Solved

Problem connecting to Win2K VPN Server behind Win2K NAT

Posted on 2004-04-08
6
752 Views
Last Modified: 2010-03-18
I have a Windows 2000 VPN server ... behind a Windows 2000 NAT server ... on the NAT server I have reserved one public IP for the private IP of the VPN server and allowed incoming sessions.  
From Internet I can reach the VPN server through telnet/web/ftp services, I can browse from the VPN server and initiate outbound VPN connections too. But when I try to initiate inbound connections from Internet to this VPN server, it fails saying that it has not found a valid certificate. But when I try to connect to the VPN server from inside my Intranet, I get through.

What could be the possible cause and remedy.
0
Comment
Question by:mitra_am
6 Comments
 
LVL 10

Expert Comment

by:anupnellip
ID: 10782482
you need to forward TCP Port 1723 to your vpn server for this to work
0
 

Author Comment

by:mitra_am
ID: 10782679
How do I exactly do this ?

I have reserved the public IP address x.x.x.x for the internal IP address y.y.y.y

On the NAT router I have two cards, NIC named "Internet" connecting to Internet and "Intranet" connecting to my LAN.

Should I go to Routing and Remote Access in the NAT router and go to IP Routing -> Network Address Translation -> Properties of the interface "Internet" -> Special Ports ?

What should be the entries when I want to add a special port like:

1. "On this interface" or "On this address pool entry" - Which one to select ?
2. Incoming port and Outgoing port.
0
 
LVL 31

Accepted Solution

by:
Gareth Gudger earned 500 total points
ID: 10789084
"Should I go to Routing and Remote Access in the NAT router and go to IP Routing -> Network Address Translation -> Properties of the interface "Internet" -> Special Ports ?"

Yes, that is the right place. Specify the incoming port 1723 and forward it to the IP of the VPN server.
0

Featured Post

Manage your data center from practically anywhere

The KN8164V features HD resolution of 1920 x 1200, FIPS 140-2 with level 1 security standards and virtual media transmissions at twice the speed. Built for reliability, the KN series provides local console and remote over IP access, ensuring 24/7 availability to all servers.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
VLAN Tag for chained network device. 11 71
Can't Make Laptop Computer Connect To Homegroup 33 84
Windows 10 Domain Account Not Logging in away from office 17 64
sync conflicts 1 79
This is the first one of a series of articles I’ll be writing to address technical issues that are always referred to as network problems. The network boundaries have changed, therefore having an understanding of how each piece in the network  puzzl…
Are you one of those front-line IT Service Desk staff fielding calls, replying to emails, all-the-while working to resolve end-user technological nightmares? I am! That's why I have put together this brief overview of tools and techniques I use in o…
Two types of users will appreciate AOMEI Backupper Pro: 1 - Those with PCIe drives (and haven't found cloning software that works on them). 2 - Those who want a fast clone of their boot drive (no re-boots needed) and it can clone your drive wh…
I've attached the XLSM Excel spreadsheet I used in the video and also text files containing the macros used below. https://filedb.experts-exchange.com/incoming/2017/03_w12/1151775/Permutations.txt https://filedb.experts-exchange.com/incoming/201…

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question