?
Solved

2 nic RRAS server 2003 clients can ping/access comps on local network but comps on local can't ping/access back

Posted on 2009-07-08
4
Medium Priority
?
381 Views
Last Modified: 2012-05-07
I have a server 2003 box with 2 nics setup for VPN and NAT. I went the second nic route to get past a 3rd party controlled firewall in our setup that is managed by an outside companys that wants big bucks just to open a few ports.

The lan nic has a static assigned of 192.110.175.232, subnet .128 and no gateway set.
The wan nic is set with a static also and has the gateway info for our isp.

Computers outside of this network are able to connect on the wan nic and access any computer on the network BUT the computers on the network are not able to communicate. ping or anything back.

The VPN server has no firewall enabled that I have configured or am aware of.
0
Comment
Question by:avaris4069
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 77

Expert Comment

by:Rob Williams
ID: 24812557
Have you enabled LAN routing in the RRAS configuration?
http://www.lan-2-wan.com/Added%20Images/1NIC/rras-1n-3.jpg

Do I understand correctly you have a server with which you bypassed a firewall, assigned a public IP, and have no software firewall enabled other than NAT? Sounds a little risky.
0
 

Author Comment

by:avaris4069
ID: 24812936
LAN routing is enabled. All firewalls are off because I am trying to troubleshoot and rule things out. Once I get the problem solved I will be using a software firewall and tell it to only allow traffic from specific incoming macs or ips.

But all that us after I fix this issue.
0
 

Accepted Solution

by:
avaris4069 earned 0 total points
ID: 24815294
Problem solved. I had to get a route with the address pool for the VPN added to the switch.
0
 
LVL 77

Expert Comment

by:Rob Williams
ID: 24815324
Thanks for updating.
Interesting, adding a route was my first thought but I assumed the route must exist since the return reply from your client ping "found its way back home".
Good to hear.
Cheers!
--Rob
0

Featured Post

WatchGuard's M Series Appliances - Miecom Approved

WatchGuard's newest M series appliances were put to the test by Miercom.  We had great results and outperformed all of our competitors in both stateless and stateful traffic throghput scenarios! Ready to see how your UTM appliance stacked up? Download the Miercom Report!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Back in July, I blogged about how Microsoft's new server pricing model, combined with the end of the Small Business Server package, would result in significant cost increases for many small businesses (see SBS End of Life: Microsoft Punishes Small B…
Experts-Exchange users below are the steps you can follow to upgrade your Lync server to latest CU's or cumulative updates. Note: Perform it during non-production hours.   Step 1: Backup your lync and SQL server database. Follow below article: h…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…
Suggested Courses
Course of the Month14 days, 7 hours left to enroll

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question