Connecting to a VPN from inside my network works fine.
The VPN server is behind NAPT on a DSL router and NAT on a masquerading
firewall. I've opened up protocol 50, UDP port 500 and even experimented
with L2TP port 1701/UDP, even though it seems it should all be handled by
ESP over protocol 50.
Now my belief is that this should be possible
When I try and connect from outside the network, I get DUN error 791: 791
The L2TP connection attempt failed because security policy for the
connection was not found.
I assume this means traffic is stopping at the router or firewall because
there is nothing logged on the VPN server (running Win2k Server.)
Short of upgrading to Windows Server 2003, which seems to support the new
NAT'able IPSEC implementation, is there a solution?
Cheers
Craig
"Craig Box" <cr...@munged-email-address.itpartners.co.nz> wrote in message
news:uNbytU17...@TK2MSFTNGP11.phx.gbl...
http://www.microsoft.com/windows2000/server/evaluation/news/bulletins/l2tpcl
ient.asp
--
Oliver
This posting is provided "AS IS", with NO warranties and confers NO rights
"Bill Grant" <bill_...@bigpond.com> wrote in message
news:#mC59L27...@TK2MSFTNGP10.phx.gbl...
Is NAT traversal only going to be in Windows 2003 server or will it be made
available for earlier server versions as well?
Thanks,
Ray
"Oliver Saal [MS]" <oliv...@online.microsoft.com> wrote in message
news:#MujNGB8...@TK2MSFTNGP11.phx.gbl...
--
--
Dusty Harper
Microsoft Corporation
----------------------------------------------------------------------------
This posting is provided "AS IS", with NO warranties and confers NO rights
----------------------------------------------------------------------------
"Ray" <repl...@newsgroup.only> wrote in message
news:OSVbzhk8...@TK2MSFTNGP10.phx.gbl...
The question is why cant an external L2TP/IPSEC client create an L2TP/IPSEC
connection through an external Firewall (Linksys for example) to the
internel VPN server on a back to back DMZ when PPTP works fine, IPSEC pass
through is enabled, and port filters are enabled (1701, 500) on the external
firewall???
"Craig Box" <cr...@munged-email-address.itpartners.co.nz> wrote in message
news:uNbytU17...@TK2MSFTNGP11.phx.gbl...
As for Linksys, I understand their latest firmware fixes some IPSec
problems.
Ray
"BobS" <bo...@itproscorp.com> wrote in message
news:uWLGeY6K...@tk2msftngp13.phx.gbl...