Solved

VPN Server (Windows Server 2008 R2)  using  “Network Policy and Access Services”

Posted on 2015-01-15
3
90 Views
Last Modified: 2015-01-29
I'm attempting to set up a VPN server on a virtual machine.

I followed the steps here:
http://www.thomasmaurer.ch/2010/10/how-to-install-vpn-on-windows-server-2008-r2/

Right now this is only with ONE NIC on the VM, where I have a static pool of private IPs.  Basically I followed this guide:
http://www.thomasmaurer.ch/2010/10/how-to-install-vpn-on-windows-server-2008-r2/


I am able to connect to the VPN, and I can ping 10.10.10.1 for example.

The issue is that I cannot connect out to the Internet through the VPN.


I'm assuming I probably need add a 2nd NIC but I'm not sure how to modify the configuration exactly.


The end result is when I'm on the VPN from say, my iPad or laptop... I want my public IP (ie - whatismyip.com) to show up as the IP of the VM.


I do have the capability to add another NIC and even to add another public IP to the VM if needed.


Just need some guidance in the rest of the setup, based on what I did so far (article above).


Thank you
0
Comment
Question by:Vas
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 1

Author Comment

by:Vas
ID: 40552523
UPDATE:

I am able to get this working if I add a two public IPs to the NIC, and then set the range of static IPs to the range of the two public IPs.

The 2nd IP is assigned to my iPad when testing.


So I guess my question is... is there anyway to do this with the VM having only one Public IP,  or is it necessary to have multiple public IPs to make this work?
0
 
LVL 2

Accepted Solution

by:
lasfra earned 500 total points
ID: 40553020
The normal idea with a VPN server is that you should be able to reach your internal network from internet.
So what do you mean with:

“I am able to connect to the VPN, and I can ping 10.10.10.1 for example
The issue is that I cannot connect out to the Internet through the VPN.”

The VPN server should have 2 NICs, one NIC facing the outside and on NIC facing your internal network. This is true both for VMs and for physical hosts.
If you install a VM as a VPN server the VM should have 2 NICs. If your physical server has a NIC facing internet, each machine using this NIC has to have a unique IP address. So the VM and the physical server can not share the same IP address, but the can share the NIC.
0
 
LVL 1

Author Comment

by:Vas
ID: 40562675
I was able to make it work with one NIC,  what I had to do was set the scope of the IPs to assign by the VPN service to additional public IPs.   I can connect to the VPN now and my public IP is shown as the public IP assigned by the VPN server.

What I haven't been able to do is set up an additional VPN user.  For testing right now, the current VPN user is the Administrator account, with granted "dial-up" privileges.

I created a second user, and even added it to the administrators group, gave it the same "dial-up" privilege (so right now there's really nothing different about this 2nd user in how it's configured as the administrator user)

The Administrator user can connect, but the new user can't.  No error, nothing in any logs, it just disconnects right away when trying to connect.
0

Featured Post

Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
A safe way to clean winsxs folder from your windows server 2008 R2 editions
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
Suggested Courses

628 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question