VPN and windows clients

Hi all im newbie in linux and my boss tell me ....

Please install a VPN server i need to connect to this server from my house with a VPN.

My boss use a windows XP notebook. here my questions

1. A HOWTO to install step by step a VPN server Fedora Core2  with IPTABLES?   (or any voluntaire to explain step by step_)

2. What windows client is FREE - OpenSource to connect windows to a server with VPN ?

Thanks.... a LOT!!!!!!

im really desperate... :(
netrokAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

wesly_chenCommented:
Hi,

  iptables is mostly for packets filtering such as firewall. As VPN server for Windows clients, you might
want to try Poptop.
http://www.poptop.org/

Download here:
http://sourceforge.net/project/showfiles.php?group_id=44827
Or
http://sourceforge.net/project/showfiles.php?group_id=44827&package_id=51373&release_id=248009

Documentation here:
http://poptop.sourceforge.net/dox/
Including installation guide on the server and Windows clients.

PPTP is built-in with Windows, you don't need the client software. Just refer the documentation link and the Windows client
configuration portition.

Regards,

Wesly

0
netrokAuthor Commented:
hi welsy thnks for this comments.

i install the soft and connect to my server ........ and now i have some questions and problems


1- how to use the system user and password for authenticate??? is possible?

2- i connect to my server and give me the address 192.168.1.3  now this is rigth but .....

i cant ping my other server 192.168.1.143 and this is the reason for that. and when i start for example thunderbird if i check mail the connection goes for 192 VPN or for the public IP ???

3- i need some specific IPTABLES sentence to access ??? or is all rigth with no rules?
0
wesly_chenCommented:
> cant ping my other server 192.168.1.143
Where did you connect from? It need to from outside (internet).
What's the default gateway on your VPN client? ("route print" in command prompt)

Could you describe more about your network infrastructure such as
(on Linux box)
ifconfig -a  
netstat -rn  
iptables -L
(on Windows VPN client)
ipconfig /all
route print

Wesly
0
Cloud Class® Course: Microsoft Windows 7 Basic

This introductory course to Windows 7 environment will teach you about working with the Windows operating system. You will learn about basic functions including start menu; the desktop; managing files, folders, and libraries.

netrokAuthor Commented:
oh oh... i restart the server and now isimpossible to connect remotely by a VPN

ar 18 23:26:52 omega pptpd[2820]: CTRL: Client 200.125.15.177 control connection started
Mar 18 23:26:52 omega pptpd[2820]: CTRL: Starting call (launching pppd, opening GRE)
Mar 18 23:26:52 omega pptpd[2820]: GRE: read(fd=4,buffer=804dac0,len=8196) from PTY failed: status = -1 error = Input/output error, usually caused by unexpected termination of pppd, check option syntax and pppd logs
Mar 18 23:26:52 omega pptpd[2820]: CTRL: PTY read or GRE write failed (pty,gre)=(4,5)
Mar 18 23:26:52 omega pptpd[2820]: CTRL: Client 200.125.15.177 control connection finished


i use the standart conf files, i delete all and reinstall again but nothing these is the error! :(


0
wesly_chenCommented:
> usually caused by unexpected termination of pppd, check option syntax and pppd logs
Please check pppd.logs for the information since you reboot the system (unexpected termination of pppd...)
0
netrokAuthor Commented:
nothing in pppd.log   only this in message log
0
netrokAuthor Commented:
ok wesly i repairthe connection .... i delete the CHEAP and is ok now. but i continue with the same problem i connect and get a 192.168.1.43 IP number my remote net is 192.168.1.0/24

my firewall is only for forwarding 192 to external net

i add this
iptables -t nat -A PREROUTING -i eth0 -p TCP --dport 1723 -j ACCEPT
iptables -t nat -A OUTPUT -o eth0 -p 47 -j ACCEPT
iptables -A OUTPUT -o eth0 -p 47 -j ACCEPT
iptables -A INPUT  -i eth0 -p 47 -j ACCEPT
iptables -A INPUT  -i ppp+ -s 192.168.1.0/24 -d 192.168.1.0/24 -j ACCEPT
iptables -A OUTPUT -o ppp+ -s 192.168.1.0/24 -d 192.168.1.0/24 -j ACCEPT
echo "PPTPD allowed"


but still no connect to the server 192.168.1.143   in my remote net 192.   why?  :(
0
netrokAuthor Commented:
another comment the default Gateway in my windows client is the same address than VPN assign ... that is correct?  for example

Ip: 192.168.1.213
DefaulGateway: 192.168.1.213
0
pablouruguayCommented:
hi network. i think this config is OK. and you can access to the server. 143 with this gateway.

maybe you have a problem like the ISP ip is 192.168.1.x  in this case you need to config with another 192.168.0 for example your VPN connection. check that and comment
0
netrokAuthor Commented:
my ISP give me a 192.168.1.x too. i change my vpn connection a now i can access to the server. :)   but how to add MPE 128 ??? is the problem now.  because when i add this line to my setup the log say Wrong Sintax
0
pablouruguayCommented:
you need to add patchs to kernel and ppp. folow this instructions please.

http://csg.trinhall.cam.ac.uk/tips/vpn/linux

0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
netrokAuthor Commented:
thanks wesly and pablo i will try this options later in my work!
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Linux Networking

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.