Solved

PPTP GRE problem SBS 2003

Posted on 2008-10-16
6
1,156 Views
Last Modified: 2012-06-27
The most common cause for this is that a firewall or router between the VPN server and the VPN client is not configured to allow Generic Routing Encapsulation (GRE) packets (protocol 47). Verify that the firewalls and routers between your VPN server and the Internet allow GRE packets.
0
Comment
Question by:ICTVALUE
  • 4
6 Comments
 
LVL 9

Expert Comment

by:waynewilliams
ID: 22735798
Can I point you to this article?

http://support.microsoft.com/kb/555375


0
 
LVL 4

Accepted Solution

by:
pistolslapper earned 500 total points
ID: 22738098
I think from the information you have provided that your problem related to the fact you are not forwarding tcp port 47 to your remote access server (in your case your small business server). I would also check to make sure that you are forwarding tcp port 1723 to your ras server too.
0
 
LVL 9

Expert Comment

by:waynewilliams
ID: 22738452
GRE is not a port but a protocol (such as tcp).   You dont need to forward GRE, just ensure that it is allowed through your firewall.

Some firewalls list this as "PPTP Passthrough".  If you can post the make and model of your firewall then we might be able to help you further.
0
Better Security Awareness With Threat Intelligence

See how one of the leading financial services organizations uses Recorded Future as part of a holistic threat intelligence program to promote security awareness and proactively and efficiently identify threats.

 

Author Comment

by:ICTVALUE
ID: 22755539
Hi, We are using a Cisco 520 router as firewall.  Any idea how I should enable PPTP Passthrough ?
0
 
LVL 9

Expert Comment

by:waynewilliams
ID: 22796031
Ok. If you have an access-list on the external interface you will need to allow gre through on that.

An example would be:

access-list 100 permit gre any any log

If you can post the config of your router I can tell you exactly which access list and how to add the line in the access list.

0
 
LVL 9

Expert Comment

by:waynewilliams
ID: 22796045
Just noticed you have already assigned points for this even though it isnt fixed??

Can you post your Cisco config in a new question and post the link to the new question here and I will gladly take a look at it for you.  If you post it here it wont get a response.
0

Featured Post

How does your email signature look on mobiles?

Do your employees use mobile devices to reply to emails? With mobile becoming increasingly important to the business world, it is in your best interest to make sure that your email signature looks great across all types of devices.

Join & Write a Comment

Remote Apps is a feature in server 2008 which allows users to run applications off Remote Desktop Servers without having to log into them to run the applications.  The user can either have a desktop shortcut installed or go through the web portal to…
When you upgrade from Windows 8 to 8.1 or to Windows 10 or if you are like me you are on the Insider Program you may find yourself with many 450MB recovery partitions.  With a traditional disk that may not be a problem but with relatively smaller SS…
Windows 8 comes with a dramatically different user interface known as Metro. Notably missing from the new interface is a Start button and Start Menu. Many users do not like it, much preferring the interface of earlier versions — Windows 7, Windows X…
With the advent of Windows 10, Microsoft is pushing a Get Windows 10 icon into the notification area (system tray) of qualifying computers. There are many reasons for wanting to remove this icon. This two-part Experts Exchange video Micro Tutorial s…

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now