Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


taylorroach

69 posts

Master Geek


#310712 15-Nov-2023 20:31
Send private message

Hello, 

 

While working at home on my windows 11 pc I can successfully connect to the work VPN and access all folders etc. 

 

But while connected I cant Remote Desktop to this PC from my iPad. 

 

Tried turning off firewalls etc. I can successfully Remote Desktop when it’s not connected to the VPN. 

 

Any help appreciated…

 

Thanks


Create new topic
gehenna
8514 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #3159978 15-Nov-2023 20:34
Send private message

VPN is changing it's network identity so you probably need to know the VPN address of the device not just the local one. VPN changes the gateway it uses so it won't appear with your other devices on your local network while it's connected.



jnimmo
1097 posts

Uber Geek


  #3160008 15-Nov-2023 21:44
Send private message

This would require a split tunnel configuration, which specifies which traffic to tunnel through the VPN and which to go across the local network. There can also be weird things if there are overlapping network ranges at home/work. That aside, it should be more secure to use a full tunnel, helps avoid things like inadvertently enabling someone to Remote Desktop into your home PC and then being able to gain full access to the work network.

 

 


Aaroona
3196 posts

Uber Geek


  #3160009 15-Nov-2023 21:57
Send private message

jnimmo:

 

This would require a split tunnel configuration, which specifies which traffic to tunnel through the VPN and which to go across the local network. There can also be weird things if there are overlapping network ranges at home/work. That aside, it should be more secure to use a full tunnel, helps avoid things like inadvertently enabling someone to Remote Desktop into your home PC and then being able to gain full access to the work network.

 

 

 

 

 

 

This will be the answer here. Split tunnel is generally disabled by most companies I've worked for as part of their security posture. There have also been cases where we've setup selective split-tunneling for services such as M365, Google, Youtube, Teams, etc., but still disallowed things like local network access and specific ports like 3389. 

 

In some cases, you could be sneaky and tunnel things over an SSL connection, however if your company has Deep Packet Inspection (DPI) enabled, this would be thwarted. 

 

Ultimately, the company will likely say no if you asked for RDP access from a non-managed device.

 

 

 

 




BarTender
3606 posts

Uber Geek

ID Verified
Trusted
Lifetime subscriber

  #3160013 15-Nov-2023 22:25
Send private message

I think the split tunnel answer above is the most correct. Most if not all corporate VPNs will prevent inbound connections.. and depending on the client it will list the routed and non routed addresses.

If you know that a target IP isn’t going to be used and it’s one of the Microsoft split tunneled IPs then you could do a sneaky where you setup a home router and then take just one IP from Microsoft’s range and route it locally on your network… as that works but requires a more advanced router than an standard one, and being able to have VLANs or multiple IP addresses on the local network.

I personally wouldn’t recommend it as your work may get grumpy if they catch you out doing dodgy stuff and look at the logs and see an inbound RDP connection from a Microsoft IP. Depends on how large your employer is. If it’s a big company or international.. then just don’t do it.

Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.