Link to home
Start Free TrialLog in
Avatar of peachplc
peachplcFlag for United States of America

asked on

VPN not working on different sites using Netgear equipment

I have a VPN issue. I am using a Netgear 632 modem that is bridged to a Netgear FVG318 Firewall VPN, I have this unit working perfectly, I can use the VPN software to gain access to my servers etc.
The problem is when I moved it to other sites (2 in all).
I have changed all the normal details such as the static IP address and the DSL details but the FVG318 recieves nothing (this is obviousley running in PPoE mode).
I then decided to check the line by changing my Netgear 632 modem to use PPoA, that works fine and i can connect to the internet, so all the details are correct.
I have spoken to the ISP who say they dont get involved in things like that, it should work they said!!!!!!!
What else could I do to make this work.
The 3 sites are all in different areas geographically, could it be the lines? Im at a total loss with this one.
Please help!!!!!!!!!!!!!!!
Avatar of Rob Williams
Rob Williams
Flag of Canada image

What VPN solution are you using? a Windows VPN server behind the Netgears or the Netgear ProSafe VPN client connecting to the FVG318?
Some ISP's do block VPN traffic, though it is not common. If using the ProSafe client it would be more likely the subnet information was not changed to match the new site.
Avatar of peachplc

ASKER

I am using the prosafe client.
The main issue is that the internet doesnt connect to the FVG318 when using the pass through on the Netgear 632 at 2 different sites, even though ISP information has been changed. (The main differences are that they are all miles away from each other and use difference isp's, compared to the site it was origionally set up on. Maybe the ISP are blocking VPN traffic. I have also found out that one of the MD's in all his knowledge and wisdom has changed one of the remote lines from VC to LLC, does that matter at all?
I wouldnt have throught BT or ZEN internet ISP's would block VPN traffic though, would they?
Are you saying you have no Internet access from these sites? If so that will have to be resolved before the VPN. As for the VC/LLC options, those configurations are quite specific to the ISP and location from which you are connecting. I would get the Internet connection working properly without the FVG318 with the help of the local ISP, and then transfer those connection specifics to the FVG318 after putting the 632 back in bridge mode.

>>" wouldnt have throught BT or ZEN internet ISP's would block VPN traffic though, would they?"
I don't know I do not work with those providers in this area. It is very unlikely, but a few do.

Yes i have internet access at both sites, the internet works fine.

The VPN firewall and the 632 modem router work perfectly fine on the main site.

When i change over from PPPoA modem to a pass through modem and a VPN firewall (using PPPoE) I cannot establish a connection with the internet at all. Even though i have put the correct ISP details into the units
PPPoA and PPPoE are different connection methods, and are determined by the ISP. With most units you cannot switch. Does the FVG318 support PPPoA, a lot do not.
unfortunatley it only supports PPPoE. I have heard that in the UK BT only really support PPPoA, I dont suppose there would be any way round this issue. Someone told me that I could get around this issue by having a second IP address but I do not really want to do that, as I will have to upgrade the lines.

Any ideas?
This has come up several times before, and really the only solution is to get a VPN router that supports PPPoA. Seems to me some of the Vigor Draytek units will do that.
Yes we have them in place at the moment and they work fine.  maybe the option would be to stay with those but i dont really know how to configure them for VPN
Trial and error :-)
We don't use the Drayteks here so I am not as familiar with them but I did remotely configure a couple in Europe one time. Seems to me they were relatively straight forward. As with any GUI based configuration, like the Netgears, basically make the 2 ends identical except addressing.
You say you have some in place now, do they have configured VPN's you could look at as a reference.
Keep in mind not all Vigor units are VPN routers.
Hi
Hey have the options for VPN links but non are configured. I may place a posting on the draytek forum (if there is one) and se if i can get any help from them. Thanks for all your help on this one, I will leave this open for a couple of days to see if anyone else has any input
ASKER CERTIFIED SOLUTION
Avatar of Rob Williams
Rob Williams
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Thanks peachplc.
Good luck with it. Cheers !
--Rob