Virtual Private Networks vpn endpoint inside firewall

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
vpn endpoint inside firewall Jaz 11-02-06
Posted by Jaz on November 2, 2006, 2:47 pm
Please log in for more thread options

Hi all,

When placing a VPN router/server inside a firewalled network, I assume
it will be fine to just attach one LAN-side port to the local LAN, and
not have a connection to the vpn router's WAN port. Yes?

My firewall router is a Linksys WRT54G v3.0 running HyperWRT v15c. I'm
using this setup because I need lots of ports forwarded (more than
what's available with the standard firmware), and I need to be able to
forward GRE using iptables. And I'd like to keep the firewall separate
from the vpn endpoint.

For the vpn endpoint I'll be using a Netscreen, Netgear, D-Link, or
Linksys. The client will be an XP laptop running a clinet that's IPsec
-- either the vpn device's proprietary client or TheGreenBow, etc.

Alternately, I could move the WRT54G to the inside and use it as just
a wireless access point, but I'd need to port-forward 30+ ports.
(usually soho routers only allow 10 or so.)

I've had trouble setting up various software VPN servers:

A) XP host inside private network listening for VPN conections:
-- I forwarded nececary ports, plus used IP tables to be sure the
GRE is forwarded.
-- Got 721 error. Tried & tried & tried. No joy.

B) OpenVPN running on same XP box:
-- Bridged network and Tapi interfaces.
-- On laptop, worked okay, but soon stopped.
-- Note, when switching from Ethernet to Wireless must delete
bridege, recreate & rename bridge on new interface. PITA.

So, what's the popular physical arrangement for a soho VPN box inside
the firewalled home LAN?

Thanks in advance.

Similar ThreadsPosted
vpn endpoint inside firewall November 2, 2006, 2:47 pm
Wireless AP with VPN endpoint October 6, 2005, 2:28 pm
Best choice of a Firewall with VPN? April 1, 2006, 6:49 am
SoftRemote VPN Client with Checkpoint Firewall February 16, 2005, 9:05 am
Zywall 70 Firewall problems with the new Firmware March 25, 2005, 5:36 am
Netscreen 5GT vs. Symantec Enterprise Firewall 7.04 July 21, 2005, 10:25 pm
Netgear ProSafe VPN Firewall FVS318 July 26, 2006, 7:06 pm
A question about Checkpoint firewall and Telnet over VPN November 5, 2006, 4:45 pm
Netgear ProSafe FVS318 VPN Firewall September 27, 2007, 5:23 pm
Cisco Router and Watchguard VPN and Firewall November 26, 2007, 4:46 pm
Ports to open to the firewall (Hide Nat, Cisco VPN) June 3, 2005, 1:48 pm
Newbie - Firewall and NetBIOS problems on a simple VPN connection. August 27, 2005, 12:30 am
Windows VPN server; multiple clients behind firewall question October 24, 2005, 11:24 pm
Does anyone know howto setup the openvpn server on Endian firewall? February 22, 2006, 2:11 pm
D-link VPN Connects OK, WinXP SP2 Firewall blocks access to drive map May 15, 2005, 5:53 pm