[nsp] PPTP VPN on DMZ interface

Tony Mucker Tony at tonymucker.com
Fri Jul 2 17:48:08 EDT 2004


Ah, that makes sense.  In other words, No.

That's fine I suppose.  Simplifies it.

Thanks much!

info at beprojects.com wrote:

>Are you trying to connect to the DMZ IP from traffic entering the OUTSIDE
>interface?  If so, this won't work.  The first question would be, "why do
>you want to do it this way?"  You can only vpn to the DMZ IP if the traffic
>enters the DMZ interface.
>
>----- Original Message ----- 
>From: "Tony Mucker" <Tony at tonymucker.com>
>To: <cisco-nsp at puck.nether.net>
>Sent: Friday, July 02, 2004 1:51 PM
>Subject: [nsp] PPTP VPN on DMZ interface
>
>
>  
>
>>Hello once again,
>>
>>My PIX 520 has three interaces, outside, inside, DMZ.  My routable class
>>C is split down the middle, one half is outside, the other half is the
>>DMZ net (/25).  I'm trying to get the PIX to accept PPTP connections
>>(vpdn) on it's DMZ interface.  I've got it working fine and dandy on the
>>outside interface, but it won't connect on the DMZ interface.   I've run
>>the debug commands and tried logging in, but it appears the the PPTP
>>client isn't even making a connection.
>>
>>Later, I'd like to add support for the Cisco VPN client (vpngroup), but
>>also on the DMZ interface.
>>
>>Anyone try something like this before?
>>_______________________________________________
>>cisco-nsp mailing list  cisco-nsp at puck.nether.net
>>https://puck.nether.net/mailman/listinfo/cisco-nsp
>>archive at http://puck.nether.net/pipermail/cisco-nsp/
>>
>>    
>>
>
>_______________________________________________
>cisco-nsp mailing list  cisco-nsp at puck.nether.net
>https://puck.nether.net/mailman/listinfo/cisco-nsp
>archive at http://puck.nether.net/pipermail/cisco-nsp/
>  
>



More information about the cisco-nsp mailing list