Site to Site VPN Server 2003


hello all,


i have quick question regarding setting vpn between sites, setup being prepared in lab , below sconorio.

 reduced: 53% of original size [ 950 x 369 ] - click view full image


before setting vpn check connectivity, fine, connectivity nodes.

im using rras setup vpn, seems working ok, untill use computer wireshark on network monitor traffic. of expected packets encrypted, not case.

i checked receiving , sent bytes on servers vpn conenction, , not change when ping sent. therefore vpn not being used , being passed.

next tried...

static routes , rip v2 have been used connect , b c , d (thinking course problem where)

changed parameters in pptp (ports) allow port used rras , routing (i think here problem)

i realise simple , ive overlooked (i hope). tried hours work correctly no success. 1 know how stop packets pass vpn? expect ports, ports should use?

sorry long description

hope here soon

phil

  , b should not able see c , d before link established. link betwen 2 rras servers through hub represents internet in model, , private ip addresses cannot routed through internet. not need rip. the routing  is handled vpn link.

 

  required @ each site workstations use rras router default gateway. routing between sites set part of site site vpn configuration. each rras router has subnet route other site's subnet through tunnel. data encrypted , encapsulated before sent out through rras server's "public" nic header using "public" ip, namely ip address of target vpn server. (note in case public network in fact 192.168.10.0/24).

 

   when link down, ping d should fail, because rras router has no route other site. when link up, ping should succeed because rras router has route other site through vpn tunnel.



Windows Server  >  Network Infrastructure Servers



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file