Solved

VPN/Remote User cannot access a Server

Posted on 2013-12-20
7
678 Views
Last Modified: 2014-01-10
Hello,

We have a remote user who needs access to a server. They've never had a problem in the past. They can VPN into our network using their domain credentials but they cannot remote into the specific server that they need. The connection times outs. Users on the internal network can access the server.

It looks like one of our DHCP servers is rejecting them? I'm not sure how it could be a PW issue. The same credentials that allow the users to access the network via VPN should allow them access to the server.

User XXX was denied access.

Proxy-Policy-Name = Connection request policy
Authentication-Provider = Windows
Authentication-Server = <undetermined>
Policy-Name = <undetermined>
Authentication-Type = PAP
EAP-Type = <undetermined>
Reason-Code = 16
Reason = Authentication was not successful because an unknown user name or incorrect password was used.
0
Comment
Question by:grindsmygeaqrs
  • 3
  • 2
  • 2
7 Comments
 
LVL 3

Expert Comment

by:IKtech
Comment Utility
maybe try domain\username instead of just username when prompted for the credentials.
0
 

Author Comment

by:grindsmygeaqrs
Comment Utility
They can't reach the machine itself to even enter them.
0
 
LVL 13

Expert Comment

by:Michael Machie
Comment Utility
The message does specify a credential issue so trying IKtech's suggestion should be the first option.

You also may want to try using the IP address of the server rather than Name. I say this because if you have a VPN group that is configured for split-tunnel, DNS resolution may be a problem, resulting in the inability to find your servers by name. The split-tunnel is used to allow the VPN connected User to access their local resources for internet and peripherals while still allowing access to the Enterprise servers/shares via IP.
Also, re-verify that the User is part of the Remote Users Group. If this access is taken away then they won't be able to RDP either.
0
Highfive + Dolby Voice = No More Audio Complaints!

Poor audio quality is one of the top reasons people don’t use video conferencing. Get the crispest, clearest audio powered by Dolby Voice in every meeting. Highfive and Dolby Voice deliver the best video conferencing and audio experience for every meeting and every room.

 
LVL 3

Expert Comment

by:IKtech
Comment Utility
what type of vpn server are you using?  Is it windows?  Can you connect the same way with a different PC and your user credentials?  Can you connect using a different PC and the users credentials?

If you can connect using a different pc and the user credentials it would seem the problem is associated with the users PC whether it is a reinstall of the vpn client or a setting or other at least you can narrow it down to the users PC.

If you can't connect using a different PC and the users credentials it would seem something is wrong with the users account.

Can the user connect to other resources after connecting to the VPN server?

You might also check the firewall on the server.
0
 

Author Comment

by:grindsmygeaqrs
Comment Utility
We use Cisco ASA for VPN. They can remote into other machines on the network.. just not that one. Also, I can remote into the machine from internally on the network.
0
 
LVL 13

Accepted Solution

by:
Michael Machie earned 500 total points
Comment Utility
I would check the Remote Users group and make sure that User is added. If you are a domain admin you will be able to RDP regardless of the group settings.
0
 
LVL 13

Expert Comment

by:Michael Machie
Comment Utility
Glad this is resolved for you and thanks!
0

Featured Post

Free Trending Threat Insights Every Day

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
OfficeMate Freezes on login or does not load after login credentials are input.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now