RE: ISA Server hangs when 6th VPN client connects

  • From: "Steve Moffat" <steve@xxxxxxxxxx>
  • To: "ISA Mailing List" <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 8 Feb 2006 19:25:56 -0400

Which version of SBS 2003, plain or SP1??

If SP1, what version of ISA.

Best place however might be the yahoo SBS list however.

S

-----Original Message-----
From: Glenn [mailto:glenn.johnston@xxxxxxxxxxx] 
Sent: Wednesday, February 08, 2006 7:11 PM
To: ISA Mailing List
Subject: [isalist] ISA Server hangs when 6th VPN client connects

http://www.ISAserver.org

Hi,

Been called in to do some consulting for a company with an issue with
external clients using L2TP to connect the the SBS 2003 premium server.

Company has no tech guy of their own, the SBS server was set up by the
company they bought the server off and has been installed for about 12
months and according to my contact at the company, has been working fine
until early last week. I know the company they bought the server of, and
generally their work is spot on, so I have no reason to suspect a dodgy
install.

However, while tampering after the install is a distinct possibilty by
employes, I have the feeling that that they take the approach "If it's
not broken, don't touch it", so I don't think this is likely. From what
was I told only 2 people have the administrator password.

They say no one has touched it except for the weekly backup, and I
believe them at this stage any rate.

From the 1 1/2 hour look I had yesterday afternoon the install and set
up is OK, with no obvious issues. It's dual nic'ed, has a Netgear ADSL
modem with firewall sheilding it from the internet, there are correct
port forwardings on the ADSL Modem / firewall to allow for e-mail, OWA,
DNS publishing, and L2TP inbound to work, with matching rules on the ISA
server firewall to match the inbound port forwards.

There are no unexpected errors in the event logs on the server, and the
Netgear firewall logs are relatively clean, with nothing out of the
ordinary.

Issue.

They have a number of what they call "mobile workers" that come into the
office 1 day per week, and spend the other 4 visiting clients, and using
L2TP connections to connect back to the office for file sharing,
updating time sheets, on there billing application etc, usually this
occurs  at the end of the day. During the day, they use OWA to access
e-mail, which is working fine, they say.

Since Tuesday or Wednesday last week, if only 3, 4 or 5 clients are
using L2TP, everything is fine. When the 6th connects, the server hangs,
and requires a power off reboot.

I was sceptical on the description, until I saw this last night, with my
own eyes. They rang a few clients and had them connect, up to 5 fine
connected clients, no issues, nothing in the event log, everything
looked 100% normal. They then asked a 6th to connect, and bang, the
server hanged within about 5 seconds, of R&RA showing the client as
connected.

The SBS licenses are OK, at 30 clients, with 26 employees, the SDSL is a
512/512 pipe. There are 30 L2TP ports defined in R&RA.

I've searched technet / online but nothing seems even close to what I am
seeing.


Anyone have any suggestions on what the problem could be ?

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
isalist@xxxxxxxxxx To unsubscribe visit
http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx


Other related posts: