Re: VPN through NAT?




more.

Also with a netgear router that have whats called VPN pass through, they see VPN traffic and pass it though to the host. Where as cisco or other high-end routers and FreeBSD based routers, you get to deal with port translation so you have to create the rule to pass TCP port 1723, and if GRE is needed its protocol 47.

Cheers

------------------------------------------------------------------------

*/Jeff Norris/*
/~ Web Hosting ~ VPN Solutions ~ Network Management ~
Design, deploy, kick ass. /
*N*orris*Techs* dot net
http://www.norristechs.net
*AOL IM or Yahoo IM: _ ntshelper _*



Troy Settle wrote:
Probably not the best list to ask this on, but it's the closest that I'm subscribed to...

I have several customers who use VPN (Windows PPTP) to connect to their Corporate networks. The first was sitting behind NAT on a FreeBSD router. The PPTP did not work. I moved them out of NAT and onto a regular IP, and it worked fine. I then swapped out the FreeBSD box with a Cisco 2620 and again tried the PPTP via NAT, but still it wouldn't work.

Another customer is behind a Cisco 804 and his PPTP also did not work when his network was behind NAT, so I have to assign a static subnet for him.

From home, sitting behind NAT on my Netgear router, I can turn up PPTP connections all day long. What gives with FreeBSD and Cisco's implementation of NAT that PPTP doesn't want to work?

Thanks,

_______________________________________________
freebsd-isp@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-isp
To unsubscribe, send any mail to "freebsd-isp-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • Re: Failover from SDSL to ADSL on a single Cisco 2801
    ... networks out via one interface onto an SDSL router and then onto the ... internet. ... It is configured to run NAT and there are a number of Static ... cisco specific newsgroup. ...
    (comp.os.vms)
  • Re: PPTP VPN using MPD behind NAT help needed
    ... Because PPTP encapsulates PPP ... Some router conqurs this problem by simply "passing ... Pass Through") assuming there is only one PPTP client behind NAT. ... which is capable of handling GRE over NAT with many clients. ...
    (freebsd-net)
  • Re: Home Firewall vs Corporate Firewall
    ... Cisco 675 Router that is configured to provide NAT. ... I have been researching firewalls and network security appliances. ...
    (comp.security.firewalls)
  • Re: Router/Firewall Advice
    ... Cisco UBR924 router. ... > no Firewall capabilities are enabled on this router device. ... The 924 does support NAT and PAT. ...
    (comp.security.firewalls)
  • Re: Router/Firewall Advice
    ... Cisco UBR924 router. ... > no Firewall capabilities are enabled on this router device. ... The 924 does support NAT and PAT. ...
    (comp.security.firewalls)