Cannot logon via VPN connection using an ICS server

At home I have a small network set up, using a central PC A on which Internet Connection Sharing (ICS) is enabled (IP address 192.168.0.1 is allocated to this PC). PC B, having VPN client V4.0.x loaded, is connected to PC A. ICS dynamically attributes an IP address 192.168.0.n to PC B. Although a VPN connection (via IP address 194.79.185.227) can be created with a server at the office over the internet, it is impossible to perform a Windows logon and map for example a drive. When using a direct internet link via a telephone modem, it is possible to logon on the office server via the VPN connection.
I have the impression the Cisco firewall inhibits the logon, because of a IP address conflict. When looking into the "Status/Statistics/Route details" window of the VPN client, I notice the secured route 173.19.31.0 is available during the VPN connection. Using the direct telephone line it is possible to ping this address. On the same PC this is impossible, when the ICS server (PC A) is used for the internet communication. The server I am trying to reach at the office has IP address 173.19.31.1.
On the Cisco web site, I found out, that such a configuration should work. Which settings are important with this respect?

I have never found a version of ICS that works with VPN.

Similar Messages

  • Cannot establish a VPN connection in Lion

    I have followed the instructions in this support article but cannot create a VPN connection:
    http://docs.info.apple.com/article.html?path=Mac/10.6/en/9010.html
    I've tried the steps outlined in this article, and successfully completed everything but still cannot create a VPN connection:
    http://anders.com/guides/native-cisco-vpn-on-mac-os-x/
    I have all the correct credentials for my VPN network (vpn address, group name, shared secret). I always receive a server time out error.
    I am able to successfully connect to my work VPN using the Cisco VPNClient. But unfortunately it only runs in 32-bit mode. I prefer to boot in 64-bit mode and would prefer not to reboot everytime I want to establish a VPN connection.
    I have been working on this issues for three days straight and am getting nowhere. My work is an unsupported IT environment, and the IT support subscription service we use will not handle any Mac issues.

    Hmm, no changes. Still the same issue. I deleted the files described, rebooted and reconfigured the network.
    hmm, Finder still remembers his old server connection settings, maybe i should delete those, too. Any idea where finder stores his server connections?
    In my perception the message that no secure connection can be established comes up immediately after sending the connect command. I don't think that there is network traffic, there is no noticeable latency...

  • IPhone message. "Cannot Send Mail"  "The connection to the outgoing server.

    It states:
    "Cannot Send Mail" "The connection to the outgoing server "(null)" failed."
    This is the error I get attempting to send Yahoo mail using EDGE network on at&t.
    I would guess that only 2-3 emails out of every 10 go through. The rest get the above error message.
    Please help if you can.
    Thanks

    Well, if your on ATT Yahoo. The settings are as follows, and I've had luck both sending and recieving with these settings.
    Incoming Mail Server
    Host Name: pop.att.yahoo.com
    User Name: *****@sbcglobal.net (or whatever your ATT domain might be)
    Password: Required
    Outgoing Mail Server
    Host Name: smtp.att.yahoo.com
    User Name: ****@sbcglobal.net (or whatever your domain happens to be)
    Password: Optional (I left mine blank)
    Under Advanced
    Deleted Messages: Remove After ? (Your Choice)
    Incoming Settings
    Use SSL : On
    Authentication: Password
    Delete from Server: Your choice
    Server Port: 995
    Outgoing Settings
    Use SSL: On
    Authentication: Password
    Server Port: 465
    I've taken these setting from my phone. I can't remember all the domain names for the ATT Yahoo, but I know sbcglobal is one, and I believe attglobal is another. Also to change the ports under advanced, though you shouldn't have to, simply click the port area and a keypad will come up below. You can type the port number there.

  • TS1702 cannot send Mail   The connection to the outgoing server failed.  Additional Outgoing Mail Servers can be configured in Settings Mail, COntacts, Calendars

    Cannot send outgoing messages from my IPhone.  Receive the following message: 
                   Cannot Send Mail
                   The connection to the outgoing server"[email protected]" failed.  Additional OUtgoign Mail Servers can be configured in Settings> Mail, Contacts,                Calendar

    See here for troubleshooting the SMTP settings (outgoing mail server on your carrier's servers)
    http://www.apple.com/uk/support/iphone/mail/
    Often removing a mail service from iPhone and resetting works

  • TS1398 My iPad cannot  send mail - the connection to the outgoing server failed

    My iPad cannot send mail - the connection to the outgoing server failed.

    Go to the email settings, and re-enter your Outgoing Server username and password.
    Have you changed that recently, perhaps on the Incoming Server but not on the Outgoing server?

  • Window 8.1 system unable to access network shares via VPN connection

    Is there something inherent to Windows 8.1 that prevents it from accessing shares on a domain?
    I know that it cannot join a domain, but does that also mean that it cannot access shares which are on a domain?
    My problem is that I have several user that are running windows 8.1 that are connecting to our network via a VPN.
    The users have domain accounts but their computers as windows 8.1 cannot joined to the domain.
    So to access network shares they have to use their domain credentials to create a VPN connection.
    Once connected the user can RDP to systems on the domain using their domain accounts, so I know that their user names/passwords and permissions are correct. They can access these systems using the computer name, so I don't feel that I have a DNS issue.
    They can see the shares on our file server, but when they try to access their departments shared file, they receive an access denied message. There are a few shares that are completely wide open, shared to all users and all departments but they cannot access
    those shares either.
    You can ping the file server, from the the client when they are connected to the VPN but you just cannot access any of the shares.
    So...
    I am thinking that it has something to do with windows 8.1 and not being able to join a domain, but I cannot find anything to explicitly support this thought.
    Other users running a variety different OS (windows 7, OSX, Linux) can all access the shares without any problems via the VPN, so I am a little stumped.

    I have done some more testing and oddly enough I can map a drive if I use the IPaddress, but not the computer name, when checking the check box "connect using different credentials"and providing they users domain credentials.
    This seems to point to a DNS issue, one would think, but I can hit the file share server by name \\fileserver.dev.lan
    I can see all the shares, so dns seems to be fine right?
    So I don't understand why I can map a drive using do the IPaddress and not the machine name, but yet I can see and ping the server by name?
    When I try to create a mapped drive by machine name I receive the following message:
    Windows cannot access \\fileserver.dev.lan\all
    You do not have permissions to access \\fileserver.dev.lan. contact your network administrator  to request access.
    But if I use the \\x.x.x.x\all using the very same user and password I get connected with no problem.
    This only seems to happen on windows 8.1, which leads me to think that has something to do with OS. 
    I am thinking about upgrading to windows 8.1 pro, but I don't want to go though the hassle and expanse is the OS is not the problem.

  • Why can't I establish a VPN connection using my iPhone 4's personal hotspot?

    Hello everybody,
    I want to access our company's network with my Mac Book Pro using my iPhone 4's 3G connection, but unfortunately it simply won't work. Here is what I can do:
    - I can establish a VPN connection from my MacBook Pro using my home (or some other) WiFi and access the company network.
    - I can establish a VPN connection on my iPhone 4 using 3G and access the company network on my iPhone 4.
    - I can use my iPhone 4's personal hotspot (sharing its 3G connection) with my MacBook Pro and surf the Web.
    what I can't do is:
    - establish a VPN connection on my MacBook Pro when connected to the internet via the iPhone's personal hotspot. (connection times out)
    - access the company's network on my MacBook Pro using the personal hotspot, when the iPhone's VPN connection is ON.
    The VPN is an encrypted PPTP connection, with username and password.
    Is this a known issue, and, if so, is there any way to solve this?
    Thanks in advance!
    Cheers
    Diego

    what i forgot:
    i'm connecting to the iPhone's hotspot using WiFi
    and:
    the answer provided here did not do the trick for me :/
    https://discussions.apple.com/message/17729456#17729456

  • Can't access management interface via vpn connection

    Hi all,
    I can't seem to be able to manage my ASA 5510 when I connect via vpn. My asa sits at a remote colo, and from my office i can connect fine. I have it configured as management-access (dmz), bc as of now we are just doing some staging and all the servers are in the dmz interface.
    When i connect with the vpn client, in the routes it sees 192.168.1.0 255.255.255.0 which is the management network/interface.
    For some reason I can't get access to 192.168.1.1 to use the ASDM.
    Here is how i did my vpn via CLI
    isakmp enable outside
    isakmp identity address
    isakmp policy 10
    authentication pre-share
    encryption des
    hash md5
    group 2
    lifetime 86400
    ip local pool vpnpool 10.1.1.2-10.1.1.10
    access-list split_tunnel standard permit 192.168.200.0 255.255.255.0
    access-list split_tunnel standard permit 192.168.100.0 255.255.255.0
    access-list split_tunnel standard permit 192.168.1.0 255.255.255.0
    group-policy xxxxx internal
    group-policy xxxxx attributes
    dns value
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value split_tunnel
    username xxxxx password
    username xxxxxx attributes
    vpn-group-policy xxxx
    username xxxxxx password
    username xxxxxx attributes
    vpn-group-policy xxxx
    username xxxx password
    username xxxx attributes
    vpn-group-policy xxxx
    tunnel-group xxxx type ipsec-ra
    tunnel-group xxxx general-attributes
    address-pool vpnpool
    tunnel-group xxxx ipsec-attributes
    pre-shared-key
    access-list vpnra permit ip 192.168.200.0 255.255.255.0 10.1.1.0 255.255.255.0
    access-list vpnra permit ip 192.168.100.0 255.255.255.0 10.1.1.0 255.255.255.0
    access-list vpnra permit ip 192.168.1.0 255.255.255.0 10.1.1.0 255.255.255.0
    nat (inside) 0 access-list vpnra
    nat (dmz) 0 access-list vpnra
    nat (management) 0 access-list vprna
    crypto ipsec transform-set md5des esp-des esp-md5-hmac
    crypto dynamic-map dynomap 10 set transform-set md5des
    crypto map vpnpeer 20 ipsec-isakmp dynamic dynomap
    crypto map vpnpeer interface outside
    Any help would be much appreciated

    it seems like you are missing a line:
    management-access "interface"
    http://www.cisco.com/en/US/docs/security/asa/asa71/command/reference/m_711.html#wp1631964

  • Copy from AFP share to AFP share (via VPN-Connection) - stupid?

    Hi there
    We set up an OS X server in a remote facility and are connecting to it over a VPN connection (Netgear Firewall).
    Everything works fine, there's only one annoying issue: if I want to copy a file from a mounted AFP share (share1) to another mounted AFP share (share2) - both of them residing on the same server - it seems to me that the files are being copied first to my local client and then back to the server again - instead of being copied directly from and to the server...
    Is there anything I can do about this issue or am I wrong? Is this a so called "feature" of the Finder itself?
    Thanks for any suggestions and regards
    Roman

    Thanks for your thoughts about higher vs. lower latency networking - I totally agree. It might be a quite uncommon setup; as the server is being "housed" in a datacenter with quite tough restrictions: not only do they charge us for the power consumption, but also for the traffic being generated - which is 250 GB a month. They're providing an uplink with 10mbps (guaranteed), burstable to 100mbits.
    Anyway, we're interested in keeping traffic low - hard to do if we cannot let end users do "common" tasks like moving files from one folder to another (of course, its a sharepoint - but they don't care).
    What I'm looking for? Well, I think it will take hours to find out which part of the setup (AFP implementation of the server, AFP on the local machines, either of them on a particular version, the Finder in general...) actually might be responsible for this behavior. And maybe there's a "solution" (if you agree that this is actually a problem" buried somewhere
    Regards
    Roman

  • Can I enable "Use default gateway on remote network" on VPN connection using Group Policy?

    Hi,
    First timer here so please bear with me!
    Environment: Domain Windows 2003, Clients: Windows 7 and Windows XP (with Client Side Extensions pushed out)
    When creating a VPN connection on a client machine manually with default settings the "Use default gateway on remote network" found in [Connection Properties - Networking - IPv4 - Advanced] is enabled, which is good as we don't allow split-tunneling.
    I have a test GPO that creates a new VPN Connection [Computer Config - Preferences - Control Panel - Network Options], but the above setting is unticked.
    Am I missing something on the options for the GP preference to set this automtically?
    I can write a script to directly change the C:\Users\All Users\Microsoft\Network\Connections\Pbk\rasphone.pbk file but would prefer if I could sort it all out using Group Policy.
    Any help would be greatly appreciated!
    Thanks a lot!
    David

    Shane,
    There is actually a way to set the "Use default gateway on remote network" through Group Policy Preferences. And this may even be a better way to do it, because you may change this flag without touching any other settings, or other VPN connections.
    (All VPN connections are stored in the same .pbk file.)
    Here's the trick: Opening the .pbk file in notepad, I realized that this is actually an oldstyle ini-structured file. And Group Policy Preferences can update ini files! In the .pbk file the section names are the VPN connections names, like [My VPN],
    and the property IpPrioritizeRemote is the flag "Use default gateway on remote network".
    So, in Group Policy Management Editor, go to Preferences / Windows Settings / Ini Files.
    Create a new object with Action = Update, and File Path =
    C:\ProgramData\Microsoft\Network\Connections\pbk\rasphone.pbk
    (If this is where your file is located, I guess it is in c:\users if the VPN connection is made for a single user.)
    Section Name should be the display name of your VPN connection, without the brackets.
    Property Name = IpPrioritizeRemote
    Property Value = 1
    Peter, www.skov.com, Denmark
    Peter :-)
    This is great, but just one question. I also want to append a list of DNS Sufixes in order (when viewing a VPN properties, this is buried in
    "Networking --> IPv4/6 --> Advanced --> DNS --> Append these DNS Suffixes (in order)". However, for the VPNs I have manually created with this list populated, I can't see any entries in the rasphone.pbk. Does anyone know
    where these are stored?
    Cheers.

  • Unable to access gateway and DNS via VPN (L2TP) with Snow Leopard Server

    Summary:
    After rebooting my VPN server, i am able to establish a VPN (L2TP) connection from outside my private network. I am able to connect (ping, SSH, …) the gateway only until the first client disconnects. Then i can perfectly access all the other computers of the private network, but i cannot access the private IP address of the gateway.
    Additionally, during my first VPN connection, my DNS server, which is on the same server, is not working properly with VPN. I can access it with the public IP address of my gateway. I can access it from inside my private network. A port scan indicates me that the port 53 is open, but a dig returns me a timeout.
    Configuration:
    Cluster of 19 Xserve3.1 - Snow Leopard Server 10.6.2
    Private network 192.168.1.0/255.255.255.0 -> domain name: cluster
    -> 1 controller, which act as a gateway for the cluster private network, with the following services activated:
    DHCP, DNS, firewall (allowing all incoming traffic for each groups for test purposes), NAT, VPN, OpenDirectory, web, software update, AFP, NFS and Xgrid controller.
    en0: fixed public IP address -> controller.example.com
    en1: 192.168.1.254 -> controller.cluster
    -> 18 agents with AFP and Xgrid agent activated:
    en1: 192.168.1.x -> nodex.cluster with x between 1 and 18
    VPN (L2TP) server distributes IP addresses between 192.168.1.201 and 192.168.1.210 (-> vpn1.cluster to vpn10.cluster). Client informations contain the private network DNS server informations (192.168.1.254, search domain: cluster).
    _*Detailed problem description:*_
    After rebooting the Xserve, my VPN server works fine except for the DNS. My client receives the correct informations:
    Configure IPv4: Using PPP
    IPv4 address: 192.168.1.201
    Subnet Mask:
    Router: 192.168.1.254
    DNS: 192.168.1.254
    Search domain: cluster
    From my VPN client, i can ping all the Xserve of my cluster (192.168.1.1 to 18 and 192.168.1.254). If i have a look in Server Admin > Settings > Network, i have three interfaces listed: en0, en1 and ppp0 of family IPv4 with address 192.168.1.254 and DNS name controller.cluster.
    The DNS server returns me timeouts when i try to do a dig from my VPN client even if i am able to access it directly from a computer inside or outside my private network.
    After i disconnect, i can see in Server Admin that the IP address of my ppp0 interface has switch to my public IP address.
    Then i can always establish a VPN (L2TP) connection, but the client receives the following informations:
    Configure IPv4: Using PPP
    IPv4 address: 192.168.1.202
    Subnet Mask:
    Router: (Public IP address of my VPN server)
    DNS: 192.168.1.254
    Search domain: cluster
    From my VPN client, i can access all the other computers of my network (192.168.1.1 to 192.168.1.18) but when i ping my gateway (192.168.1.254), it returns me timeouts.
    I have two "lazy" solutions to this problem: 1) Configure VPN and DNS servers on two differents Xserve, 2) Put the public IP address of my gateway as DNS server address, but none of these solutions are acceptable for me…
    Any help is welcome!!!

    I would suggest taking a look at:
    server admin:vpn:settings:client information:network route definitions.
    as I understand your setup it should be something like
    192.168.1.0 255.255.255.0 private.
    at least as a start. I just got done troubleshooting a similar issue but via two subnets:
    http://discussions.apple.com/thread.jspa?threadID=2292827&tstart=0

  • How do you set up a vpn connection using WVR200

    Hey guys,
    I'm new to this forum. I have the WVR200 vpn router at home and I want to be able to vpn to it from work so I can use radmin to remote control my laptop. I have the latest firmware and quickvpn software. I've messed around with it for a couple of days now and I'm surpriesed that it's this difficult to set up. I also havn't found very many documents regarding this router and the vpn setup process. Please help if you can.

    Thanks for the reply! I have already read this document but maybe someone can help clear my understanding. I have a dsl wireless router/modem which is connected to my WVR200. The IP of the WVR200 is 192.168.1.1 and the IP of the DSL router/modem is 192.168.2.1. When I enter in the WAN IP(Server IP) into quick VPN I am getting confused as to which IP I should enter. I would think that either would work becasue they are connected to each other.
    Also, do you have to set up a tunnel on the wvr200 web interface in order for it to work? In the instructions above it just says to create a vpn account and then click the vpn summary tab and it will show the tunnel information, but how can it, if you never even created one and it doesn't give the insructions too?

  • Help with 10.4.5 VPN connection using PPTP to Windows 2003 Server

    Hi,
    I've looked on the discussions for an answer to this but have had no luck so far, can anyone help?
    I'm trying to connect my 10.4.5 PB to my Wn2k3 server (with RRAS) using PPTP VPN, however I keep getting stuck at the Negotiating phase of the connection and finally get this error in OSX Internet Connect:
    Could not negotiate a connection with the remote PPP server. Please verify your settings and try again.
    I can connect from my Win XP laptop so no issues with the router etc, do I need to make any changes to the server config?
    Thanks,
    Sahajesh.
    12" PB (G4)   Mac OS X (10.4.5)  

    Resolved elsewhere.

  • Cannot Make PPTP VPN Connection in 10.7.4

    As far as I can tell everything is setup correctly but every time I try to connect I get this message:
    You were disconnected by the communication device. Try reconnecting. If the problem continues, verify your settings.
    Console Log:
    6/25/12 5:11:40.382 PM pppd: PPTP connection established.
    6/25/12 5:11:40.443 PM pppd: Connect: ppp0 <--> socket[34:17]
    6/25/12 5:11:40.447 PM pppd: PPTP error when reading socket : EOF
    6/25/12 5:11:40.447 PM pppd: PPTP error when reading header : read -1, expected 12 bytes
    6/25/12 5:11:40.447 PM pppd: PPTP hangup
    6/25/12 5:11:40.448 PM pppd: Connection terminated.
    6/25/12 5:11:40.454 PM pppd: PPTP disconnecting...
    6/25/12 5:11:40.455 PM pppd: PPTP disconnected
    I am trying to connect to a Linux based VPN server.  I have double checked my username and password multiple times, made sure the MTU is set the same on client, server, and router, and tried turning the encryption off and on on the server and the client.  Nothing has made a difference, I get the same error every time.  I am able to FTP and SSH into the Linux box. 
    Any suggestions of other things to try would be much appreciated.  I saw some threads about editing config files on my mac but this is a brand new machine that I have had for a week running an OS that is on it's fourth point release.  I really should not have to muck around with config files but at this point I'm ready to try anything. 

    Looks like it might be a configuration error on the server's end. The VPN makes a connection and tries to read the server's configuration to create a socket for communication, but runs into a formatting error when it is passed an "End of File" character instead of a required component of the socket. Can you try connecting to another VPN server, or perhaps try an L2TP connection instead of PPTP?

  • Cannot see via projector connected to thunderbolt port

    I bought a connector: thunderbolt port to VGA (15 pin), but cannot see the VGA projector on my MacBook Air.

    Any solution?

Maybe you are looking for

  • Rising latency=no Call of Duty

    Since last night , "ping" has been gradually rising, to the extent I am getting "kicked" from many punkbuster servers for too high ping rate.... I have interleaving off, and have raised my snr so errors or packet loss aren't a problem....this happene

  • How can i know the number of lines in field-symbol internal table

    how can i know the number of lines in field-symbol internal table

  • Precise placement of inline objects

    Hi there! I need some help with placement of inline objects. When I work with floating objects, everything works fine. I can insert image and mark certain part of image with circe (from Shapes menu) or pull the arrow from the specific part of tex to

  • GDM Log-in screen background image

    When trying to follow the wiki for changing the background of GDM before logon, it's asking to do this: Then, create the necessary configuration file: wrote:touch /etc/dconf/db/gdm.d/01-background However, the folder /etc/dconf doesn't exist on my sy

  • How to get the production license

    Hi I am novell partner, and my company had buy a file management suite , and My Manager give me a act-code...I openwww.storagemanagersupport.com and want to create a license. when I type all information, I find a "Seats Licensed (FTE)"...I do know wh