Advertisement

12.29.2004 at 09:03AM PST, ID: 21256529
[x]
Attachment Details

PPTP and GRE client behind PIX with NAT - VPN problem!!

Asked by aalbuquerque in Network Software Firewalls, Enterprise Firewalls, Cisco PIX Firewall

Tags: pix, gre, pptp, nat, behind

Hello.

I wanna configure a Windows 2000 PPTP client with GRE behind my PIX firewall to connect to the VPN Server outside.

The problem is when I try to connect the VPN server, my client give me the message:

619: The especified port is not connected

How can I permit VPN connection thru my PIX from the inside to the outside?

My network configuration:
client (LAN) -> internal PIX -> DMZ -> external PIX (with static NAT) -> Cisco router -> Internet

GRE is enabled on internal, external and router.

access-list nat-inside permit gre host (client internal IP) host (VPN external server)

Same command at Cisco router. External PIX enables all outgoing traffic and stops any incomming traffic.

Thanks a lot!Start Free Trial
 
Loading Advertisement...
 
[+][-]12.29.2004 at 09:54AM PST, ID: 12920573

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]12.29.2004 at 01:52PM PST, ID: 12922348

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Network Software Firewalls, Enterprise Firewalls, Cisco PIX Firewall
Tags: pix, gre, pptp, nat, behind
Sign Up Now!
Solution Provided By: lrmoore
Participating Experts: 5
Solution Grade: B
 
 
[+][-]01.08.2005 at 06:50AM PST, ID: 12992495

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]01.10.2005 at 08:08AM PST, ID: 13004116

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]06.18.2005 at 03:22AM PDT, ID: 14247867

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.06.2005 at 03:39AM PDT, ID: 15029259

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.06.2005 at 03:41AM PDT, ID: 15029267

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.06.2005 at 03:43AM PDT, ID: 15029270

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20080716-EE-VQP-32