DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

VPN from Mac 10.6 Snow Leopard to Vigor 2820n

  • brewj
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
03 May 2010 09:05 #61869 by brewj
Hi there,

I am a little new to this so I have probably missed an obvious trick some where along the lines.

I have followed the instructions at both
http://www.draytek.co.uk/support/vpn_setup2.html
and
http://www.zimbio.com/Virtual+private+networks/articles/03uv5xjtsw5/Setting+up+PPTP+VPN+between+Draytek+2820+Router

I have all the remote access control methods enabled
PPP General setup is untouched
IPSec is untouched
Remote Dial-In User has my single user added

However when trying to establish this VPN connection from either inside my network or connected to my mobile 3G modem I get an error from Mac OS saying the 'PPTP-VPN server did not respond'

As well as trying to connect to my IP address I have tried establishing a VPN connection from inside my network with the internal address of my router and I get the same results. I have spoken to my ISP and they say there is nothing they are doing to block the VPN.

Is there a firewall rule I need to apply to open ports related to VPN?

MacBookPro - Snow Leopard 10.6.3
Draytek Vigor 2820n 3.3.3_232201

Please Log in or Create an account to join the conversation.

More
04 May 2010 09:30 #61891 by gcp
I'm a bit confused why you are trying to connect to your VPN internally. That just won't work.

I have the same set-up. MacBook pro to Vigor 2820. I have set-up a simple PPP connection and it works ok, connecting on my iPhone or via my 3G dongle on my MacBook - but obviously only externally.

Do you have a static IP address or are you using DDNS?

Please Log in or Create an account to join the conversation.

  • brewj
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
04 May 2010 09:51 #61892 by brewj
The internal attempt was me clutching at straws.

I have a static IP Address pinging doesn't responde due to my firewall. However with the use of Zenmap http://nmap.org/zenmap/ I can see that it is my router and what ports are open.

Surly it's not that difficult is it?

Please Log in or Create an account to join the conversation.

More
04 May 2010 09:55 #61893 by gcp
First thing I would do is temporarily un-tick "Disable PING from the Internet" on the router management page and double check you can ping it directly.

Put it back on afterwards.

Please Log in or Create an account to join the conversation.

  • brewj
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
04 May 2010 11:02 #61894 by brewj
Ok I so with PING from the Internet enabled I can successfully ping my router from my mobile connection. I can also log into the router from the mobile connection. So I can confirm that my IP address is good.

Are there any ports that I need to open to enable VPN?

Am I right to be attempting to my external IP address without any port number?

Thanks for your help.
Brew

Please Log in or Create an account to join the conversation.

  • brewj
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
07 May 2010 08:38 #61937 by brewj
Replied by brewj on topic Resolved
So I've got it all working what I've done is,

Added opened TCP/UDP on Port 1723
Added Protocol: 47
To the Data Filters (Firewall rules)

And importantly then re-booted the router and all is now working well

Could the opening of port pleased be added to the how to VPN work?

Brew

Please Log in or Create an account to join the conversation.

Moderators: ChrisSami