VPN - XP VPN server behind Linksys error 721

This is Interesting: Free IT Magazines  
Home > Archive > VPN > August 2006 > XP VPN server behind Linksys error 721





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author XP VPN server behind Linksys error 721
Jaz

2006-08-30, 1:13 am



I'd like to run the XP pro VPN server (accept incomming connections)
behind a Linksys WRT54G router temporarily until I get a better VPN
endpoint. When I try using the stock firmware, there's no way to allow
GRE (protocol 47) to pass from outside to inside, and so I get the
Error 721 error from the Windows VPN client.

I installed HyperWRT + Thibor-15c firmware and enabled telnet.
Can somebody please explain how to:

1. Change rules to allow this VPN client & server
e.g. # iptables -A INPUT -p 47 -j ACCEPT
# iptables -A OUTPUT -p 47 -j ACCEPT
But then I need port forwarding, etc. Can someone please help
me with these iptables statements?

2. How to save this so that it will be permanent accross reboots?

3. I read somewhere that the IP addresses handed to the client can't
be within the same network/mask (e.g. if I run
192.168.1.0/255.255.255.0, then perhaps the clinet gets 192.168.50.x).
Is this true?

Thanks for any help!

(Please excuse the 'burp' when replying (b))
Leythos

2006-08-30, 7:14 pm

[vbcol=seagreen]

Error 721 is a clear indicator of GRE not being transmitted properly.

I have a WRT54g with several versions of Firmware, it will not allow
PPTP in or out properly, even the latest firmware does not fix this.

I have several other units that work fine, but, generally, 721 is always
GRE problems.

Switch from Linksys to D-Link and your problems should go away.

You might also consider using an access point instead of an all-in-one
box setup.

--

spam999free@rrohio.com
remove 999 in order to email me
Sponsored Links






Free braindumps | Software forum | Database administration forum

Copyright 2003 - 2008 webservertalk.com