PC to OSX Server works on LAN, not on WAN, Mac works on both

So the subject pretty much says it. I've got VPN set up, my macbook pro can connect on LAN and WAN. My PCs can connect on LAN, but it times out over WAN.
Thoughts?

There are reports of VPN issues with AEBS devices around the forums, including some reports with the just-released 7.5.2 firmware. I don't run that configuration, so I'm not in a position to replicate that here. ([Here is an old thread|http://discussions.apple.com/thread.jspa?messageID=4046689], and also see [here|http://discussions.apple.com/thread.jspa?threadID=2312455].)
Make sure your Windows (XP?) VPN is configured for NAT traversal. IIRC, that's not the default for the Windows VPNs, and Microsoft had some notes published on setting up VPNs from Windows. (I don't have a Windows box handy to test.) That's what port 4500 is for.
Try both PPTP and L2TP, too. (You have both open, so try both paths.) Ensure the server is set for both PPTP and L2TP, too.
The AEBS are good home WiFi routers and can serve admirably as wireless access points (APs; what Apple calls "bridge mode"), but they're not particularly intended as gateway devices for servers. I'd generally recommend getting yourself a VPN-capable server-grade network gateway, as that gets NAT out of the equation entirely, and it means you can connect to the LAN without needing the server to be functioning, and it means the server isn't fielding and processing and rejecting any (unauthorized) VPN connection traffic that might arrive.

Similar Messages

  • Photoshop, OSX Server – write access was not granted

    Hello,
    Photoshop CC (and prev versions) can't save/overwrite files on my OSX Server. I think this is a Photoshop issue because other apps can overwrite, such as InDesign and Microsoft Word.
    Here's specifics for the error, my desktop machine with Photoshop CC installed, and server.

    1.— Try getting rid of the [illegal] period after "2" in "2.0_Mens"…  The server may be interpreting everything after the first period as the file type extension;
    2.—
    This is the boilerplate text often used in connection to saving to a network (please NOTE the part where it explains that normally, it does work, but that it is impossible to troubleshoot someone else's network remotely, and that's why it's not supported by Adobe):
    If you are opening files over a network or saving them to a network server, please cease and desist immediately in the event you are currently experiencing problems with one or more files. Working across a network is not supported.
    See: 
    http://kb2.adobe.com/cps/406/kb406793.html
      Copy the CLOSED file from your server to your local hard disk, work on it, save it again to your local hard disk, close it, and copy the closed file back to the server.
         Of course, the fact that Adobe does not support working across a network does not necessarily mean it won't work.   It should.
        Adobe's position is that there are too many variables in a network environment for them to guarantee that everything will work correctly in every network, especially given the fact that if something does not work properly, it's probably the network's fault, and Adobe has no way of troubleshooting your network.
      If you can't work locally, you are on your own, and if something happens, you're on your own. If you must work from a server, make sure your network administrator is a competent professional.
    When problems arise, a lot of valuable work can be lost.

  • [solved] Troubleshoot ssh with keys (works from LAN, not WAN)

    I'm trying to set up ssh so that I can connect to my work computer from home. It is pretty much essential that I keep the work box as secure as possible at all times. (So I can't disable the firewall, come home and test it because IT would not be at all happy.)
    I'm not sure if this is an Arch question, a Fedora question or a general Linux/networking question.
    The work box is running Fedora 17. It has a firewall eerily like the "simple stateful firewall" described on Arch's wiki. It is running sshd. Public key authentication is enabled. No other form of authentication is enabled. It has a rule allowing ssh connections.
    My laptop is running Arch. It has a firewall very like that described on the "simple stateful firewall" page. It has a couple of rules allowing stuff I need at home (printer and something I had to enable for the LAN).
    Initially, I was given an internal ip address. I got this working fine i.e. I could ssh into the box from my laptop while sitting next to it in my office over the LAN. I'm using the default form of key pair generated on Arch (i.e. rsa) and am using gpg-agent with ssh support in lieu of ssh-agent to manage keys. Pin entry is using the qt front end as I'm on KDE. (I adapted KDE's config so that it starts gpg-agent with ssh support for the session so that I didn't end up with two instances.)
    Once the firewall was in place and sshd was running, they gave me a public ip address. At this point, no port was opened in their firewall to allow WAN connections but I tested the public ip address from within the LAN and it once again worked fine.
    Once I'd confirmed the machine could connect out after getting a public ip, they arranged for the port to be opened for ssh. However, I cannot connect to the machine from home.
    $ ssh -vvi .ssh/id_rsa [email protected]
    OpenSSH_6.1p1, OpenSSL 1.0.1c 10 May 2012
    debug1: Reading configuration data /etc/ssh/ssh_config
    debug1: /etc/ssh/ssh_config line 22: Applying options for xxx.xxx.xxx.x
    debug1: /etc/ssh/ssh_config line 32: Applying options for *
    debug1: auto-mux: Trying existing master
    debug1: Control socket "/home/username/.ssh/[email protected]:nn" does not exist
    debug2: ssh_connect: needpriv 0
    debug1: Connecting to xxx.xxx.xxx.x [xxx.xxx.xxx.x] port nn.
    debug1: connect to address xxx.xxx.xxx.x port nn: Connection timed out
    ssh: connect to host xxx.xxx.xxx.x port nn: Connection timed out
    xxx.xxx.xxx.x is the public ip (works fine from LAN)
    nn is the port number
    username is my user name (same on both machines)
    The options for the host from ssh_config are:
    AddressFamily inet
    Compression yes
    ControlMaster auto
    ControlPath ~/.ssh/socket-%r@%h:%p
    and the only generic option applied to all hosts is just a line to insist on protocol 2 which I think is default now anyway but I followed the wiki and specified it to be sure.
    What have I missed? My networking knowledge is pretty basic at best. (I got this far using Arch's wiki, Fedora's documentation and a little trial and error. That seemed to work well but now I've added google and still can't figure it out. All the hits I get concern cases where the LAN connection works but authentication fails over WAN. But I'm not getting that far - it looks like my work box doesn't respond at all...)
    Last edited by cfr (2012-09-25 22:12:06)

    So I discovered I'd also managed to kill off LAN access as well as the machine's ability to use any sort of DNS... (I did say it needed to be secure...)
    Anyway, I fixed that, reestablished working ssh from LAN but still can't get it to work from WAN.
    Question: if ShieldsUp! reports the port as stealthed does that mean that the port has not actually been opened? So the campus firewall is blocking the connection? Because if so, I'm knocking my head against a brick (fire)wall to no purpose whatsoever...
    I figure it can't be the software firewall else I'd not be able to connect on the LAN. And it is a public ip address so there's no NAT translation required...

  • Put OSX Server in DMZ or not?

    My network has a dedicated box running the community edition of Endian Firewall that creates three seperate physical networks, WAN/Internet, Internal and a dedicated DMZ network that has a couple of Linux servers.
    I plan on using OSX server to provide services to the internal network and to host email, a public website and Wiki. Calendaring & address book services, etc. I may provide externally via a VPN instead of exposing those services to the outside world.
    I haven't found any discussion of the trade-offs of either configuration in the Apple Documentation.
    Is it better to put the OSX server in the DMZ or on the internal network with port forwarding?

    Your server is exposed to the Internet, which means that a breach can provide a beachhead for the attacker, and can allow further intrusions and additional breaches in the absence of a DMZ.
    Folks with very small networks and low-value networks often don't bother with a DMZ.
    Folks with more network-connected devices and more hosts and particularly with more valuable data or with larger-bandwidth connections (the connection itself is valuable to an attacker) will generally use the DMZ and internal firewalls; layered defenses. Network monitors and distributed logging also tend to appear in this range.
    Printers and network storage controllers, for instance, can be good targets for secondary attacks. As can less-protected internal services. And for uses such as relay spam via the less-protected internal access path into a mail server, for instance.
    And for completeness, firewalls are not a panacea. There are various techniques for breaching them.

  • OSX Server 10.4.11 Run on New Mac Pro?

    Hi, we need to upgrade and older G4 running OSX Server 10.4.11 and just want to make sure that the OS will run decent on a new Mac Pro machine. Does this work, or do you have to upgrade to 10.5?
    Thanks. Would love the migration to be smooth, as my IT skills are limited. And if we had to upgrade the OS, I'd rather wait until Snow Leopard came out so we wouldn't have to upgrade twice in a short period of time.

    Another potential option is to get the current box serviced; refurbished, as it may.
    It looks like we would need to get the first generation Mac Pro to keep our 10.4.11 server software, but I suppose we would need the Intel-compatible install disks too, correct? Know if Apple would send Intel install disks if we were licensed owners of OSX Server 10.4 for PPC?
    Um, I'd tend to doubt that. (You did get what you purchased, you've used what you purchased, and you probably didn't purchase the software maintenance service plan, right?) But you can always ask Apple, of course.
    We really don't need the latest/greatest performance for our server, it's mostly a file-server. Our ancient G4 (upgraded processor to 1Ghz) doesn't seem to slow us down much, and has been pretty solid until now.
    If you're looking for "just a file server", get a NAS (Network Attached Storage) box. There are various NAS options available. For low-volume shared stuff, a Time Capsule can suffice as a NAS box.
    And I agree it would definitely make most sense to wait until Snow Leopard was available to upgrade, I just don't know if our server is going to last that long...
    If you're not looking for the latest and greatest and a low-end Mac box is an option, an Intel Mac Mini (the latest version has FireWire 800, which is rather speedy I/O) can do quite well for serving up data, and can boot and run Leopard and apparently Snow Leopard. It's a respectable entry-level box, with decent I/O.
    I did see something in the Snow Leopard documentation about an easy to use migration application for the upgrade. This would probably be very helpful if it worked well. Did Leopard have something similar?
    I've had a successful upgrade from Tiger Server to Leopard Server, but in more recent times I tend to reinstall stuff rather than the upgrade. Cruft tends to build up over the years. Sometimes an upgrade blows up. I utilize a "warm standby" server to allow me to test the upgrades and updates before I go into production.

  • 5.1 Soundblaster not working, now LAN not working eith

    Hi,
    I'm new here, and would greatly appreciate any help anyone can give me. I've tried searching and looking through all the FAQ's I could find, but still am not able to find a solution.
    I am running windows XP and I have a Soundblaster 5. card, and it's worked perfectly until last night. I had my headphones plugged in, and decided to plug in my Creative speakers instead. When I tried to plug the speakers in, soundcard appeared to be not working. I opened up my computer and took out the sound card and put it back in again, thinking I had maybe knocked it loose. I then went to check it under Windows device manager and it was listed as 'Multimedia Audio Controller" and said I had no drivers installed. I came here to the website, typed in the model number, got the correct drivers, but when I try to install the drivers, I get an error message saying that there is not a compatible device installed. I tried removing the card and putting it back in, also tried putting it into a different slot, but to no avail.
    Now the biggest problem; after plugging my sound card in for the 4th time, my network connection stopped working. I'm connected to a LAN, and it keeps saying it's unable to renew my IP address. In device manager, it doesn't look like there's anything wrong with my network card.... could it be possible that I somehow fried the on-board network card when I was putting the sound card in?
    I'm really at a loss as to what to do here. ANY suggestions at all would be GREATLY appreciated.
    Thank you very much in advance.

    Quote from: Chrysomya on 29-April-13, 20:14:26
    Just downloaded a new driver for the realtek HD, will this resolve my problem? Current driver version is 6.0.1.6657.
    Your issue is drivers related.
    For Windows 8 use 6.0.1.6839
    http://www.msi.com/product/mb/Z77A-G43.html#/?div=Driver&os=Win8%2064

  • Optimum setup for OSX server for small LAN?

    Our new XServe takes a while to save files, etc. across the network. I don't know enough to configure everything properly, but I'm able to do enough to get it going. Is there an optimum network configuration for a small office who really only needs a file server? Should the two ethernet ports from the server be going directly into the switch? What's the best configuration for 5 computers, an xserve, a dsl modem, and a switch? Thanks!

    to give you some idea, I have a test intel xserve 10.5.2 server connected to a 10-100 switch read-write is almost instantaneous depending on file size
    (when OD has not crashed). no other services running other than AFP, DHCP, DNS, OD master. Another live tiger server with over 70 users,AFP, DHCP, DNS, OD, Mail. on average file read write access is few seconds dependent on file size over the wired lan. no complaints either on wireless.
    with only 5 users I would expect fast file access this would really be dependent on the file sizes and what other services your server is providing
    connecting all ports to the switch, you will only be able to use link aggregation if your switch supports it. you could also use the second port to monitor the xserve

  • Xerox Work Centre M118 Not printing via Mac

    Hi,
    I am trying to print to an Xerox Workcentre M118, I have installed the latest printer drivers from Xerox.
    Everytime I try to print, it Says the following for me in the print que window:
    *+Network host 'xeroxm118' is busy; will retry in 30 seconds...+*
    I have printed tou our other printer which have gone away to another business 100% before (Xerox Document Centre 545) using the generic postscript printer driver.
    I have tried that with this printer and even downloaded the latest driver from Xerox's Website, still it gives me the same problem.
    The printer works well from Ubuntu and Windows machines, but not from mac OSX.
    Anyone have some advice on how I can get this printer working from an Mac OSX Laptop?
    Im Using mac OSX Leopard 10.5.8
    I tried it from an Powermac with Mac OSX 10.4.11 also, exactly the same problem.

    PPD available from :
    http://www.openprinting.org/showprinter.cgi?recnum=Xerox-WorkCentreM118
    The error you describe is nearly always because of not entering a printer-specific queue name in Print & Fax prefs when required. The LPD and IPP protocols are defined to require a queue name (also called port name). Xerox use various queue names - lp, PASSTHRU, PORT1, PS, for example - I hope you can find yours in the printer manual.
    If the printer/built-in print server supports TCP/IP raw port 9100, that is equal to HP Jetdirect on OS X, and it doesn't use queue name.
    HTH

  • Usb keyboard not recognized in mac - working in windows

    Hello,
    I am facing a strange issue with a usb numeric keyboard.
    After some plug-ins/outs one night, it stopped being recognized in my iMac.
    Actually, system profiler shows the following:
    Vendor-Specific Device:
      Product ID:          0x6560
      Vendor ID:          0x04b4  (Cypress Semiconductor)
      Version:          90.15
      Speed:          Up to 480 Mb/sec
      Location ID:          0x26200000 / 3
      Current Available (mA):          500
      Current Required (mA):          Unknown (Device has not been configured)
    The keyboard, doesn't work either with my MacBook Pro. USB ports are working fine with any other devices.
    I recently tried with a windows machine of a friend and the keyboard worked fine there.
    Both my macs are running 10.6.8
    Any ideas ?

    I have the same problem. I found I can unplug the keyboard and when replugged, everything works OK.
    I just upgraded to OS V10.6.4 and still must unplug and replug the keyboard in order to type.
    WHY?

  • Do video cards not supported on Mac, work in bootcamp under windows?

    I have recently purchased and installed Battlefield 3 on my 2006 Mac Pro1,1, on the windows partition and it plays okay on extremely low settings. I am using the ATI 4870 card I purchase from apple a year ago. I want to play the game at higher settings and found a video card "Sapphire radeon 6970 hd" that can run the game at great settings and great frame per second. The problem is that the card doesnt work on Macs (like my ati 4870 does), so I was wondering if the card would work on my windows partition, even if it doesn't work on OS X.  I would rather not have to buy a new PC. Thanks

    I had already seen that site while googling, however I could not find information relating tom that specific card in my specific Mac. They had information about getting that card to work on OS x, bit it didn't mention if that worked with Mac 1,1. Also, I am only concned with whether it would work with the windows partition.

  • Extension not installing on Mac, works on Windows

    I have written a safari extension which I'm able to install on Windows Safari, but it's not installing on a Mac Safari. On mac, when the link to the extension is clicked, executable text shows up (the initial bit is pasted here) -
    xar! D}!? jz{_gw JqKt` H35$ Z8S1 wU2 0 \WCy. )1;L 51?k #c^ < "at* tcj* bZ6YhA x+XEsL H[c# m 2t &5{u<Z$ mfG# (Rt? :Lt%W 93in MP4% 3vBnV =-|7 DHz7O
    The extension is available here http://snake.ims.uwm.edu/articlesearch/extensions.php . It was packaged on a Windows Safari (I don't have access to a Mac, but the bug was reported from two different sources).
    Any idea why this might be happening?

    Thanks. The following code worked for me (for others!)
    <?php
    header("Content-type: application/x-safari-extension");
    header("Content-Disposition: attachment; filename=figsearch.safariextz");
    readfile("figsearch.safariextz");
    ?>

  • In Firefox Yahoo Calendar has stopped working (it does not load) while it works in IE8.

    My Yahoo calendar failed to load in the Yahoo Mail application. I have been using the latest version of Firefox for some time. When I tab from Yahoo mail to the calender the screen, the Calender header appears but otherwise the calender portion of the screen is blank. I use Yahoo mail in IE8 and the calender portion of mail opens correctly. I have reloaded the latest version of Firefox without any change

    Clear the cache and the cookies from sites that cause problems.
    "Clear the Cache":
    *Tools > Options > Advanced > Network > Cached Web Content: "Clear Now"
    "Remove Cookies" from sites causing problems:
    *Tools > Options > Privacy > Cookies: "Show Cookies"
    Start Firefox in <u>[[Safe Mode|Safe Mode]]</u> to check if one of the extensions (Firefox/Tools > Add-ons > Extensions) or if hardware acceleration is causing the problem (switch to the DEFAULT theme: Firefox/Tools > Add-ons > Appearance).
    *Do not click the Reset button on the Safe mode start window or otherwise make changes.
    *https://support.mozilla.org/kb/Safe+Mode
    *https://support.mozilla.org/kb/Troubleshooting+extensions+and+themes

  • Downloaded iLife and installed it to get iDVD. iMovie working, Garage Band not installed and my working iPhoto stopped working. Icon where iPhoto used to be now has a white circle with a line in the middle and error message saying  that it is damaged.

    OS X 10.8.4 (12E55)

    Welcome to Apple Support Communities
    Your MacBook Pro came with iPhoto, iMovie and GarageBand, and what you did is to install iLife from a DVD having these applications from the Mac App Store.
    What I recommend you is to delete the iPhoto, iMovie and GarageBand copy you have. To do it, open Finder, select Applications in the sidebar and delete them. Then, open the App Store, go to Purchases and download iMovie, iPhoto and GarageBand. iDVD will be working after doing this

  • Using Mac Mini running OSX Server (10.8) to host web sites on LAN

    I would like to know how to use a Mac Mini running OSX Server (10.8 ML) to host web sites on my home network (LAN).
    I am developing web sites and previously (before ML) I used my Mac Pro to 'host' the sites I was developing to test them out before publishing them to my hosting package.  That was when I was using 10.7 Lion and theer was an option in the System Preferences to turn web sharing on.
    I have since upgraded my Mac client to 10.8 ML and have configured it to do the same - even though there is no System Preferences option for web sharing any more.
    I also have a Mac Mini running on my LAN and its been upgraded to OSX Server 10.8.
    Im now trying to configure it to host the web sites I am developing but with no success.
    I thought it was just a matter of adding them as sites in the Server's Websites panel (see screen shot)
    but so far Ive had no success.
    On my Mac client I can simply add a folder in the Sites directory and then open the web site by putting http://myhost/~myuser/name-of-folder and it will load the default file in the folder e.g. index.html
    How do I achieve the 'same thing' on OSX Server?

    Hi Johnfromglenver,
    There are no Mac drivers for the HP Officejet K60 printer. Therefore it is not compatible with the Mac operating systems. Please call our technical support at 800-474-6836. If you live outside the US/Canada Region please click the link below to get the support number for your region. http://www.hp.com/cgi-bin/hpsupport/index.pl. There may be other solutions that could work for you.
    I hope this information helps.
    Advance 23
    I work on behalf of HP

  • Osx server app not available uk?

    trying to purchase osx server app but its not available for download in the uk?

    I think you may have been trying to get the old server which is still shown (called OS X Lion Server).
    There is a new one just called OS X Server
    http://itunes.apple.com/gb/app/os-x-server/id537441259?mt=12

Maybe you are looking for