• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

PPTP Passthrough

Firewalling
2
4
1.9k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • I
    ITEM93
    last edited by May 23, 2017, 6:01 PM

    One of our clients uses a PPTP VPN.
    We are unable to access this from within our network, if we use a secondary router we are able to access it.
    I have added the following rules in both LAN and WAN.
    GRE * * * * * None
    TCP * * * 1723 * None

    However PPTP Outbound still fails.

    1 Reply Last reply Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator
      last edited by May 23, 2017, 7:40 PM

      I would work on getting your client up to speed on what is actual secure vpn in this day and age ;)  PPTP has been dead for years!

      What version of pfsense are you using?

      Why would you need any rules on wan if your outbound to their pptp server?  I am pretty sure they removed the PPTP passthru features then they removed PPTP.. If I recall when pptp goes through a nat the GRE portion there is a call id added to the headers.. Been many years since I had to work with that crap they call PPTP ;)

      Good luck I guess.. If was a client of mine would be selling them on how bad pptp is and why they need to update to something current ;)

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      1 Reply Last reply Reply Quote 0
      • I
        ITEM93
        last edited by May 23, 2017, 7:53 PM

        We are using 2.1.5-RELEASE (i386)

        From all the research that I have done, everyone says that it is a GRE Firewall rule that is blocking it.
        I added the rule to both the LAN and WAN to be sure and not luck.

        We swapped out the router with a Cisco unit to test and were able to connect without an issue.

        1 Reply Last reply Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator
          last edited by May 23, 2017, 7:57 PM

          2.1.5 still had pptp stuff.. So not only do you use OLD vpn protocols, you also use OLD pfsense ;)  Current pfsense is 2.3.4..

          Your not running pptp itself on pfsense are you?  There were many issues with that and passthru if I recall.  I thought the older versions that had pptp enabled on them had some pptp passthru settings that could be enabled… I would have to fire up such an old version to take a look.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 0
          3 out of 4
          • First post
            3/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.