VPN between 2 win 2008 servers Options
I have two win 2008 servers. I am trying to setup a VPN between them to pass files securely. They are in seperate locations and both have multiple network cards as shown below Server 1 NIC 1 - Public IP (89.xxx.xxx.xxx) NIC 2 - Internal IP (192.168.0.1) Server 2 NIC 1 - Public IP (219.xxx.xxx.xxx) NIC 2 - Internal IP (192.1681.1) I want to setup the VPN using a preshared key not a secure certificate between the two internal NICs. I have tried running through the routing and remote access wizard but cannot find a way to get it to work. Can anyone point me in the direction of any online step by step guides that will help me out here. I have looked but cannot find anything covering the above example. Thanks Tim
September 17th, 2008 12:58pm

Hi!How about using IPSec? I once had similar case and didnt want to get my hands dirty on certificates. with IPSec, you can make VPN with Pre-Shared key and at least in my environment, it worked quite good.Couldnt find any tutorial about 2008 and IPSec though... ;)But, in the end i still somehow recommend that you build VPN tunnels with (hardware) firewalls. I have found it easier as being total newbie and in troubleshooting it is nice that the VPN is not affected by the servers own problems ;)How To Configure IPSec Tunneling in Windows Server 2003http://support.microsoft.com/kb/816514In 2008 i found one intresting articleSSTP Remote Access Step-by-Step Guide: Deploymenthttp://technet.microsoft.com/en-us/library/cc731352.aspxVirtual Private Networkshttp://technet.microsoft.com/en-us/network/bb545442.aspx Henry Eklf :: Just one random IT-guy more.
Free Windows Admin Tool Kit Click here and download it now
September 17th, 2008 1:44pm

HenryThanks for your advice. Looking into this futher I have found out that both servers are domain controllers. Hence running any kind of VPN will be a bad idea. I am lucky that I have firewall/routers down stream of both servers so I can configure the VPN on them instead.ThanksTim
September 17th, 2008 6:23pm

Hello ssiweb, I completely agree Heklo's solution but as a matter of fact you have found that both the servers are domain controller's so there might be a chance of security breach,so in this case I would like to recommend you to use the Microsoft's ISA server 2006 as you Firewall for implementing site to site VPN. Here is well documented article to reach you goal.http://www.isaserver.org/tutorials/Creating-VPN-ISA-Server-2006-Firewalls-Main-Branch-Office-Part1html.htmlThanks Syed Khairuddin
Free Windows Admin Tool Kit Click here and download it now
September 18th, 2008 12:13pm

Yeah, when the situation is this, i really recommend hardware firewall solution. Dont have any knowledge about ISA Server though. Well, it might my worth trying too.:)Henry Eklf :: Just one random IT-guy more.
September 18th, 2008 1:18pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics