Quantcast
Viewing all articles
Browse latest Browse all 20028

Edgerouter lite site-to-site IPSEC NetBIOS name service broadcasts

Hi

I have 2 sites connected using an IPSEC site-to-site vpn, both sites are on differing subnets (192.168.10.0/24 and 192.168.11.0/24)

They're both small windows networks that are just part of a workgroup (ie. no domain server)

I can access network shares on the file "server" at site 1 from site 2 via the machines ip address.

 

Ideally i'd like the machines at site 2 to be able to "see" the machines at site 1 via the Network entry in Windows Explorer. (with minimal configuration of the machines at either site)

 

Is this possible? (Ideally without extra services/hardware running at either end)

 

 

From my reading of this forum i don't think i've seen a definitive answer (if i have i haven't realised it)

Though maybe the following might allow it

https://technet.microsoft.com/en-us/library/cc959903.aspx

 

NetBIOS Name Service Broadcasts

Not all routers block all types of broadcast traffic. Some routers can be configured to forward specific types of broadcasts.

All broadcasts of NetBIOS over TCP/IP (NetBT) are sent to the UDP port number 137, which is defined as the port for NetBT Name Service. Routers normally block the forwarding of these frames because they are sent to the hardware and subnet broadcast addresses. However, some routers allow all broadcast frames sent to this particular UDP port — which is used only by NetBT — to be forwarded. As a result, to the browser it looks as if it is on one big network segment. All domains and workgroups on all network segments are seen by all computers.

 

By minimal configuration of the windows machines i mean machine ("server") names and ip specifics. Quite happy to run scripts that modify the windows firewall to add the extra subnets etc.

 

Anybody had any luck doing this?

Thanks in advance

mh

 

 

 


Viewing all articles
Browse latest Browse all 20028

Trending Articles