Sophos Community
User
Site
Search
User
Toggle Mobile menu
Community & Product Forums
Blogs
Partners
Events & Webinars
Getting Started
Support Portal
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Sophos Mobile
Network Security
Sophos Firewall
ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
Services
Management platform
Sophos Central
Support Portal
Sophos Community log in
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Rewards program
Leaderboard
Products and Services
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Sophos Mobile
Network Security
Sophos Firewall
ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
Services
Management platform
Sophos Central
Support Portal
Sophos Community log in
Blogs
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Partners
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting Started
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Rewards program
Leaderboard
Support Portal
Guest User!
You are not Sophos Staff.
UTM Firewall
VPN: Site to Site and Remote Access
Limit PPTP-access to specific IPs?
Release Notes & News
Discussions
Recommended Reads
Members
Lifecycle and Migration
More
Cancel
New
UTM Firewall requires membership for participation - click to join
Thread Info
State
Not Answered
Locked
Locked
Replies
7 replies
Subscribers
1 subscriber
Views
2067 views
Users
0 members are here
Options
RSS
More
Cancel
Suggested
This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion
Limit PPTP-access to specific IPs?
swift
over 23 years ago
Hi there!
The subject says all: Is it possible to limit PPTP-access to specific IPs? If yes, how?
... swift
This thread was automatically locked due to age.
Parents
0
comeanddance
over 23 years ago
configure packet filter rules based on your pptp pool addresses and your ip addresses you want the pptp pool to access or restrict
Cancel
Vote Up
0
Vote Down
Cancel
0
swift
over 23 years ago
in reply to
comeanddance
Sorry, I can't figure out how to do that.
Which port must I use in the packet filter to disallow PPTP? It seems that it is allowed for all IPs by default..?
Please give me a hint what to do. Thanx in advance!
... swift (tobias wiersch)
Cancel
Vote Up
0
Vote Down
Cancel
0
comeanddance
over 23 years ago
in reply to
swift
pptp-pool - any - IPs - allow
pptp-pool - any - any - drop
Cancel
Vote Up
0
Vote Down
Cancel
0
swift
over 23 years ago
in reply to
comeanddance
Hmm, when I understand this correct, this would mean that I'm still be able to log in via PPTP from ANY IP but I cannot use any service then (except when I have the correct IP) - right?
... swift
Cancel
Vote Up
0
Vote Down
Cancel
0
ollion
over 23 years ago
in reply to
swift
Swift,
you can always login from any IP, but
the user has to provide his STRONG password
and Username.
There is no need to enable ANY access to your
private network if you want to share e.g. only email!
If you assign ip addresses statically you are able to define
user based rules!
Regards
ollion
Cancel
Vote Up
0
Vote Down
Cancel
0
swift
over 23 years ago
in reply to
ollion
Thanks for your reply.
Ok, if I can log in from any IP, then all depends on the choosen password.
Can the PPTP-password be longer that 8 chars?
... swift
Cancel
Vote Up
0
Vote Down
Cancel
0
Polluxxx
over 23 years ago
in reply to
swift
Hi swiff,
yes passwords up to 14 characters are supporeted.
Using pptp the encryption strength is based on the length of the password.
longer password -> stronger encryption
an 8 character password can be brute forced withing 2-3 weeks with a regular desktop processor.
kind refgards
Polluxxx
Cancel
Vote Up
0
Vote Down
Cancel
Reply
0
Polluxxx
over 23 years ago
in reply to
swift
Hi swiff,
yes passwords up to 14 characters are supporeted.
Using pptp the encryption strength is based on the length of the password.
longer password -> stronger encryption
an 8 character password can be brute forced withing 2-3 weeks with a regular desktop processor.
kind refgards
Polluxxx
Cancel
Vote Up
0
Vote Down
Cancel
Children
No Data