One DSL router, three VPN clients? How to do this.

Gepost

Senior member
Oct 13, 1999
493
0
0
I have three W2K clients in a small office, networked through a D-Link 704P router. They can all connect to the Internet and all have Cisco VPN client installed. All three have their own VPN account and can each connect to the main network through the router. The problem is, when one is connected with VPN, and another workstation tries to connect to VPN, it kicks the first computer off.

I don't know much about VPN and search some of the posts, but did not find an answer. I think it has to do with the router using only one external IP, even though the workstations have their own, dynamic IP. Therefore, when the main VPN server sees a second logon from the same IP (router) it kicks off the existing one.

Am I correct in this and if so, can I configure the 704 to allow multiple VPN connections, or will I need a different router. I don't want to spend much money. I saw a D-Link 804 that says it handles multiple VPN connections. If not the D-Link, what is an alternative.

Thanks in advance.
 

Kremlar

Golden Member
Oct 10, 1999
1,426
3
81
I could be wrong, but I don't believe there is a solution other than:

1 - install a VPN box in your small office that will tie into the main office, instead of individual clients installed on each station.

2 - somehow get each PC a public IP address.

 

Garion

Platinum Member
Apr 23, 2001
2,328
6
81
IPSec and VPN's in general are difficult with NAT. The problem that is most commonly seen is that IPSec (Really, ESP) negotiates a network connection to the VPN server on a very specific TCP/UDP port. Once the VPN session has been established, it continues to use the SAME port. Most other apps that work well through NAT negotiate a session on a port, then pick a NEW, random port to talk on so they don't interfere with other computers. (UDP: The protocol you love to hate)

If a port is in use for one application, you can't use it from another without a REALLY smart router. Sounds like this isn't one. You might be able to make it smarter with a firmware upgrade, however - Check out what's available and give it a try. Might help, might not.

There's a better solution - If it's a Cisco VPN concentrator, they can enable "NAT transparent mode" that gets around this, for the most part. It's not perfect, but it works well. Look at details on the Cisco Website. Unfortunately, this is a *very* common problem.

- G
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |