Link to home
Start Free TrialLog in
Avatar of livegirllove
livegirllove

asked on

Sonicwall TZ 170 PPTP and GRE passthrough to SBS 2003

I have a TZ 170 between the modem and SBS server.  Port forwarding sends email, web, terminal services through just fine.  I also set the the PPTP to forward to the server however I cant get the VPN to connect.  I've read that I need to forward GRE protocol 47?  I cant find a setting for that.  I do see stuff about advertising Windows netbios etc.

Where is the setting in this firewall to passthrough VPN traffic.  I have read the pptp is less safe than the VPN built into the firewall but the client wants to use the connect to small buisness server app which means I need to pass through.

any links to setting up VPN passthrough would be great.

thanks
ASKER CERTIFIED SOLUTION
Avatar of Rob Williams
Rob Williams
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of livegirllove
livegirllove

ASKER

yes it has pptp as a predefined service.

I set that to be allowed to pass to the Server.  

Wow as I was just looking at stuff I went and downloaded the connection manager and Connected successfully to the server via vpn.  HUH??  I now think maybe it didnt like to vpn using my Phone/GPRS with my laptop while I was actually onsite yesterday.

Well nevermind.

thanks for the response.  I guess using that PPTP predefined service mustof sone what needed to be done!!
Glad to hear it is working and thanks for the points.
PPTP will not work with some of the phone services, as some service providers block PPTP traffic intentionally, and some provide you with a NATed IP, not a public IP, which VPN's do no work well with.
Cheers,
--Rob
Yeah but strangely Im pretty sure I connected to my SBS with my phone when I was testing for an upcoming international trip.  Better check that again.

@#$!@

I know what the problem was

im an idiot!   A lot of times typing my response makes me think harder and I figure it out.

I set the DNS A record for the Server and then ran VPN wizard on the SBS.  That wouldof made the sbs connection try to connect via a domain name which wasnt fully propegated yet.!!! got to be it.  Lesson one.  Test with a vpn you configure yourself!! LOL
Do you mean "I set the DNS A record for the Server " with the ISP/registrar ? That would do it. Always test by IP, rather than DNS name, if it fails. Learned that with similar issues a long time a go. :-)
Exactly what I mean!!