Go Premium for a chance to win a PS4. Enter to Win


VPN connection setup help

Posted on 2011-03-01
Medium Priority
Last Modified: 2012-05-11
We have a company placed in a  foreign country that needs to be connected to our domain network placed in another country using VPN connection. That is the main conception.
I did the following:
- I have configured the domain server to accept incoming VPN PPTP connection
- I have configured the client VPN connection
It is working but the problem is that every time the client connects to server using VPN it seems that all the internet traffic is relayed to the VPN connection. Other words when the connection is placed the internet traffic and everything goes through the vpn ONLY!
I have tried to change the clients local subnet so now they are: (for example I give you 1 PC's settings)
LAN settings / client side:

VPN settings / client side:
Gateway, dns: automatic

LAN settings / server side:

How should I set up the VPN connection to be totally separate  from LAN traffic, because for example when I want to download a file on the client computer it starts to download through VPN.

Thanks in advance.

Question by:textura
  • 3

Expert Comment

ID: 35006610
This is normal behaviour. The VPN you have set up effectively puts your client machine on the remote network. If you want to download a file that doesn't reside on the remote network, you'd be best to disconnect from the VPN first.

As an alternative, you could set up a router to router/server VPN and adjust your hosts file to resolve server names across the VPN to your  remote network subnet. This way all traffic to and from the remote network will go via your VPN and other traffic will go through your local connection.

Accepted Solution

nexusds earned 1000 total points
ID: 35006907
turn off default gateways and add a route manually for the other subnet (or in a batch file).. or use RRAS between servers if you have. Better again is use hardware routers using IPSec for better performance .. also PPTP takes some headroom on your packets and lowers or can even cause MTU problems (holes) depending on the internet connection types at each end.

Author Comment

ID: 35006971
How professional should be a router like this, because i have a symantec gateway 320 but i don't know how should i set it up behind a router.
Can you help me regarding this?

Assisted Solution

roddymatheson earned 1000 total points
ID: 35007339
I'm not familiar with the Symantec Gateway 320 but even most basic home routers have a firewall/NAT that allow you to forward PPTP (port 1723) traffic and most these days are able to act as a basic VPN endpoint so I'd be very surprised if this isn't the case with your Gateway.

If you are using the gateway was your end point, you'll need to make sure that your router is forwarding PPTP traffic to the Gateway's IP address. The Gateway should have some VPN facilities for either listening for or dialling out and entering a login for the remote router to authenticate against. PPTP is easiest to set up and should allow you to get it working quickly. once you're happy you understand how it works and have the devices talking and traffic routing, you might want to change to IPSEC for the reasons nexusds mentioned - assuming the Symantec gateway supports IPSEC. If there are no VPN endpoint facilities on the Gateway, you'll need to set up a 2nd port forward but this time on the Gateway so that PPTP traffic is directed to your server's IP address.

Expert Comment

ID: 35007363
I meant to say, your router may have a VPN passthrough facility which you may need to adjust depending on whether you are using the router as a VPN listener or not. Off if you are using router as VPN endpoint, otherwise turn the passthrough on.

Featured Post

 [eBook] Windows Nano Server

Download this FREE eBook and learn all you need to get started with Windows Nano Server, including deployment options, remote management
and troubleshooting tips and tricks

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
Having trouble getting your hands on Dynamics 365 Field Service or Project Service trial? Worry No More!!!
Viewers will learn how to maximize accessibility options in an Excel workbook for users with accessibility issues.
The viewer will learn how to create a normally distributed random variable in Excel, use a normal distribution to simulate the return on an investment over a period of years, Create a Monte Carlo simulation using a normal random variable, and calcul…

963 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question