Solved

Problem with VPN connections throught a ISA 2006 server

Posted on 2008-10-16
7
262 Views
Last Modified: 2012-06-21
Hi Experts,

My organization has a ISA Server 2006 as a firewall, working with two interfaces, internal and external. We have internal computers establishing VPN connection with other external VPN servers, but when the other VPN end is a Zyxel router/firewall, the VPN can not be established, showing error 619 on the origin (the Windows XP computer trying to establish a PPTP VPN). If we stop the ISA Server and configure our router to work without the ISA Server, this VPN connection is established without problem. We allways use NAT.

Any idea about what's happening with ISA Server?

Thanks in advance.
0
Comment
Question by:david-marti
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
7 Comments
 
LVL 63

Expert Comment

by:SysExpert
ID: 22734503
I would check all the filters and rules to see what traffic you are blocking.


I hope this helps !
0
 
LVL 63

Expert Comment

by:SysExpert
ID: 22734504
ALso check the relevant logs

0
 

Author Comment

by:david-marti
ID: 22734535
Thanks for your answer.

No, nothing blocks this kind traffic. I can successfully establish VPN with other VPN servers using PPTP ... the only problem is with this Zyxel.
0
 
LVL 63

Accepted Solution

by:
SysExpert earned 250 total points
ID: 22736529
Upgrade the firmware.

0
 
LVL 77

Assisted Solution

by:Rob Williams
Rob Williams earned 250 total points
ID: 22737764
One thought: make sure NAT-T (NAT-traversal) is enabled on the Zyxel, in its VPN configuration.
0

Featured Post

Is your NGFW recommended by NSS Labs?

Ours is! NSS Labs Next Generation Firewall Test gives the WatchGuard Firebox M4600 a "Recommended" rating! Curious where your NGFW landed on the  Security Value Map? See the map and download the full report today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

OpenVPN is a great open source VPN server that is capable of providing quick and easy VPN access to your network on the cheap.  By default the software is configured to allow open access to your network.  But what if you want to restrict users to on…
I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question