NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
dysonp
Nov 27, 2012Aspirant
srxn3205 port forwarding
I am trying to connect to my mac server(mountain lion) via VPN using L2TP. On the SRXN3205, I have set up services for UDP ports 1701 and 4500 and under "Firewall", I have forwarded these ports to the local IP address of my server.
When I try to connect using VPN from outside my LAN, it does not work. If I connect inside the LAN, the server responds and connects via VPN so I know I have everything set up on the server working properly.
I have tried to telnet the port 4500 from outside and it timeouts. It apprears that the router is not forwarding the messages to my server. Does anyone know how I can get this working.
Many thanks.
When I try to connect using VPN from outside my LAN, it does not work. If I connect inside the LAN, the server responds and connects via VPN so I know I have everything set up on the server working properly.
I have tried to telnet the port 4500 from outside and it timeouts. It apprears that the router is not forwarding the messages to my server. Does anyone know how I can get this working.
Many thanks.
15 Replies
- jmizoguchiVirtuosostupid question but WAN of prosafe do have public IP correct? :)
- dysonpAspirantYes, I am using the correct public IP.
- jmizoguchiVirtuosoSince the LAN works I assume firewall on Mountain Lion is off under system pref>security & privacy?
- dysonpAspirantYes, the firewall is off.
- dysonpAspirantI have done some further investigation of the problem and when I try to connect to the mac VPN server, the router logs say:
2012 Nov 27 17:00:37 [SRXN3205] [IKE] Could not find configuration for xxx.xx.xx.xxx[500]_
2012 Nov 27 17:00:37 [SRXN3205] [kernel] LOG_PACKET[ACCEPT] IN=WAN OUT=SELF SRC=xxx.xx.xxx.xxx DST=xxx.xxx.xx.xx PROTO=UDP SPT=500 DPT=500
I have VPN pass through ticket for IPsec, PPTP and L2TP. Has anyone else encountered this problem? - jmizoguchiVirtuosopassthrough are for vpn client pc behind the srxn to go out and connect other vpn servers
for remote vpn client to connect vpn server behind the srxn do not need that.
also do not test vpn client in the same network where vpn server or vpn termintation of srxn ipsec which you are not sing vpn termnation of srxx but both are applies - dysonpAspirantI have tested the VPN client from outside my network but it still does not work.
- aditMentorForward "IKE" Service to the server. VPN Passthrough is for outbound VPN client connections and has nothing to do with your issue.
- dysonpAspirantThat worked!!
Many thanks - OHPRSTechAspirantSorry about tacking on to this thread, but I just signed up for forum access and have not been able to figure out how to create a new thread.
Problem: I have a new SRXN3205 and am trying to do what is normally a very simple operation: I want to foward all WAN -> LAN ports to a specific LAN IP. I am not using VPN or wireless, and am not filtering any ports (at the moment). I have a static IP for the WAN port and the router is not doing DHCP. The static port IP, netmask, gateway, and name servers configured are exactly the same as on previous routers that worked.
On the setup web page, Security > LAN WAN Rules, I have:
Outbound - no rule
Inbound
Service: ANY
Filter: Allow Always
LAN Server IP Address: 192.168.0.2 (I assume this is the forward-to IP)
LAN Users:
WAN Users: ANY
Destination: WAN (not sure what is meant by "Destination" in this context)
Please help! I don't know what I am missing, but if I can't get this figured out soon I'll have to take this device back to the store and get one within my apparently circumscribed abilities!!!!
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!