Connecting two servers

Firstly I'll state what I want to achieve and would welcome any advice.
Currently have my business network 192.168.2.x connected to my home network 192.168.1.x via VPN run by my two respective routers. Works perfectly.
Have recently installed new Lion Server on work network to handle, DNS, Mail, OD, Address Book, Chat, etc.
Am considering installing Lion Server on home network to handle the same (probably not all or as much as don't have the need)
Would it be better to use the two servers running VPN to link the two networks or leave as is via the two routers.
I imagine setting up the DNS to be the more difficult over the tasks involved. As really like just going to any machine on our network and typing mail into a browser and getting my email via webmail. I guess I would have to setup DNS on both servers to direct requests to the right server that handles the right domain.
Getting ahead of my self but would then like one server to back up the others services, if possible.
Any words of wisdom appreciated.

First you want to get static IP's and then you can setup an IPSEC tunnel or site to site VPN.  Then you will want to creat a trust between the 2 domains if they are in different forests.  Then you can add your user account to a universal group (forest functional level must be at Server 2003 level) for enterprise management.
James Goodwin - Senior Technical Instructor & Network Infrastructure Expert
MCT, MCP+ I, MCTS:Server 2008, MCTS: SCCM, MCTS:Vista
MCSA:S, MCSE:S, MCITP:SA, MCITP:EA , MCITP:ES, CCNA,
CCSI(# 32018),C|EH, C|HFI, C|EI, HDSA, A+, Network+, i-Net+, Server+, Security+
My Blog:http://thattrainerguy.blogspot.com/

Similar Messages

  • Connecting two distant servers via a common WAN Internet connection.

    Hi all,
    I have two servers located in two different countries. For example Server A (Windows 2003 with Active directory) is located in Singapore. Another Server B (also Windows 2003 Server with Active Directory) is located in Kuala Lumpur. Both computers are connected to Internet via local ISP (WAN connection with dynamic IP) to respective countries.  There is few local users at each places which are connected to local servers at both places with LAN.
    I would like to connect these two servers togather via WAN (Internet- may be tunnelling, VPN, I don't know much what are other technologies) My objective is to connect both Server A and Server B so that I can keep track of active directory information, user management and authentication. Please let me know how can I achieve that? What are needed and what configuration and addition device, server needed. Please give me simple, detailed cost effective methods.
    Thanks.

    First you want to get static IP's and then you can setup an IPSEC tunnel or site to site VPN.  Then you will want to creat a trust between the 2 domains if they are in different forests.  Then you can add your user account to a universal group (forest functional level must be at Server 2003 level) for enterprise management.
    James Goodwin - Senior Technical Instructor & Network Infrastructure Expert
    MCT, MCP+ I, MCTS:Server 2008, MCTS: SCCM, MCTS:Vista
    MCSA:S, MCSE:S, MCITP:SA, MCITP:EA , MCITP:ES, CCNA,
    CCSI(# 32018),C|EH, C|HFI, C|EI, HDSA, A+, Network+, i-Net+, Server+, Security+
    My Blog:http://thattrainerguy.blogspot.com/

  • Why connect two dhcp servers with different IP addresses?

    
    so for an assignment at college we had to configure a router connected to two switches which both had a server connected to them.
    the computers were connected via dhcp to either server however each side had a different IP. we have now been asked to justify as to why two servers were used with different IP which I cannot quite produce a business orientated answer.
    I can understand connecting two dchp servers on same IP to increase fault tolerance but I do not understand using two separate IP addresses.

    Hi,
    Does “using two separate IP addresses“ mean 2 subnets which are connected by router?
    If you have separately configured 2 DHCP servers on the 2 subnets, and want 1 of the 2 DHCP servers to provide fault tolerance for the other. You need to use an RFC 1542–compliant router, or DHCP relay agent, in order to forward DHCP broadcast traffic.
    If there is any misunderstanding about your question, please correct. 
    Best Regards,           
    Eve Wang                                                                             
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Connecting two Central Servers??

    Mohan,
    More info may be beneficial.
    If you are trying to share service objects across two environments, you will
    need to create
    a reference partition. If the two different Central Servers are truly on two
    different machines,
    you can connect their environments.
    If it's a matter of having your app on one server and the database on another,
    you can
    use SQLNET and connect using TNS NAMES.
    The forte manuals can tell you how to create a reference partition, connect
    environment,
    etc.
    Hope this helps somewhat.
    Peggy Adrian
    Eli Lilly and Company
    [email protected]
    ---------------------- Forwarded by Peggy Lynn Adrian/AM/LLY on 01/12/98 01:09
    PM ---------------------------
    MOHAN CHICKMAGALUR <[email protected]> on 01/12/98 01:13:40 AM
    Please respond to MOHAN CHICKMAGALUR <[email protected]>
    To: [email protected]
    cc: [email protected]
    Subject: Connecting two Central Servers??
    Dear Friends,
    Wish U all avery happy new year. In our office we have 2 groups
    working on two different Forte Central Server, say FCS-A & FCS-B. FCS-A
    has the Oracle Database. We now want the clients connected to FCS-B to
    access the Oracle Database. How do I connect these two???
    Thanks in Advance for the help
    mohan
    Get Your Private, Free Email at http://www.hotmail.com

    I have heard about connecting 2 environments. I have never tried it
    myself. Here is how you do it.
    As long as your second environment has an environment visible service
    object and your first environment does not have such an SO with the same
    name, you can specify in the FORTE_NS_ADDRESS environment variable of
    the first environment, the address for both the environments. This is
    what I have seen in some examples
    FORTE_NS_ADDRESS=env1:5000;env2:5000;env3:5000 and so on.
    The control will query each environment for the SO.
    Hope this helps. Remember, I have not tried it, so I cannot authenticate
    it.
    Venkat J Kodumudi
    Price Waterhouse LLP
    Internet: [email protected]
    Internet2: [email protected]
    -----Original Message-----
    From: [email protected] [SMTP:[email protected]]
    Sent: Monday, January 12, 1998 7:32 PM
    To: Venkat Kodumudi
    Subject: Connecting two Central Servers??
    To: [email protected] @ Internet
    cc: [email protected] @ Internet
    From: [email protected] @ Internet
    Date: 01/11/98 10:13:40 PM PST
    Subject: Connecting two Central Servers??
    Dear Friends,
    Wish U all avery happy new year. In our office we have 2
    groups
    working on two different Forte Central Server, say FCS-A & FCS-B.
    FCS-A
    has the Oracle Database. We now want the clients connected to FCS-B to
    access the Oracle Database. How do I connect these two???
    Thanks in Advance for the help
    mohan
    Get Your Private, Free Email at http://www.hotmail.com

  • Two servers with redundant connections for Sun StorEdge 3320 SCSI arrays

    Hello All,
    I read in the "Sun StorEdge 3000 Family Installation, Operation and Service Manual" that it's possible to setup "two servers with redundant connections" but I never see a detailed schema to do this. I read also the "Best Pratices Guide" but this case is not mentioned. Is it really possible ?
    My objective is to split a Sun StoreEdge 3320 SCSI array between two hosts with dual redundant scsi connection.
    Thanks in advance for your answers.
    Francois.

    At first this sounded easy, but looking at the parts listing for the 3320 seems to indicate otherwise. They're listing different part numbers for the chassis and midplane...
    371-0105 chassis & midplane for JBOD
    371-0106 chassis & midplane for RAID array
    There are also different part numbers for the I/O boards....
    370-7655 RAID SCSI I/O module
    370-7713 JBOD SCSI I/O module
    I can see what the difference is between the I/O modules, but am unsure of what differences if any are in the chassis and midplane. Seems like there's more involved here than what it would be worth to try and make it work. Perhaps the cost of a second HBA would be the lesser of two evils..........

  • Connecting two iChat servers

    I am hoping someone can help with an issue I am having getting two iChat servers to talk. We have two locations that are currently using our iChat server in location A. I am attempting to setup a new iChat server in location B. The idea is to have these two servers talking so that if we lose connection between locations the folks at location B can still chat amongst themselves.
    Both servers are Xserves, both configured identical. I do have the new iChat server working (location B), I can connect with a client and see My Buddies, but My Buddies are greyed out and I am unable to chat with them. All of My Buddies are online on the iChat server at Location A. I have uncommented the "s2s" section in the Jabber.xml file, but still cannot get the two servers to talk. Anyone been down this road before and know what I am missing? I know we are not blocking the ports between locations. Unfortunately, I cannot find any documentation that is not basically an overview, I am not sure how iChat "discovers" other servers. Any help is very much appreciated.
    Derek
    G5 Xserve   Mac OS X (10.4.8)  

    iChat server is a re-branded version of Jabberd14.
    XMPP servers use DNS to discover each other. SRV records are preferred, but they will fallback to A records if SRV are not available.
    I'm not familiar with Jabberd14 so following the link Defcom(UK) gave or asking in the Collaboration Services forum (http://discussions.apple.com/forum.jspa?forumID=700) would be advisable if you have any more questions.
    Hope that helps.

  • One client and two servers

    hi,
    how a client can communicate to two servers by socket connection (parallel) ?
    here is my code, when i run one server at a time it works but if i run both server programs and then the client i dont get any exception and it does not get my data from servers it generates "press any key to continue..."
    server 1 --------------
    public static void main(String[] args)
    ServerOne so = new ServerOne(7500);
    so.accept();
    public void accept(){
    try{
    System.out.println("Server");
    Socket s;
    while(true)
    s = sock.accept();
    }catch()...
    server 2 -----
    exact like server 1
    klient---------------------------
    public static void main(String[] args)
    try{
    System.out.println("Client");
    MyThread MT = new MyThread();
    MT.startThread();
    Socket s = new Socket("127.0.0.1",7500);
    InputStream is = s.getInputStream();
    BufferedReader in = new BufferedReader(new InputStreamReader(is));
    while(in.ready())
    String str = in.readLine();
    System.out.println(str);
    s.close();
    }catch(IOException e){e.printStackTrace();}
    mythread --------------------
    public void run()
    ? try
    Socket s = new Socket("127.0.0.1",1234);
    InputStream is = s.getInputStream();
    BufferedReader in= new BufferedReader(new InputStreamReader(is));
    while(in.ready())
    String str = in.readLine();
    System.out.println(str);
    s.close();
    catch(Exception e){System.out.println(e.toString());}
    Message was edited by:
    cyrus

    You cannot run two servers on exactly the same socket. Are you aware of this?
    At least the port number has to be different.
    // Server 1:
    try {
        serverSocket = new ServerSocket(4444);
    } catch (IOException e) {
        System.out.println("Could not listen on port: 4444");
        System.exit(-1);
    Socket clientSocket = null;
    try {
        clientSocket = serverSocket.accept();
    } catch (IOException e) {
        System.out.println("Accept failed: 4444");
        System.exit(-1);
    // now the connection is established
    // do the same for the other server, but for another port
    // The client has to explicitly call each Server, to establish each connection.

  • Two servers (serverSocket) behind the SAME firewal !?l

    Hello !
    I dont know if this is the right forum for this qusetion,
    and maybe the question is really stupid, but ...
    I made a little client/server application, just to
    play around with sockets and serverSockets.
    It works fine, but now i ask myself:
    What happens, if there are two of my servers running on two
    different computers in the SAME LAN behind the SAME
    firewall/internetgateway, and both are listening on the SAME
    port ?
    F.e. if the extern IP of this LAN/(its gateway) is
    204.556.234.123, and a client in the internet is connecting
    to it on the port, on which the two servers behind the firewall
    are listening, WHO'S ANSWERING ?
    (If this port is set to "open and forward" in the firewall)
    The one with the shorter patch-cable ? ;)
    How is it possible for the client to differenciate
    this two servers in that LAN?
    The only logical solution i found is that this two servers
    have to listen on different ports,
    but i think there has to be another explanation and/or solution.
    Do i have to take care about situations like that in my
    server-application ?
    I have the feeling that i have to...somehow.
    OK, you see i dont know much about this...
    i would be very thankful for every hint and explanation.
    Thank you very much,
    greetings,
    huni.

    F.e. if the extern IP of this LAN/(its gateway) is
    204.556.234.123, and a client in the internet is
    connecting
    to it on the port, on which the two servers behind the
    firewall
    are listening, WHO'S ANSWERING ?
    (If this port is set to "open and forward" in the
    firewall)Whichever one the firewall is told to forward it to!
    The two computers running your server have unique addresses on the internal network. The firewall will forward incoming connections to one of those addresses. Maybe it can do some simple "load balancing" by forwarding some connections to one server and some to the other, but still, any particular connection will only go to one server.

  • Cannot get Telnet to work between two servers on same subnet

    I need to test if communication is open on port 8444 between two servers.
    I installed telnet client on a Server 2008 R2 server and telnet server on a Server 2008 SP2 server.  I also manually started the Telnet service that was set to disabled on the SP2 server.  I disabled the Windows firewall on both servers.  They
    are both on the same subnet so they don't need to go through any routers and I can ping successfully.
    When I try to telnet to the remote server by typing telnet "ip address" 8444, I get an error that says "Could not open connection to host, on port 8444:  Connection failed.
    I tried other ports like port 80 and got the same error.
    What else is needed to get this to work?

    VMs have nothing to do with it, as long as there's network communication between the servers.
    As I said, there must be a service or application listening on that port for it to respond. For example, try this:
    C:\> telnet
    When the telnet prompt opens, type in:
    open mail.messaging.microsoft.com 25
    If it works, you should see this:
    220 CH1EHSMHS035.bigfish.com Microsoft ESMTP MAIL Service ready at Thu, 7 Feb 2013 00:57:33 +0000
    That means that Microsoft's mail servers are LISTENING on port 25 and it responded. And note, telnetting to port 25 is a non-default telnet port, because port 23 is the default telnet port. When you type in a space and then a port number, you're telling
    the telnet client to use that port.
    That is the SAME THING if some sort of application or service is listening on port 8444 on that other server you're trying to telnet to. If there is no app or service listening, it will just time out.
    And no, installing the TELNET service on that sercver will NOT answer to any port other than 23. The telnet service by default, uses TCP 23, unless you specify otherwise.
    So once again, what service or app on that server is supposed to be listening on 8444?
    Ace Fekay
    MVP, MCT, MCITP/EA, MCTS Windows 2008/R2 & Exchange 2007, Exchange 2010 EA, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Technical Blogs & Videos: http://www.delawarecountycomputerconsulting.com/
    This post is provided AS-IS with no warranties or guarantees and confers no rights.

  • Monitoring two servers with same IIS configuration using SCOM

    Hello,
    We have two servers which has the same IIS configuration including sites names, how do we configure APM to monitor and get events captured on two different monitors on SCOM 2012 R2.
    Thank you, Anand
    Anand Franklin

    Hi Anand,
    There is no problem at all, if applications IIS paths (Web Site names + Web application name in IIS) absolutely match. Make sure both servers have SCOM Agent installed and connected to the same Management Group.
    In .NET Application Performance Monitoring template just keep Target Group field blank (it's blank by default) - that will mean the application will be monitored on each server within Management Group where it's discovered. The same configuration of
    APM monitoring will be used for all app instances.
    If you want to monitor the app only on two servers, and at the same time the app is hosted on more than these two boxes, you can create Windows Computer group populated with appropriate servers and specify this group as Target for APM monitoring.
    If you want to differentiate APM configuration for specific app instances, you should create several Windows Computer groups and bind each group with separate configuration - in this case you will have to run .NET Application Monitoring template several
    times, picking up the same app, but changing APM settings and setting new Target Group.
    Igor Savchenko, VIAcode Consulting LLC (http://www.viacode.com/)

  • How to set up NAT for two servers using same port with ASDM ASA 5505

    Hi there,
    We have a new installation of a ASA 5505 and are trying to get some NAT issues straightened out. Here is the scenario: On our internal network, we have two servers running Filemaker Server, a relational database server that clients connect with using port 5003. Our goal is to be able to allow users from the outside to access either of these servers as needed. I know how to set up a simple static NAT rule and matching Access rule in ASDM which would be fine for a case in which only one server using a given port is running on a network, but for simple static rules I seem to be blocked from entering a different translated port number from the orginal port number, which becomes a problem when two servers we need to access from the outside are running software using the same port number.
    What is the simplest way to address this need? I am guessing that I need to set up a scenario like this, where port 5004 (or any arbitrarily choosen unused port, can be used to access the second server:
    Outside user enters   FQDN:5004  and this translates to Database server # 1 as   192.168.1.40:5003
    and
    Outside user enters   FQDN:5003  and this translates to Database server # 1 as   192.168.1.38:5003
    If so, what is the easist way to get this done? Or is there a better what to handle this scenario?
    Thanks in advance,
    James

    I would create two objects and use object NAT
    object network Obj_5004
    host 192.168.1.40
    object network Obj_5004
    nat (inside,outside) static service tcp 5003 5004
    object network Obj_5003
    host 192.168.1.38
    object network Obj_5003
    nat (inside,outside) static service tcp 5003 5003
    Of course you will need to open your outside interface for tcp ports 5003 and 5004 to make this happen

  • Flex IO error# 2032 when using IE7 for parallel https calls across two servers

    Hi,
    Weeks back I faced a wierd issue in the behaviour of flashplayer running on IE7 which is invoking parallel https calls. I have two SSL enabled servers one is listening on port 443 and the other is listening on port 8443 but both running in the same domain. I developed a flex client (using httpservice class) which sends parallel https requests to these two servers. When the number of parallel requests increases say more than 5 requests to each server, the fault handler was encountered with the error message:
    [RPC Fault faultString="HTTP request error" faultCode="Server.Error.Request" faultDetail="Error: [IOErrorEvent type="ioError" bubbles=false cancelable=false eventPhase=2 text="Error #2032: Stream Error. URL: https://servlet"]. URL: https://servlet"]
    I used some http tracer tools to check if the request jumps out of the browser but that didnt happen. I am 100% sure that I am using the correct url. I was totally helpless . This worked without any issues in IE8 or Chrome or Firefox. This made me think about increasing the number of concurrent connections for IE7 by modifying the windows registry. But still no difference in the behaviour.
    After breaking my head for a long days, I got one solution which would work. This issue is happening only if we are sending https requests to different ports in the same domain. So rather than moving one among the two servers to a new domain, I got a new DNS name for the same destination. So presently I got two DNS names pointing to the same machine in which both the servers are mounted.
    After this it really worked cool!!! Now that I am using a separate DNS name for the server listening on port 8443 and the old DNS name is used to hit the server listening on 443. And I am happy that its working fine without any issues .
    But can anyone tell me if this is really an IE7 issue or do we have anyother solution to fix this.
    Please share ur thoughts..

    Hi,
    I am building a mobile employee directory and for that I am using Flash Builder 4.6/AIR 3.1.0. I am using RESTful web service to get XML results and to display on my mobile application. I am getting the same below error when accessing the webservice from mobile app (Android - Galaxy Tab 7 inch).
    Error: [IOErrorEvent type="ioError" bubbles=false cancelable=false eventPhase=2 text="Error # 2032"] URL: http://adfdevp.alshaya.com:7013/RESTEmployeeDetails-EmployeeDetails-co">http://adfdevp.alshaya.com:7013/RESTEmployeeDetails-EmployeeDetails-co ntext-root/jersey/restlabhttp://adfdevp.alshaya.com:7013/RESTEmployeeDetails-http://adfdevp.als haya.com:7013/RESTEmployeeDetails-EmployeeDetails-co ntext-root/jersey/restlabEmployeeDetails-context-root/jersey/restlab
    The same code is working in Flash Builder 4.6. I have checked Network Monitor to "Disabled" before deploying to mobile. What am i doing wrong here? I am pasting my code below-
    <?xml version="1.0" encoding="utf-8"?>
    <s:View xmlns:fx="http://ns.adobe.com/mxml/2009"
       xmlns:s="library://ns.adobe.com/flex/spark" title="HomeView" xmlns:dao="dao.*"
       xmlns:mx="library://ns.adobe.com/flex/mx">
    <fx:Script>
       <![CDATA[
        import mx.collections.ArrayCollection;
        import mx.collections.IList;
        import mx.collections.XMLListCollection;
        import mx.events.FlexEvent;
        import mx.rpc.events.FaultEvent;
        import mx.rpc.events.ResultEvent;
        import mx.rpc.xml.SimpleXMLDecoder;
        import mx.utils.ArrayUtil;
        import valueObjects.EmployeeDetail;
        [Bindable]
        private var myXml:XML;
        [Bindable]
        public var resultCollection:IList;
        public function handleXml(event:ResultEvent):void
         var xmlListCollection:XMLListCollection = new XMLListCollection(event.result.children());
         var xmlListCollectionValues:XMLListCollection = new XMLListCollection(event.result.emp.children());
         var resultArray:Array = xmlListCollection.toArray();
         var resultArrayValues:Array = xmlListCollectionValues.toArray();
         var objEmployeeDetails:EmployeeDetail;
         var resultCollection:ArrayCollection = new ArrayCollection();
         var j:int = 0;
         for(var i:int=0;i<resultArray.length;i++){
          objEmployeeDetails = new EmployeeDetail();
          objEmployeeDetails.brand = resultArrayValues[j];
          objEmployeeDetails.division = resultArrayValues[j+1];
          objEmployeeDetails.email = resultArrayValues[j+2];
          objEmployeeDetails.employee_name = resultArrayValues[j+3];
          objEmployeeDetails.employee_number = resultArrayValues[j+4];
          objEmployeeDetails.grade = resultArrayValues[j+5];
          objEmployeeDetails.mobile = resultArrayValues[j+6];
          objEmployeeDetails.position = resultArrayValues[j+7];
          j = j + 8;
          resultCollection.addItem(objEmployeeDetails);
         list.dataProvider = resultCollection;
         //return resultCollection;
        public function handleFault(event:FaultEvent):void
         //Alert.show(event.fault.faultDetail, "Error");             
        protected function sesrchEmployee():void
         xmlRpc.send();
       ]]>
    </fx:Script>
    <fx:Declarations>
       <dao:EmployeeDAO id="srv"/>
       <mx:HTTPService id="xmlRpc"
           url="http://adfdevp.alshaya.com:7013/RESTEmployeeDetails-EmployeeDetails-co ntext-root/jersey/restlab"
           result="handleXml(event)"
           fault="handleFault(event)"
           resultFormat="e4x" showBusyCursor="true">
        <mx:request xmlns="">
         <data>{key.text}</data>
         <data>{key1.text}</data>
        </mx:request>
       </mx:HTTPService>
    </fx:Declarations>
    <s:navigationContent/>
    <s:titleContent>
       <s:VGroup width="100%">
       <s:HGroup width="100%">
        <s:Label top="40" paddingTop="10" paddingRight="13" height="29" text="Employee Name:"/>
        <s:TextInput id="key" width="559"/>
       </s:HGroup>
       <s:HGroup width="100%">
        <s:Label height="30" paddingTop="10" text="Employee Number:"/>
        <s:TextInput id="key1" width="100%"/>
       </s:HGroup>
       </s:VGroup>
    </s:titleContent>
    <s:actionContent>
       <s:Button icon="@Embed('assets/search.png')" click="sesrchEmployee()"/> 
    </s:actionContent>
    <s:List id="list" top="0" bottom="0" left="0" right="0" 
        change="navigator.pushView(EmployeeDetails, list.selectedItem)">
       <s:itemRenderer>
        <fx:Component>
         <s:IconItemRenderer label="{data.employee_name}"
              messageField="position">
         </s:IconItemRenderer>
        </fx:Component>
       </s:itemRenderer>
    </s:List>
    </s:View>
    Please help me to resolve this issue as soon as possible. Appreciate your quick response in this regard.
    Thanks,
    Murtaza Ghodawala
    Mobile: +965 97180549
    [email protected]

  • Connect two BI in one BO server

    Hi people,
    It´s possible to connect two SAP BI Servers (development and production) in one BO Enterprise X.I 3.1?
    More thanks

    Hello,
    yes it is. You can enter multiple Entitlement Systems in the SAP Are aof the Authentication within the CMC.
    Regards
    -Seb.

  • Connecting two BW systems to the one R/3 source system

    Hi all!
    I have to connect two BW Systems to one R3 system. In our last tests we have had problems trying to connect two BW  servers simultaneously with R/3 source system because it allows only a logical system name for each R/3 client, and (We guess that we need to define tow diferent logical system name, one for each connection). This has been generating errors when we try to load data from R/3 to BW because, we guess, R/3 does not recognize the BW source system in the ALE connection for someone BW systems at transfer data. In this moment I have one connection active (BW1-R3). The BW2-R3 connection is already inactive. Does anybody know how perform this? we need solve the transfers problem as soon as possible.
    Thanks!  Judi

    Ah...
    please don't post twice the same question...in these forums we are always the same !!!
    You can close this thread to avoid to look in two different posts...
    Bye,
    Roberto

  • Connecting two remote LANs through a VPN connection

    1)   
    I am trying to interconnect
    two LANs as you see below.
    2)   
    The scenario is to interconnecting two LANs with a
    single domain “domain.local” in order to have
    two domain controllers backing up each other. We already have a Domain Controller “SRVDC1.domain.local” in our local network “LAN1” and another Server which is going to be as both our
    secondary domain controller and VPN Server “SRVDC3.domain.local” in our remote network “LAN2” where is the
    Netelligent Network. I am trying to make these two servers (our two LANs)
    visible to each other by a MikroTik Cloud Router Switch solution.
    3)   
    I am using a
    MikroTik Router as a PPTP Client to VPN to our
    Remote Server SRVDC3 (87.75.45.66/29).
    4)   
    All the computers in
    LAN1, including Server SRVDC1, have a gateway set on “192.168.10.1” which is a
    Asus WiFi Router as a core switch which is connected to our Fiber Optic Translator. <o:p></o:p>
    5)   
    To prevent and minimize any down-time risk during the configuration, I have isolated one computer “table2pc5.domain.local” as sample of the
    whole network; by changing its gateway set to 192.168.10.6 (the
    Ether3-Slave-Lacal-interface on the MikroTikRouter).
    I am going to replace the “Asus WiFi Router” shown in the map, by the
    MikroTik Router later, after making sure that everything would work properly, so, everything is going to be naturalized after.
    6)   
    My
    solution simply can be explained as below:
    a.   
    Providing
    another interface in addition to “Netelligent Network” adapter.
    b.   
    To
    assign a LAN-based IP (in network range 192.168.10.0/24) to the added adapter (Microsoft Virtual Adapter)
    c.   
    Configuring
    SRVDC3 in Netelligent network “LAN2” as
    a Remote Access Server (VPN Server).
    d.   
    To provide a
    MikroTik Router/Firewall on the Edge of the
    LAN1 as VPN Client.
    e.   
    Configure
    MikroTik Router VPN PPTP connection to
    SRVDC3 via the Internet.
    f.     
    To have
    two LANs connected through a permanent VPN connection.
    7)   
    IP Addresses for the three EDGE-Devices (SRVDC1
    ßàMikroTik
    Router ßàSRVDC3)
    are as below:
    a.   
    SRVDC1:
    Interface:          
    Local Area Connection
    IP Address:          
    192.168.10.2/24
    Gateway:          
    192.168.10.1/24         
    (Asus WiFi Router)
    DHCP Server Pool:          
    192.168.10.1 – 192.168.10.254 (exclusions 10.1-10.50 , 10.50-10.99 , 10.200-10.254)
    b.   
    MikroTikRouter:
    Interface:          
    Local IP          
    IP Address:     192.168.88.1/24
    Interface:          
    Ether1-gateway-master         
    IP Address:     192.168.0.1/24
    Interface:          
    Ether2-master-local               
    IP Address:     192.168.88.1/24
    Interface:          
    ether3-slave-local                  
    IP Address:     192.168.10.6/24
    DHCP Server Pool:          
    192.168.10.1 – 192.168.102.254
    c.   
    SRVDC3:
    Interface:          
    Netelligent Network                
    IP Address:     87.75.45.66/29
    Gateway: 87.75.45.65/29
    Interface:          
    Microsoft Network Adapter     
    IP Address:     192.168.10.50/24
    Gateway: 192.168.11.1
    Interface:          
    PPP Adapter RAS                  
    IP Address:     192.168.11.1/24                      
    gateway:
    8)   
    The node “table7pc2.domain.local” is not able to see<o:p></o:p>
    Now, I would ask you to help me to realise this solution by helping me to find the Bad-Routing problem, and letting me know how to fix it.
    What NAT / Rout Paths or any configuration do I need to make this two LANs visible and recognizable to each other?
    I would introduce you critical nodes which play important roles in this configuration. I have tried to colour-mark them in order to have a better recognition once you take a look at the “Ping Result” table.
    The “Ping Result” table would give you an idea which nodes are able to see which others and where does problem hide itself?

    I got my own answer :D
    1) I have to right-click on my "Routing and Remote Access" Server.
    2) on IPv4 tab, I should define a static IP Pool. I had it done before; but since that I had chosen a wide range as 192.168.11.0/24, every time the router was taking a different IP address; so I should define a very small pool with two 2
    nodes as 192.168.11.1 and 192.168.11.2. In this way, I'll have the local address (router) as 192.168.11.2 and the remote address (my remote server) as 192.168.11.1
    3) After establishment of the PPTP connection successfully, I should add an static route to the "Netelligent Network" adapter. I had it done but in the RRAS routes, so that's why it didn't work. so:
    C:\SRVDC3>_ route -p add 192.168.10.0 mask 255.255.255.0 192.168.11.2
    [Enter]
    Now, I would be able to ping all of the computers whose their gateways are set on 192.168.10 (router)
    and If I wand to see all of the computers  at the first LAN, I have to put my router at the edge of the network, instead of the ASUS WiFi Router, then change it's IP address to 192.168.10.1 or alternatively set all of the computers gateways on 192.168.10.6.

Maybe you are looking for