cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
2
Replies

PPTP

paltel
Level 1
Level 1

I have the following problem, when i enforce the clients to connect through PPTP connection, they can't use Internet. Only the tunneled networks they can use.

Thaks in advance

2 Replies 2

gfullage
Cisco Employee
Cisco Employee

There is no concept of split-tunnelling in PPTP, it is a Point-to-Point connection, so all traffic goes over the tunnel. It is up to your head-end PPTP server to try and redirect the traffic out to the Internet, and this can get very messy. If you're connecting to a PIX then you can't do it at all. If you're connecting to a router or VPN3000 then you can do it, but you need to take NAT'ing into account, since the PPTP packets will be sourced from your PPTP pool of IP addresses (usually private addresses), so if these just get routed out to the Internet then the return traffic will get dropped.

Send us your config if this is a router and I'll show you how to do it.

Hi,

Look, i have Concentrator.VPN clients have special private pool. i understand you, all the traffic goes through Concentrator because all the traffic tunneled. with IPSec, only configured networks will be tunneled through the concentrator, but the UN-configured networks will go direct from client PC to the internet without passing through the concentrator.

My default route at the concentrator is Internet, so when PPTP user wants to browse the internet, it will go through this default route but it is private IP, so the problem with the response, right?

please tell me how to do this?

Thank you