Jump to content

Recommended Posts

Posted

Evening all,

 

We have a 2016 server set up as a single nic DA and VPN server, currently giving out DHCP addresses on the LAN for the IKEv2/SSTP side of things.

 

This is fine for the handful of users that use IKEv2/SSTP but we are planning to add a shedload of external users and we just don't have enough addresses on our main LAN subnet.

 

In the Remote Access Server set up wizard, there is the option to add static IP ranges instead of DHCP. If I were to add a completely different subnet range in there, ie current LAN is 192.168.x.0 and I add a range from 192.168.y.0, is it just a case of adding a route in RRAS from one to the other or is there more to it, in terms of our main hardware router etc? Would there be problems with the 2 subnets coexisting on the same wired LAN such as DHCP being forced on them anyway?

 

In the old days I would have just converted to a dual NIC VPN server, connected the second NIC to a vLan on our main router and let that do DHCP and away, but as we have DA, and no chance of them coming back in to get new config, I cant just chuck the server/reconfigure the server just in case I make our DA users irate! Benefit of hindsight really.

 

Anyone come across/converted this way?

 

Thanks

James

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...