[olug] OT: windows 2000, ethernet aliases, webvpn

Obi-Wan obiwan at jedi.com
Sun Jul 27 01:02:20 UTC 2008


> Unless the group/profile for the third party vpn connection allows split 
> tunneling, you are SOL. Since it is a Cisco Solution, I can 100% 
> guarantee that is does in fact support split tunnels, however, your 
> group/profile is probably not setup as so. This may be due to either 
> policy or shear misconfiguration. you can check this real quick by doing 
> a traceroute to a public site, such as google.com - If it in fact goes 
> via the vpn tunnel you know that split tunneling is more than likely 
> enabled :)
> 
> That is where you need to start, you need to verify split tunneling is 
> enabled. Once that step is complete, you need to ensure overlap on your 
> 192.168's is avoided - using the Cisco client you can also review the 
> routes(SA's) that the concentrator forces you into, it should be a tab 
> called "routes"

Yeah, what he said.  I had to deal with that when we setup the SSL VPN
to our office, since it initially killed my WinXP PC's ability to talk
with my home file server.  Our office VPN guy clicked a couple buttons
and then it worked.

-- 
Ben "Obi-Wan" Hollingsworth                             obiwan at jedi.com
   The stuff of earth competes for the allegiance I owe only to the
     Giver of all good things, so if I stand, let me stand on the
       promise that You will pull me through.  -- Rich Mullins



More information about the OLUG mailing list