Solved

User cannot access internet when VPN is connected but other remote users are fine

Posted on 2011-09-11
10
411 Views
Last Modified: 2012-05-12
I am the new general purpose IT person at a small business and am having issues with one user cannot access the internet when they connect by vpn at home, but they are able to access the office shares/drives, etc when vpn'ed in.

Other users and me including are not having this issue or have ever experienced this issue. I think that it may be because of their local intranet settings conflicting.  Here is their local internet settings when connected by vpn.

 Net setings
Is the same first two octets conflicting, because all other users have different local home ip subnets, which leads me to think that this is the culprint as all other things are the same...??  I am not a network expert, so bare with me please.  

We are using a fortigate VPN on the business side and forticlient on client side.  

I have seen the workaround where you are supposed to uncheck the "Use default gateway on remote network" but this is always enabled even if you uncheck it as it is set somewhere on fortigate.  I'm trying to figure out where and how, not experienced with the fortigate.  

Any help would be muchhhhh appreciated....
0
Comment
Question by:janlani19
10 Comments
 
LVL 21

Expert Comment

by:Papertrip
Comment Utility
Can you paste the routing table while connected to the VPN please.

netstat -rn

Open in new window


0
 
LVL 10

Expert Comment

by:SuperTaco
Comment Utility
is the fortigate client set up for split-tunnel?
0
 
LVL 16

Expert Comment

by:Syed_M_Usman
Comment Utility
apart from above what SuperTeco suggested please try to find "Set Default Route as this Gateway" and enable the option.
0
 

Accepted Solution

by:
janlani19 earned 0 total points
Comment Utility
Sorry I have not gotten back sooner. Other projects going on.  

Well, I looked into the fotigate VPN settings and there were no DNS entries, just blanks.  So I put in Google DNS entries and we now have access to internet while VPN'ed in and also have access to the shared folders on the remote server.

Is using google's DNS server ip's a good idea?   In the past, I see that they were using our internet providers DNS entries, which act ok......  Any thoughts appreciated.
0
6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

 
LVL 16

Expert Comment

by:Syed_M_Usman
Comment Utility
you should have you OWN dns server if not then ISP DNS Server.
0
 

Author Comment

by:janlani19
Comment Utility
We are a small business with mostly roaming users, mainly using google apps.  There are no LDAP or dns servers on site just file servers.  Do you think the ISP dns is best or are the google 8.8.8.8 dns server address just as fine...???
0
 
LVL 16

Expert Comment

by:Syed_M_Usman
Comment Utility
if Google DNS is working fine for you then you can continue with same setting but ISP DNS could be a betetr option specially if your users are Mobile Users.
0
 

Author Comment

by:janlani19
Comment Utility
A friend showed me a cool benchmark test tool from google that test the DNS servers near you for the fastest one.  -->  http://code.google.com/p/namebench/
Hope it helps.
0
 
LVL 33

Expert Comment

by:digitap
Comment Utility
This question has been classified as abandoned and is closed as part of the Cleanup Program. See the recommendation for more details.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Network traffic routing plays key role in your network, if you have single site with heavy browsing or multiple sites, replicating important application data from your Primary Default Gateway ,you have to route your other network traffic from your p…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now