Firewall Wizards mailing list archives

RE: Re: Needed open ports other than 1723 for MS VPN?


From: yehuda <yehuda () essutton com>
Date: Mon, 26 Mar 2001 11:13:27 -0500


I don't have gauntlet so I cannot test it. As far as I know GRE does not
have "ports". GRE is protocol #47. (as a reference, TCP is protocol #6, ICMP
is protocol #1, and UDP is protocol #17).
-----Original Message-----
From: COMPUTER TECHNOLOGIES PVT. LTD. [SMTP:computertechnologies () vsnl com]
Sent: Monday, March 26, 2001 3:53 AM
To:   yehuda
Subject:      Re: [fw-wiz] Re: Needed open ports other than 1723 for MS
VPN?

Hi,
In gauntlet firewall we add packet screen rule. We use protocol GRE PPTP
that uses port  47.

Let me know the status.
regards,
srinivas
----- Original Message -----
From: yehuda <yehuda () essutton com>
To: 'COMPUTER TECHNOLOGIES PVT. LTD.' <computertechnologies () vsnl com>
Sent: Thursday, March 22, 2001 10:23 PM
Subject: RE: [fw-wiz] Re: Needed open ports other than 1723 for MS VPN?


You mean protocol 47, not port 47. Unless Gauntlet refers to protocols as
"ports" (I've never used Gauntlet).

-----Original Message-----
From: COMPUTER TECHNOLOGIES PVT. LTD.
[SMTP:computertechnologies () vsnl com]
Sent: Thursday, March 22, 2001 2:50 AM
To: firewall-wizards () nfr com
Cc: srinivasswami () usa net
Subject: [fw-wiz] Re: Needed open ports other than 1723 for MS VPN?

Hi,
I have sucessful passed VPN Client through NAI's Gauntlet Firewall 5.5
on
NT
4.0.
If your doing connectivity for PPTP then follow following setting.
Site 1
1. Allow port 47 from trusted and untrusted network
2. Allow port 1723 from trusted and untrusted network
3. Absorb traffic from untrusted
Site 2
1. Allow only port 47 for trusted and untrusted network

I have tried pptp at site 1 and site 2, i don't know site 1 settings is
not
successfully work at site 2.

Let me know the status.

Regards,
Srinivas

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: