Setup router to router VPN connecting 2 windows domain networks via 2 RV042 routers

I am using 2 RV042 routers.  I have created a point to point VPN with Remote Security Group Type= Subnet, using the default IPSec settings. 
Under advanced settings-  Aggressive Mode, Keep Alive enabled.
Location A- SBS 2011 standard, Servername=SBSServer, Domainname = Smallbusiness.Local, IP address 10.1.10.50
DHCP range 10.1.10.100 to 10.1.10.175.  DNS and Print services. No WINS.  
Location B- Server 2008 R2, Sername=SBSServer, Domain name=Smallbusiness.Local, IP address 192.168.10.50
DHCP range 192.168.10.100 to 192.168.10.175,  DNS, Print Services and Remote Desktop Services.  No WINS
I am wondering 2 things.  Can I setup the VPN tunnel to route traffice between the 2 networks without changing the server names.  Leaving the servernames the same.  I have it setup that way but also had netbios broadcast enable.  If I disable netbios broadcast will that be enough for these networks to be independent of each other.  I was hoping not to have to rename the domain and there are advantages to having the same user and domain name when mapping drives between networks.  I have not needed to authenticate those drives or provide credititals for printing either. 
2) Should I change the domain name so that each network has a unique domain name or, if I change the servername of the 2008 R2 server will that essentially solve my network issues, the primary issue being that location b has clients that occasionally can not find the 2008 R2 domain controller.  After a restart the usually resolve to the correct domain controller.
Essentially what I am asking is what are the best practices to connect 2 separate Windows domain networks via a VPN and have those networks capable of file sharing to the each others domain server and printing to the network printers at both loations.
Should I have separate domain names-
Should I have separate server and computer names-

"reserved not zero on payload" generally means your pre-shared keys don't match. Try removing the "crypto isakmp key ...." line and retyping it in again on both sides. In particular DON'T cut/paste it from one router config into another, this quite often puts a space character onto the end of the key, which the router interprets as part of the key and they therefore don't match.

Similar Messages

  • How to set VPN Connection in Windows 7 64bit?

    Hi
    How can I set up a Vpn in connection in Windows 7 x64 bit.
    Thanks.

    Hi,
    Go to Control panel-Network and Internet-Network sharing Center.
    http://www.windows7hacker.com/index.php/2009/08/how-to-set-up-a-vpn-connection-in-windows-7/
    Note, you should know the login and password to have the Internet access :)

  • How do I stop users from using the standard inbuilt VPN connection in Windows

    We have a UAG Portal setup to check the security of users computers etc then if it is all correct they are presented with the log in and once logged in the are connected to the corpirate network via a SSTP connection.  The all works fine but the issue
    I have is users can bypass all the checking but just going into network connections on their local computer and creating a SSTP VPN connection, like on this webpage http://blogs.technet.com/b/tugait/archive/2011/10/12/how-to-publish-a-vpn-sstp-using-your-uag-in-a-https-trunk.aspx
    Any idea how to stop users being able to do this and forcing them to use Internet Explorer?

    Found my answer on this page  http://technet.microsoft.com/en-us/library/ee809077.aspx 
    "To enforce Forefront UAG portal authentication, do not set users dial-in properties to Allow
    access."

  • Use VPN connection as a listen network interface in Web Application proxy

    I have a test environment: domain in hyper-v with Sharepoint and Office Web Apps servers (all under Windows 2012 - Windows 2012 R2).
    Because my home ISP does not permit some inbound ports (80,443) in a gate machine (under Windows 2012 R2) I create a vpn connection (by "setup a new connection or network") to my outside vpn server. On this vpn server the ports forwarding is configured
    and work fine (f.e. default IIS site is visible).
    I try to public my Sharepoint 2013 Foundation in Internet over this vpn connection and faced with the problem - WAPx (Web application proxy) does not bind to this vpn connection, only to traditional network interfaces.
    The question is how to make listening WAPx the VPN interface?

    Hi,
    Thank you for posting in Windows Server Forum.
    Please check beneath thread and article might helpful in your case.
    Configure a reverse proxy device for SharePoint Server 2013 hybrid
    http://technet.microsoft.com/en-us/library/dn607304(v=office.15).aspx
    Forcing VPN users through a proxy
    http://social.technet.microsoft.com/Forums/en-US/5a6a502d-4583-4c51-8486-3af982ba92da/forcing-vpn-users-through-a-proxy?forum=winserverNIS
    What’s New in 2012 R2: People-centric IT in Action - End-to-end Scenarios Across Products
    http://blogs.technet.com/b/in_the_cloud/archive/2013/07/17/people-centric-it-in-action-end-to-end-scenarios-across-products.aspx
    Hope it helps!
    Thanks,
    Dharmesh

  • Can I connect to my microsoft network via VPN and download network files?

    Can I connect to my microsoft network via VPN and download network files to my iPad2?  If so, what app is required?

    There are several apps available from App Store but the one I use is iTeleport.
    Oops the Windows specific version is called Jaadu Remote Desktop for Windows
    Message was edited by: Joe Bailey to add Windows version

  • Cannot find other than "Camera Roll" in my PC when my iPad2 is connected to Window 8.1 via USB to my Lenovo PC

    When my iPad2 is connected to Window 8.1 via USB to my Lenovo PC, I can not find Albums other than the Camera Roll. Is there a method by which I can make other albums visible to my PC? I am trying to copy them manually into a portable harddisk so all my photos and Videos in my iPad and iPhone will be backed up in one location for convenient access of all my photos & Videos.

    Use windows Import utitlity is the only other way I do believe

  • Problems connecting to Wi-Fi network via 3G and 3Gs (due to modal view?)

    I am trying to connect to a protected network via Wi-Fi using two different devices - a 3G (running 3.0) and a 3Gs. This is a corporate network and is only allowed to visit certain websites that are closed off to the outside world. I don't know the exact type of network configuration, but I am unable to connect to sites such as Google, apple.com, etc.
    In both cases, when I choose the network in the settings app, I first see an activity indicator that clues me in to a connection being established. Then, after a moment a modal view slides up that is titled "Log In", and according to the text above the title it is going to http://www.apple.com As said above, if this is truly the case it would be a problem for me since I can't visit apple.com. So I see an error page served up by my network, and I am disconnected.
    Why is this even going to apple.com? Is the modal view some kind of new feature? Is there anyway to disable it? Note that I am not having this problem using an iPhone 3G or iPod Touch using 2.2.1
    Message was edited by: Brian Papa

    Sun Mar 28 06:02:24 unknown Preferences[292] <Warning>: wifi handler: (null)
    Sun Mar 28 06:02:27 unknown kernel[0] <Debug>: AppleBCMWLAN::setASSOCIATE() [configd]: lowerAuth = AUTHTYPE_OPEN, upperAuth = AUTHTYPE_NONE, key = CIPHER_NONE, flags = 0x0
    Sun Mar 28 06:02:27 unknown configd[22] <Error>: WiFi:[//////////////////>: Failed to associate with Internet: 5
    Sun Mar 28 06:02:27 unknown kernel[0] <Debug>: AppleBCMWLANJoinManager::join(): No such network: "Internet"
    Sun Mar 28 06:02:27 unknown Preferences[292] <Warning>: WiFiManagerAssociationCallback: err(5), err(00000005)
    This is what I get on the Iphone configuration utility debug console. I edited out just a couple of numbers in case this is sensitive information the company wouldn't want me to share.
    Message was edited by: F-22

  • Vpn connection droppes Windows 8.1 Enterprise

    Hi.
    I've an issue related VPN connection.
    I've setup PPTP connection like this:
    Windows 8.1 Ent. ->Wi-Fi -> Dlink DIR-300 -> Ericsson GPON -> FC -> ISP -> Ericsson GPON -> Dlink DSR 500N
    After few minutes i connect to the DSR 500N over VPN PPTP, the connection is dropping. Mostly it seems when I'm starting the RDP connection. After this I can normally connect again, but there is another problem, I should delete the ROUTE and Add it again
    to have an access in network on another side.
    Before this I've the Windows 7 Enterprise on the same computer, and haven't seen any problem like this.
    Can you explain me how can I fix it?

    Hi!
    In this case I would download Fiddler and start it just before you connect to the VPN.
    This will show you an exact log of what is happening and why it's happening, the instant it happens.
    You can download Fiddler from this site: http://www.telerik.com/fiddler
    The log will be clear and it's not as advanced as it might look when you first start it :)
    Best regards
    Andreas Molin

  • VPN Connection Seen As Public Network In Windows 8.1 & No Way To Change It?

    Hello,
    I have a perfectly working VPN setup in Windows 7 however since I have got a Windows 8 computer and subsequently upgraded it to 8.1 when I connect to the VPN it assigns the connection as Public and I cannot view any of the network shares.
    As I understand it, in Windows 8 you could go into the network section of Change PC Settings, right click over the VPN and enable sharing which would convert the public network type to private however there is no longer this option to enable sharing in 8.1
    So I'm left with having to disable the public firewall and then connect to the VPN where it works perfectly but is a bit of a pain.
    I'm hoping someone can help me to change the network type of the VPN connection from Public to Private, unfortunately the laptop runs Windows 8.1 Home Premium so I do not have access to gpedit.msc
    Hope someone can help.
    Regards,
    Mike

    Hi Mike,
    Based on my knowledge, we can use the following method to change the network type of connection from Public to Private.
    Set Network to be Private in Windows 8 and 8.1 in Registry
    1.Press Win + R keys to open the Run dialog, type regedit, and press Enter.
    2.In Registry Editor, navigate to the location below:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\NetworkList\Profiles
    3.Expand Profiles, click on each long GUID number subkey, and look at its PofileName string value in the right pane to see if it has the current network name (ex: Network) until found.
    4.When you find the correct PofileName for your network name, double click/tap on the Category DWORD value in the same right pane to modify it.
    5.Type in a new Data value number for the network location you want, and click/tap on OK.
    Network location      Data value
    Public                                0
    Private                             1
    Domain                            2
    6.When finished, please reboot your computer.
    Hope this helps.
    Regards,
    Kelvin hsu
    TechNet Community Support

  • SMB and VPN connected to Windows Server 2003

    I have search the web for an answer on this problem, I've only found peoble with same problem, but still no solution :o/
    I wan't to connect to my office (windows2003) from my OSX 10.4.2 at home. I've set up an VPN connection and can PING the server (and others) on the network. Works fine.
    When I connect to the server via SMB://server/ I get a list with all different folders (or servers) I can connect to but I get rejected with the answer Bad name or password. Now to the funny part; I can connect in the Terminal using smbclient with the same user and pwd just rejected in Finder!!!
    I've read about this problem on http://www.macwindows.com/tiger.html#052305a but I can't find a solution. Someone mentioned a bug with apple number #4108992 - Can anyone tell me where I can read about that? Or better - Where I can find a solution. (I've tried to erase keychain)
    Rgds
    /Johan

    My school sets up our network disk space with access via FTP. I don't know if that is an option through your company. While I have to download files to work with them and then upload them again to the network space to access them at work, it does allow me to look at the directory structure. I use an FTP client (not the one built into OS X). This might be an option for you to check on with your IT department. (This also eliminates my need to use VPN.)
    Hope this helps.
    PB G4 15"   Mac OS X (10.4.3)  

  • VPN connections: impossible to ping network's machines

    Hello,
    I have configured a Cisco 857 device. I can connect to the internet. I can also establish VPN connections remotely.
    However, once I have established a VPN connection, I cannot ping any system on the company LAN.
    I have seen several posts on these forums but I couldn't configure properly my router.
    I attach my config. Is it possible to know what corrections I should do?
    My LAN IPs are 10.0.0.x with a subnet mask 255.0.0.0.
    For my remote clients, I have now configured it to use 255.0.1.x.
    Thanks and regards,
    MaC

    I can see in your configuration that you use
    split-tunneling, which is fine.
    However, I think you need add the following
    line in the configuration so that your router
    will NOT NAT traffics when going from 10.0.0.0/8 to 255.0.1.x/24:
    no access-list 120
    access-list 120 remark SDM_ACL Category=18
    access-list 120 deny ip 10.0.0.0 0.255.255.255 192.168.1.0 0.0.0.255
    access-list 120 deny ip 10.0.0.0 0.255.255.255 255.0.1.0 0.0.0.255
    access-list 120 permit ip 10.0.0.0 0.0.0.255 any
    That way, the traffics from 10.0.0.0/8 will not be NATted when going to
    255.0.1.0/24 for the VPN.
    CCIE Security

  • Enable Site to Site VPN option in Windows Azure Network on existing VNET

    Hi Experts,
    There are two separate subscriptions in Azure in which we have already VNET created, on the same VNET there is no site to site vpn option enabled, so I have different scenarios as below along with questions related to this.
    I will create two VNET in one subscription (We will use IaaS nothing else) named VNET1 and VNET 2, VNET 1 will be used for external web sites which is why we do not want to enable communication with VNET2, VNET2 will have a site to site VPN established with
    our on premises, VNET1 has its own Active Directory and VNET 2 will have its own Active Directory (I am not talking about Windows Azure Active Directory) these Active Directories has nothing to do with each other. Currently we will go with this design (I hope
    there is nothing wrong in it), for VNET 1 we will use 192.168.16.0/24 and VNET we will use 192.168.0.0/24. In the future we might need both VNET to communicate with each other, which means we will need to connect VNET to VNET communication, my questions are
    1. Can we enable site to site vpn option once the vnet is created as VNET 1 is not created using site to site vpn option enabled.
    2. If it is possible then how to enable it as I do not see the option available
    3. If it is not possible then how to design VNET1 in a way that currently it would not communicate with VNET 2 as well as in the future we would enable communication between VNET1 and VNET2 by creating the site to site vpn between VNET1 and VNET2.
    4. lets say that VNET 2 is already enabled for site to site VPN with our on premises and once it is required to create site to site vpn between VNET 1 and VNET 2, where site to site vpn of VNET2 with our on premises should remain
    same as well as we will add one more site to site vpn between VNET2 and VNET1 is it possible, if yes would it break the VNET2 site to site vpn with on premises or it would only connect with one either on premises or VNET1.
    5. What if in the future we want to enable VNET to VNET vpn connection between two subscription where we already have a VNET 2 which is connected with on premises as well as with VNET1 and we now want VNET2 to connect with another VNET in another subscription
    as well as we would like to have a communication / connectivity as below
    VNET2 with VNET in another subscription
    VNET2 with VNET1
    is it possible with question number 5 and we should not loos connectivity between any of the Vnet or vnet to on premises. ofcourse I know that network should not collapse with each other.
    6. by achieving question number 5, VNET from another subscription can communicate with our on premises network through VNET2 and VNET from another subscription can also communicate with VNET1 through VNET2 as well as VNET2 and VNET 1can communicate with
    VNET from another subscription and VNET1 and VNET 2 can also communicate with another subscription's on premises network using VNET, please correct me if I misunderstood some thing as well as how this will be achieveable by adding network ips of each network
    on local network option of each VNETs.
    I hope it is not too complicated.
    Thanks
    If answer is helpful, please hit the green arrow on the left, or mark as answer. Salahuddin | Blogs:http://salahuddinkhatri.wordpress.com | MCITP Microsoft Lync

    Knock Knock some one there, can some one please answer the question
    If answer is helpful, please hit the green arrow on the left, or mark as answer. Salahuddin | Blogs:http://salahuddinkhatri.wordpress.com | MCITP Microsoft Lync

  • Site to Site VPN connection for two Domain Controllers

    I need to set up a site to site vpn connection using 2 pix 500 series firewalls to connect 2 domain controllers. Once the site to site vpn is established, do the servers automatically see each other for replication?
    Thanx.

    My Active Directory guy has taken a good look at a small site-to-site VPN setup that I'm having a BIG problem with, and his answer is "They're supposed to." He said that as long as DC#2 (in the remote office) has the ability to resolve DNS for DC#1 (in the primary office) then the two should automatically replicate.
    I have a two-office IPSec site-to-site tunnel between two 831's running 12.4.11T (soon to be upgraded to the latest 11T or even 15T1). XP SP2 machines in the remote office have full visibility back to the shares in the central office, and pings and nmap scans work perfectly in either direction, but my newly-added DC#2 in the remote office isn't replicating back to DC#1 (the original DC for the environment). I ran a full nmap scan from the central office against DC#2, and can see all of the expected ports/services open (e.g. 389(LDAP), 445 (msds), 135, 137, 3389, etc) but I can't view shares on DC#2 (or any other PC in the remote office) from the central office. Again, DC#2 and remote office PCs have no problem seeing shares back at headquarters.
    Sorry for not being more helpful - hopefully someone out there can shed more light on the topic. If not, I'm going to call it into TAC and I'll let you know.
    But again, from an Active Directory perspective this should 'just work' so it seems that either the IPSec tunnel or perhaps the "ip inspect" IOS CBAC firewalls are getting in the way.

  • Connect MacBook to wifi network via Ethernet

    I am looking for a way to connect my MacBook to my wifi network via my Ethernet port. I'm not having any trouble with the wifi but am looking at getting an apple tv and wish to be able to use wolan. As far as I know, wowlan is only available using the apple airport routers. Is there something I can get that plugs into my Ethernet port on my MacBook, connects to the wifi network and lets my MacBook treat it as a wired connection so I can use wolan? I assume something like this would. E cheaper than buying an apple router that supports wowlan...?
    Also, how do I make sure that my current router actually supports wolan?
    Thanks.

    We assume that you are trying to configure the AirPort Express to "join" your wireless network. In order to do so, you must enter in the wireless network name, exact type of security and password that your network is using.
    Mistakes are often made with the security settings because different manufacturers use different nomenclature to mean the same thing. For example
    WPA2 Personal on Apple = WPA2-PSK-AES on other wireless routers
    or
    WPA/WPA2 Personal on Apple = WPA-PSK-TKIP on other wireless routers
    Can you dig a bit deeper into your settings on your router to find out whether you are using AES or TKIP? Once you find that info, you should be able to match up the correct setting on the AirPort Express during the configuration.
    Don't be fooled by the the message that you see when you click Update during the configuration process. The message states something to the effect that the settings have been stored successfully on the AirPort Express. What it doe not tell you is whether the settings that were stored are the correct settings.
    You will know that you have the correct settings when you see a green light on the AirPort Express 40-45 seconds after you click the Update button.

  • Connecting to existing home network via Airport Express

    I had my Macbook Pro connected to our home router which allowed me access to our home network and the internet. On this network we had connected both my MBP and my flatmates PC (which is connected directly to the router via network cable).
    Through this configuration i was able to both access the internet AND access files on the PC. I have recently purchased and airport express to eliminate the need for the network cord. Since setting up the AE i have been able to connect to the internet no problem by creating a wireless network and using all the automatic settings, however in the process i have lost my ability to connect to the home network and my flatmates computer. In fact, under "networks" in finder the home network has disappeared. Also in network prefences i am getting a warning saying "The cable for Ethernet is not plugged in".
    Is anyone able to tell me what im doing wrong?
    thanks ....
    Message was edited by: seysearles

    The problem is that the AirPort Express (AX) is creating a subnet.
    To prevent that, configure the AX to act as a bridge (so that it is NOT sharing a single IP address).

Maybe you are looking for