VPN, ICS and IIS on Win2K server

  • Thread starter Thread starter Alessandro
  • Start date Start date
A

Alessandro

I am trying to setup a VPN on my network, and I wonder if
anyone can please help.

My Win2k server connected to the DSL modem is currently
running ICS (to share the internet with the rest of the
network), IIS and mail server (SMTP/POP3).

1) I tried enabling RAS/VPN and it works great, but IIS
and mail stops working and no computer on the network can
access the internet.

2) I saw an FAQ about setting up ICS to forward VPN
requests to a server inside the network (intranet) that
can act as a VPN server (this server has RAS/VPN enabled
on one NIC - I assume that the server can "bridge" on a
single NIC between VPN requests and the network). I tried
this route, but somehow no packet seems to be forwarded
to this intranet server.

Any thoughts on what I can do?

Anything on 1) that allows RAS not to interfere with the
other services on the same system?

Why aren't packets forwarded to the second server?

Many thanks for the help to the first guru that can
answer it!

Alessandro
 
The first thing I would do is get rid of ICS and run RRAS/NAT. ICS is
a very restricted, cut-down version of NAT which has a very limited
function. I would only recommend it for a simple LAN, to connect a few
workstations to the Internet.

If you are running other servers and sevices like VPN and mail, you
really shold be running something better than ICS. I would not even consider
running VPN with ICS.

Yes, you can run a RRAS server with one NIC on a LAN. You set it up as a
remote access server, and forward PPTP (tcp port 1723) from your Internet
router to it across the LAN. Any router/firewall in the path must allow GRE
(IP protocol 47) in both directions for the VPN traffic to flow.
 
Back
Top