Solved

VPN Domain Access over pptp

Posted on 2006-07-11
7
267 Views
Last Modified: 2010-03-19
Hi,

One of our offices is using RAS dialup into a Small Business Server 2000.
Problems include connection dropping, failing to call back and limited to the 2 ISDN channels for 5 staff.  Also problems copying files to local computer.

Router
  |
Switch
  |
SBS2000, Workstations
  |
RAS

I am considering changing this as follows as well as upgrade to SBS 2003

Router
  |
VPN Firewall
  |
Switch
  |
SBS2000, Workstations

Users will connect mainly via ISP dialup but hopefully later broadband, and need to authenticate onto active directory to have their home drive mapped.

Considering one of the Cisco PIX firewalls and the following setup.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00800b6099.shtml

Is this the best way to do this and if so, which PIX or other hardware offer the best value for money.  There are currently 5 users.  Not sure if this is likely to increase in the near future at least.

Any advice appreciated.

Jess
0
Comment
Question by:jessmca
  • 5
  • 2
7 Comments
 
LVL 22

Expert Comment

by:Rick Hobbs
ID: 17086373
With so few users, you would be fine with PIX-501-50-BUN-K9.  
0
 
LVL 22

Accepted Solution

by:
Rick Hobbs earned 500 total points
ID: 17086390
Sorry, hit 'Submit' too fast.   Wanted to add that Cisco is the gold standard for Network hardware in a business environment.   You could use Netgear, Linksys, D-link, Sonicwall and many other excellent products, but there are more engineers familiar with the Cisco products than any other. The PIX-501 bundle includes licensing for 50 users.  So you have more than enough growth capability.
0
 
LVL 8

Author Comment

by:jessmca
ID: 17086564
Thanks rickhobbs

Are you aware of any problems with the AD remote authentication using the client software with the 501?
Probably the following would be the best configuration using the PIX DMZ.

ADSL Router
  |
VPN Firewall
  |
SBS2003 ISA 2004
  |
Switch
  |
Workstations
0
Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

 
LVL 22

Expert Comment

by:Rick Hobbs
ID: 17086723
None at all.  It is easy to setup and maintain the VPN for either group or individual user access.
0
 
LVL 22

Expert Comment

by:Rick Hobbs
ID: 17086755
As for the config, you can:

ADSL Router
  |
VPN Firewall
  |
SBS2003 ISA 2004
  |
Switch
  |
Workstations

or

ADSL Router
  |
VPN Firewall
  |
Switch-----------------------------
 |                                           |
SBS2003 ISA 2004             Workstations

Either will work fine.  If you have daul LAN cards in the server, either use the first or, if possible, team the NICs and use the second.
0
 
LVL 8

Author Comment

by:jessmca
ID: 17088196
Thanks Rick,

Have never considered teaming network cards before.
Is there a security benefit or just performance increase?

Jess
0
 
LVL 22

Expert Comment

by:Rick Hobbs
ID: 17091063
Performance and failover.  If one fails, the other should keep working.
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
ISP Change 14 51
VPN tunnel between Watchguard and OpenVPN? 1 36
vSphere 5.5 - move subnet to another data center? 2 12
Bandwidth issues? 5 30
Meet the world's only “Transparent Cloud™” from Superb Internet Corporation. Now, you can experience firsthand a cloud platform that consistently outperforms Amazon Web Services (AWS), IBM’s Softlayer, and Microsoft’s Azure when it comes to CPU and …
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question