My vpn clients connect via ther own cable modem to our RAS server. Every time the connect they lose internet connection. Kind of normal because it tries to get the page trough the ISA server, but the 'use defoult gateway on the network' is disabled? I want them to vpn on my server but surf on their own cablemodem?
Thanks nuddi, I'll explain; A few collegae (20) want to log on to our RAS server.They all have cable connection with an isp. so they surf as an Proxy client (that ISP). Thy make sure that their wrkgroup is the same as our domain in order to rowse our network. Then they make a PPTP connection to my IP adress log in and work with the files they want. Those PC are all Win98 or Win2k. I ave to make sure t configure as less then possible (so no firewall client or NAT to my server. but during the pptp connection they cannot surf they can browse my network but cannot view a webpage...
that looks like they are using your ISA as default Gateway ... -> so they are SecureNAT CLients be sure that theres is a Protocol Rule allowing HTTP Access for the VPN CLient Set. (and other things they may need over your ISA Server)
Hi nuddi, thats just the point, the 'use default gateway on remote network' is disabled on their pptp connection, I don't want them to surf over my ISA server, they can do that via their primary connection, I want them to use the pptp con. to browse my server, nothing else...
Hi ez ...
but then youŠll have to tell them not to use default Gateway.
ItŠs not possible to reroute them with ISA Server cause ISA doesnŠt know theire Networks and isnŠt localy there.
If you donŠt use default on other Network ,no route will be added with the new Interface (VPN) excapt the Interface himself. so youŠll have to threat with the adding Routes for VPN Clients from your Server so they can get into your Network.
or if you dont want to use your Server tell them to add static routes for your Network. (syntax: route add -p x.x.x.x mask x.x.x.x x.x.x.x / where -p is for persitent on Win Cliens)
ItŠs working for my Test VPN Setup to join 2 Domains per VPN and share resources between them and browsing over the primary ISP connection.
[This message has been edited by Nuddelaug (edited 24 November 2001).]