I have set a number of SBS systems up and never had a VPN access problem before (but it is the first time Ive had to configure this particular ADSL/Router)
The problem is that I cannot make a VPN connection from outside (Internet) but I can from the inside (local network).
The problem looks to be identical to
http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/SBS_Small_Business_Server/Q_21931265.html but does not provide a solution for me (its not obvious from the accepted answer what the solution was)
Heres the situation so far;
Small Business Server R2 using a single NIC and broadband router connected to main network switch.
ADSL/Router BT Business Hub BT2700HGV with static external address (I am located in the UK). Wireless operation is disabled.
Router Firewall enabled but have opened port 1723 on the Router.
Port open confirmed using
http://www.canyouseeme.org/ from the server.
Using SBS for DNS and DHCP. (DHCP on router disabled.)
Have used the SBS Wizard to enable Remote access on the Server.
Confirmed users are member of Mobile Users Group.
I have enabled remote access logging on server.
I can connect via VPN internally from a laptop which has not been joined to the domain. You can see the connection entry in the Remote Access Log. If you use an incorrect name and password you can also see the attempt in the log.
Ran SBS remote connection wizard again specifying Routers outside address. When try to connect from the internet it looks as though the request has been passed through by the router as you get the Verifying User Name and Password which eventually times out with a error 721 Remote Computer did not respond to the connection request. However when I got back to the office there was NO entry in the Remote Access Log. Thus I conclude that the request for access had not been received by the Server despite the Verifying user name and password message.
I have tried using both the built in XP VPN connect to workplace option and created the connection using an SBS generated floppy disk for Client install.
The spec for the router indicates Automated NAT Pass-Thru for LAN client-initiated VPN tunnels (IPSec, PPTP, L2TP), SIP, H.323, RTP but of course I am trying to initiate a connection from the WAN which is not quite the same.
Ive spent too much time on this already. Can anyone help?
Start Free Trial