VPN ports

M

Miha Bernik

Hi

Can someone please explain me, which ports do I need to open on our
company's firewall so that users could connect to our local VPN server
(running on Windows Server 2003)??
As I see for now, 1723 would be the right for PPTP?
But what about L2TP (IPSec)?? I red, that there must be also a 500 UDP port
and some kind of GRE protocol ???

Thanks for help
Regards
Miha
 
S

Steven L Umbach

Hi Miha.

Pptp requites tcp 1723 and protocol 47/gre which sometimes is referred to as pptp
passthrough.

L2tp requires udp 1701 and udp 500/IKE and also udp 4500 if NAT-T is used. Keep in
mind that l2tp will not work through a NAT device unless you are using the NAT-T
client on the client computer into a W2003 rras vpn server. The links below may
help. --- Steve

http://www.microsoft.com/resources/...3/enterprise/proddocs/en-us/sag_vpn_und13.asp
http://tinyurl.com/32jzv --- same link as above, shorter.
http://support.microsoft.com/default.aspx?scid=kb;en-us;818043
 
S

Steven L Umbach

Oops. I forgot to mention to also allow protocol 50/ESP for l2tp. It should be in the
links listed. --- Steve
 
M

Miha Bernik

Thank you for help and info.

Regards
Miha

Steven L Umbach said:
Oops. I forgot to mention to also allow protocol 50/ESP for l2tp. It
should be in the
links listed. --- Steve
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top