I have a PIX 501 that stands between my DMZ and private network. I have recently added the fixup protocol pptp 1723 line to my firewall. When employees have a PPTP VPN established it is very unstable. There connection is severred within a minute or two. Any ideas as to what the cause may be? Is there a better or alternative method to allow pptp? So far this has been the only method I have found. Thanks for your help. Here is my config:
PIX501# show run
PIX Version 6.3(5)
interface ethernet0 auto
interface ethernet1 100full
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password ---------
fixup protocol dns maximum-length 51
fixup protocol ftp 21
fixup protocol h323 h225 1720
fixup protocol h323 ras 1718-1719
fixup protocol http 80
fixup protocol pptp 1723
fixup protocol rsh 514
fixup protocol rtsp 554
fixup protocol sip 5060
fixup protocol sip udp 5060
fixup protocol skinny 2000
fixup protocol smtp 25
fixup protocol sqlnet 1521
fixup protocol tftp 69
access-list inside_access_in permit ip any any log
I didn't see how clearing isakmp and ipsec would do anything, but i tried it anyway and as I assumed, nothing changed. I have also noticed that I lose DNS at least once a day for around 5 minutes or so. I wonder if it is related.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...