Re: [SLUG] Problems with iptables GRE

2006-02-27 Thread Peter Rundle
Howard, I don't know if it helps but. to allow PCs inside a PIX firewall to access a pptp server on the outside I had to allow gre in both directions. I.E the pptp server needs to send gre packets to the PC but the traffic from the server to the PC is not seen as part of the outbound

Re: [SLUG] Problems with iptables GRE

2006-02-27 Thread Howard Lowndes
Peter Rundle wrote: Howard, I don't know if it helps but. to allow PCs inside a PIX firewall to access a pptp server on the outside I had to allow gre in both directions. I.E the pptp server needs to send gre packets to the PC but the traffic from the server to the PC is not seen as

[SLUG] Problems with iptables GRE

2006-02-26 Thread Howard Lowndes
I'm trying to get PPTP working across a Linux firewall. I have set up forwarding and DNAT for tcp/1723 (pptp) and also for GRE (proto 47). It will pass the tcp/1723 but wont pass the GRE. I can get ipsec to forward just fine, but this is tunnelling for those stupid boxes so the client wants