NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
m_sandstrom
Sep 21, 2011Aspirant
Best router to allow inbound Windows Remote Access
Hello, got a question from a customer who is on an Active Directory with a Windows Server 2008 box running Remote Access Server. What firewall could you recommend that allow inbound client connectio...
- Sep 21, 2011The FVS336G plays no part in a connection between an "internal" client and a RAS server on the same LAN, and is not really involved in out going connections - it does need to have pptp passthrough, but that is it.
You could have the port forwarding completely disabled on your 336 and you still get the results you report.
First question - does the RAS have internet access?
Second question - what do you mean by "inbound NAT"?
I quit using pptp a while back (switched to ipsec) but from memory all that is required on the router is to forward port 1723 to the RAS, and if you're using a dynamic WAN ip, you'll also need to setup some form of dynamic DNS - DynDNS has worked well for me.
For the FVS338 (and presumably the 336) - just add an incoming service and select pptp from the pull down menu, select allow always and enter the address of the RAS.
m_sandstrom
Sep 21, 2011Aspirant
Thanks,
customer wants to use CMAK to roll out connection profiles to the domain users (so they show the nice logo...), and also to be based on PPTP for iOS devices that needs to connect.
I have tried inbound NAT on my FVS336G, opening PPTP to the internal server but then the client fails to connect:
(INTERNET) -- | FVS336Gv1 | -- (192.168.1.0/24) -- | RRAS |
Connecting clients in the internal network and the VPN jumps to life directly. Reversing the flow, a client connects from 192.168.1.0/24 to a RRAS on the "Internet" and all is fine...? To me it sounds like the FVS336Gv1 only can handle PPTP from internal network and out, and not the other way around. Do you have any experiences with this?
Cheers,
/Mattias
customer wants to use CMAK to roll out connection profiles to the domain users (so they show the nice logo...), and also to be based on PPTP for iOS devices that needs to connect.
I have tried inbound NAT on my FVS336G, opening PPTP to the internal server but then the client fails to connect:
(INTERNET) -- | FVS336Gv1 | -- (192.168.1.0/24) -- | RRAS |
Connecting clients in the internal network and the VPN jumps to life directly. Reversing the flow, a client connects from 192.168.1.0/24 to a RRAS on the "Internet" and all is fine...? To me it sounds like the FVS336Gv1 only can handle PPTP from internal network and out, and not the other way around. Do you have any experiences with this?
Cheers,
/Mattias
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!