[pptp-server] Pptp thru Checkpoint firewall

Neale Banks neale at lowendale.com.au
Thu Aug 9 17:47:41 CDT 2001


On Thu, 9 Aug 2001, Douglas Olivier wrote:

> I have a client trying to connect to our working pptp server that uses a
> checkpoint firewall. Their tech claim to have opened up port 1723 fully,
> however when they try to connect I only see the start of the connection then
> they die off. I suspect \ they have not allowed protocol 47 to pass through
> the firewall.
> Does anyone have any experience with this product so I can enlighten the
> tech's ?

Yep, strictly from the School of Hard Knocks.  No warranties, YMMV, etc...

They need to allow outbound TCP sessions to port 1723 - it sounds like
this has been done.  They then need to allow not only outbound protocol 47
but also inbound protocol 47 (with whatever IP address constrainst are
applicable and/or wise).  This worked for me on a not-so-recent FW1,
amongst other things obviously YMMV with a more recent Checkpoint product.

HTH (and once again, no warranties, use the above info at own risk, etc),
Neale.




More information about the pptp-server mailing list