NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
DS9797
Apr 08, 2024Aspirant
Can't authenticate to corporate VPN (or outlook web email) using RBR50
When trying to authenticate to my work VPN, I have to switch to a hotspot from my phone. Once the connection has been made, I can switch back to wifi, and the connection is fine. I have a simila...
DS9797
Apr 08, 2024Aspirant
The VPN is a corporate VPN using Palo Alto's Globalprotect. But the authentication might be through a SecureAuth product.
The error message that I see - which is on the client end - says "the network connection is unreachable or the portal is unresponsive." But any other network activity (not requiring the VPN) is fine.
Not running parental controls.
CrimpOn
Apr 08, 2024Guru - Experienced User
Thanks. Guessing a Windows 10 or 11 laptop.
The strange part is that a connection through a cell phone Hot Spot and a connection using Orbi WiFi will appear to the corporate VPN server as coming from two different network locations. The public IP address of the Hot Spot will be different from the public IP address of the Orbi router.
I would expect the log file to show two separate connection attempts to the same IP address, with both being successful.
Is it possible to increase the level of detail in the VPN log?
Corporate use of VPN has been common for over a decade. It might be that the IT staff has run into situations like this before?
- DS9797Apr 08, 2024Aspirant
I'll be in the office tomorrow and will see what I can find.
Because yes, that's very strange.
- CrimpOnApr 08, 2024Guru - Experienced User
VPN allows the user to connect to "any network" and have a secure connection. What happens when connected to other networks? (friends, coffee shop, airport, medical office, etc. etc.)
- DS9797Apr 09, 2024Aspirant
This thing is strange. The VPN isn't really IP based. Rather, after passing the authentication procedure - which may be another 3rd party application - a token of some sort is place on the machine, which allows connection to the VPN for 24 hours. If briefly disconnected, the reconnection will be seamless. Thus, you can change networks / IP addresses and it will still work, as long as the initial authentication occurred within 24 hours.
The VPN logs just show that I was not authenticated. Well, that's not really a surprise, although it does confirm that I can hit the VPN appliance itself.
What I can't seem to trigger/hit/pass through is the authentication service. At least, not while on my Orbit, although I can via hotspot.
And yes, I have used it while on other networks - hotel, car dealerships, etc. Generally without problems, although it's been reported that some such networks block required ports. I have had that issue years ago, when the company used a different VPN. I've not had any problems in years - except my current home network!
My wife has no issues connecting to her work's network at home.
I"ve seen some talk of overlapping IP addresses, but based on the results of my ping tests, that's not the issue.