VPN Connected Users cannot connect to the internet or send email

I just upgraded to Xserve G5 Dual 2.3 GHz 2GB SDRAM and a 3.5 TB Xserve RAID Running OSX Server 10.4.7.
Used to run G5 Tower running OSX Server 10.3.9.
Running as a Standalone Server.
Everything seems to be running smoothly other that the fact that users connecting through VPN can no longer connect to the internet while connected through VPN nor can they send email. (I assume it's the same issue).
Wondering if password type is the issue. In 10.3.9 Workgroup Manager User password types were Open Directory for my vpn users. Previous Server was Standalone Server with Open Directory running, but not setup (weird I know.) 10.4.7, Open Directory for password is not an option... only shadowed password.
Not running any Open Directory services other than Lookup Server: Running and NetInfo Server: Local Only.
Any help is greatly appreciated.
-Ed

Unless otherwise informed, a connecting client will send ALL traffic via the vpn. Ideally you only want to route traffic applicable to the VPN and for any other traffic (browsing and external email) to go via your local 'normal' router. You can configure the VPN server to inform connecting clients about applicable VPN traffic...
Example: the network you are vpn'ing into is 192.168.0.0/24
In Client Information-> Network Routing Definition, add 2 routes:
Address: 192.168.0.0
Mask: 255.255.255.0
Type: Private
Address: 0.0.0.0
Mask: 0.0.0.0
Type: Public
A connecting client will incorporate this routing information when connecting and thereafter send all traffic for the 192 network through the VPN (private) but send all other traffic (the catchall 0.0.0.0) to their local default router (public). Make sure you have them in that order (catchall at bottom).
-david

Similar Messages

  • Visual internet connection, but cannot get on the internet? Help:(

    Hi people.
    My wife bought me an Ipod touch. This is a long time ago, because I cannot use it with my wi-fi connection home. I took it with me to my parents, and it worked without any problems there. I took it with me to my place, and I got the same problems.
    It says that I got connection and I have the Wi-fi connection icon, but I'm not connected to the net.
    I've tried to connect many times. I've deleted and restarted the thing. I've looked at the IP adress, and it started with 169. I've tried to look at this discussion board, but haven't found any help.
    I'm getting quite desperate, and I would like to get some help. Since I am quite a beginner, I would like a simple answer:) But any help will do great.
    Thank you

    I've looked at the IP adress, and it started with 169.
    This means you aren't actually connected to the Internet; only to your router.
    An easy first attempt at a fix is to turn your router off and then on again.

  • Wifi connect, still cannot get on the internet

    I have read all the infromation that has been poseted. I went into settings 1. general, 2. reset, 3. reset network setting, 4. retyped my password. It says that it is connect but when I go to safari it states it is not connected to internet. I hope I can get some help....

    I went through something similar after that last software update and subsequent fix, I had some success with the network reset but still had problems. I finally went and did the complete restore. Wala! almost everything worked much better except for the very quick battery drain. I fixed that by making sure and turning off the wi-fi after every session and making sure any songs I was listening too in I-Tunes were stopped. Amazing difference! My battery lasts about a week now with daily use. Apparently the Touch will keep playing songs until the playlist is finished unless you manually stop it (I have big ones with dozens of songs), and I may be wrong but I think the wi-fi is always searching for a signal even when it's off. The restore was pretty easy. Hope this helps.

  • After connecting to the WLAN I cannot go to the internet

    Help pls
    After connecting to the WLAN I cannot go to the internet. Why???

    What is the model no of the router..?
    Who is your ISP..?
    Are you trying to configure the router using computer to get internet..?

  • I cannot connect my ipad 2 to the internet?

    I cannot connect my ipad 2 to the internet?

    I just wonder if I have to take it to the store to get connected?  This is crazy, been working with this thing for an hour.

  • Managed user cannot connect to internet

    My daughter complained that since upgrading my iMac to Yosemite she has not been able to access the Internet or send or receive emails. All other accounts on the same computer were OK.
    I renewed the DHCP lease, rebooted, tried again, then turned everything including routers and Wi-Fi off and back on. Nothing.
    However when I changed her account settings to give her admin rights everything worked fine.
    Has anyone else noticed the same problem?

    That's exactly what happened here. See my very recent post querying about getting a later version to work. That might be of interest, as you can try the later version to see what you think without installing.
    With personal guidance from an expert, we did get the Toshiba original installation up to date and fine with the internet, but there were still "issues" with file sharing on my Windows network.

  • How is it possible that when I do have a Wifi connection, I cannot connect to Safari or Google Chrome or anything else internet-related?

    How is it possible that when I do have a Wifi connection, I cannot connect to Safari or Google Chrome or anything else internet-related? Sometimes it does all work, but after a while Wifi is still there and I am not able to go to any website whatsoever.

    Your network preferences file may be damaged, that would explain why you can configure the computer and get online but then when the computer wakes from sleep and needs to restore the setting it cannot.
    Open the Library folder of your computer (not the Library in your user directory) and then find the Preferences folder. Now the problem for me is that I've not used Leopard forever so I'm not sure exactly where the file you want is or what it is called. In Mountain Lion it is called:
    com.apple.airport.preferences.plist
    and it is inside a folder called SystemConfiguration. But I can't remember if this has changed along the way or not. The easy thing to do is to go back to the Network Preferences pane again and make the change I directed above. Then you can look in the Preferences folder and sort by date modified to find the network preferences file that was just now modified. Move it to the desktop, restart your computer, reconfigure the WiFi again and see what happens.

  • How can I connect personal hotspot to use the internet from my phone on my laptop?

    I do not have internet at home and want to be able to connect using the personal hotspot on my phone. How do i do this??

    How much would be a month?
           From: Verizon Wireless Customer Support <[email protected]>
    To: kelly johnson <[email protected]>
    Sent: Wednesday, October 8, 2014 12:02 PM
    Subject:  - How can I connect personal hotspot to use the internet from my phone on my laptop?
    #yiv3595356488 img
    |  
    |
      | 
    A message from the Verizon Wireless Community
      |
    |   |
    How can I connect personal hotspot to use the internet from my phone on my laptop?
    created by Verizon Wireless Customer Support in iPhone 4S - View the full discussion                  Hello kmj65
    Thanks for replying. The plan you have it would be an additional charge to add the hotspot feature. It's not free with the Nationwide plan. You would need to add the feature online at www.verizonwireless.com/myverizon
    JoeL_VZW
    Follow us on Twitter @VZWSupport   Reply to this message by replying to this email -or- go to the message on Verizon Wireless Community Start a new discussion in iPhone 4S by email or at Verizon Wireless Community


    © 2014 Verizon Wireless
    Verizon Wireless
    One Verizon Way
    Mail Code: 180WVB
    Basking Ridge, NJ 07920
    Not interested in these emails anymore, or want to change how often they come? Update your email preferences by visiting https://community.verizonwireless.com/user-preferences!input.jspa.
      |
    We respect your privacy. Please review our privacy policy for more information
    about click activity with Verizon Wireless and links included in this email.
      |

    |

  • My computer will connect to wifi but not the Internet

    My computer will connect to wifi but not the Internet. It's not a problem with my router because I've tried other devices on the same router and they work. I have also tried my computer on other routers and there is still no Internet connection. Does anyone know how to fix this?

    Hello Bmowat,
    Thank you for using Apple Support Communities!
    It sounds like you are able to successfully connect to your Wifi network, but cannot get internet access.
    I found this article for you named Wi-Fi: How to troubleshoot Wi-Fi connectivity found here http://support.apple.com/kb/HT4628?viewlocale=en_US
    This section in particular since you have Mountain Lion installed:
    OS X Mountain Lion v10.8.4 or later
    Use the Wireless Diagnostics application included with OS X Mountain Lion v10.8.4 and later to identify and resolve Wi-Fi issues. For further information, please see About Wireless Diagnostics.
    It is a built in troubleshooting tool to help diagnose and repair network issues and should help you resolve this issue.
    All the very best,
    Sterling

  • Connect to Airport But NOT the Internet - Please help

    My iPod touch has never had any problems till recently with connecting to the Internet.
    I does connect to the Airport. But I cannot go to the Internet.
    The error message I keep getting is that the server stopped responding, when using Safari.
    My computer connects to the Internet no probs.
    I done as much checking as I can, what else can I do?
    Please help?

    I had a similar problem and simply unplugged my cable modem for a few seconds. When it came back up, everything connected fine.

  • Sharing only users cannot connect to Lion Server

    Dear all,
    I stumbled across a funny problem, that I tried to resolve all day. I just wanted to add a sharing only user for my girlfriends new MacBook that she could use to connect to a shared Time Machine Volume.
    If I add a new standard user, this user can connect to my server via finder (connect as...) and see the shared drives. If the same user tries to connect to the Time Machine Backup Volume via the settings dialog, it receives an error message (OSStatus-error 5).
    If I add a sharing only user, this user cannot connect via finder or Time Machine (same error). The clients console states the following error message:
    /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[2471]      AFP error -5018 mapped to EIO
    Does anybody have an Idea?

    That is my point.  Yes, Apple still lets you add users via users and groups in system preferences but that is not how you should be adding users.  I've seen nothing but trouble when that option is used to add users and I believe that the Lion server docs say to not use that.  If you are using lion server why not use it the way it was meant to be.  Just create a account in OD and only give her access to the Time Machine Service and none of the others.

  • Users cannot connect over SMB 10.10.1 server.app 4.0 and 4.0.3

    Hello,
    I have an issue where users cannot connect to a server for files sharing over SMB.
    Info:
    All users on 10.10.1
    2 Servers on 10.10.1
    Server.app 4.0.3 but issue was also present using 4.0
    SMB connection works when connecting to the OD Master
    SMB does not work when connecting to the OD Replica ServerBut AFP works fine when connecting to the OD Replica Server.
    I have destroyed and re-added the OD replica but that did not seem to help
    This is what I see in the logs each time I try to connect(logs have been cleaned to remove client details:
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: label: default
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: dbname: od:/Local/Default
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: mkey_file: /var/db/krb5kdc/m-key
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: acl_file: /var/db/krb5kdc/kadmind.acl
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: digest-request: netr probe 0
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:12 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:13 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:13 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:13 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:13 server.pretendco.com kdc[4802]: Got a canonicalize request for a LKDC realm from local-ipc
    Jan  9 14:37:13 server.pretendco.com kdc[4802]: Asked for LKDC, but there is none
    Jan  9 14:37:13 server.pretendco.com sandboxd[395] ([4802]): kdc(4802) deny file-read-data /private/etc/krb5.conf
    Jan  9 14:37:22 server.pretendco.com kdc[4802]: Got a canonicalize request for a LKDC realm from local-ipc
    Jan  9 14:37:22 server.pretendco.com kdc[4802]: Asked for LKDC, but there is none
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: od failed with 2 proto=ntlmv2
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: user=SERVER2\\username
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: kdc failed with 36150275 proto=unknown
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: guest failed with -1561745590 proto=ntlmv2
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init request
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: init return domain: SERVER2 server: SERVER2 indomain was: <NULL>
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: uid=0
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: od failed with 2 proto=ntlmv2
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: user=SERVER2\\codywood
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: kdc failed with 36150275 proto=unknown
    Jan  9 14:37:23 server.pretendco.com digest-service[9961]: digest-request: guest failed with -1561745590 proto=ntlmv2
    I suspect the problem is to do with Kerberos and in relation to this server being an OD Replica.
    I would really appreciate anyone's insight into this.
    Thanks
    Morgs

    I have the same problem although I upgraded from Lion Server to Mountain Lion Server. The error appears to go hand in hand with this error.
    userInit: CFPreferences: user home directory for user kCFPreferencesCurrentUser at /Network/Servers/fullyqualifieddomainname/Users/user is unavailable. User domains will be volatile.
    I've read a number of things to try. A lot of people point to DNS being a problem, but I'm confident this is correct in my environment.

  • Internet works, but I have an exclamation mark instead of AirPort connection and cannot connect to my WiFi.. PLEASE HELP!

    Internet works, but I have an exclamation mark instead of AirPort connection and cannot connect to my WiFi.. PLEASE HELP!

    When you see an exclamation point in the Wi-Fi menu, from the menu bar, select
     ▹ System Preferences... ▹ Network
    Click the Assist me button and select Assistant. Follow the prompts. You may get a warning that Wi-Fi is not available, that you're too far from the base station, or that you're using the wrong password.
    Assuming that you've ruled out those possibilities, restart the computer and try again. If there's no change, click the lock icon in the lower left corner of the preference pane and authenticate, if necessary. From the Location menu at the top of the window, select Edit Locations. A sheet will drop down. Click the plus-sign button to create a new location. Give it any name you want. In the new location, set up the Wi-Fi service with the same settings you used before. Click  Applyand test.
    If there's still no connection, and if you have control of the router, compare its settings to Apple's recommendations. Some third-party routers may be incompatible in 802.11b/g/n radio mode. Try setting the mode to 802.11n only.

  • User cannot connect to backend system with user J2EE_ADMIN.

    I am using Rapid Installer to initiate the second part of the installtion "ERP 6.0 EhP 3 – Self-Service Scenarios and Automatic Roles".  When I get to the J2EE User section to enter the parameters, the user is defaulted to "Administrator" and I enter my password.  I click next and get this message "User cannot connect to backend system with user J2EE_ADMIN."  Any ideas?

    If this is a double stack installation, you need to enter J2EE_ADMIN as user, NOT administrator.
    Markus

  • I don't have a DSL or cable modem to access the Internet ... just a mobile WiFi (there is no cable available at our house). How do I connect my Time Capsule to the Internet via the mobile WiFi?

    I don't have a DSL or cable modem to access the Internet ... just a mobile WiFi (there is no cable available at our house and the mobile WiFi is our only option). How do I connect my Time Capsule to the Internet via the mobile WiFi?

    LOL!!
    I am in Australia and the ISP... I think both the main ones would fit your description to a T.. big T in particular.
    Your router is really unsuitable.. if it is only wireless and no ethernet.. just buy an ethernet one.
    Do a search on ebay.. 3g router.
    But you can get the TC to join a wireless network.
    It is a non-standard setup that Apple will not support.. the option is hidden.
    If you are on Lion download the 5.6 utility. Go to the wireless set up page and hold down the option key whilst selecting wireless mode.. a new option, join will appear. You can then put in the ssid and passkey of the 3g router.
    But please note the end result of this setup..
    very slow speed. The TC is now a second wireless hop from your clients.. this will halve the speed.
    In this mode the ethernet are deactived.. for reasons only Apple know, they decided you should not use ethernet when doing this.

Maybe you are looking for

  • ECC 6.0 integration with Microsoft Dynamics CRM

    Hi All I am working on a ECC 6.0 integration with Microsoft Dynamics CRM. I need to send the customer master data, va01/va02, vl01n/vl02n/ vf01/vf02 to CRM system. One option I have is to send in the form of IDOC with TRFC - TCP/IP. But looks like th

  • Is bootcamp assistant not working in Mntn Lion?

    I'm trying to run Bootcamp Assistant (for the first time ever) in 10.8 and it is not playing ball. The download process seems extremely slow, it's wasted two blank DVDs by attempting to write to them then giving up and returning an error. So, I tried

  • Window Maximizing and Safari font size

    I have a 13 inch Macbook. Why can't I completely open the safari window, or any window for that matter? The font on web pages ar so small, I can hardly read. I tried changing the display setting but it just made the window display kind of grainy. Can

  • Storing iTunes media on Time Capsule to stream to ATV

    Can someone please detail the steps I need to move my itunes movies and music to new Time Capsule.  I have done this and Apple TV is unable to recognize the library. Here is what I've done so far: 1. Copied the iTunes music folder to the TC 2. Change

  • TT602 and TT502 cant send email?

    Hi folks. On trying to send email I get TT602 Too many messages and TT502 Too many recipients Any remedies please?