Hi,
I just cant get this working and I'm confused about what I need to have set
up, so some straightforward help would be really appreciated.
What I have is the 2003 server RAS up and running. PPTP is fine, and it
looks like L2TP ports are present out of the box. What I dont really have a
clear idea on is the domain/ipsec side of it.
Symptoms are client cannot connect and ethreal trace shows the client is
trying to setup some ipsec stuff, ISAKMP main mode/informational packets are
arriving at the vpn server interface on the isakmp port (500), but the server
never replies and the client times out. I have edited the group policy for
automatic certificates, and a scan of the server ports shows a 'listen' on
port 500, so ipsec is there (the service is started).
I get the feeling I'm missing a big bit on config or component but not sure
what. I have one ethernet redside interface and one ethernet green side. The
VPN client tries to connect and terminate over the green side.
Any pointers really apprciated.
Thanks
nick
|