From: dold on
James Hendry <jthendry(a)uklinux.net> wrote:
> I have a Linksys WAG354G v2... setup this has been running fine, for
> over a year now, however I recently had to do some work from home and
> vpn'd into my company's network. The problem is that I can reach the VPN
> server, but cannot do anything else such as network file system or run
> RDP sessions.
> I am sure the problem lies with my linksys gateway as I can take the
> same laptop to a hotel connection and connect to all of the company
> resources and RDP applications.

I was running a Nortel Contivity client on a Windows XP laptop. I had to
configure the IP address of the VPN server as "trusted" in my laptop
firewall, or I would get symptoms similar to yours. That doesn't seem to
hold with yours working from other locations, though. You are WiFi at home
and in the other locations, or wired at one of them?
If you are WiFi at home, have you tried wired?

Another problem that I've had, with an AT&T VPN client, is that it just
refuses to work if I standby or hibernate in one place, and connect to a
different WAP in another place. With the VPN "Disconnected", ipconfig
still shows the company network-based ip address. If I watch a new
connection attempt, I get a VPN address on a different subnet, but ipconfig
still shows the one that seems stuck.

I have disabled/enabled/repaired... the only thing that corrects it is a
reboot. I avoid that by disconnecting from the WiFi before I hibernate.

Have you rebooted? Does ipconfig show an address on the VPN-network?
Does route /print show routes to the hosts that you want?



--
Clarence A Dold - Hidden Valley Lake, CA, USA GPS: 38.8,-122.5
From: James Hendry on
James Hendry wrote:
> John Navas wrote:
>> On Mon, 15 Dec 2008 22:26:45 +0000, James Hendry <jthendry(a)uklinux.net>
>> wrote in <gi6lj5$11ku$1(a)energise.enta.net>:
>>
>>> Hi, I was wondering if anyone would can help,
>>>
>>> I have a Linksys WAG354G v2... setup this has been running fine, for
>>> over a year now, however I recently had to do some work from home and
>>> vpn'd into my company's network. The problem is that I can reach the
>>> VPN server, but cannot do anything else such as network file system
>>> or run RDP sessions.
>>> I am sure the problem lies with my linksys gateway as I can take the
>>> same laptop to a hotel connection and connect to all of the company
>>> resources and RDP applications.
>>> My ISP tells me that there are no blocked ports, hence the focus on
>>> the WAG354G.
>>>
>>> I have enabled in the gateway, ipsec, etc... can anyone shed any
>>> light on what I may have missed ??
>>>
>>> all of these are enabled...
>>>
>>> IPSec Passthrough:
>>> PPPoE Passthrough:
>>> PPTP Passthrough:
>>> L2TP Passthrough:
>>>
>>> Firmware 1.01.58
>>
>> What kind of VPN? Will it work if you remove the Linksys WAG354G v2?
>> (Bonus points for posting model and firmware version.)
>
> Hi John,
> The gateway is the only method I have of connecting to the net so
> unable to remove it, i.e. modem built in.
>
> The utility provided to me is a Cisco Systems VPN client software Ver
> 4.8.01.0300
>
> The company Host IP address is entered and the transport is IPSec/UDP
>
> transparent tunneling, IPSec over UDP(NAT/PAT)
>
>
> I just launch the client select the connection and connect... if from
> anywhere else other than my home it connects ok....
>
> Jim
>
>
>
>
Hi Guys,
unfortunately the IT guy didn't get back to me today... I'll try him
again tomorrow.

From your suggestions... I have tried various combinations of wired and
wi-fi with and without the firewall enabled, dynamic routing enabled and
the DMZ enabled with port forwarding to my IP address.
rebooting both the laptop and the Cold booting the gateway at each
combination. All with no change to the vpn status .
Running ipconfig, this confirms that I get a company IP address when I
use the Cisco VPN Client.

Jim
From: Peter Pan on
James Hendry wrote:
> James Hendry wrote:
>> John Navas wrote:
>>> On Mon, 15 Dec 2008 22:26:45 +0000, James Hendry
>>> <jthendry(a)uklinux.net> wrote in <gi6lj5$11ku$1(a)energise.enta.net>:
>>>
>>>> Hi, I was wondering if anyone would can help,
>>>>
>>>> I have a Linksys WAG354G v2... setup this has been running fine,
>>>> for over a year now, however I recently had to do some work from
>>>> home and vpn'd into my company's network. The problem is that I
>>>> can reach the VPN server, but cannot do anything else such as
>>>> network file system or run RDP sessions.
>>>> I am sure the problem lies with my linksys gateway as I can take
>>>> the same laptop to a hotel connection and connect to all of the
>>>> company resources and RDP applications.
>>>> My ISP tells me that there are no blocked ports, hence the focus on
>>>> the WAG354G.
>>>>
>>>> I have enabled in the gateway, ipsec, etc... can anyone shed any
>>>> light on what I may have missed ??
>>>>
>>>> all of these are enabled...
>>>>
>>>> IPSec Passthrough:
>>>> PPPoE Passthrough:
>>>> PPTP Passthrough:
>>>> L2TP Passthrough:
>>>>
>>>> Firmware 1.01.58
>>>
>>> What kind of VPN? Will it work if you remove the Linksys WAG354G
>>> v2? (Bonus points for posting model and firmware version.)
>>
>> Hi John,
>> The gateway is the only method I have of connecting to the net so
>> unable to remove it, i.e. modem built in.
>>
>> The utility provided to me is a Cisco Systems VPN client software Ver
>> 4.8.01.0300
>>
>> The company Host IP address is entered and the transport is IPSec/UDP
>>
>> transparent tunneling, IPSec over UDP(NAT/PAT)
>>
>>
>> I just launch the client select the connection and connect... if from
>> anywhere else other than my home it connects ok....
>>
>> Jim
>>
>>
>>
>>
> Hi Guys,
> unfortunately the IT guy didn't get back to me today... I'll try him
> again tomorrow.
>
> From your suggestions... I have tried various combinations of wired
> and wi-fi with and without the firewall enabled, dynamic routing
> enabled and the DMZ enabled with port forwarding to my IP address.
> rebooting both the laptop and the Cold booting the gateway at each
> combination. All with no change to the vpn status .
> Running ipconfig, this confirms that I get a company IP address when I
> use the Cisco VPN Client.
>
> Jim

Just out of curiosity, do you have another way of trying it? From what you
have tried, and that it works from other places, i'm getting very suspicious
that it may be somthing unique that the isp you use from home uses, that may
be the culprit... reason I ask about other ways, it's slow as heck, but my
isp allows dialup along with net connections.... when i was narrowing it
down (turned out it was the isp's security thru network connections) but
worked when i did dialup (as aditional confirmation, worked with my cell
phone/tethered to my laptop)... at any rate - no solution since it was
slower than ummmmm molasses in january.... but gave me some clues/ammo when
I talked to the isp's tech support...

ps, what type of connection are you using? My uncles house has cable
internet, but also voip over cable, and they block any vpn coonnections so
it doesn't mess up their precious voice, when I visit him I can use my
laptop, but not vpn to work (at least that's what I tell my boss, they fixed
it over a year ago)


From: Chrisjoy on
On Dec 17, 2:14 am, "Peter Pan"
> Just out of curiosity, do you have another way of trying it? From what you
> have tried, and that it works from other places, i'm getting very suspicious

If it's not ISP, it's the box. A seach on the web will lead you to
other ppl having trouble connecting a software VPN client though the
very same box, after a firmware upgrade. The only sulution they found
was to get another box from Linksys. another model.
From: James Hendry on
Chrisjoy wrote:
> On Dec 17, 2:14 am, "Peter Pan"
>> Just out of curiosity, do you have another way of trying it? From what you
>> have tried, and that it works from other places, i'm getting very suspicious
>
> If it's not ISP, it's the box. A seach on the web will lead you to
> other ppl having trouble connecting a software VPN client though the
> very same box, after a firmware upgrade. The only sulution they found
> was to get another box from Linksys. another model.

Hi Guys,
I'm just off the phone with the ISP tech...

Having tried Peters dialup idea, which worked... I managed to access the
network at 46.6K... .
Anyway, good discussion with Rob, the ISP Nightshift Tech. No Port
blocking or security settings on this line. we went through the
scenarios that I tried over the last couple of nights. He suggested
changing MTU from Auto to 1458, this got me the login panel for the
fileservers, but still no RDP sessions... an improvement no less.
We left the problem with me to try another make and model of router.. .
as per Chris' last comment.
I'll see what I can rustle up, and let you know...

Thanks for your support, much appreciated,