PDA

View Full Version : PPTP VPN WINDOWS XP pro SP2


mheuvelm
August 15th 04, 09:25 PM
Hi,

I am trying to make a connection by Windows VPN (pptp) thru the new FireWall
from sp2 of XP from my home to the server on my work.

Fact:
When disabling the FW: all =OK

When enabling the FW and adding the 1723 TCP port it will not pass the
Username/password screen.

How do I configure the FW?

Thanks,.

Regards,

Michel.

Torgeir Bakken \(MVP\)
August 15th 04, 09:31 PM
mheuvelm wrote:

> Hi,
>
> I am trying to make a connection by Windows VPN (pptp) thru the new FireWall
> from sp2 of XP from my home to the server on my work.
>
> Fact:
> When disabling the FW: all =OK
>
> When enabling the FW and adding the 1723 TCP port it will not pass the
> Username/password screen.
>
> How do I configure the FW?
Hi

Troubleshooting Windows Firewall settings in Windows XP Service Pack 2
http://support.microsoft.com/default.aspx?kbid=875357

and

Description of the Windows Firewall feature in Windows XP
Service Pack 2
http://support.microsoft.com/default.aspx?kbid=843090

Understanding Windows Firewall/Introduction
http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx


--
torgeir, Microsoft MVP Scripting and WMI, Porsgrunn Norway
Administration scripting examples and an ONLINE version of
the 1328 page Scripting Guide:
http://www.microsoft.com/technet/scriptcenter/default.mspx

Jerry Baker
August 15th 04, 09:34 PM
mheuvelm wrote:

> Hi,
>
> I am trying to make a connection by Windows VPN (pptp) thru the new FireWall
> from sp2 of XP from my home to the server on my work.
>
> Fact:
> When disabling the FW: all =OK
>
> When enabling the FW and adding the 1723 TCP port it will not pass the
> Username/password screen.
>
> How do I configure the FW?
>
> Thanks,.
>
> Regards,
>
> Michel.

I am having the same problem. This has been an ongoing problem. Take a
look in the microsoft.public.windows.networking.firewall newsgroup for
more discussion. The thread is titled "VPN Fails After XP SP2."

mheuvelm
August 15th 04, 10:33 PM
Strange! When editing the registry I came to a strange …

When changing the value on:

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\S haredAccess\Parameters\FirewallPolicy\StandardProf ile\GloballyOpenPorts\List]
,-22007"
,-22008"
,-22004"
,-22005"
,-22001"
,-22002"
"1723:TCP"="1723:TCP:*:Enabled:PPTP"

change "1723:TCP"="1723:TCP:*:Enabled:PPTP"

to "1724:TCP"="1724:TCP:*:Enabled:PPTP"

and back to the correct setting "1723:TCP"="1723:TCP:*:Enabled:PPTP"

Doing this and I can connect 1 time only, changing again each time, and i
connect only 1 time?

Anybody have a suggestion? I you ask me nobody at MS tested this FW using
PPTP….?

Michel.


"mheuvelm" wrote:

> Hi,
>
> I am trying to make a connection by Windows VPN (pptp) thru the new FireWall
> from sp2 of XP from my home to the server on my work.
>
> Fact:
> When disabling the FW: all =OK
>
> When enabling the FW and adding the 1723 TCP port it will not pass the
> Username/password screen.
>
> How do I configure the FW?
>
> Thanks,.
>
> Regards,
>
> Michel.
>

Jerry Baker
August 16th 04, 07:40 AM
mheuvelm wrote:
> Anybody have a suggestion? I you ask me nobody at MS tested this FW usi=
ng=20
> PPTP=E2=80=A6.?

The problem I see is different. I have 1723:TCP open, but I still cannot =

connect. There are no other firewalss or routers involved. As soon as I=20
turn off ICF, it works fine. The really odd part is that if I try to=20
connect, press the cancel button while it is trying to connect, and then =

try to connect again, it works every time.

mheuvelm
August 17th 04, 08:39 AM
Doesn't work for me...? Why?



"Jerry Baker" wrote:

> mheuvelm wrote:
> > Anybody have a suggestion? I you ask me nobody at MS tested this FW using
> > PPTP….?
>
> The problem I see is different. I have 1723:TCP open, but I still cannot
> connect. There are no other firewalss or routers involved. As soon as I
> turn off ICF, it works fine. The really odd part is that if I try to
> connect, press the cancel button while it is trying to connect, and then
> try to connect again, it works every time.
>

Google