943,876 Members | Top Members by Rank

Ad:
Apr 28th, 2009
0

RRAS Server DHCP

Expand Post »
I have a Windows 2003 server configured as a RRAS (Routing and Remote Access Server). This server was configured by the previous IT person, who didn't do a lot of things correctly. The VPN works okay, in the sense users can connect via VPN and then use remote desktop to remote into a PC inside the network and then do work from that PC. However, my understanding with VPN is, I should be able to do anything on the remote network as if I was actually there such as map network drives and printers without having to remote control a PC. Currently I am unable to do this and I believe the problem is that the RRAS server is setup to give out IP addresses to the VPN connections that are completely different than our internal network IP range, which use the standard 192.168.10.n. Once I connect to the VPN and run an IPCONFIG /ALL, I see the VPN gets the auto IP range of 169.254.12.xxx

I guess my question is wouldn't I want my RRAS to give out IP's in the range of my internal network that I reserved in the DHCP server? Also, is my understanding of VPN correct? Shouldn't users be able to access network resources that they have permission to in Active Directory?
Similar Threads
Reputation Points: 10
Solved Threads: 0
Junior Poster in Training
Kurtismonger is offline Offline
81 posts
since Nov 2007
Apr 28th, 2009
-7

Re: RRAS Server DHCP

Go into Acive Directory users and groups and you can change the dial-in IP settings for each user/group.
Moderator
Featured Poster
Reputation Points: 1767
Solved Threads: 574
Moderator
jbennet is online now Online
16,519 posts
since Apr 2005
Apr 28th, 2009
0

Re: RRAS Server DHCP

I don't know if it matters, but the RRAS is on a separate box from my PDC. The RRAS has it's own users for VPN setup under Computer Managment. I can change the users dial-in settings there, which I did and it assigned me an IP for the correct range, however I still can't map to a drive. When I try to do so I get prompted for a username and password. I've tried my own user pass and the admin user pass.

The IP address is the correct range, as are the network DNS servers, however the gateway is the same IP as the connection's IP and subnet mask is 255.255.255.255.
Last edited by Kurtismonger; Apr 28th, 2009 at 10:48 pm.
Reputation Points: 10
Solved Threads: 0
Junior Poster in Training
Kurtismonger is offline Offline
81 posts
since Nov 2007
Apr 28th, 2009
0

Re: RRAS Server DHCP

Okay, this could be part of the problem. The RRAS is not part of the domain its a member of WORKGROUP. Wouldn't I want this on the domain?
The original IT guy set this up to replace a hardware firewall that croaked, so this is also functioning as our firewall.
Last edited by Kurtismonger; Apr 28th, 2009 at 11:05 pm.
Reputation Points: 10
Solved Threads: 0
Junior Poster in Training
Kurtismonger is offline Offline
81 posts
since Nov 2007
Apr 28th, 2009
-7

Re: RRAS Server DHCP

It depends. In theory, it should be, in order for authentication, remote logon, accessing roaming profiles etc... but if you attach it to your domain you need to beware the security repercussions.
Moderator
Featured Poster
Reputation Points: 1767
Solved Threads: 574
Moderator
jbennet is online now Online
16,519 posts
since Apr 2005
Apr 28th, 2009
0

Re: RRAS Server DHCP

So can I do what I want to do, allow VPN users to map drives, without having it on the domain? I don't need much in the way of roaming profiles, etc. Just one mapped drive for a couple of my users.
I'm aware of the potential issues, but since I didn't configure it I can't be sure I can button it up either.
Ideally, if there is way to map the drive without attaching it to the domain, I would like to do that. And then I can lobby for putting a real hardware firewall in place.
Reputation Points: 10
Solved Threads: 0
Junior Poster in Training
Kurtismonger is offline Offline
81 posts
since Nov 2007

This thread is more than three months old

No one has posted to this discussion for at least three months. Please let old threads die and do not reply to them unless you feel you have something new and valuable to contribute that absolutely must be added to make the discussion complete. Otherwise, please start a new thread in this forum instead.
Message:
Previous Thread in Windows NT / 2000 / XP Forum Timeline: My computer won't let me rename files!
Next Thread in Windows NT / 2000 / XP Forum Timeline: XP preview problem





About Us | Contact Us | Advertise | Acceptable Use Policy
Forum Index | Build Custom RSS Feed


Follow us on Twitter


© 2011 DaniWeb® LLC