ISA Server 2004 VPN Clients cannot connect

Tech-Archive recommends: Fix windows errors by optimizing your registry



Greetings Everyone,

I have recently implemented a Microsoft ISA 2004 server and would like to
use the VPN server portion of it in conjunction with the firewall and proxy.
I am able to connect and authenicate to the VPN server and use all
client/server apps as long as the ACL on my Cisco 1700 series is not applied.
As soon as I apply the ACL my Windows clients receive error 721. This is a
denial of GRE packets. I have included the two lines that I have added to my
ACL to allow access to the VPN server. Port 1723 traffic is passing fine but
I cannot seem to get the VPN clients connected to the network. Are there any
additional ports that I should be adding statements for?

access-list 128 permit tcp any host 208.48.XXX.XXX eq 1723 log
access-list 128 permit tcp any host 208.48.XXX.XXX eq 47 log

My next step was to maybe change permit TCP to permit IP.

Thanks!

--
Wayne Hutchinson
IT Operations Manager
.



Relevant Pages

  • Re: ip address assignment and static routes
    ... This may be because of address assignment to VPN clients from VPN Server. ... address which network resources will not know how ...
    (microsoft.public.win2000.ras_routing)
  • Re: VPN server
    ... Subject: VPN server ... windows 2k/xp clients, and enable them to use internet ... This e-mail message, including any attachments, is ... If you are not the intended recipient, ...
    (freebsd-questions)
  • Re: Windows 2003 Radius (IAS)
    ... or any such entry points. ... > you have a VPN server, the VPN server would be one "RADIUS client" You ... >> RADIUS clients on the standard version of Windows 2003? ...
    (microsoft.public.internet.radius)
  • Using mpd5 to connect two (or more sites) - Perhaps OT
    ... I have used mpdas a VPN server for clients and both have worked very ... What I need to understand is how the one originating is ... "Life must be understood backwards; ...
    (freebsd-questions)
  • Re: Windows 2000 Professional - PPTP and NetBIOS over TCP/IP
    ... communicate with other machines behind the VPN server? ... > connect from Windows XP clients and all other Windows 2000 Pro clients. ... > under TCP/IP Advance settings is not available. ...
    (microsoft.public.win2000.networking)