Solved

VPN clients connect, but can't access network

Posted on 2010-11-24
14
1,099 Views
Last Modified: 2012-06-27
I am configuring a new PPTP VPN on Server 2008 R2. Remote VPN Users can connect to the new VPN and ping the VPN server, but cannot access the network beyond it: ping requests to any other devices on the network just die.

I'm obviously missing a crucial step. Any ideas?

Thanks!
0
Comment
Question by:Stuart_Page
  • 7
  • 7
14 Comments
 
LVL 68

Expert Comment

by:Qlemo
ID: 34209901
When you set up the RRAS server, did you tick the "Allow local network access" (or similar) option?
0
 

Author Comment

by:Stuart_Page
ID: 34232683
I don't recall such an option. Checking through all of the settings on my current VPN, I don't see anything like what you're describing.

Thanks.
0
 
LVL 68

Expert Comment

by:Qlemo
ID: 34233203
And you are right, that option does not exist.
Did you setup RRAS in Routing mode or only as RAS Server?
0
 

Author Comment

by:Stuart_Page
ID: 34233547
I don't recall. Is there some way to verify this?
0
 
LVL 68

Expert Comment

by:Qlemo
ID: 34234576
You see that in the RRAS server properties (in RRAS admin MMC).
0
 

Author Comment

by:Stuart_Page
ID: 34234647
This is just an RRAS server.
0
 
LVL 68

Expert Comment

by:Qlemo
ID: 34234668
Try if switching Routing on helps (it should). I assume the RAS server uses an IP pool of the LAN, either statically assigned or obtained via DHCP? If the RAS IP pool provides addresses from a completely different range, it's getting more complicated.
0
Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

 

Author Comment

by:Stuart_Page
ID: 34234707
I configured RRAS to use a IP range within one of the DHCP scopes on my DHCP server, so that VPN ip's would be obtained dynamically.

Where to turn on routing?
0
 

Author Comment

by:Stuart_Page
ID: 34234734
Routing was already checked here...
RRAS routing
0
 
LVL 68

Accepted Solution

by:
Qlemo earned 500 total points
ID: 34234801
It is checked (for IPv4), but you need to set it to "LAN and demand-dial routing".
0
 

Author Comment

by:Stuart_Page
ID: 34345775
Ok, so the problem was that the VPN was configured on an entirely different subnet from the rest of the network. Once I corrected that issue, traffic began to flow.

Thanks.
0
 

Author Closing Comment

by:Stuart_Page
ID: 34345781
I found the answer to my question on my own.
0
 
LVL 68

Expert Comment

by:Qlemo
ID: 34345952
Of course it was, hence I recommended to switch demand dial routing on.
0
 
LVL 68

Expert Comment

by:Qlemo
ID: 34345976
BTW, in such cases you usually do not accept any answer but your own, and not award with a grade of "C". That grade bluntly says "was of not much help providing some very general stuff".
0

Featured Post

NAS Cloud Backup Strategies

This article explains backup scenarios when using network storage. We review the so-called “3-2-1 strategy” and summarize the methods you can use to send NAS data to the cloud

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

864 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now