Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PPTP VPN and SQUIDGUARD not working

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    18 Posts 3 Posters 7.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      wallabybob
      last edited by

      It looks to me this request is still outstanding:

      @jimp:

      What are the contents of /tmp/rules.debug when it works and when it doesn't?

      1 Reply Last reply Reply Quote 0
      • J
        josey
        last edited by

        this is with PPTP VPN off

        this is copy paste only of vpn part, i dont think you need firewall, nat, gateway… data?
        also there is nothing related to squid in this file
        ,,,
        ,,,
        ,,,

        VPN Rules

        package manager late specific hook

        anchor "packagelate"

        anchor "tftp-proxy/*"

        anchor "limitingesr"

        uPnPd

        anchor "miniupnpd"

        Setup squid pass rules for proxy

        pass in quick on re0 proto tcp from any to !(re0) port 80 flags S/SA keep state
        pass in quick on re0 proto tcp from any to !(re0) port 3128 flags S/SA keep state

        Setup squid pass rules for proxy

        pass in quick on re1 proto tcp from any to !(re1) port 80 flags S/SA keep state
        pass in quick on re1 proto tcp from any to !(re1) port 3128 flags S/SA keep state

        Setup squid pass rules for proxy

        pass in quick on re2 proto tcp from any to !(re2) port 80 flags S/SA keep state
        pass in quick on re2 proto tcp from any to !(re2) port 3128 flags S/SA keep state

        this ia with PPTP VPN on

        VPN Rules

        package manager late specific hook

        anchor "packagelate"

        anchor "tftp-proxy/*"

        anchor "limitingesr"

        uPnPd

        anchor "miniupnpd"

        1 Reply Last reply Reply Quote 0
        • jimpJ
          jimp Rebel Alliance Developer Netgate
          last edited by

          I asked for the whole file, and yes, I need the whole file. The VPN part, and the headers, etc, where the PPTP things are defined among others. We can't help unless we get all relevant information.

          Save them as .txt files and attach them to the thread (or the open ticket about this)

          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

          Need help fast? Netgate Global Support!

          Do not Chat/PM for help!

          1 Reply Last reply Reply Quote 0
          • J
            josey
            last edited by

            OK, here is *.txt file…
            wan, and wan gw IP edited with ---.---.---.---

            [VPN ON.txt](/public/imported_attachments/1/VPN ON.txt)
            [VPN OFF.txt](/public/imported_attachments/1/VPN OFF.txt)

            1 Reply Last reply Reply Quote 0
            • J
              josey
              last edited by

              6 days passed, and no feedback.
              im just asking is anyone up to this, any news? Or is it best way just to seat back and wait?

              thanks

              1 Reply Last reply Reply Quote 0
              • jimpJ
                jimp Rebel Alliance Developer Netgate
                last edited by

                Should be fixed in new snapshots made after this post (there may be one in progress right now that would not include the fixes), so by tomorrow AM there should be a snap that works.

                Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 0
                • J
                  josey
                  last edited by

                  thank you for your prompt reply, will try and leave feedback

                  1 Reply Last reply Reply Quote 0
                  • J
                    josey
                    last edited by

                    well i said i will leave feedback…

                    i try to upgrade my 1.2.3 installation since on test machine squidguard and pptp vpn works. (everything left by default)
                    After upgrade, PPTP VPN submenu freezes and it is imposible to change anything, and upgrade transfer all values (like radius port, ip address etc) as number 1.

                    Than i tried to restore configuration from old backup from 1.2.3 verson, and it didnt work well.
                    so i decide to go for fresh install...

                    I have configure everything and it works, except :) when you touch WAN firewall rules VPN does not work after that.

                    So you can set some random rule, and then delete it and VPN is not working any more.
                    also i tried to add firewall rule to wan interface to pass any source to ip adress of pptp vpn server by port 1723 no luck.
                    Also, on version 1.2.3 in wan interface firewall on single rule to block all pptp traffic was able to pass through, on pfs 2.0 it cant.
                    On client computer when trying to connect to VPN it hangs on, and it cant come to part verifying username and password.

                    is there some new configuration for pptp in pfs 2.0, or it still need small fix?

                    1 Reply Last reply Reply Quote 0
                    • jimpJ
                      jimp Rebel Alliance Developer Netgate
                      last edited by

                      Those issues are unrelated to this thread, you'd be better off starting a new thread with a relevant subject to draw more attention. I haven't used PPTP on 2.0 myself much, some others have said it wasn't working, some said it was. Others may have tips.

                      Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                      Need help fast? Netgate Global Support!

                      Do not Chat/PM for help!

                      1 Reply Last reply Reply Quote 0
                      • J
                        josey
                        last edited by

                        also there is no PPTP VPN events in log ?
                        and as i said, it works until single firewall rule is added to WAN interface :(
                        after that, even if you delete all rules it is not working any more.

                        I know that this issues are not related any more with first problem (VPN crashes squidguard), but can we end this story with PPTP to end? or i have to open new topic in VPN or firewall ?

                        And, thank you for all your help

                        1 Reply Last reply Reply Quote 0
                        • J
                          josey
                          last edited by

                          update to latest snapshot, reboot, add rule to firewall for wan interface to - pass port 1723 from any to wan-, and now works, silly, version 1.2.3 didnt need that.
                          Now, just to fix logging, it does not work.
                          Thanks for all help

                          1 Reply Last reply Reply Quote 0
                          • jimpJ
                            jimp Rebel Alliance Developer Netgate
                            last edited by

                            I thought PPTP logs were under the PPP tab, you just need to press the PPTP button there. I may be wrong though, there's an open ticket for the logging.

                            Again though, a new thread with a more relevant subject would catch more eyes.

                            EDIT: I see you started a new thread, nevermind. :-)

                            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                            Need help fast? Netgate Global Support!

                            Do not Chat/PM for help!

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.