Networking Forums

Networking Forums > Computer Networking > Windows Networking > Two sites connected via hardware IPSec VPN Tunnel

Reply
Thread Tools Display Modes

Two sites connected via hardware IPSec VPN Tunnel

 
 
Ed Walker
Guest
Posts: n/a

 
      03-15-2005, 03:08 PM
Hey guys, I need help with this as I am stumped.

I have two locations that were previously connected via Frame Relay, we have
since moved to a IPSec site to site VPN solution using watchguard soho 6 and
a firebox x2500 on the other side.

we have the tunnel up and running, but have several problems:

users cannot log into the network (the domain controllers are on the far
side <x2500>
users on the remote end are able to ping some of our resources on the far
side, they can ping and get a response frmo one of our two domain
controllers/dns server, but not hte other, nor can they connect to our main
server on the far side.

I can remote desktop into the server on the remote end, and login but the
local users there cant login.

any ideas?

i am thinking they need a domain controller on the remote end and that this
may be a dns issue among other things?

the setup sends only traffic destined for our private network over the
tunnel and internet traffic goes directly fmro their router andnot over the
tunnel

thanks


 
Reply With Quote
 
 
 
 
Phillip Windell
Guest
Posts: n/a

 
      03-15-2005, 04:04 PM
Watchgaurd is kinda proprietary in the way they do things (we use one here).
You might be better off contacting them.

--

Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com

"Ed Walker" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Hey guys, I need help with this as I am stumped.
>
> I have two locations that were previously connected via Frame Relay, we

have
> since moved to a IPSec site to site VPN solution using watchguard soho 6

and
> a firebox x2500 on the other side.
>
> we have the tunnel up and running, but have several problems:
>
> users cannot log into the network (the domain controllers are on the far
> side <x2500>
> users on the remote end are able to ping some of our resources on the far
> side, they can ping and get a response frmo one of our two domain
> controllers/dns server, but not hte other, nor can they connect to our

main
> server on the far side.
>
> I can remote desktop into the server on the remote end, and login but the
> local users there cant login.
>
> any ideas?
>
> i am thinking they need a domain controller on the remote end and that

this
> may be a dns issue among other things?
>
> the setup sends only traffic destined for our private network over the
> tunnel and internet traffic goes directly fmro their router andnot over

the
> tunnel
>
> thanks
>
>



 
Reply With Quote
 
Bill Grant
Guest
Posts: n/a

 
      03-15-2005, 10:40 PM
As Phillip said, the first thing to check is whether the Watchguard is
blocking any traffic across the link.

Whether you put a DC in the site or not is a different question. There
are advantages in having a DC in a site with AD. But if it worked OK on a
leased line, it should work OK with a VPN link. Has anything else changed?
Have you moved from a bridged connection to a routed one?

"Phillip Windell" <@.> wrote in message
news:%(E-Mail Removed)...
> Watchgaurd is kinda proprietary in the way they do things (we use one
> here).
> You might be better off contacting them.
>
> --
>
> Phillip Windell [MCP, MVP, CCNA]
> www.wandtv.com
>
> "Ed Walker" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
>> Hey guys, I need help with this as I am stumped.
>>
>> I have two locations that were previously connected via Frame Relay, we

> have
>> since moved to a IPSec site to site VPN solution using watchguard soho 6

> and
>> a firebox x2500 on the other side.
>>
>> we have the tunnel up and running, but have several problems:
>>
>> users cannot log into the network (the domain controllers are on the far
>> side <x2500>
>> users on the remote end are able to ping some of our resources on the far
>> side, they can ping and get a response frmo one of our two domain
>> controllers/dns server, but not hte other, nor can they connect to our

> main
>> server on the far side.
>>
>> I can remote desktop into the server on the remote end, and login but the
>> local users there cant login.
>>
>> any ideas?
>>
>> i am thinking they need a domain controller on the remote end and that

> this
>> may be a dns issue among other things?
>>
>> the setup sends only traffic destined for our private network over the
>> tunnel and internet traffic goes directly fmro their router andnot over

> the
>> tunnel
>>
>> thanks
>>
>>

>
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Ipsec tunnel mode vs ip in ip with ipsec transport Reji Linux Networking 1 09-20-2011 04:29 PM
IPsec in the tunnel mode salildangi@gmail.com Linux Networking 0 09-25-2007 08:53 PM
IPsec tunnel using racoon dee Linux Networking 2 07-16-2007 08:53 AM
IPSec VPN tunnel with hardware gateway Danny L Windows Networking 1 11-13-2004 12:23 AM
Windows 2003 ipsec tunnel to third party hardware firewall? scott Windows Networking 1 03-01-2004 06:27 PM



1 2 3 4 5 6 7 8 9 10 11