Re: VPN ports

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 06/21/04


Date: Mon, 21 Jun 2004 18:42:39 GMT

Hi Miha.

Pptp requites tcp 1723 and protocol 47/gre which sometimes is referred to as pptp
passthrough.

L2tp requires udp 1701 and udp 500/IKE and also udp 4500 if NAT-T is used. Keep in
mind that l2tp will not work through a NAT device unless you are using the NAT-T
client on the client computer into a W2003 rras vpn server. The links below may
help. --- Steve

http://www.microsoft.com/resources/documentation/WindowsServ/2003/enterprise/proddocs/en-us/Default.asp?url=/resources/documentation/WindowsServ/2003/enterprise/proddocs/en-us/sag_vpn_und13.asp
http://tinyurl.com/32jzv --- same link as above, shorter.
http://support.microsoft.com/default.aspx?scid=kb;en-us;818043

"Miha Bernik" <miha.bernik@gvskupina.si> wrote in message
news:u%23KHBd7VEHA.644@tk2msftngp13.phx.gbl...
> Hi
>
> Can someone please explain me, which ports do I need to open on our
> company's firewall so that users could connect to our local VPN server
> (running on Windows Server 2003)??
> As I see for now, 1723 would be the right for PPTP?
> But what about L2TP (IPSec)?? I red, that there must be also a 500 UDP port
> and some kind of GRE protocol ???
>
> Thanks for help
> Regards
> Miha
>
>



Relevant Pages

  • RE: VPN connection not passing the password auth stage.
    ... The Generic Route Encapsulation protocol is used ... One thing I want to clarify is that GRE protocol is based on Internet ... We can also use PPTP Ping utility to determine whether any hardware router ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • [PATCH 1/22] trivial: fix typo "a a" in multiple files
    ... * Returns zero if volume is all right and a a negative error code if not. ... NAT support for PPTP (Point to Point Tunneling Protocol). ...
    (Linux-Kernel)
  • Re: setting VPN server with win2k
    ... Be sure to configure your firewall/router before your vpn server ... for the client as that will improve your security tremendously using pptp. ... Windows 2000 client computer, configure the vpn connectoin to use pptp, and not the ...
    (microsoft.public.win2000.ras_routing)
  • Re: VPN with W2K client and XP Pro host
    ... Apparently you can manually add a Protocol number in the Protocol field. ... Its very possible, as Robin mentioned, the device does not support PPTP VPN at all inbound... ... >> incoming connections, but there are no incoming connections. ... >>>>> The router has been configured to allow TCP and GRE ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: VPN connections
    ... RDC 3389 Both (TCP/UDP) protocol ... All these ports are listed as exceptions within the Windows Firewall setup. ... > Are you trying to make a VPN with PPTP or with L2TP? ...
    (microsoft.public.windowsxp.work_remotely)