[nsp] PPTP VPN on DMZ interface

info at beprojects.com info at beprojects.com
Fri Jul 2 16:15:25 EDT 2004


Are you trying to connect to the DMZ IP from traffic entering the OUTSIDE
interface?  If so, this won't work.  The first question would be, "why do
you want to do it this way?"  You can only vpn to the DMZ IP if the traffic
enters the DMZ interface.

----- Original Message ----- 
From: "Tony Mucker" <Tony at tonymucker.com>
To: <cisco-nsp at puck.nether.net>
Sent: Friday, July 02, 2004 1:51 PM
Subject: [nsp] PPTP VPN on DMZ interface


> Hello once again,
>
> My PIX 520 has three interaces, outside, inside, DMZ.  My routable class
> C is split down the middle, one half is outside, the other half is the
> DMZ net (/25).  I'm trying to get the PIX to accept PPTP connections
> (vpdn) on it's DMZ interface.  I've got it working fine and dandy on the
> outside interface, but it won't connect on the DMZ interface.   I've run
> the debug commands and tried logging in, but it appears the the PPTP
> client isn't even making a connection.
>
> Later, I'd like to add support for the Cisco VPN client (vpngroup), but
> also on the DMZ interface.
>
> Anyone try something like this before?
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>



More information about the cisco-nsp mailing list