Solved

Cannot get vpn shares on SBS 2008 to work from MAC

Posted on 2010-08-31
7
1,152 Views
Last Modified: 2013-11-24
Got an SBS 2008 and any client with Windows pc from home can VPN in to it and access the shares just fine.  Will not seem to work from Mac, but I am not a Mac person.  I tried it from a Mac and so did other clients, and while it seems to connect just fine, that's as far as you get.
So, when I initially set up the shares on the SBS 2008, I do make sure that SMB shares are allowed.  I take all the defaults so the path to the share is \\Servername\foldername
I've tried it setting up the permissions different ways including everyone has full access.

Now, on the Mac, I go to finder->applications->internet connect
I choose vpn, pptp and enter the ip info, and the login info matching the login on the server, and it connects just fine.

Now, I do the following:

1. Go to Finder
2.  Click on "Go" menu
3.  Click on "Connect to server"
4.  Enter "smb://192.168.1.2" in the "Server Address" box  

192.168.1.2 is the NAS address of the SBS 2008 server

I am asked to re-enter the username and password, so I do, and then it gives me an authentication error.  
I've tried this same thing from different Macs and even to different SBS 2008 servers.  No luck.  I know I must be doing something wrong but I am mystified by what it could be.  The Macs are all newer OS, not sure exact O/S version, but I could find out if that's key.  I am NOT a Mac person, never used one in my life until I tried to set up the VPN,  so I need super simple instructions for the MAC side, thanks!
0
Comment
Question by:mignonnedavis
  • 5
  • 2
7 Comments
 
LVL 53

Expert Comment

by:strung
ID: 33577353
Your problem likely is that the local LAN you are trying to connect from uses the same 192.168.1.x subnet as the lan you are trying to connect to. This confuses the Mac as it thinks that 192.168.1.2 is a local not remote address.

Probably your user has a Linksys router which defaults to a 192.168.1.x subnet. If you change the subnet of the router to, say, 192.168.5.x that will solve your problem.

To do that, enter the Linksys Admin site at 192.168.1.1 and change the Linksys LAN IP address to 192.168.5.1 and the DHCP range to 192.168.5.100 - 192.168.5.150. You will then have to reboot the Mac to reconnect to the router (to reset the Mac's IP to the right subnet) and re-connect to the Linksys admin which is now located at 192.168.5.1.
0
 

Author Comment

by:mignonnedavis
ID: 33578818
Have tried from many remote locations, Dlink, linksys, and other routers.  I am surprised Macs get confused, PCs don't.  I thought Macs were supposed to do everything better !  Well, no harm in trying. I will try from my own house later today.  But out of curiosity, there's no other workaround?  I don't see how I'm going to get these clients to reconfigure their routers.  And I don't want to change the server IP.
0
 
LVL 53

Expert Comment

by:strung
ID: 33579340
There is a check box in the Mac VPN client to send all traffic through the VPN, but quite frankly, I have never been able to get that to make a difference. I don't know why Macs and PC's work differently in that regard, but the topic has been raised here several times and no one has found a work around that I know of.
0
6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

 
LVL 53

Expert Comment

by:strung
ID: 33579509
0
 
LVL 53

Accepted Solution

by:
strung earned 500 total points
ID: 33579552
According to: http://www.net.princeton.edu/mac/network-config-x/caveats.html


"The PPTP VPN client does not provide a way to tune certain parameters associated with the VPN connection.  Some of these parameters a security-conscious customer might have wished to have the ability to tune:
 
While the VPN connection is active, the Mac has an additional default IP route, via the VPN server. However, the Mac still has an interface route to each locally-attached network. (I.e. the IP subnet to which each interface is currently attached.)
 The Mac will still use those interface routes in preference to the default route that points to the VPN server.
 As a result, traffic between the Mac and other devices on the same IP subnet as any of its interfaces will not use the VPN connection, but instead will continue to travel directly between the Mac and the other devices.
"
0
 
LVL 53

Expert Comment

by:strung
ID: 33579567
0
 

Author Closing Comment

by:mignonnedavis
ID: 33638428
I haven't had a chance to try this yet, but it sure seems reasonable.  
0

Featured Post

6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Macbook Hard Drive Issue 23 97
SSL RA VPN 7 76
Cisco ASA two factor VPN 3 37
Cisco ASA5508-X vs Barracuda X200 2 28
Some of you may have heard that SonicWALL has finally released an app for iOS devices giving us long awaited connectivity for our iPhone's, iPod's, and iPad's. This guide is just a quick rundown on how to get up and running quickly using the app. …
Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

706 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now