the following quotation from
http://www.ChicagoTech.net is just the samepl
for openning VPN ports.
How to open Cisco PIX 515 firewall ports for inside VPN accessing outside
VPN server
Symptom: When attempting to connect to a VPN server on the outside of the
PIX it returns error 721, the computer failed to respond.
Resolution: In order to PPTP through a PIX, you must have a one-to-one
mapping from the external IP to an internal IP for type 47 GRE packets and
port 1723. Add for pptp: conduit permit gre host x.x.x.197 any AND conduit
permit tcp host x.x.x.197 eq 1723. For l2tp over ipsec: conduit permit esp
host x.x.x.197 any, conduit permit udp host x.x.x.197 eq 1701 any AND
conduit permit udp host x.x.x.197 eq 500 any.
--
For more and other information, go to
http://www.ChicagoTech.net
Don't send e-mail or reply to me except you need consulting services.
Posting on MS newsgroup will benefit all readers and you may get more help.
Robert Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
http://www.ChicagoTech.net
This posting is provided "AS IS" with no warranties.