Greetings,
Here's my problem: I've set up a bench LAN 2 study for the 2k3 MCSE tests.
I've (1) DC AND (1) Member server, the latter in which I set up RRAS.
I'm on Comcast BB and therefore without routable IPs, so I set up a test VPN
to work inside my LAN. PPTP works fine, but I just can't get L2TP/iPSec to
work. I get a variety of errors, with the 2 most common: "Failure to
encrypt data" and "Connection failed because the security layer encountered
a processing error during negotiation..."
Client side is XPP/Sp2, VPN setup using network connection wizard, standard
settings include: (Security)- Typical, validate identity requiring secured
Pwd, Data encryption (tried both checked and unchecked), IPSEC using
preshared Key.
Server config, (General Tab)- Router checked and RA Server checked,
(Security Tab) -using windows authentication, MS Chapv.2 and CHAP, (Acc't
provider) Windows, (IPSEC) configured with same Key.
I also set RAS Policies on the server to each radio button- allow and deny
RAS access, and modified the Administrator and my own login account profile
to allow RAS access using the Dail-In Tab. I've also checked the default
domain policy and don't see any policies which would conflict, and it would
seem that domain controller pollicies wouldn't apply...
Remaining configs- Router/Firewall is Netgear FVS 318 (DHCP disabled), I've
no DMZ configured and DHCP is running on the same member server.
I tried every permutation possible on the client and server without success.
I've got to be missing something simple and/or stupid.....
Any suggestions?
Omar Sheikh
---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (
http://www.grisoft.com).
Version: 6.0.714 / Virus Database: 470 - Release Date: 7/2/2004