sonicwall vpn connection.... can't connect unless using a static ip

ok here is the enviroment

sonicwall tz-170 with enhanced os

Windows 2008r2 server with DCHP server giving out leases

I setup the sonicwall globalVPN i believe correctly... I cannot seem to connect.... IT passes the first 2 sets and logs in
It then gets stuck at getting an IP address....

I've tried over hotspot and get the same response... so i dont think its internal

The error is "failed to renew the IP address for the virtual interface"

However if i go to the sonicwall vpn connection in the Network connections and assign it a IP address and subnet it works fine.... If i put the gateway of the firewall in it doesnt work

I'm completely stumped...any help will be greatly appreciated

Mike

sonicwall.rtf
LVL 1
punkrawkdude99Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Aaron TomoskySD-WAN SimplifiedCommented:
It's easier to let the sonicwall assign ip addresses. I suggest you get things working like that first.

Then If you want to push for windows doing dhcp for the VPN connection here is a guide
http://help.mysonicwall.com/sw/eng/general/ui1/6600/DHCP/DHCP_over_VPN.htm
0
punkrawkdude99Author Commented:
I forgot to mention that there is a SSL vpn connection from one office to another.... will any of this effect it??

Couldnt i just use the non existent wlan interface and pass out dhcp on there instead?
0
Aaron TomoskySD-WAN SimplifiedCommented:
Are you trying to get vpn dhcp through the ssl VPN? If so, you probably need to add a firewall rule to allow that
0
Ultimate Tool Kit for Technology Solution Provider

Broken down into practical pointers and step-by-step instructions, the IT Service Excellence Tool Kit delivers expert advice for technology solution providers. Get your free copy now.

punkrawkdude99Author Commented:
there is a tz150 in another building and it is on a completely separate network..... 10.0.0.0

there is a ssl vpn connection from 10.0.0.0 to 192.168.99.0

i dont want to screw anything up by changing about the dhcp over vpn settings... i only want whatever i try to effect the vpn connections
0
punkrawkdude99Author Commented:
Ok i went in and added another interface for the WLAN i set it up on 192.168.100.1

i created a dhcp scope for it and told the dhcp over vpn to relay to that....

it works fine with windows... i can get on and connect to the file server without an issue

Now the mac is another issue... i have an ipad and the sonicwall mobile client... i just cant get it to connect....
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Aaron TomoskySD-WAN SimplifiedCommented:
I had problems with the mobile connect app. It was messing up the domain name for the routes with a ";" so I just use l2tp personally. It works for windows, osx, and iOS. Android oddly enough likes the app.
0
punkrawkdude99Author Commented:
is the L2 setup a pain??? do i need a radius server? This sonicwall is a POS and logs me out every 30 seconds....so yeah... i already have a low tolerance for it

my issue with the app is it wont connect.. it is supposed to populate the domain field... or something like that and it does nothing...and i dont know what to enter there....
0
Aaron TomoskySD-WAN SimplifiedCommented:
I use a windows 2012 domain and enabled nps (radius) on that. In sonicwall users settings, connect via ldap and radius. It needs ldap for groups and radius for user/passwords. Make a VPN group in ad, in the sonicwall add the VPN group to the VPN users local group.
0
punkrawkdude99Author Commented:
I was able to figure out a solution on my own however aaron was very helpful as well
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Networking Hardware-Other

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.