Win2003 VPN Issues

G

Greg Fischer

Posted this awhile ago, but got no responses. Thought I'd
post again ...

I have a Win2003 configured behind a Linksys DSL/Cable
router. The Win2003 system has one NIC. It can connect to
the Internet fine.

Machines on the internal 192.168.1.X subnet can VPN
(PPTP) to the 2003 machine.

The Linksys is configured to port forward 47 and 1723.

When I try to setup a VPN connection from outside the
firewall, the connection is denied and the following
error shows up in the IPRouterManager.LOG file:

[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Route addition failed with 57 for
[1076] 14:03:40: 192.168.1.0/255.255.255.128 Proto: 3
Metric 1
[1076] 14:03:40: Via 192.168.1.40/0x10002 Type 3 Context
0x0
[1076] 14:03:40: Route addition failed with 57 for local
route
[1724] 14:03:41: InterfaceConnected: InterfaceConnected
called for gfischer. State is 3
[1724] 14:03:41: BindFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:03:42: Error adding route, Stack bit == 0
[1724] 14:05:27: DeleteInterface: Deleting gfischer,
[1724] 14:05:27: DeleteFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:06:21: Error adding route, Stack bit == 0
[1076] 14:06:21: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:07:48: Error adding route, Stack bit == 0
[1076] 14:07:48: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:09:27: Error adding route, Stack bit == 0
[1076] 14:09:27: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:11:05: Error adding route, Stack bit == 0
[1076] 14:11:05: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32

Other log files indicate that the connection is being
initiated. I have tried from various different public IP
networks.

BTW - the VPN connection sets up fine with internal
machines, so I think RRAS is installed and working fine.

Any thoughts?
..
 
R

Robert L [MS-MVP]

what's the error code on the vpn client?

--
For more and other information, go to http://www.ChicagoTech.net

Don't send e-mail or reply to me except you need consulting services.
Posting on MS newsgroup will benefit all readers and you may get more help.

Robert Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
http://www.ChicagoTech.net
This posting is provided "AS IS" with no warranties.
 
J

jeremy

On the linksys, make sure you have UDP 500 for port
triggering as well as 1723 TCP. Also, verify that VPN
passthrough is enabled. If that doesn't work, I had a
problem that was fixed by updating the firmware (on a
soho3 not a linksys). Updating the firmware gave me the
option to transverse NAT, which I assume you are using
with only 1 nic. I would definetly check into this if on
the client side you are getting to "Verifying User Name
and Password".

Just a thought...

-----Original Message-----
what's the error code on the vpn client?

--
For more and other information, go to http://www.ChicagoTech.net

Don't send e-mail or reply to me except you need consulting services.
Posting on MS newsgroup will benefit all readers and you may get more help.

Robert Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
http://www.ChicagoTech.net
This posting is provided "AS IS" with no warranties.

Posted this awhile ago, but got no responses. Thought I'd
post again ...

I have a Win2003 configured behind a Linksys DSL/Cable
router. The Win2003 system has one NIC. It can connect to
the Internet fine.

Machines on the internal 192.168.1.X subnet can VPN
(PPTP) to the 2003 machine.

The Linksys is configured to port forward 47 and 1723.

When I try to setup a VPN connection from outside the
firewall, the connection is denied and the following
error shows up in the IPRouterManager.LOG file:

[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Route addition failed with 57 for
[1076] 14:03:40: 192.168.1.0/255.255.255.128 Proto: 3
Metric 1
[1076] 14:03:40: Via 192.168.1.40/0x10002 Type 3 Context
0x0
[1076] 14:03:40: Route addition failed with 57 for local
route
[1724] 14:03:41: InterfaceConnected: InterfaceConnected
called for gfischer. State is 3
[1724] 14:03:41: BindFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:03:42: Error adding route, Stack bit == 0
[1724] 14:05:27: DeleteInterface: Deleting gfischer,
[1724] 14:05:27: DeleteFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:06:21: Error adding route, Stack bit == 0
[1076] 14:06:21: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:07:48: Error adding route, Stack bit == 0
[1076] 14:07:48: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:09:27: Error adding route, Stack bit == 0
[1076] 14:09:27: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:11:05: Error adding route, Stack bit == 0
[1076] 14:11:05: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32

Other log files indicate that the connection is being
initiated. I have tried from various different public IP
networks.

BTW - the VPN connection sets up fine with internal
machines, so I think RRAS is installed and working fine.

Any thoughts?
.


.
 
G

Greg Fischer

Getting the standard 721 error at the client. From the
log files, it looks like the client is initiating the
connection per the logs, but the router error is
preventing it.
-----Original Message-----
what's the error code on the vpn client?

--
For more and other information, go to http://www.ChicagoTech.net

Don't send e-mail or reply to me except you need consulting services.
Posting on MS newsgroup will benefit all readers and you may get more help.

Robert Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
http://www.ChicagoTech.net
This posting is provided "AS IS" with no warranties.

Posted this awhile ago, but got no responses. Thought I'd
post again ...

I have a Win2003 configured behind a Linksys DSL/Cable
router. The Win2003 system has one NIC. It can connect to
the Internet fine.

Machines on the internal 192.168.1.X subnet can VPN
(PPTP) to the 2003 machine.

The Linksys is configured to port forward 47 and 1723.

When I try to setup a VPN connection from outside the
firewall, the connection is denied and the following
error shows up in the IPRouterManager.LOG file:

[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Route addition failed with 57 for
[1076] 14:03:40: 192.168.1.0/255.255.255.128 Proto: 3
Metric 1
[1076] 14:03:40: Via 192.168.1.40/0x10002 Type 3 Context
0x0
[1076] 14:03:40: Route addition failed with 57 for local
route
[1724] 14:03:41: InterfaceConnected: InterfaceConnected
called for gfischer. State is 3
[1724] 14:03:41: BindFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:03:42: Error adding route, Stack bit == 0
[1724] 14:05:27: DeleteInterface: Deleting gfischer,
[1724] 14:05:27: DeleteFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:06:21: Error adding route, Stack bit == 0
[1076] 14:06:21: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:07:48: Error adding route, Stack bit == 0
[1076] 14:07:48: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:09:27: Error adding route, Stack bit == 0
[1076] 14:09:27: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:11:05: Error adding route, Stack bit == 0
[1076] 14:11:05: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32

Other log files indicate that the connection is being
initiated. I have tried from various different public IP
networks.

BTW - the VPN connection sets up fine with internal
machines, so I think RRAS is installed and working fine.

Any thoughts?
.


.
 
G

Guest

Hi Greg,

I am not Microsoft, but maybe you have the same problem as me - just check
my question and MS answer in the thread "
VPN behind Cable/DSL router - why does not work?"

What is your Linksys router firmware version? I had latest 1.45.7 and it
would not work. After I downgraded to 1.44.2z, VPN started to work.

Regards,



Greg Fischer said:
Microsoft - any thoughts?
-----Original Message-----
Posted this awhile ago, but got no responses. Thought I'd
post again ...

I have a Win2003 configured behind a Linksys DSL/Cable
router. The Win2003 system has one NIC. It can connect to
the Internet fine.

Machines on the internal 192.168.1.X subnet can VPN
(PPTP) to the 2003 machine.

The Linksys is configured to port forward 47 and 1723.

When I try to setup a VPN connection from outside the
firewall, the connection is denied and the following
error shows up in the IPRouterManager.LOG file:

[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Route addition failed with 57 for
[1076] 14:03:40: 192.168.1.0/255.255.255.128 Proto: 3
Metric 1
[1076] 14:03:40: Via 192.168.1.40/0x10002 Type 3 Context
0x0
[1076] 14:03:40: Route addition failed with 57 for local
route
[1724] 14:03:41: InterfaceConnected: InterfaceConnected
called for gfischer. State is 3
[1724] 14:03:41: BindFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:03:42: Error adding route, Stack bit == 0
[1724] 14:05:27: DeleteInterface: Deleting gfischer,
[1724] 14:05:27: DeleteFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:06:21: Error adding route, Stack bit == 0
[1076] 14:06:21: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:07:48: Error adding route, Stack bit == 0
[1076] 14:07:48: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:09:27: Error adding route, Stack bit == 0
[1076] 14:09:27: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:11:05: Error adding route, Stack bit == 0
[1076] 14:11:05: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32

Other log files indicate that the connection is being
initiated. I have tried from various different public IP
networks.

BTW - the VPN connection sets up fine with internal
machines, so I think RRAS is installed and working fine.

Any thoughts?
..


.
 
B

Bill Grant

What you require is not port 47, but GRE, which is IP protocol 47. Port 47
(tcp or udp) has nothing to do with PPTP.

PPTP data travels through the Internet inside IP packets with GRE
headers. If anything in the path (routers, firewalls etc) blocks GRE, no
data is transferred.

NoSpam said:
Hi Greg,

I am not Microsoft, but maybe you have the same problem as me - just check
my question and MS answer in the thread "
VPN behind Cable/DSL router - why does not work?"

What is your Linksys router firmware version? I had latest 1.45.7 and it
would not work. After I downgraded to 1.44.2z, VPN started to work.

Regards,



Greg Fischer said:
Microsoft - any thoughts?
-----Original Message-----
Posted this awhile ago, but got no responses. Thought I'd
post again ...

I have a Win2003 configured behind a Linksys DSL/Cable
router. The Win2003 system has one NIC. It can connect to
the Internet fine.

Machines on the internal 192.168.1.X subnet can VPN
(PPTP) to the 2003 machine.

The Linksys is configured to port forward 47 and 1723.

When I try to setup a VPN connection from outside the
firewall, the connection is denied and the following
error shows up in the IPRouterManager.LOG file:

[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Error adding route, Stack bit == 0
[1076] 14:03:40: Route addition failed with 57 for
[1076] 14:03:40: 192.168.1.0/255.255.255.128 Proto: 3
Metric 1
[1076] 14:03:40: Via 192.168.1.40/0x10002 Type 3 Context
0x0
[1076] 14:03:40: Route addition failed with 57 for local
route
[1724] 14:03:41: InterfaceConnected: InterfaceConnected
called for gfischer. State is 3
[1724] 14:03:41: BindFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:03:42: Error adding route, Stack bit == 0
[1724] 14:05:27: DeleteInterface: Deleting gfischer,
[1724] 14:05:27: DeleteFilterInterface: No context,
assuming interface gfischer not added to filter driver
[1076] 14:06:21: Error adding route, Stack bit == 0
[1076] 14:06:21: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:07:48: Error adding route, Stack bit == 0
[1076] 14:07:48: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:09:27: Error adding route, Stack bit == 0
[1076] 14:09:27: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32
[1076] 14:11:05: Error adding route, Stack bit == 0
[1076] 14:11:05: ProcessDefaultRouteChanges: Not default
route 198.235.56.1/32

Other log files indicate that the connection is being
initiated. I have tried from various different public IP
networks.

BTW - the VPN connection sets up fine with internal
machines, so I think RRAS is installed and working fine.

Any thoughts?
..


.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top