Solved

Issue: Cisco VPN Client

Posted on 2009-05-19
10
261 Views
Last Modified: 2012-05-07
I have been experiencing an issue with a Cisco VPN Client while connecting to a government site.  The problem began occuring when we moved the workstation that it is on to a new domain.  Once on the new domain we could not contact the site (our connection would fail).  
If I move the workstation back to the old domain, the user can connect to the site via the VPN no problem.

I believe that it may be a DNS issue.  Our old domain was a NT 4.0 domain controller and the new one is an Active Directory domain.  Prior to the new domain our DHCP would point users to the ISP's external DNS, because of AD the new DHCP points to the internal DNS which is also the AD server.

Any ideas?

Please help!
0
Comment
Question by:MightyMikey
  • 5
  • 4
10 Comments
 
LVL 20

Expert Comment

by:RPPreacher
ID: 24428196
Is the vpn client pointing to a name or IP?
What are the ping results new domain versus old domain?
0
 

Author Comment

by:MightyMikey
ID: 24428215
The vpn client points to a name (prefix.domain.com), although i've tried changing it to an IP, but i was still frustrated by failure.  The vpn client can connect to the vpn server on the new domain because it authenticated and showed a stable connection, but the actual application that uses and runs on the vpn cannot access its intended host through the vpn on the new domain.  Everything works fine on the old.
0
 
LVL 20

Expert Comment

by:RPPreacher
ID: 24428226
When you attempt to ping prefix.domain.com on the new domain, what are the results?
0
 

Author Comment

by:MightyMikey
ID: 24428296
I can ping the VPN host from both domains, but i cannot ping the server/IP that the application communicates with once the vpn connection is up between the new domain and the vpn server.

Does that make sense?
0
 
LVL 20

Expert Comment

by:RPPreacher
ID: 24428308
If I understand, you are saying that you CAN make a VPN connection from both domains; however, once connected, the client cannot ping the destination server by name?

If this is accurate, when you ping the name of the destination server, what is the result?
0
Complete Microsoft Windows PC® & Mac Backup

Backup and recovery solutions to protect all your PCs & Mac– on-premises or in remote locations. Acronis backs up entire PC or Mac with patented reliable disk imaging technology and you will be able to restore workstations to a new, dissimilar hardware in minutes.

 

Author Comment

by:MightyMikey
ID: 24428429
when i ping the final destination on the remote network prefix2.domain.com i receive a message saying:  "Ping request could not find host prefix2.domain.com.  Please check the name and try again."

What do you think?
0
 

Author Comment

by:MightyMikey
ID: 24428442
I just discoved that I can ping it by IP but not by domain name.
0
 

Author Comment

by:MightyMikey
ID: 24428465
any other ideas?  I cannot change the address that the application connects to, it must connect to the prefix2.domain.com address and not by IP.  Whats wrong with the dns?
0
 
LVL 22

Accepted Solution

by:
chakko earned 250 total points
ID: 24428546
you can use the hosts file to bypass/workaround a DNS or name resolution problem.

try making an entry in your hosts file  (c:\windows\system32\drivers\etc\hosts )

add an entry for the IP and name:

xxx.xxx.xxx.xxx   prefix2.domain.com


add entries for other hosts if you need to.

if you need to connect by netbios name you can make the entry like this:

xxx.xxx.xxx.xxx   prefix2    prefix2.domain.com



0
 
LVL 20

Assisted Solution

by:RPPreacher
RPPreacher earned 250 total points
ID: 24430258
Add a zone to your DNS for domain.com
Add an A record to the new zome pointing to prefix.domain.com
0

Featured Post

Get up to 2TB FREE CLOUD per backup license!

An exclusive Black Friday offer just for Expert Exchange audience! Buy any of our top-rated backup solutions & get up to 2TB free cloud per system! Perform local & cloud backup in the same step, and restore instantly—anytime, anywhere. Grab this deal now before it disappears!

Join & Write a Comment

If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
A safe way to clean winsxs folder from your windows server 2008 R2 editions
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…

706 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now