Re: NetScreen 5XT and VPN connection

From: John Smith (someone_at_microsoft.com)
Date: 10/23/03

  • Next message: Walter Roberson: "Re: 3-DES and SHA-1-HMAC"
    Date: Thu, 23 Oct 2003 09:03:06 -0300
    
    

    "willitsme" <willitsme@msn.com> wrote in message
    news:33de3789.0310221427.75ee3bf6@posting.google.com...
    > I have recently been brought in as the Network Admin to a fairly small
    > company and asked to support an already configured VPN configuration.
    > The internal network has a NetScreen 5XT with the policies and users
    > already created. A user was able to remote into the network with a
    > preshared key and client software. The user has since changed from
    > dial-up internet to a cable ISP with dynamically assigned IP address.
    > Since the change, the user is able to ping with reply to the
    > trusted/untrusted side of the NetScreen device and ping with reply to
    > the hosting Win2K server, but is unable to log in with a remote
    > connection.

    So the dial-up Internet didn't use DHCP?
    At what point in the "dial-up" process did they logon to this server?
    Why do they need to logon to the server at all? To run logon scripts and/or map
    drives?
    If you can PING the server and it's a Microsoft server have you looked at manual
    or batch file "net use *" commands.
    Are you allowing the M$ authentication stuff through the firewall?

    > I have tried to reconnect on the users XP pro machine and
    > have only been able to log in on the NetScreen 5XT from their remote
    > location. I have tried to get support from NetScreen but their
    > support stops once I get a successful reply on the ping and able to
    > connect to the device.
    >

    Have you tried "tracing" what's going on when the client connects? It may give
    you some insight.

    > Please point me to some documentation or direction on how I can
    > restore this remote connection.
    >

    www.netscreenforum.com


  • Next message: Walter Roberson: "Re: 3-DES and SHA-1-HMAC"

    Relevant Pages

    • Re: Slow Logon related to groups - Update!
      ... If you use a 1-GB network adapter, ... non-Windows NTP server in Windows Server 2003 ... Microsoft CSS Online Newsgroup Support ... Group Policy processing aborted. ...
      (microsoft.public.windows.server.sbs)
    • network slowness/freez-up since update 10/11
      ... network problems: first the network is slow (even within a few ... network - but not the rest of the system - just locks up (can't ping ... OHCI version 1.0, legacy support ... <Parallel port bus> on ppc0 ...
      (freebsd-current)
    • network slowness/freez-up since update 10/11
      ... network problems: first the network is slow (even within a few ... network - but not the rest of the system - just locks up (can't ping ... OHCI version 1.0, legacy support ... <Parallel port bus> on ppc0 ...
      (freebsd-current)
    • network slowness/freez-up since update 10/11
      ... network problems: first the network is slow (even within a few ... network - but not the rest of the system - just locks up (can't ping ... OHCI version 1.0, legacy support ... <Parallel port bus> on ppc0 ...
      (freebsd-current)
    • Error logs after Win2k3 gets loadet
      ... I have a server which i recetly upgradet to win2k3 Enterprice Edition. ... My fist thout was that the network drivers are not loadet properly ore the ... see Help and Support Center at ... whether it is receiving broadcast traffic in an unteamed configuration. ...
      (microsoft.public.windows.server.networking)