Koozali.org: home of the SME Server

PPTP or IPSec passthrough

Dean

PPTP or IPSec passthrough
« on: November 29, 2002, 01:25:02 AM »
Hi,

Here's a question I hope someone can answer. I'm using SME 5.5 in Server and Gateway mode. I'm trying to connect a VPN client on the internal network to a VPN server on a remote network. It seems to me that the initial request to open a VPN tunnel is received at the far end, but the reply is never received at the client end. It looks like my SME server if blocking the VPN traffic.

Is there a way I can open the firewall to allow VPN traffic?

Thanks
Dean

Sean Cramb

Re: PPTP or IPSec passthrough
« Reply #1 on: November 29, 2002, 04:15:24 PM »
Dean,
I was able to pass a VPN connection through a SME 5.5 across to another SME 5.5 without any modifications to the original install. What VPN client are you using?

Sean

Dean

Re: PPTP or IPSec passthrough
« Reply #2 on: November 29, 2002, 05:04:44 PM »
Hi Sean,

It's a Nortel Connectivity VPN Client.
The other thing I didn't mention, because I didn't think it made a difference, was that it's not connecting to another SME server at the other end.

Thanks for the help.
Dean

Brent Gunn

Re: PPTP or IPSec passthrough
« Reply #3 on: December 02, 2002, 01:29:37 AM »
There is a FAQ about this:
http://www.e-smith.org/faq.php3#8q35  This is even referring to a Nortel VPN.

I am having the same problem with a CISCO VPN client.  I followed the steps in the FAQ from above, but it didn't solve my problem.  Hopefully it will help for yours.

Roger

Re: PPTP or IPSec passthrough
« Reply #4 on: December 31, 2002, 03:39:25 AM »
Brent,
Did you every solve your problem. I am running 5.6b7 - tried the FAQ. Does not seem to work. I am trying to connect an IPSEC VPN (Cisco) client through my e-smith to a remote host. It appears from tcpdump that the first two levels of handshaking work OK but at the end a couple of ARPs are issued and things quit.

Any help would be appreciated.
Roger.