RE: ISA Server hangs when 6th VPN client connects

  • From: "Greg Mulholland" <greg@xxxxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 9 Feb 2006 17:08:14 +1100

That's a good'n.. try a perfmon whilst the 6th connects maybe??  is it a 
resource issue?
 
Greg Mulholland

________________________________

From: Glenn [mailto:glenn.johnston@xxxxxxxxxxx]
Sent: Thu 9/02/2006 10:11 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] ISA Server hangs when 6th VPN client connects



http://www.ISAserver.org

Hi,

Been called in to do some consulting for a company with an issue with
external clients using L2TP to connect the the SBS 2003 premium server.

Company has no tech guy of their own, the SBS server was set up by the
company they bought the server off and has been installed for about 12
months and according to my contact at the company, has been working fine
until early last week. I know the company they bought the server of, and
generally their work is spot on, so I have no reason to suspect a dodgy
install.

However, while tampering after the install is a distinct possibilty by
employes, I have the feeling that that they take the approach "If it's not
broken, don't touch it", so I don't think this is likely. From what was I
told only 2 people have the administrator password.

They say no one has touched it except for the weekly backup, and I believe
them at this stage any rate.

From the 1 1/2 hour look I had yesterday afternoon the install and set up
is OK, with no obvious issues. It's dual nic'ed, has a Netgear ADSL modem
with firewall sheilding it from the internet, there are correct port
forwardings on the ADSL Modem / firewall to allow for e-mail, OWA, DNS
publishing, and L2TP inbound to work, with matching rules on the ISA
server firewall to match the inbound port forwards.

There are no unexpected errors in the event logs on the server, and the
Netgear firewall logs are relatively clean, with nothing out of the
ordinary.

Issue.

They have a number of what they call "mobile workers" that come into the
office 1 day per week, and spend the other 4 visiting clients, and using
L2TP connections to connect back to the office for file sharing, updating
time sheets, on there billing application etc, usually this occurs  at the
end of the day. During the day, they use OWA to access e-mail, which is
working fine, they say.

Since Tuesday or Wednesday last week, if only 3, 4 or 5 clients are using
L2TP, everything is fine. When the 6th connects, the server hangs, and
requires a power off reboot.

I was sceptical on the description, until I saw this last night, with my
own eyes. They rang a few clients and had them connect, up to 5 fine
connected clients, no issues, nothing in the event log, everything looked
100% normal. They then asked a 6th to connect, and bang, the server hanged
within about 5 seconds, of R&RA showing the client as connected.

The SBS licenses are OK, at 30 clients, with 26 employees, the SDSL is a
512/512 pipe. There are 30 L2TP ports defined in R&RA.

I've searched technet / online but nothing seems even close to what I am
seeing.


Anyone have any suggestions on what the problem could be ?

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: 
greg@xxxxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx


Other related posts: