Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

pipeline 75 pptp or ipsec bypass

Status
Not open for further replies.

doncade

IS-IT--Management
Feb 27, 2003
4
US
I have an old Pipeline 75 ISDN router that I would like to VPN tunnel through using either IPSEC or PPTP. I do have NAT active. I have not been able to find a way to get the VPN traffic past the NAT. I have other routers configured to allow the IPSEC or PPTP through, but I'm stuck on the Pipeline. Any ideas?
 
You cannot do IPSec pass-through on the Pipeline. But you can do PPTP pass-through.

You must be on software version 7.3.2 or higher. Then you need to configure a static map to forward TCP port 1723 to your PPTP client/server. Then set the tunnel server parameter to your PPTP client/server to forward the IP protocol 47. All of this is in the NAT menu.
 
This is the static map I have setup:

Static Map 01
>Valid=Yes
Dst Port #=1723
Protocol=TCP
Loc Port #=1723
Loc Adrs=10.10.0.100


In the NAT configuration, I don't see where I can forward port IP protocol 47. Am I in the wrong area?

Valid=Yes
Name=NAT-CONVERTED
VC address=0.0.0.0
Lan=Single IP addr
Static Mappings...
Def Server=0.0.0.0
Tunnel Server=0.0.0.0
Reuse last addr=Yes
Reuse addr timeout=0
No NAT Net=0.0.0.0/0
Alt NAT addr=0.0.0.0
Idle TCP Timeout=1440

Thank You
 
Sorry have not been on this board for a while.

to quote my previous response, "Then set the tunnel server parameter to your PPTP client/server to forward the IP protocol 47."

Tunnel server parameter is between Def server and Reuse last addrs parameters.
 
I have my tunnel server address set to my PPTP switch address. In your response "Then set the tunnel server parameter to your PPTP client/server to forward the IP protocol 47." I don't understand how to forward port 47 in the tunnel server parameter.

Thank You

 
The tunnel server parameter is specifically for forwarding IP protocol 47 to your private LAN. Set this to match the static mapped IP address for TCP 1723. In this case you should set tunnel server to 10.10.0.100 (same as your PPTP client/server).
 
I hate to sound stupid, but when you say the address of the client/server, to me that means two different units. Is it the clients address, the servers address, or the routers address.

Thank you for your help.
 
I say client/server to imply that your workstation running PPTP is can either be the client trying to reach the PPTP server at a remote location or the server itself with other users trying to get to you. Either way you need to forward IP protocol 47. You definitely don't want to put the router's address since the router itself cannot be a PPTP tunnel endpoint. The IP address should be the workstation that is going to be the PPTP tunnel endpoint, whether its the client or the server.

I hope this makes more sense.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top