PFSenseDevWiki : PPTPTroubleShooting

PfSenseDevHome :: Categories :: PageIndex :: RecentChanges :: RecentlyCommented :: Login/Register
Most recent edit on 2007-09-20 05:02:13 by ChrisBuechler

Additions:
- Use the Frickin package (currently not working, is being worked on)

Deletions:
- Use the Frickin package



Edited on 2007-09-20 03:00:25 by ChrisBuechler

Additions:
Also, there is a pf limitation that stops any outbound PPTP connections from working if the PPTP Server on pfSense is enabled. This is a known issue with no known work around.

Deletions:
Also, there is a pf bug that stops any outbound PPTP connections from working if the PPTP Server on pfSense is enabled. This is a known issue with no known work around.



Oldest known version of this page was edited on 2007-08-18 23:11:58 by ChrisBuechler []
Page view:

Troubleshooting GRE and PPTP


Multiple Outbound Connections to the Same External PPTP Server

pf does not have any capabilities of tracking more than one GRE connection per public IP per external host. That is, if you NAT your entire internal network to your WAN public IP, you can only connect one internal machine to a given external GRE source. For PPTP, this means only one PC can connect to an outside PPTP server at a time.

Work-arounds:

Outbound PPTP with PPTP Server Enabled

Also, there is a pf bug that stops any outbound PPTP connections from working if the PPTP Server on pfSense is enabled. This is a known issue with no known work around.

Problems when pfSense is the PPTP Server

Ensure that ALL protocols are being passed on the PPTP Firewall Rule tab

Other tips


Other Alternatives

1. Use OpenVPN (which is much better, has custom routing options, uses standard web ports, oh my)
2. Use IPSEC. Can work with CARP.
3. Consider a different firewalling platform


Protocol information

PPTP - http://www.faqs.org/rfcs/rfc2637.html
GRE - http://www.faqs.org/rfcs/rfc1701.html
Valid XHTML 1.0 Transitional :: Valid CSS :: Powered by Wikka Wakka Wiki 1.1.6.3
Page was generated in 0.0544 seconds