home bbs files messages ]

Forums before death by AOL, social media and spammers... "We can't have nice things"

   comp.dcom.vpn      VPN protocols, clients, awesomeness      2,349 messages   

[   << oldest   |   < older   |   list   |   newer >   |   newest >>   ]

   Message 2,080 of 2,349   
   stephen to Vegar   
   Re: Cisco VPN Routing   
   27 Nov 06 21:23:18   
   
   From: stephen_hope@xyzworld.com   
      
   "Vegar"  wrote in message   
   news:ekc70i$e8u$1@orkan.itea.ntnu.no...   
   > Hi!   
   >   
   > I use VPN to connect to my campus network to access an online library   
   > and a news-server. I only want the traffic bound for my university   
   > subnet to go through the  VPN connection and the rest to go through my   
   > home router.   
   >   
   > The client I'm using, and my university recommends, is Cisco VPN:   
   > version 4.8.01.0300. My OS is Windows XP.   
   >   
   > So far I've tried to check the Allow local LAN access in the Cisco VPN   
   > client menus, then I used the "route" command to remove the VPN default   
   > gateway, after that I added a route for the university subnet and then   
   > added a default gateway which is my home router.   
      
   the Cisco VPN client can get sent a "policy" as part of the connection to   
   the server - this can enforce the rules.   
      
   it comes from the server, so a local Internet access config will only help   
   if the server sends a policy that allows it.   
   >   
   > These are the steps i took:   
   > Logon to VPN server   
   > # Delete default route   
   > route delete 0.0.0.0   
   > # Add the route to campus subnet.   
   > route add xxx.xxx.0.0 mask 255.255.0.0  if 0x50004   
   > # Add default route   
   > route add 0.0.0.0 mask 0.0.0.0  if 0x2   
   >   
   > After these steps the route to the campus subnet works and I can connect   
   > to all IPs on that subnet, however the default route does not work even   
   > though I can ping . An identical route works fine when   
   > VPN is not active.   
      
   try asking whoever runs the server how it is set up.   
   >   
   > I have been unsuccessful in locating relevant information on the web and   
   > I therefore post in this newsgroup.   
      
   look at the docs for the VPN 3000 series servers.   
   >   
   > Vegar   
   --   
   Regards   
      
   stephen_hope@xyzworld.com - replace xyz with ntl   
      
   --- SoupGate-Win32 v1.05   
    * Origin: you cannot sedate... all the things you hate (1:229/2)   

[   << oldest   |   < older   |   list   |   newer >   |   newest >>   ]


(c) 1994,  bbs@darkrealms.ca