cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
347
Views
0
Helpful
2
Replies

Win2k VPN behind PIX506

mhfulton36
Level 1
Level 1

I need to implement a Win2k VPN Server behind a PIX506 firewall, if possible. I think I need to, and have, mapped a static ip route to the RRAS server, giving it an outside address. I have tried adding "fixup protocol" lines to the PIX config for pptp 1723, tcp 1723 and ip 47, but it's not working (keeps saying bad protocol). I'm doing this, not because I know what I'm doing, but because it seems the thing to do after research and looking at the PIX config (maybe not). Maybe this particular traffic just won't go through this particular firewall; Does anyone know?

Also, after I get hole punched in the firewall, I don't have a clue how to set up the VPN clients. If you can help with that also, I would be eternally in your debt.

Thanks!

2 Replies 2

abdul.kokumo
Level 1
Level 1

I think you should implement your VPN on the PIX. Cisco VPN clients will work only on Cisco VPN supported device like the PIX you have.

gfesler
Level 1
Level 1

the 47 is a protocol not an ip port

access-list 101 permit 47 any any or conduit permit 47