Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Microsoft Support > Windows NT/2000/2003 Server/2008 Server
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Windows NT/2000/2003 Server/2008 Server Find support for Windows NT/2000/2003 Server/2008 Server editions.

Reply
 
LinkBack Thread Tools
Old 02-21-2007, 08:09 AM   #1 (permalink)
Registered User
 
crazijoe's Avatar
 
Join Date: Oct 2004
Location: Omaha, The Center of the Universe
Posts: 7,632
OS: WinXP, Win2K3

My System

ISA server kicking my rear

OK,
Trying to implement a new ISA server for VPN. Want to have roaming clients access our network. We presently are using SonicWall for VPN but our boss wants to replace it with an ISA server.

I have a ISA server in the perimiter. 2 NICs, one on the external with a static public IP and one on the internal domain. The server is a member of the domain and has a static IP. I configured VPN client access and Firewall policy for the VPN. We have a DHCP server on the domain on one of the DCs.

At a client machine, outside our domain in the cloud, it hits the ISA server, goes to Verifying username and password then times out with a 721 error "The remote computer did not respond." Been working on this on and off for about a week and it is killing me.
Help!!!!


Ok, new update. I can now connect to the domain but I cannot access any shares. I can ping the servers and machines on the domain.

Here is the configuartion,

PPP adapter RBC-USA:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : WAN (PPP/SLIP) Interface
Physical Address. . . . . . . . . : 00-53-45-00-00-00
Dhcp Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.20.185
Subnet Mask . . . . . . . . . . . : 255.255.255.255
Default Gateway . . . . . . . . : 10.0.20.185
DNS Servers . . . . . . . . . . . : 10.0.20.11
10.0.20.12

My question would be does the subnet mask look right?

Last edited by crazijoe; 02-22-2007 at 07:48 AM.
crazijoe is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 02-23-2007, 07:05 AM   #2 (permalink)
Registered User
 
Join Date: Jun 2006
Location: Cincinnati, Ohio
Posts: 617
OS: Windows XP

My System

Send a message via AIM to whardman Send a message via MSN to whardman
Doesn't look right to me either but it is. I tested it on mine and get the same result. Do you have rules to allow vpn traffic to access the internal network, especially RPC?

BTW, what did you do to fix the 721 error?
whardman is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 02-23-2007, 07:28 AM   #3 (permalink)
Registered User
 
crazijoe's Avatar
 
Join Date: Oct 2004
Location: Omaha, The Center of the Universe
Posts: 7,632
OS: WinXP, Win2K3

My System

Rules are set to allow VPN traffic.

Quote:
BTW, what did you do to fix the 721 error?
It was a credentials issue. I tried to connect inputting domain credentrials on a machine that was not joined to the domain. It must not of been putting the right username/password/domain info in.
I joined the computer to the domain and connected using the Windows login credentials and got me right in.
Something still doesn't seem right. I'm going to try it on another Laptop.
crazijoe is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 02-23-2007, 07:36 AM   #4 (permalink)
Registered User
 
95five-0's Avatar
 
Join Date: Dec 2004
Location: Corinth, TX
Posts: 1,339
OS: 2000/XP/2003/Vista/2008


Send a message via MSN to 95five-0 Send a message via Yahoo to 95five-0
When I switched from a sonic wall to ISA I had a simalar issue. I was able to ping some servers but not other and it was completely random. What it turn out to be was a DNS issue. On the client machine try going to the properties on the VPN connection and click on the Networking tab, then click on TCP/IP and click properties. Then click on advanced and uncheck Use default gateway on remote network.
__________________
"If it's really a supercomputer, how come the bullets don't bounce off when I shoot it ?"

<<PC Pitstop>><< AVG Free>><<Spybot>><<Everest 2.0>><<Trend Micro House Call>><<HijackThis How-to>>
95five-0 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 02-23-2007, 07:46 AM   #5 (permalink)
Registered User
 
crazijoe's Avatar
 
Join Date: Oct 2004
Location: Omaha, The Center of the Universe
Posts: 7,632
OS: WinXP, Win2K3

My System

I went ahead and unchecked the Use default gateway on remote network box but still no luck. It does seem to be a DNS issue because I can ping the IP of the computers on the domain but I cannot ping the computer names.
When I run the IPCONFIG it shows the right IP addresses of the DNS servers on our domain.
crazijoe is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 02-23-2007, 07:51 AM   #6 (permalink)
Registered User
 
Join Date: Jun 2006
Location: Cincinnati, Ohio
Posts: 617
OS: Windows XP

My System

Send a message via AIM to whardman Send a message via MSN to whardman
Try checking the server logs and see if there are any denied connections. The quickest way would be to open it in excel then you can sort the entries and pick out the denied connections.
whardman is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 03-22-2007, 10:34 AM   #7 (permalink)
Registered User
 
crazijoe's Avatar
 
Join Date: Oct 2004
Location: Omaha, The Center of the Universe
Posts: 7,632
OS: WinXP, Win2K3

My System

Re: ISA server kicking my rear

Got it to work.
Simple first time installer correcting. I was picking protocols in the firewall rules. When I changed it to all outbound traffic it worked.
It seems to me the wording is a little backwards. When I think all outbound traffic, I think of internal network going out, not VPN coming in.
crazijoe is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 05-20-2007, 08:25 AM   #8 (permalink)
Registered User
 
Join Date: May 2007
Posts: 4
OS: window 2000


Re: ISA server kicking my rear

Error Code: 502 Proxy Error. The ISA Server denied the specified Uniform Resource Locator (URL). (12202)

Have any idea for this ? Thank you !
ultrasong is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 05-20-2007, 11:45 PM   #9 (permalink)
Registered User
 
Join Date: Apr 2007
Posts: 109
OS: SBS2k3R2, WIN2k3, XP, 2000, NT

My System

Re: ISA server kicking my rear

Quote:
Originally Posted by crazijoe View Post
OK,
Trying to implement a new ISA server for VPN. Want to have roaming clients access our network. We presently are using SonicWall for VPN but our boss wants to replace it with an ISA server.

I have a ISA server in the perimiter. 2 NICs, one on the external with a static public IP and one on the internal domain. The server is a member of the domain and has a static IP. I configured VPN client access and Firewall policy for the VPN. We have a DHCP server on the domain on one of the DCs.

At a client machine, outside our domain in the cloud, it hits the ISA server, goes to Verifying username and password then times out with a 721 error "The remote computer did not respond." Been working on this on and off for about a week and it is killing me.
Help!!!!


Ok, new update. I can now connect to the domain but I cannot access any shares. I can ping the servers and machines on the domain.

Here is the configuartion,

PPP adapter RBC-USA:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : WAN (PPP/SLIP) Interface
Physical Address. . . . . . . . . : 00-53-45-00-00-00
Dhcp Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.20.185
Subnet Mask . . . . . . . . . . . : 255.255.255.255
Default Gateway . . . . . . . . : 10.0.20.185
DNS Servers . . . . . . . . . . . : 10.0.20.11
10.0.20.12

My question would be does the subnet mask look right?

Make sure you are not VPNing into a quarantine environment. and instead of asigning static ip's use your DHCP to do that and tell ISA to relay DHCP to dial-in clients
ecrocombe is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 09:36 PM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85