IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Yes
The main site has a fixed IP on the WAN side of the router which allows the remote site to find it. This site authenticates to the remote site "IP address only".

The remote site has PPPoE so it's actual IP address is unknown to the main site. When it contacts the main site it hands it the current IP address and an email address. If the email address matches what the main site expects the connection is accepted. This is separate from the encryption keys which are then negotiated.

The sites recognize each other on the WAN side and both register "connected" which means authentication has succeeded. I don't know for sure yet if the encryption negotiation is working. The method selected is based on "previously known key".

What I listed were the LAN subnets at each end, and each knows the subnet address of the other so presumably routing can occurr through the tunnel even though these are "private" IP addresses,
[link|http://www.aaxnet.com|AAx]
New Well, turns out it was actually working.
I sat down at the remote office and typed the local address of the VPN router, but mistyped and actually typed the local address for the main VPN router - and it's log-in screen popped right up. I can ping net addresses over there just fine and get an ACCES DENIED if I try to get a Net View on one of those IP addresses (need to go over there and set up login accounts for the remote office).

Now to see if I can get stuff to show up in My Network Places, or If I have to work around not having that.

I tried again having both ends on the same 192.168.200 network with different IP ranges. Not only didn't it work, I lost general Internet access until I put it back to two separate networks, 200 and 201. which does route just fine. These routers seem to be pretty picky about configuration.


[link|http://www.aaxnet.com|AAx]
New Remote announce seems to work for that... or Wins
--
[link|mailto:greg@gregfolkert.net|greg],
[link|http://www.iwethey.org/ed_curry|REMEMBER ED CURRY!] @ iwethey

[link|http://it.slashdot.org/comments.pl?sid=134485&cid=11233230|"Microsoft Security" is an even better oxymoron than "Miltary Intelligence"]
No matter how much Microsoft supporters whine about how Linux and other operating systems have just as many bugs as their operating systems do, the bottom line is that the serious, gut-wrenching problems happen on Windows, not on Linux, not on Mac OS. -- [link|http://www.eweek.com/article2/0,1759,1622086,00.asp|source]
New Well, maybe not . . .
As far as I can see, Windows 2000 Pro (their main server) doesn't support being a WINS server and nor does XP Pro. Remote announce appears to be Samba only (at least I didn't find a single reference on the Internet that did not have the word Samba prominently displayed).

Looks like I'll have to get along with an LMHosts file.


[link|http://www.aaxnet.com|AAx]
New They can't browse across the VPN . .
. . but they have no need to . Their medical management software can see the databases on the main office server and that's all that's needed from the VPN. I are now a VPN Ex-spurt.
[link|http://www.aaxnet.com|AAx]
New HA! ICLURPD (new thread)
Created as new thread #195538 titled [link|/forums/render/content/show?contentid=195538|HA! ICLURPD]
--
[link|mailto:greg@gregfolkert.net|greg],
[link|http://www.iwethey.org/ed_curry|REMEMBER ED CURRY!] @ iwethey

[link|http://it.slashdot.org/comments.pl?sid=134485&cid=11233230|"Microsoft Security" is an even better oxymoron than "Miltary Intelligence"]
No matter how much Microsoft supporters whine about how Linux and other operating systems have just as many bugs as their operating systems do, the bottom line is that the serious, gut-wrenching problems happen on Windows, not on Linux, not on Mac OS. -- [link|http://www.eweek.com/article2/0,1759,1622086,00.asp|source]
     Gateway to Gateway VPN - (Andrew Grygus) - (20)
         VPN is not a hardware thingie. - (Silverlock) - (9)
             Sure it is - (broomberg)
             Client side can be software thingie - (bepatient) - (1)
                 We're looking into SSL/VPN appliances. - (mmoffitt)
             Oh, yes there is. - (folkert)
             Seeing as how a slew of companies sell routers . . - (Andrew Grygus) - (4)
                 And, yes... - (folkert)
                 Gaah. I meant "client" vpn. - (Silverlock) - (2)
                     If you can remember that, you've probably already succeeded. -NT - (imric) - (1)
                         That or you're posting too slowly -NT - (ben_tilly)
         Define "See" - (broomberg) - (1)
             Re: Define "See" - (Andrew Grygus)
         I must be missing something - (FuManChu) - (6)
             Yes - (Andrew Grygus) - (5)
                 Well, turns out it was actually working. - (Andrew Grygus) - (4)
                     Remote announce seems to work for that... or Wins -NT - (folkert) - (3)
                         Well, maybe not . . . - (Andrew Grygus) - (2)
                             They can't browse across the VPN . . - (Andrew Grygus) - (1)
                                 HA! ICLURPD (new thread) - (folkert)
         Parse error - (pwhysall)

This is atomic powered gaslighting.
182 ms