Koozali.org: home of the SME Server

Help : Need PPTP client on SME Server

Kelvin

Help : Need PPTP client on SME Server
« on: October 10, 2002, 12:49:38 PM »
Hi all,

I need to get the SME server to VPN into another network (via PPTP as that's the only protocol supported by the other end) so that the LAN workstations have all got access to the network there.

The current setup (which is being phased out) is via ISDN with each workstation being assigned with a static public IP. This allows each workstation to individually VPN into the other network to run their software.

A new ADSL installation is being put in to replace the ISDN setup. This new service currently includes one static public IP address. Getting SME to gateway the workstations to the ADSL service is trivial, except for this requirement for each workstation to VPN into this other service for their application. The tech support guy at the other service says the way around the problem is to get the server to VPN in via PPTP (they do not support any other protocol - IPSec is out) and have all the workstations behind SME access the service that way.

Does anyone know how this can be done on SME 5.1.2 ?

The only other way open to us currently is to apply for multiple IP addresses from the ISP and have all workstations connect directly (bypassing SME and thus losing the firewall). I would prefer to have a SME based solution if possible. Help, anyone ?

TIA !

Kelvin

gary

Re: Help : Need PPTP client on SME Server
« Reply #1 on: October 10, 2002, 10:56:18 PM »
You need a PPTP client.  You must install this on your SME server, create a connetion to the PPTP Server on the other end, then you need to route traffic through it.

http://pptpclient.sourceforge.net/

This sounds like a huge project.  It's too bad you can't use IPSEC.

Kelvin

Re: Help : Need PPTP client on SME Server
« Reply #2 on: October 11, 2002, 01:55:38 AM »
Hi Gary,

Thanks for your reply.

I've already done this. The problem is getting the PPTP client to work with SME's templating system and to make sure the necessary files don't get clobbered by SME (eg. the chap-secrets files gets overwritten whenever a PPTP connection gets established so I have to put the login details into the template).

The documentation is not complete enough (more examples would have been really good).

I've also not been able to test client side routing to the PPTP server end yet as I've had to work off site and do not have a copy of the custom software they are running (neither does the client as the company their are accessing would not give them a copy of the installation program !).


Kelvin