- VPN and SBS4.5
- Posted by Robert C on May 25th, 2004
I know that I am using horribly old technology, but it is what we have. We
have an SBS 4.5 box that has been working great for almost 5 years. We have
a Win98SE laptop that has never been part of our network. We have a
Watchguard SOHO 5 firewall. The SBS sits behind the SOHO, it has one NIC
and is not running Proxy. I have installed the Watchguard Mobile User VPN
client on the laptop and configured the SOHO to accept the VPN connection.
The VPN connection between the laptop and the SOHO works and I can ping all
of the trusted side of the firewall. What I can't do is to get the laptop
to log onto the office network. When I establish the VPN connection there
is no authentication attempt in the event viewer. Watchguard Tech Support
says that the configuration is on the server side and that everything is
configured correctly on the client. The user account that I am using on the
laptop has "Allow this user to use a modem to access this server" checked as
yes. I have the RAS RACM services are running. What configuration am I
missing? I have searched the KB, but I couldn't find an article that
resembled my configuration.
Thanks for the help.
Robert
- Posted by Cris Hanna \(SBS-MVP\) on May 26th, 2004
You're gonna have problems with this.
You need to see if the Watchguard client software somehow allows the logon
to the domain during the connectoid.
--
CRIS HANNA
SBS-MVP
--------------------------------------------------------
Please do not respond to me directly by email but only in the newsgroups so
that all can benefit from the information
"Robert C" <rc3NOSPAM@PLEASEhotmail.com> wrote in message
news:10b70o533anjgbe@corp.supernews.com...
- Posted by Merv Porter [SBS-MVP] on May 26th, 2004
I think you're right Cris. I was out at Watchguard's web site looking at
the SOHO 5 requirements for this. Looks like the VPN client requires 2
configured SOHOs or a SOHO and a Firebox, both with the VPN key enabled.
See page two of the Quick Start Guide under VPN Management:
http://www.watchguard.com/help/documentation/soho.asp
May have to go with PPTP (assuming the SOHO 5 supports PPTP pass through.
The SOHO 6 indicates that it does support this.)
--
Merv Porter [SBS MVP]
===================================
"Cris Hanna (SBS-MVP)" <crishannanospam@computingpossibilities.net> wrote in
message news:Owcy2isQEHA.3580@TK2MSFTNGP11.phx.gbl...
- Posted by Robert C on May 26th, 2004
What is listed in the Quick Start Guide is what they term a Branch Office
VPN. That is where all of the stations in location can have VPN access to
the LAN of a central office. This does require two SOHO or a SOHO and a
Firebox. What we are trying to do is a single user VPN or what they call a
mobile user VPN. The setup guide for the client software says that it does
support the logon process and it says that when you are prompted for a user
name and password that you have to use your remote access user and
appropriate password as this is stored and will be used when the remote
computer logs on to the network. I have it setup this way, but the logon is
not happening. I don't know if it is the client or the server. Watchguard
says that it is the server, but I am not so sure.
Robert
"Merv Porter [SBS-MVP]" <mwport@no_spam_hotmail.com> wrote in message
news:OKJJoysQEHA.3944@tk2msftngp13.phx.gbl...
- Posted by Merv Porter [SBS-MVP] on May 27th, 2004
Anything in the Watchguard or SBS logs?
Are you using DUN 1.4 on the Laptop?
Microsoft Windows 98 Dial-Up Networking 1.4 Upgrade Release Notes
http://support.microsoft.com/?kbid=297816
Can you ping the server and/or workstations after you establish the VPN
tunnel? If you can ping, you may have a name resolution problem. Try
setting the WIn98 laptop workgroup name to the same name as your SBS domain.
A lmhost file on the laptop pointing to the SBS domain may also help.
--
Merv Porter [SBS MVP]
===================================
"Robert C" <rc3NOSPAM@PLEASEhotmail.com> wrote in message
news:10ba2frk4qcgkb6@corp.supernews.com...
- Posted by Robert C on May 27th, 2004
The SOHO logs show that the connection between the laptop and the SOHO has
been established, but the SBS logs that I have checked in the event viewer
don't show any connection attempts. I am not sure what version of DUN I am
running on the laptop. I will check it today when it comes back to the
office. I can ping the server and the whole protected network once the
tunnel is established. I have already set the workgroup name to the office
domain. I am not familiar with lmhost files. I will do some research and
see what I can find.
Thank you,
Robert
"Merv Porter [SBS-MVP]" <mwport@no_spam_hotmail.com> wrote in message
news:OOff3I4QEHA.3220@TK2MSFTNGP12.phx.gbl...