Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PPTP Passthrough

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 2 Posters 2.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      ITEM93
      last edited by

      One of our clients uses a PPTP VPN.
      We are unable to access this from within our network, if we use a secondary router we are able to access it.
      I have added the following rules in both LAN and WAN.
      GRE * * * * * None
      TCP * * * 1723 * None

      However PPTP Outbound still fails.

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by

        I would work on getting your client up to speed on what is actual secure vpn in this day and age ;)  PPTP has been dead for years!

        What version of pfsense are you using?

        Why would you need any rules on wan if your outbound to their pptp server?  I am pretty sure they removed the PPTP passthru features then they removed PPTP.. If I recall when pptp goes through a nat the GRE portion there is a call id added to the headers.. Been many years since I had to work with that crap they call PPTP ;)

        Good luck I guess.. If was a client of mine would be selling them on how bad pptp is and why they need to update to something current ;)

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • I
          ITEM93
          last edited by

          We are using 2.1.5-RELEASE (i386)

          From all the research that I have done, everyone says that it is a GRE Firewall rule that is blocking it.
          I added the rule to both the LAN and WAN to be sure and not luck.

          We swapped out the router with a Cisco unit to test and were able to connect without an issue.

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            2.1.5 still had pptp stuff.. So not only do you use OLD vpn protocols, you also use OLD pfsense ;)  Current pfsense is 2.3.4..

            Your not running pptp itself on pfsense are you?  There were many issues with that and passthru if I recall.  I thought the older versions that had pptp enabled on them had some pptp passthru settings that could be enabled… I would have to fire up such an old version to take a look.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.