Vpn No access to local files

Feb 27, 2018
3
0
10
I have Set up a Vpn Connection To my House from my Work Computer
Using PPTP . Port forwarding is good Firewall is good I can connect to the Vpn and Browse the Internet with the VPNS ips. The Problem is I cannot access the VPN’s Local Lan Files (other Computers on the Same Network). I have tried to Ping Them (name of servers and ips) But with no Reply (any Lan Computer Ip). I do not need Internet access Through the Vpn just Local Files on the Some Lan as the VPN.
VPN Is running on Synology nas With Ip 10.0.0.25 And gateway of 10.0.0.2
When Connected to Vpn I am Given Ip of 10.1.0.36
The Default Gateway (router10.0.0.2) on VPN Side Gives out ips 10.0.0.5 -10.0.0.100
The Vpn Starts at (10.1.0.1) going to 10.1.0.100
Do you have any idea as to why I cannot get access to the Local Lan?
 
I have not used a NAS as a vpn box so I can't say for sure how to fix this.

The problem mostly is your IP address you get from the vpn. If your machine appears as as 10.1.x.x ip address the machine you talk to will not know to send that subnet to the nas they will by default send all traffic to your router. The router also does not know that that 10.1.x.x block is on the nas so it either sends it to the internet where it is dropped or it drops the traffic itself because it knows private ips are invalid on the internet.

To get around this the NAS must make your traffic appear as if it comes from the 10.0.0.x subnet. This means the NAS must either act as a router and NAT all vpn traffic so it appears to come from its ip address or it must be able to use multiple ip addresses in the 10.0.0.x subnet and assign those to the vpn users rather than the 10.1.x.x ips

It tends to be much easier to avoid issues like this running the VPN on the main internet router. I would think your NAS should have some ability to solve this issue but I have never done it. VPN is very cpu intensive and it will impact the performance of the nas itself.
 
Feb 27, 2018
3
0
10
I have Changed the Vpn To Run from Dedicated Computer Instead of The Nas Encase That was the problem.
The Router (Default gateway ip is 10.0.1.2) on The Vpn Side is set to give out Ips Starting after its own 10.0.1.2--10.0.1.100
With an Ip Subnet mask of 255.255.255.0 (Cant Change It)
The Vpn Computer(computer running VPN) (its Ip is 10.0.1.15) is Set Up to Give out Ips at 10.0.1.101—10.0.1.200
And the Remote computer I am Testing from To connect to the Vpn Gets it ip 10.0.1.102
Subnet mask 255.255.255.255 Default Gateway 0.0.0.0
Its Running from Windows 10 Built in VPN server (set to specify ips given) ( and checked Allow callers to access local area network)
The router We are using does not have A away to run it a Vpn on it Directly that is why we have to use a Second device
This is needed to Back up Work Files And access Files for Employees to work on at home if wanted.
 
It should in theory work. First is to do ARP -a and see if you see mapping of ip to mac address of machine you want to talk to. On that machine you should also check the arp table. To work it should show the mac address of the vpn box associated with both the actual vpn ip and your remote vpn client.

This is a function called proxy arp.
 
Feb 27, 2018
3
0
10
I Do not know how to do that I can Run ARP -a (CMD) On the Test Computer(one Connecting to Vpn) and I get a List of Three Groups Internet address,Physical Address and types (dynamic and static)
The mac address of the Machine i want to connect to (that is On the lan as the Vpn is) is not in the list nor is the the Internal Ip Of the Device shown. I can Ping the Vpn Server But that is it. all the rest Timed out. I am New to the Networking part of Computers but the rest I do Know.
 
It has to be a issue with how the vpn server is configured but there are so many option between vpn servers. I have never used a windows machine for this function I have always used unix based things. Part of the complexity is you are running what is called vpn on a stick. It is using the same interface to run the vpn tunnel as well as provide local access. I know when I have done this either with a router or with a unix box it was a massive headache to get it to work.

Maybe a better question for the microsoft forums...or maybe you get lucky and someone who has done a microsoft vpn see this thread.