|
jdostal -> VPN clients can talk to internal, internal can't talk out? (26.Jun.2008 1:11:33 PM)
|
I think I might have a routing table issue but I'm not sure where to look anymore. I've got my VPN setup almost perfectly. My VPN clients can ping via hostname/IP any host on my internal network, they can access fileshares, they can RDP, etc - but I can't do the reverse. I can't do name lookups, can't ping, can't RDP any of my VPN clients from the internal network. When monitoring the logs, ISA server is allowing the traffic - I can see the ICMP ping requests and I can see that the rule "Allow Internal to VPN Clients" is being applied to the traffic...but I just get a request timed out on my pings. My clients are assigned IP's from a small pool - 172.16.25.70 to 172.16.25.80. Here is what my routing table looks like - IPv4 Route Table =========================================================================== Interface List 0x1 ........................... MS TCP Loopback interface 0x10002 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP) Interface 0x10003 ...00 50 56 b4 7c 79 ...... VMware Accelerated AMD PCNet Adapter 0x10004 ...00 50 56 b4 20 ed ...... VMware Accelerated AMD PCNet Adapter =========================================================================== =========================================================================== Active Routes: Network Destination Netmask Gateway Interface Metric 0.0.0.0 0.0.0.0 192.168.16.1 192.168.16.27 10 75.8.37.28 255.255.255.255 192.168.16.1 192.168.16.27 10 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1 172.0.0.0 255.0.0.0 172.16.25.254 172.16.25.121 1 172.16.0.0 255.255.0.0 172.16.25.254 172.16.25.121 1 172.16.25.0 255.255.255.0 172.16.25.121 172.16.25.121 10 172.16.25.70 255.255.255.255 127.0.0.1 127.0.0.1 50 172.16.25.75 255.255.255.255 172.16.25.70 172.16.25.70 1 172.16.25.121 255.255.255.255 127.0.0.1 127.0.0.1 10 172.16.255.255 255.255.255.255 172.16.25.121 172.16.25.121 10 192.168.16.0 255.255.255.0 192.168.16.27 192.168.16.27 10 192.168.16.27 255.255.255.255 127.0.0.1 127.0.0.1 10 192.168.16.255 255.255.255.255 192.168.16.27 192.168.16.27 10 224.0.0.0 240.0.0.0 172.16.25.121 172.16.25.121 10 224.0.0.0 240.0.0.0 192.168.16.27 192.168.16.27 10 255.255.255.255 255.255.255.255 172.16.25.121 172.16.25.121 1 255.255.255.255 255.255.255.255 192.168.16.27 192.168.16.27 1 Default Gateway: 192.168.16.1 =========================================================================== Any ideas?
|
|
|
|