This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN Server behind Astaro

Dear All,

I have a windows 2003 vpn server with private ip address that use pptp 
I DNAT public ip address  to my vpn server private ip address and  opened tcp port 1723 from any to my vpn server.
I can telnet to 1723 port but i can not connect to my vpn server from internet.

Can anybody help me?
Thanks a lot.
Ashkan


This thread was automatically locked due to age.
Parents
  • Wouldn't you have better security if you set up the Astaro to provide the VPN?
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Wouldn't you have better security if you set up the Astaro to provide the VPN?
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
  • Dear BAlfson,

    yes, really i know that it's better use astaro for VPN server.
    But my boss want this from me, so i have to deliver this service to him.
    In other hands, i want to what the problem is.
    If one person request me to  do this scenario in another place, really i can not do it.

    Thank you for your reply.
    Ashakn.
  • Please show your DNAT and your packet filter.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Don't forget to open GRE (47). http://portal.knowledgebase.net/display/2/kb/article.asp?aid=298769

    PPTP helper should probably take care of this but since we are talking bosses and procedures...
  • Dear all,

    I have a public ip address that want to DNAT to my private IP address.
    I defined a DNAT rule that destination nat public ip address to my private ip address.in this rule i do not define any service match.i just DNAT my public ip address to my private ip address.
    I defined a filter rule that allow from any to my private ip address with destination port 1723 and protocol GRE(number 47).

    I have a question.
    Do DNAT compatible with PPTP?

    Best regards.
    Ashkan
  • Please show your DNAT and packet filter rules.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA