cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
582
Views
5
Helpful
1
Replies

Windows XP PPTP passthrough Pix 515e

jyork2004
Community Member

First I am sorry if i am sending to the wrong list. Please let me know the appropriate place and i will move my question there.

We are merging with a company with a Pix 515e and a Cisco 1800 series router providing their Internet connection. i do not have access to their current configuration. I have been told the company who manages their configuration states the "fixup pptp 1723" command is in place on the pix.

We have a Watchguard firewall (i know don't laugh, it was here before i arrived). We use PPTP Windows IAS (RADIUS) MS-CHAP v2 to authenticate our VPN users.

From behind their firewall they are unable to get a VPN connection. I see where they initiate a connetion through our Watchguard however, they never make the connection to the RADIUS server for authentication. I know the config works as we have several other employees who VPN in regularly.

To make a quick comparison - it is the same response i see when a home user has a linksys firewall and has not enabled PPTP Passthrough.

Any suggestions would be appreciated.

Thanks.

Jim

1 Reply 1

p.krane
Level 7
Level 7

The fixup protocol pptp command inspects PPTP packets and dynamically creates the GRE connections and xlates necessary to permit PPTP traffic. Specifically, the firewall inspects the PPTP version announcements and the outgoing call request/response sequence.

http://www.cisco.com/warp/public/110/pix_pptp.html

Review Cisco Networking for a $25 gift card