Tom's Hardware > Forum > Wireless Networking > Wireless General Discussions > Can Wireless Security and VPN access Coexist on SBS 2003?

Can Wireless Security and VPN access Coexist on SBS 2003?

Forum Wireless Networking : Wireless General Discussions - Can Wireless Security and VPN access Coexist on SBS 2003?

Tom's Hardware: Over 1.4 million members in 6 different countries available to answer all your high-tech questions. Sign up now! Its free!
Word :    Username :           
 

Archived from groups: microsoft.public.windows.networking.wireless (More info?)

 

I was trying to get the wireless solution described as "Securing Wireless
LANs with PEAP and Passwords" to work as described in this article
http://www.microsoft.com/technet/s [...] eap_0.mspx

Access request for user sergiofonseca was discarded.
Fully-Qualified-User-Name = xxx.local/MyBusiness/Users/SBSUsers/Sergio
Fonseca
NAS-IP-Address = 192.168.16.4
NAS-Identifier = default
Called-Station-Identifier = <not present>
Calling-Station-Identifier = 0x-0x-ex-8x-dx-ax
Client-Friendly-Name = router
Client-IP-Address = 192.168.16.4
NAS-Port-Type = Wireless - IEEE 802.11
NAS-Port = 0
Proxy-Policy-Name = Use Windows authentication for all users
Authentication-Provider = Windows
Authentication-Server = <undetermined>
Reason-Code = 9
Reason = The request was discarded by a third-party extension DLL file.


To resolve this issue I followed the instructions provided by Carl DaVault
[MSFT] which follows:

So... it's a bug in ISA or (more likely) the VPN plugin (which didn't expect
packets from an AP as opposed to a more VPN-centric NAS). Here's the
workaround. I've asked for a KB on this issue, but it may take a while to
get thru the release process.


You might need to specify CCS instead of a specific CCS like CCS001. Sorry I
don't have a machine to try this, but you get the idea - remove any
vpnplgin.dll-related entries for any AuthorizationDLLs values - you can
probably just rename the key to something like DELETEMEAuthorizationDLLs, if
you want to be more conservative than actually deleting the key.


Remove the following registry key:
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AuthSrv\Parameters]
"AuthorizationDLLs"="C:\Program Files\Microsoft ISA Server\vpnplgin.dll"
Reboot the server..

THIS SOLVED MY PROBLEM WITH THE WIRELESS, NO MORE IAS ERRORS!

However, now my VPN connections no longer work. On the client side I get
the following:

The connection attempt failed because your computer and the remote computer
could not agree on PPP control protocols. (Error 720) For customized
troubleshooting information for this connection, click Help.

On the Server side I get:

Event Type: Error
Event Source: RemoteAccess
Event Category: None
Event ID: 20050
Date: 9/14/2005
Time: 8:40:49 AM
User: N/A
Computer: SBSERVER
Description:
The user xxxxxxx\dwfalk connected to port VPN4-4 has been disconnected
because no network protocols were successfully negotiated.

Can someone help me to have Wireless Security and VPN access too?

Ernie Cox

Sponsored Links
Register or log in to remove.
Tom's Hardware > Forum > Wireless Networking > Wireless General Discussions > Can Wireless Security and VPN access Coexist on SBS 2003?
Go to:

There are 1254 identified and unidentified users. To see the list of identified users, Click here.

Please mind

You are about to answer a thread that has been inactive for more than 6 months.
If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.

Add a reply Cancel
Sponsored links
  • Ask the community now
  • Publish
Ad
They won a badge
Join us in greeting them