Networking Forums

Networking Forums > Computer Networking > Windows Networking > Win2003 hangup 1 outg. VPN conn. interrupts traffic at 2. outg. VP

Reply
Thread Tools Display Modes

Win2003 hangup 1 outg. VPN conn. interrupts traffic at 2. outg. VP

 
 
spulhuhn
Guest
Posts: n/a

 
      02-11-2008, 02:09 PM
Hi all,
I'm having a problem for several month, not found any solution yet.
We have a 2003 terminal server with several outgoing ras and pptp vpn
connections defined (remote support).
It's no problem to connect simultaniously to different ras and vpn partners
(outgouing)
The problem is, when we disconnect 1 vpn connection there does no traffic go
through the other vpn connection that was perfectly working before the hangup
of no.1.
When we reconnect vpn1 traffic starts going through vnp2 again.
Is this understandable?

Once more in short:
vpn1 and vpn2 connected, both pings to target o.K.
vpn1 hangup, vpn2 connected: both pings timeout
vpn1 reconnected, vpn2 still connected: both pings o.K.

I had a thread month ago regarding this problem with ras connections, but
its also with vpn connections, so it can't be a problem of the isdn card
manufacturer.

Does anyone have an idea about this?
Regards
Uwe
 
Reply With Quote
 
 
 
 
Robert L. \(MS-MVP\)
Guest
Posts: n/a

 
      02-11-2008, 03:29 PM
Sounds like routing table issue. compare the routing table before and after
disconnecting VPN1.

--
Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on
http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on
http://www.HowToNetworking.com


"spulhuhn" <(E-Mail Removed)> wrote in message
news:3C11DCCC-0D9F-4B27-B7AA-(E-Mail Removed)...
> Hi all,
> I'm having a problem for several month, not found any solution yet.
> We have a 2003 terminal server with several outgoing ras and pptp vpn
> connections defined (remote support).
> It's no problem to connect simultaniously to different ras and vpn
> partners
> (outgouing)
> The problem is, when we disconnect 1 vpn connection there does no traffic
> go
> through the other vpn connection that was perfectly working before the
> hangup
> of no.1.
> When we reconnect vpn1 traffic starts going through vnp2 again.
> Is this understandable?
>
> Once more in short:
> vpn1 and vpn2 connected, both pings to target o.K.
> vpn1 hangup, vpn2 connected: both pings timeout
> vpn1 reconnected, vpn2 still connected: both pings o.K.
>
> I had a thread month ago regarding this problem with ras connections, but
> its also with vpn connections, so it can't be a problem of the isdn card
> manufacturer.
>
> Does anyone have an idea about this?
> Regards
> Uwe


 
Reply With Quote
 
spulhuhn
Guest
Posts: n/a

 
      02-12-2008, 11:20 AM
Hello Robert,
thanks for your answer.
The only thing I see in the routing table (route print) except of the
missing entries of the killed vpn1 is one row:
1. both vpns o.K.:
255.255.255.255 255.255.255.255 172.16.201.28 172.16.201.28 1
255.255.255.255 255.255.255.255 172.16.201.28 3 1
255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
2. vpn1 hungup, vpn2 no traffic:
255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
255.255.255.255 255.255.255.255 192.168.104.26 3 1
there is one row added to vpn2 with interface "3" I don't know what this is.
172.16.201.28 is vpn1
192.168.104.26 is my ip in vpn2
should I post the whole route print output?
Regards
Uwe

"Robert L. (MS-MVP)" wrote:

> Sounds like routing table issue. compare the routing table before and after
> disconnecting VPN1.
>
> --
> Bob Lin, MS-MVP, MCSE & CNE
> Networking, Internet, Routing, VPN Troubleshooting on
> http://www.ChicagoTech.net
> How to Setup Windows, Network, VPN & Remote Access on
> http://www.HowToNetworking.com


 
Reply With Quote
 
Robert L. \(MS-MVP\)
Guest
Posts: n/a

 
      02-12-2008, 09:37 PM
In command prompt, do "route print". Then post back with the result.

--
Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on
http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on
http://www.HowToNetworking.com


"spulhuhn" <(E-Mail Removed)> wrote in message
news:B286DF79-1786-4EE0-AFD5-(E-Mail Removed)...
> Hello Robert,
> thanks for your answer.
> The only thing I see in the routing table (route print) except of the
> missing entries of the killed vpn1 is one row:
> 1. both vpns o.K.:
> 255.255.255.255 255.255.255.255 172.16.201.28 172.16.201.28 1
> 255.255.255.255 255.255.255.255 172.16.201.28 3 1
> 255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
> 255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
> 2. vpn1 hungup, vpn2 no traffic:
> 255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
> 255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
> 255.255.255.255 255.255.255.255 192.168.104.26 3 1
> there is one row added to vpn2 with interface "3" I don't know what this
> is.
> 172.16.201.28 is vpn1
> 192.168.104.26 is my ip in vpn2
> should I post the whole route print output?
> Regards
> Uwe
>
> "Robert L. (MS-MVP)" wrote:
>
>> Sounds like routing table issue. compare the routing table before and
>> after
>> disconnecting VPN1.
>>
>> --
>> Bob Lin, MS-MVP, MCSE & CNE
>> Networking, Internet, Routing, VPN Troubleshooting on
>> http://www.ChicagoTech.net
>> How to Setup Windows, Network, VPN & Remote Access on
>> http://www.HowToNetworking.com

>


 
Reply With Quote
 
spulhuhn
Guest
Posts: n/a

 
      02-13-2008, 06:50 AM
Hello Robert, here is tho whole route print output:
I hope there is no problem with the german headers
172.16.201.28 belongs to vpn1
192.168.104.0 belongs to vpn2
192.168.11.0 is internal net
192.168.11.195 is my IP
10.140.142.0 is a static route for Home VPN users
I have not activated "use default route on remote gateway", instead I do a
route add per batch file after connecting vpn's.


1. routes o.K.
IPv4-Routentabelle
================================================== ===
Schnittstellenliste
0x1 ........................... MS TCP Loopback interface
0x2 ...00 1a 92 3c 4c f2 ...... Intel(R) PRO/1000 PL Network Connection -
SecuRemote Miniport
0x3 ...54 55 43 44 52 09 ...... Check Point Virtual Network Adapter For
SecureClient - SecuRemote Miniport
0x1e0005 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface
0x1f0006 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface

================================================== ===
Aktive Routen:
Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik
0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20
10.140.142.0 255.255.255.0 192.168.11.251 192.168.11.195 1
87.193.131.218 255.255.255.255 192.168.11.200 192.168.11.195 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
172.16.0.0 255.255.0.0 172.16.201.28 172.16.201.28 1
172.16.201.28 255.255.255.255 127.0.0.1 127.0.0.1 50
172.16.255.255 255.255.255.255 172.16.201.28 172.16.201.28 50
172.22.4.42 255.255.255.255 192.168.11.251 192.168.11.195 1
192.168.11.0 255.255.255.0 192.168.11.195 192.168.11.195 20
192.168.11.195 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.11.255 255.255.255.255 192.168.11.195 192.168.11.195 20
192.168.104.0 255.255.255.0 192.168.104.26 192.168.104.26 1
192.168.104.26 255.255.255.255 127.0.0.1 127.0.0.1 50
192.168.104.255 255.255.255.255 192.168.104.26 192.168.104.26 50
213.61.134.68 255.255.255.255 192.168.11.200 192.168.11.195 20
224.0.0.0 240.0.0.0 172.16.201.28 172.16.201.28 50
224.0.0.0 240.0.0.0 192.168.11.195 192.168.11.195 20
224.0.0.0 240.0.0.0 192.168.104.26 192.168.104.26 50
255.255.255.255 255.255.255.255 172.16.201.28 172.16.201.28 1
255.255.255.255 255.255.255.255 172.16.201.28 3 1
255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
Standardgateway: 192.168.11.200
================================================== ===
St„ndige Routen:
Netzwerkadresse Netzmaske Gatewayadresse Metrik
10.140.142.0 255.255.255.0 192.168.11.251 1

2. Routes not o.K. after hangup vpn1

IPv4-Routentabelle
================================================== ===
Schnittstellenliste
0x1 ........................... MS TCP Loopback interface
0x2 ...00 1a 92 3c 4c f2 ...... Intel(R) PRO/1000 PL Network Connection -
SecuRemote Miniport
0x3 ...54 55 43 44 52 09 ...... Check Point Virtual Network Adapter For
SecureClient - SecuRemote Miniport
0x1f0006 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface

================================================== ===
Aktive Routen:
Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik
0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20
10.140.142.0 255.255.255.0 192.168.11.251 192.168.11.195 1
87.193.131.218 255.255.255.255 192.168.11.200 192.168.11.195 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
172.22.4.42 255.255.255.255 192.168.11.251 192.168.11.195 1
192.168.11.0 255.255.255.0 192.168.11.195 192.168.11.195 20
192.168.11.195 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.11.255 255.255.255.255 192.168.11.195 192.168.11.195 20
192.168.104.0 255.255.255.0 192.168.104.26 192.168.104.26 1
192.168.104.26 255.255.255.255 127.0.0.1 127.0.0.1 50
192.168.104.255 255.255.255.255 192.168.104.26 192.168.104.26 50
224.0.0.0 240.0.0.0 192.168.11.195 192.168.11.195 20
224.0.0.0 240.0.0.0 192.168.104.26 192.168.104.26 50
255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
255.255.255.255 255.255.255.255 192.168.104.26 3 1
Standardgateway: 192.168.11.200
================================================== ===
St„ndige Routen:
Netzwerkadresse Netzmaske Gatewayadresse Metrik
10.140.142.0 255.255.255.0 192.168.11.251 1


Regards
Uwe

 
Reply With Quote
 
Robert L. \(MS-MVP\)
Guest
Posts: n/a

 
      02-13-2008, 03:47 PM
Think the problem is

0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20

If you don't use vpn1, and only use vpn2, does that work?


--
Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on
http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on
http://www.HowToNetworking.com


"spulhuhn" <(E-Mail Removed)> wrote in message
news:677DAF5E-3BA1-49E7-86E9-(E-Mail Removed)...
> Hello Robert, here is tho whole route print output:
> I hope there is no problem with the german headers
> 172.16.201.28 belongs to vpn1
> 192.168.104.0 belongs to vpn2
> 192.168.11.0 is internal net
> 192.168.11.195 is my IP
> 10.140.142.0 is a static route for Home VPN users
> I have not activated "use default route on remote gateway", instead I do a
> route add per batch file after connecting vpn's.
>
>
> 1. routes o.K.
> IPv4-Routentabelle
> ================================================== ===
> Schnittstellenliste
> 0x1 ........................... MS TCP Loopback interface
> 0x2 ...00 1a 92 3c 4c f2 ...... Intel(R) PRO/1000 PL Network Connection -
> SecuRemote Miniport
> 0x3 ...54 55 43 44 52 09 ...... Check Point Virtual Network Adapter For
> SecureClient - SecuRemote Miniport
> 0x1e0005 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface
> 0x1f0006 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface
>
> ================================================== ===
> Aktive Routen:
> Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik
> 0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
> 0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20
> 10.140.142.0 255.255.255.0 192.168.11.251 192.168.11.195 1
> 87.193.131.218 255.255.255.255 192.168.11.200 192.168.11.195 20
> 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
> 172.16.0.0 255.255.0.0 172.16.201.28 172.16.201.28 1
> 172.16.201.28 255.255.255.255 127.0.0.1 127.0.0.1 50
> 172.16.255.255 255.255.255.255 172.16.201.28 172.16.201.28 50
> 172.22.4.42 255.255.255.255 192.168.11.251 192.168.11.195 1
> 192.168.11.0 255.255.255.0 192.168.11.195 192.168.11.195 20
> 192.168.11.195 255.255.255.255 127.0.0.1 127.0.0.1 20
> 192.168.11.255 255.255.255.255 192.168.11.195 192.168.11.195 20
> 192.168.104.0 255.255.255.0 192.168.104.26 192.168.104.26 1
> 192.168.104.26 255.255.255.255 127.0.0.1 127.0.0.1 50
> 192.168.104.255 255.255.255.255 192.168.104.26 192.168.104.26 50
> 213.61.134.68 255.255.255.255 192.168.11.200 192.168.11.195 20
> 224.0.0.0 240.0.0.0 172.16.201.28 172.16.201.28 50
> 224.0.0.0 240.0.0.0 192.168.11.195 192.168.11.195 20
> 224.0.0.0 240.0.0.0 192.168.104.26 192.168.104.26 50
> 255.255.255.255 255.255.255.255 172.16.201.28 172.16.201.28 1
> 255.255.255.255 255.255.255.255 172.16.201.28 3 1
> 255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
> 255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
> Standardgateway: 192.168.11.200
> ================================================== ===
> St„ndige Routen:
> Netzwerkadresse Netzmaske Gatewayadresse Metrik
> 10.140.142.0 255.255.255.0 192.168.11.251 1
>
> 2. Routes not o.K. after hangup vpn1
>
> IPv4-Routentabelle
> ================================================== ===
> Schnittstellenliste
> 0x1 ........................... MS TCP Loopback interface
> 0x2 ...00 1a 92 3c 4c f2 ...... Intel(R) PRO/1000 PL Network Connection -
> SecuRemote Miniport
> 0x3 ...54 55 43 44 52 09 ...... Check Point Virtual Network Adapter For
> SecureClient - SecuRemote Miniport
> 0x1f0006 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface
>
> ================================================== ===
> Aktive Routen:
> Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik
> 0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
> 0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20
> 10.140.142.0 255.255.255.0 192.168.11.251 192.168.11.195 1
> 87.193.131.218 255.255.255.255 192.168.11.200 192.168.11.195 20
> 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
> 172.22.4.42 255.255.255.255 192.168.11.251 192.168.11.195 1
> 192.168.11.0 255.255.255.0 192.168.11.195 192.168.11.195 20
> 192.168.11.195 255.255.255.255 127.0.0.1 127.0.0.1 20
> 192.168.11.255 255.255.255.255 192.168.11.195 192.168.11.195 20
> 192.168.104.0 255.255.255.0 192.168.104.26 192.168.104.26 1
> 192.168.104.26 255.255.255.255 127.0.0.1 127.0.0.1 50
> 192.168.104.255 255.255.255.255 192.168.104.26 192.168.104.26 50
> 224.0.0.0 240.0.0.0 192.168.11.195 192.168.11.195 20
> 224.0.0.0 240.0.0.0 192.168.104.26 192.168.104.26 50
> 255.255.255.255 255.255.255.255 192.168.11.195 192.168.11.195 1
> 255.255.255.255 255.255.255.255 192.168.104.26 192.168.104.26 1
> 255.255.255.255 255.255.255.255 192.168.104.26 3 1
> Standardgateway: 192.168.11.200
> ================================================== ===
> St„ndige Routen:
> Netzwerkadresse Netzmaske Gatewayadresse Metrik
> 10.140.142.0 255.255.255.0 192.168.11.251 1
>
>
> Regards
> Uwe
>


 
Reply With Quote
 
spulhuhn
Guest
Posts: n/a

 
      02-14-2008, 07:17 AM
Hello Robert,
It does not matter wich connection I disconnect, If I have 4 and hang up 1
of them, the others get time out.
I dropped the 192.168.11.251, after that the 192.168.11.200 standard route,
does not make any difference.
I inserted just the 11.251 as standard (internet connection), new connection
to both vpn's, hangup one of them > the other gets time out.
When vpn1 is disconnected, I can still ping the client IP of vpn2 but not
the server IP.
Deleting and Re Adding the route to vpn2 does neither help.

btw. nice site ChicagoTech.net, good idea to collect all the errors that
occur in the wild.

Uwe

"Robert L. (MS-MVP)" wrote:

> Think the problem is
>
> 0.0.0.0 0.0.0.0 192.168.11.200 192.168.11.195 20
> 0.0.0.0 0.0.0.0 192.168.11.251 192.168.11.195 20
>


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Win2003 R2 server just stops routing traffic until I restart Routing service Martijn Tonies Windows Networking 8 11-03-2008 11:05 AM
occasional interrupts & DPCs consume all CPU? anon Wireless Networks 5 06-23-2006 06:29 PM
ATCA blade and interrupts William Smith Linux Networking 0 06-11-2005 02:45 PM
MN700 and MN1000 download interrupts Ian B Broadband Hardware 0 01-14-2004 01:58 AM
Too much work at interrupts Detlef Jockheck Linux Networking 4 10-23-2003 02:18 PM



1 2 3 4 5 6 7 8 9 10 11