Link to home
Start Free TrialLog in
Avatar of tommyeriksen
tommyeriksenFlag for Norway

asked on

Route HTTP-traffic outside VPN-connection

A client of mine has a server; Windows Server 2008 R2 in their main office, but most of them work from other locations. Some work from customer sites, and some work from their homes. The client computers connect to the server through a VPN connection to access corporate rescourses. But the problem is that the internet connection on their main office is actually slower than their home network, because of limitations from their Internet Service Provider; as they actually cannot deliver a faster internet connection on their main office location. The consequense of this is frustrations from their mobile users resulting in them disconnecting from VPN and working locally, and saving documents on their harddrive which means they will be lost when (not if:-)) their harddrive crashes. So I was thinking... is there any way to route normal HTTP and HTTPS traffic (and also maybe other ports like 21 for FTP) outside the VPN-connection, so they can still have a good internet experience? If this is possible we could "force" them to use VPN using the Directaccess feature in Server 2008 R2 and Windows 7 Enterprise.

For your information we are using standard Microsoft PPTP VPN, and all computers are running Windows 7 Enterprise.
ASKER CERTIFIED SOLUTION
Avatar of John Meggers
John Meggers
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Avatar of Carl Dula
Carl Dula
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of tommyeriksen

ASKER

Thank you for your answers, the words "split tunneling" was the key for me to understand:-) I read parts of the microsoft article, but it was to much information, but thank you anyway! If someone else is browsing through and find this question, I'd just want to mention what I did to test...; I accessed the propery page of my VPN-connection, hitting the Network-tab, selecting the property button on "Internet Protocol version 4" (and 6), clicking advanced, and deactivating "Use standard gateway on external networks". Then I could access both internal rescources and still have normal speed on my internet connection. Of couse I will implement this setting using group-policy on the server, so I will not have to configure all the users VPN-connection.