Forum Discussion
Zeneri
May 23, 2019Copper Contributor
RDP connection through VPN only to RAS IP not to main IP
I have the following scenario: I configured a Windows 2012R2 Server as RAS server. When I connect per VPN, I can RDP to the server only by the RAS IP (which comes from DHCP) not by the main IP. I...
- May 24, 2019
Agreed on routing issues. Dual gateways would likely be problematic. I'd hope by "DC-02" you didn't mean a domain controller. Multi-homing a domain controller will always cause no end to grief. If so I'd recommend installing the RASS / VPN roles on a member server.
Zeneri
May 24, 2019Copper Contributor
I tried it from a different laptop. As for W-05 I tried and it failed and for DC-02 it succeeded..
I think it“s a routing problem. I can RDP several server and workstations in the DC-02 LAN through the VPN connection even DC-02 when I use the IP of the RAS-dialin interface (which can change). Just when I use the IP of the LAN interface of DC-02 it fails. Same on DNS requests.
I turned of the firewall and Kaspersky on DC-02.
I think it“s a routing problem. I can RDP several server and workstations in the DC-02 LAN through the VPN connection even DC-02 when I use the IP of the RAS-dialin interface (which can change). Just when I use the IP of the LAN interface of DC-02 it fails. Same on DNS requests.
I turned of the firewall and Kaspersky on DC-02.
Dave Patrick
May 24, 2019MVP
Agreed on routing issues. Dual gateways would likely be problematic. I'd hope by "DC-02" you didn't mean a domain controller. Multi-homing a domain controller will always cause no end to grief. If so I'd recommend installing the RASS / VPN roles on a member server.
- Dave PatrickMay 28, 2019MVP
Great news, and you're welcome.
- ZeneriMay 28, 2019Copper Contributor
I moved the Routing and RAS role from the DC to the member server. Now everything is ok.
Thanks a lot.
- Dave PatrickMay 24, 2019MVP
Sounds good, you're welcome.
- ZeneriMay 24, 2019Copper ContributorYes it is a domain controller. I will try tomorrow to move the RAS to a member server
I“ll keep you informed.
Thanks for the moment.