RE: site to site vpn

  • From: "Taps" <Taps@xxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 18 Jan 2006 23:40:00 -0500

I have to ask, just because I had this problem initially as well.  Do
you have unique names for each connection.  I know I had to give each
connection a different network connection name on each side.

Say I had three offices in different states that need to be connected
(GA, NC, and SC).  I would make 2 connections and users on the local
machine for each site to site VPN and name them as source_destination.
GA_SC, GA_NC, SC_GA, SC_NC, NC_GA, and NC_SC.  The First part of the
name would be the connection, with a user on the second side being
created with the same name.  

So the GA Server would connect to NC with the GA_NC username that was
created on the ISA Server in NC.  Likewise, the NC server would also be
able to connect to the GA Server with the username NC_GA that was
created on the GA Server.  Same would go for each server pair.  I set
them up both ways so that either server can initiate the connection when
needed.

Also, you mentioned that the VPN was connected through RAS.  In the RRAS
Snapin, does the connection show up as a Dial-In Client, or a Network
connection?  If it is a Dial-In client, then there is something wrong
with the configuration.

--


Taps@xxxxxxxxxxxx
http://Taps.Iniquity.Org
-  "What spirit is so empty and blind, that it cannot recognize the fact
that the foot is more noble than the shoe, and skin more beautiful than
the garment with which it is clothed?" -- Michaelangelo 

Build a man a fire, and he'll be warm for a day. Set a man on fire, and
he'll be warm for the rest of his life. -- Terry Pratchett 



> Hi, I am new to this site to site vpn I have 4 offices all 
> running win03 with one isa04 box at each location, we have 
> just switched over to dsl rather than the t1 service we had. 
> the t1 service was set up a couple of years ago with a gre 
> pptp tunnel with the cisco routers.
> 
> Currently one office is connected through site to site with 
> ras but when I try to create another site to site connection 
> on the same nic with a different public ip I get an error 
> message something about the connection is in use. Excuse me 
> if this is a dumb question but can anyone tell me how many 
> site to site connection one isa 2004 server can have at the same time.
> 
> Thanks Jim 


Other related posts: