I am in the process of connecting our company to another for some Database work, and we want to use a vpn. I have set up ISA to allow VPN traffic thru it and they are hosting a Win2k VPN Server at their end and from a workstation inside my firewall I can dial up there VPN and connect to their network with no problems. I solved the problem of losing internet access for the workstation thanx to these pages, (gateway issue). the problem here is that I don't want to have to leave the workstation logged in to keep the connection up. So i thought I'd get the ISA server to get the connection and route thraffic for their network for me.. The question is how...? The wizards are great if your connecting ISA to ISA, but I just want the ISA server to initiate a dial up VPN connection and create appropriate routes... Any thoughts...?
Sorry, As a quick addendum, I would normally do this sort of VPN at the router and make it transparent to the FW, but they can't/won't set it up this way and want to use a Win2k VPn they already have setup.
You can configure the gateay to gateway VPN manually. Use the built-in RRAS Wizards to do this. Then create the packet filters manually at the ISA Server to allow the traffic.
Just curious about something... I thought if you have a vpn connection then you automatically have all 65535 ports available over that vpn - is that not the case? Do you have to create IP filters for each protocol you are using through the vpn? If so, do you specify using the client set for his NT workstation?
I wonder because we are having trouble timing out over a site-to-site and trying to use 1433 (all other protocols work fine and are not specified anywhere).