Created on ‎08-30-2004 04:29 AM
Created on ‎08-30-2004 02:07 PM
The problem with artiman' s way though, you have to do a static nat for this, and not use port forwarding (as this doesnt have a IP option, only tcp/udp)
So if you have only one external IP, you are stuffed, so i did it that way and it worked okay.
Originally I tried (as would be expected) forwarding destination port 1723 and protocol 47 to the virtual IP (static NAT) using a WAN to Internal policy. When I created the custom service above and added it to the WAN to Internal Policy the VPN connection could be initiated to the Windows server behind the firewall. Makes me want to
.
Do other agree that this appears to be a bug?
Cheers,
Philip
As they say RTFM or in this case RTF Predefined Service. I did not see protocol 47 + protocol 6 port 1723 defined for the predefined PPTP service.
I was attempting to forward protocol 47 using the predefined GRE service as well as the predefined PPTP service which also includes protocol 47. I' m sure this caused no end of confusion to the inards of the firewall.
BTW, it works fine now.
Thanks again.
Philip
| User | Count |
|---|---|
| 2737 | |
| 1418 | |
| 812 | |
| 739 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.