cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
592
Views
0
Helpful
5
Replies

PPTP with PIX 506E

chetankamra
Level 1
Level 1

Hi,

I have arunning PIX 506E in my office and to reduce cost. I want to establish a pptp or l2tp VPN betwwen home users and Office .

Is this possible with PIX 506E?

If yes then How ?

Thanks,

CK-NET

5 Replies 5

jmia
Level 7
Level 7

Why not use VPN Client for your home users, more secure than PPTP, anyway here are the configuration examples for both PPTP and VPN Client access:

PIX and PPTP configuration:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080143a5d.shtml

PIX with VPN Client access configuration:

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a008009442e.shtml

Hope this helps and please rate post if it does.

Jay

spremkumar
Level 9
Level 9

hi

I have seen PPTP even in PIX 501 series so i dont see some problem in configuring the same in PIX 506E model.

do find the link which talks about enabling PPTP in PIX firewall..

http://cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080143a5d.shtml

regds

I tried creating pptp vpntunnel and even get my tunnel connected to PIX but itshows me that username =unknown

Follwoing are the details:

PPTP Session Information (Total tunnels=1 sessions=1)

Call id 2 is up on tunnel id 2

Remote Internet Address is 61.246.136.211

Session username is unknown, state is estabd

Time since event change 28 secs, interface outside

Remote call id is 32768

PPP interface id is 1

0 packets sent, 0 received, 0 bytes sent, 0 received

Seq 1, Ack 0, Ack_Rcvd 0, peer RWS 64

0 out of order packets

PPP virtual interface id = 1

PPP authentication protocol is NONE

Client ip address is 192.168.1.240

Transmitted Pkts: 0, Received Pkts: 0, Error Pkts: 0

MPPE key strength is None

MPPE_Encrypt_Pkts: 0, MPPE_Encrypt_Bytes: 0

MPPE_Decrypt_Pkts: 0, MPPE_Decrypt_Bytes: 0

Rcvd_Out_Of_Seq_MPPE_Pkts: 0

Could you post your config please (take out any sensitive info).

Jay

Folowing is the configuration:

vpdn group PPTPVPN accept dialin pptp

vpdn group PPTPVPN ppp authentication chap

vpdn group PPTPVPN client configuration address local PPTP

vpdn group PPTPVPN client configuration dns *.*.*.*

vpdn group PPTPVPN pptp echo 60

vpdn group PPTPVPN client authentication local

vpdn username test password *********

vpdn username test01 password *********

vpdn enable outside

-

Attaching a Screen shot which says Unknows username have a look

CK_NET

Review Cisco Networking products for a $25 gift card