Split Tunnel VPN using incorrect Tunnel
        Posted  
        
            by Brian Schmeltz
        on Server Fault
        
        See other posts from Server Fault
        
            or by Brian Schmeltz
        
        
        
        Published on 2009-07-22T15:19:07Z
        Indexed on 
            2010/05/12
            21:04 UTC
        
        
        Read the original article
        Hit count: 528
        
Our company has a handful of field offices that have recently been setup with a regular internet connection after we removed the T1 and router that connected them directly to our network. Now, when the users are in the office, they log in to the VPN to be able to connect to the network.
For the sake of them being able to print and scan from the local multi-function we have setup a split tunnel VPN. We currently have about 15-20 users using this setup around the country without any problems.
Recently one of our users started having problems accessing internal programs/sites when connecting from both home and the office. There are three other users in the same office and they do not have this problem. I assumed that it was something with the computer and went ahead and replaced it with another of the same model. The computer worked fine in our home office; however, when the user received it, she had the exact same problem both at home and in the field office.
Thinking it may be a NIC driver issue I sent her another computer, this time a different model, same problem occurred.
If I update the host file to point to the correct paths, things will work, and if I connect via a normal VPN connection everything works, but the user cannot scan or print - which is a problem. Have tried to find ways to create another tunnel on a normal VPN and have tried to find ways to force the correct tunnel on the split tunnel VPN.
It appears that there is something related to the ISP because if I connect to Comcast or Verizon it is fine but once she connects to Insite then she has problems. I have been unable to get any support from Insite as they don't feel the issue is with them. We use a Nortel VPN client.
Any thoughts or ideas would be appreciated.
© Server Fault or respective owner