Solved

setting up a VPN using a Cisco 678 on Qwest

Posted on 2004-08-20
7
684 Views
Last Modified: 2011-04-14
I am attempting to set-up a Windows 2003 VPN server connecting through Qwest using a cisco 678.  I have a leased block of static ip's.  

The current config is DSL Modem -> Switch ->  (Public static IP) -> VPN Server -> Rest of internal network.

I have tested the VPN server and it appears to work when routing from one public ip to the VPN server on the internal side of the DSL modem.  However when attemptign to connect externally, I receive an error 800.   My understanding is I need to do some special configuration to the 678,  what are these commands?  I also have a broadxent DSL modem, but I have neem unable to even get this to connect to Qwest's network.  Any and all help is appreciated as I need to get this resolved ASAP.

Thanks!
0
Comment
Question by:nwcc_seattle
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
7 Comments
 
LVL 36

Expert Comment

by:grblades
ID: 11870334
Can you explain exactly what you mean by 'connect externally'?
Where are you connecting from?
Where are you connecting to?
Is the VPN active?
What is the VPN server configuration?
0
 
LVL 1

Author Comment

by:nwcc_seattle
ID: 11875945
Thanks for responding!  I hope this can explain the situation in a bit more detail.   The set-up is currently as follows:

Qwest DSL Line ->   Covad 678 DSL Modem w/ static assigned ip -> Un managed switch.   -> Cabeling to four different locations as described below (they each have a static ip address)

1:  A wireless router for visitors to the office to use.  This does not connect to anything else on our network.
2:  A Router for most of the office internet traffic
3:  A NIC on A windows 2003 server (with the VPN set-up through RRAS).  This Server has two nic's.  The goal is to have this nic receive external VPN traffic.  The other nic is for internal network traffic.  
4: My laptop for the purposes of testing.

When I was testing the VPN server and I configure my laptop with a static public ip address, I am able to authenticate and connect via the VPN.  Howver the traffic for this connection stays on the "inside" of the DSL modem.  When I try to connect from any point outside of the DSL modem, the connection errors out with error 800.  

Hope that helps.  Thanks in advance.
0
 
LVL 36

Expert Comment

by:grblades
ID: 11878798
As you are using a windows VPN server it will be using PPTP. You need to forward UDP port 1723 anf IP protocol 47 (gre) to your VPN server.
I don't know how to do that on the 678 as they don't use normal Cisco commands.
0
Manage your data center from practically anywhere

The KN8164V features HD resolution of 1920 x 1200, FIPS 140-2 with level 1 security standards and virtual media transmissions at twice the speed. Built for reliability, the KN series provides local console and remote over IP access, ensuring 24/7 availability to all servers.

 
LVL 1

Author Comment

by:nwcc_seattle
ID: 11882034
Yes, the windows server uses pttp, and that is the same problem I am having.  I found one possible solution, however it requires me to turn on nat. and that causes regular internet access not to work.  Thanks for your help though.
0
 
LVL 1

Author Comment

by:nwcc_seattle
ID: 12634771
As a follow-up to this issue, it appears that the Cisco 678 does not support pptp session passthrough  (according to an engineer I talked to @ cisco)  I ended up purchasing a Cisco 827, and that has worked without a problem.
0
 

Accepted Solution

by:
modulo earned 0 total points
ID: 13052697
Closed, 500 points refunded.

modulo
Community Support Moderator
Experts Exchange
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

696 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question