Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN Port Numbers

Status
Not open for further replies.

swoodsmcse

IS-IT--Management
Dec 18, 2001
62
US
What ports have to be open on my firewall to let a VPN connection through. I can connect fine on my lan but over the internet i have no luck. Thanks.
 
NAT on a firewall generally will nuke a VPN connection. Are you referring to a Win2k VPN?
-Steve
 
Yes I am referring to a Win2K VPN i actually dont have a dedicated firewall, i have a cisco router running nat and i need to let vpn connections pass through the router to the Win2K VPN server.
 
Port 1723 is correct. Port 47 is not correct. I see this mistake too many times. Port 47 that many people refer to is NOT TCP/UDP. It is IP protocol 4 which is GRE. Port 47, according to is actually NI FTP.

Your router or firewall must have PPTP pass-through to allow the GRE 47 to pass. This is in addition to port 1723.
 
Slight correction to my previous post.

Port 1723 is correct. Port 47 is not correct. I see this mistake too many times. Port 47 that many people refer to is NOT TCP/UDP. It is IP protocol 47 which is GRE. Port 47, according to is actually NI FTP.

Your router or firewall must have PPTP pass-through to allow the GRE 47 to pass. This is in addition to port 1723.
 
If you really want to use win2k for tunneling, use L2PT instead of PPTP. It uses IPSec instead of the borked MPPE.
In other words is more secure and stable than PPTP.
The ports to use are UDP 500 and 1701. So allow your Router to have it pass-through these ports, and forward them to your Win2k box.

But seriously... get a firewall in place ASAP!!! A router running nat is not enough!

Anyways, have fun!

John den Braber

 
I got a LINKSYS Router; I can’t run VPN while it’s connected. HELP
 
gsoasad,
I'd recommend #1 - starting a new thread, as this one is pretty much done, and #2 - providing considerably more detail as to your problem - cablemodem/DSL or other sort of router, what kind of VPN, what error messages or symptoms do you see, what have you tried so far, etc etc etc. The more detail you give, the more easily the folks around here can help you out.
-Steve
 
GTI4Life is correct, not many people know protocol 47, GRE, not port 47.
 
I am trying to create a WIN2k vpn server but when using my linksys it will not work. What ports do I have to foward for PPTP? If I just open port 1723 it does not work
 
i get error 650 when trying to connect to my vpn through the linksys using the above mentioned ports. help?!
 
pjstop,
I'd recommend starting a new thread, as this one is pretty much done, and telling us where that error 650 shows up. The more detail you give, the more easily the folks around here can help you out.
-Steve
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top