Microsoft VPN (RRAS) through D-Link DIR-655 = ARGH! - TechRepublic
General discussion
August 21, 2007 at 09:34 AM
chris

Microsoft VPN (RRAS) through D-Link DIR-655 = ARGH!

by chris . Updated 15 years, 6 months ago

Hi everyone. I’m absolutely stumped as to why I cannot make my VPN accessible from outside the network. Previously, I had a Linksys WRT54GS with the Thibor firmware. It worked like a dream. This new router is nothing short of amazing, but I can’t get the VPN to pass through it.

I’ve tried just about everything. The problem seems to be GRE packets are not passing through the router. This is a testy subject, as GRE is neither TCP or UDP, so it’s difficult to forward. I do, however, have PPTP and IPSec ticked in the Advanced > Firewall Settings > ALG Configuration.

Here’s what I’ve forwarded (which is probably more than I need):

Port 47: Both TCP & UDP
Port 50: Both TCP & UDP
Port 1723: TCP
Port 500: UDP
Port 4500: UDP
Port 1701: UDP

…and as I said earlier, I have both PPTP and IPSec checked.

This is the error I’m getting:

A connection between the VPN server and the VPN client 67.*.*.* has been established, but the VPN connection cannot be completed. The most common cause for this is that a firewall or router between the VPN server and the VPN client is not configured to allow Generic Routing Encapsulation (GRE) packets (protocol 47). Verify that the firewalls and routers between your VPN server and the Internet allow GRE packets. Make sure the firewalls and routers on the user’s network are also configured to allow GRE packets. If the problem persists, have the user contact the Internet service provider (ISP) to determine whether the ISP might be blocking GRE packets.

I also get a string of errors on the server from the printers from the outside network showing up in the event log of the VPN server (at least something is showing up…)

I’m completely at a loss. I don’t know what to do. Oh yeah…. the error I get on the remote computer is Error 721, of course.

The last thing I can think of to try is to upgrade the firmware on the DIR-655. It’s currently at 1.03, but 1.05 is out. I haven’t tried this because I’m working the issue remotely. I’ll be at the router this afternoon, so I’ll try that then. I just figured I’d pick everyone’s brain while I was waiting?

This discussion is locked

All Comments