RAS Rounting, can not access entire network


Craig Grell

I have a Windows 2000 Server setup as a VPN server. The server has a single
nic and is behind the firewall

Firewall internal (

Windows 2000 Server VPN (
VPN Static address pool ( -
Windows 2000 Server File (

Clients can connect and access the VPN server.

Clients can not access any other servers on the network

When I try to ping using an IP address of a different server I get the

Pinging with 32 bytes of data:

Reply from Destination host unreachable.

On the client the details for the VPN connection says

Server IP address =
Client IP address =

What am I missing so that the VPN client can access the entire network?

Thank you


Ensure that the windows VPN Access server has all the
routing information.
Check for the access permissions in the config of the user
( the windows VPN policy). Usually not all users are give
access to the entire subnet/s.
If you are in a pure AD domain ( native not mixed) you can
allocate static IP based on user id. Check for permissions
on the ACLs in between.

Hope that helps

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question