cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
493
Views
0
Helpful
3
Replies

VPN Ports

soshomile
Level 1
Level 1

Deal All;

(Need urgent attention)

i have configured VPDN in my PIX 525. i also implement access-list to allow certain exchange traffic and VPN traffic. but after implementing the access-list, users are not able to dial VPN connection. error 800 appear while they tyr to connect. my exchange traffic is now smooth.

please tell me which VPN port should i allow to overcome this Issue.

i need urgent reply..

regards

Soshomile

3 Replies 3

mattiaseriksson
Level 3
Level 3

Hi, TCP port 1723 must be open and Protocol 47 (GRE).

Dear mattiaseriksson

please review it.....i already configured it like this...need your kind comments...

access-list pcc permit tcp any any eq pptp

access-list pcc permit gre any host x.x.x.x

sosho

That should work.

But if you use PAT you also need to enable PPTP inspection:

fixup protocol pptp

If it still doesn't work, check if any packets matches the lines in the access-list, and what the logfile gives.

I hope that helps.

Review Cisco Networking products for a $25 gift card