on your machine.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top