Koozali.org: home of the SME Server

vpn port forwarding

Offline tropicalview

  • *****
  • 196
  • +0/-0
    • http://www.tropicalview.net
vpn port forwarding
« on: July 30, 2007, 02:27:33 AM »
Dear all,

I like to forward a vpn connection to a windows server somewhere in my network.

I did a port forwarding of ports:
1723
500
50
51

in both tcp  / utp

when i connect i get this:

verifying user &pass.
it will not continue after that stage with error: (after a long timeout)


disconnected.

error 721: The remote computer did not respond. for furter assistens............


does anybody know if the forwarding is not executed but the server itselfs is listening to the ports or something? (i disabled the vpn of the server in the tap remote access by placing a 0 in the number of connections.)

Kind regards,'

Hendrik



Perhaps this will indicate what's wrong:
IP Protocol 47 (GRE) are opened.

the vpn server itselfs works, i tried it intern in the network.


Error 721: Remote PPP peer or computer is not responding. If you have tried many thing other people suggest like rebooting, reloading hardware and re-installing the VPN or dial in connection, you still get the same problem. I will suggest to check the router settings and make sure TCP Port 1723, IP Protocol 47 (GRE) are opened. Also make sure that the router has the PPTP enabled and not firewall block the traffic. On the RAS server, check the DHCP settings.

this is coming from:
http://www.chicagotech.net/raserrors.htm#Error%20721
The sky is not the limit, But when I reach the sky, for sure I will not try to go to the limit.... (donated $25,- upto now)

Offline Franco

  • *
  • 1,171
  • +0/-0
    • http://contribs.org
vpn port forwarding
« Reply #1 on: July 30, 2007, 03:06:28 AM »
PPTP only uses 1723 TCP.
Do you have PPTP enable on the SME server?
Be sure that you have "0" clients on the remote access panel.

Offline tropicalview

  • *****
  • 196
  • +0/-0
    • http://www.tropicalview.net
client number 0
« Reply #2 on: July 30, 2007, 05:03:16 AM »
The client number is zero.

I tried the command:

/etc/init.d/pptpd stop

it failed because it was stopped,
I started it and stopped again, both where OK.
The sky is not the limit, But when I reach the sky, for sure I will not try to go to the limit.... (donated $25,- upto now)

Offline pfloor

  • *****
  • 889
  • +1/-0
Re: vpn port forwarding
« Reply #3 on: July 30, 2007, 05:44:08 AM »
Quote from: "tropicalview"
Dear all,

I like to forward a vpn connection to a windows server somewhere in my network.

I did a port forwarding of ports:
1723
500
50
51

in both tcp  / utp


This configuration is not supported with SME.  VPN passthrough requires port 1723 AND the GRE protocol.  Currently you can only forward the port 1723 but without the ability to forward the GRE protocol, VPN will not work in a passthrough configuration.

You may however be able to do it if you forward TCP port 1723 and set some explicit firewall rules to forward the GER packets seperately.

See http://bugs.contribs.org/show_bug.cgi?id=1131 for additional information.
In life, you must either "Push, Pull or Get out of the way!"