wan connectivity over internet

Posted on 2004-09-29
Medium Priority
Last Modified: 2010-04-12
We are in the process of moving our offices to our new premises. To enable smooth shifting i am trying to establish a WAN connectivity between these two offices that will enable me to do the shifting gradually.

What I have:

* 256K leased line on both sides with static IP#s
* 2MB DSL connection at the new site with dynamic IP
* Cisco VPN Router - 1 # (I can get one more of this if required)
* Cisco Concentrator - 1 #

Currently I am using the VPN router and the concentrator with citrix server. However this requires installation of ICA client. I would like to establish a WAN between 2 offices and setup a DHCP server in the new office. This way, the users can directly go and plug their equipments in the new premises and log in to my domain - this is the key.

I will give bonus points to anyone who gives me a solution with ways to implement it - THIS IS URGENT. I am also trying to hire a local expert (Dubai) to do this job for us. Any hyperlink that will give instructions would also be helpful.

Question by:komandur
  • 4
  • 2

Accepted Solution

netspec01 earned 2000 total points
ID: 12189728
It is unclear exactly what problem you are trying to solve.  It seems that you are already doing VPN.

If you set up a VPN tunnel between your remote site (Cisco router with IPSEC) and a Cisco VPN concentrator, your networks will be connected and appear as a "routed" internetwork.  AT the remote site you can have a DHCP server servicing the local machines.   Citrix clients shouldn't have any diffiult connecting to the main Citrix server at the central site.

The IPSEC security policies on your router can be "tuned" to allow/disallow protocols/ports as your security policy dictates.

I am currently doing this with a Citrix farm at the central site and multiple remote VPN tuinnel connections with varying security policies.  Some are wide open and others are restricted to just Citrix protocols (tcp 1494 and udp 1604).  Tunnels stay up indefinitely.

Does this answer your question or am I missing something?

Author Comment

ID: 12189804
I have actually called a network engineer who has tested something in my office and i am going to try out this on Saturday. I believe he has used IPSEC...and if it works on saturday you will get it anyway for trying to help me.. Otherwise, i will revert with more questions ;o)

Expert Comment

ID: 12190225
Not a bad idea to bring someone in to help out. Configuring sdsl with authentication an IPSEC VPN tunnels isn't exactly a beginner task.  Good luck in getting your linl up and running.
Will You Be GDPR Compliant by 5/28/2018?

GDPR? That's a regulation for the European Union. But, if you collect data from customers or employees within the EU, then you need to know about GDPR and make sure your organization is compliant by May 2018. Check out our preparation checklist to make sure you're on track today!


Expert Comment

ID: 12217768
How did you fare on Saturday?

Author Comment

ID: 12266538
sorry friend. After this I had to travel and hence couldn't update. The guy managed to establish the VPN though the speed was painfully slow - You get it for your efforts.

thanks again

Expert Comment

ID: 12267240
I am glad to see that you had some success!

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

One of the Top 10  common Cisco VPN problems are not-matching shared keys. This is an easy one to fix, but not always easy to notice, see the case below. A simple IPsec tunnel between fast Ethernet interfaces of routers SW1 (f1/1) and R1(f0/0). …
When you connect to your workplace's VPN, you may not notice that you are using your workplace's servers to serve up webpages.  This might be undesirable since the workplace can log all the places you've been.  It also might be very slow to load pag…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

600 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question