How do I get incoming VPN to connect when the internal firewall is active?
As the internal VPN Server is protected by the internalfirewall, all incoming VPN connections are blocked. To get accesswith VPN, see example below:
Before proceeding, verify if your computers on the LAN haveInternet access, and that VPN connections are possible if internalfirewall is disabled.
PPTP: open TCP port 1723 (standard PPTP port - required forVPN access)
From a computer on the LAN, access the web user interface ofDSL-G804V
In Advanced - Firewall, press Next.
Select Add TCP/UDP Filter
Type in a Name, set theSchedule (if unsure use Always On)
If you wish to restrict the incoming VPN connections to acertain IP range, type in the range in Source IPAddress(es) with corresponding Netmask.(leave default = 0.0.0.0 for all addresses)
Set Destination IP Address(es). (leavedefault = 0.0.0.0 for all addresses)
Set Type to TCP.
If you wish to restrict the incoming VPN connections to acertain port range, type in the range in Sourceport(s). (If unsure leave default.)
Set Destination port(s) to 1723 - 1723. This isthe standard port for PPTP
Set Inbound and Outbound toAllow.
Press Apply.
Save configuration and restart the device, for changes totake effect !
PPTP: allow GRE protocol number 47 (standard protocol -required for VPN authentication)
From a computer on the LAN, access the web user interface ofDSL-G804V
In Advanced - Firewall, press Next.
Select Add Raw IP Filter
Type in a Name, set theSchedule (if unsure use Always On)
If you wish to restrict the incoming VPN connections to acertain IP range, type in the range in Source IPAddress(es) with corresponding Netmask.(leave default = 0.0.0.0 for all addresses)
Set Destination IP Address(es). (leavedefault = 0.0.0.0 for all addresses)
Set Protocol Number to 47
Set Inbound and Outbound toAllow.
Press Apply.
Save configuration and restart the device, for changes totake effect !
L2TP: open UDP port 1701 (standard port - required for VPNaccess)
From a computer on the LAN, access the web user interface ofDSL-G804V
In Advanced - Firewall, press Next.
Select Add TCP/UDP Filter
Type in a Name, set theSchedule (if unsure use Always On)
If you wish to restrict the incoming VPN connections to acertain IP range, type in the range in Source IPAddress(es) with corresponding Netmask.(leave default = 0.0.0.0 for all addresses)
Set Destination IP Address(es). (leavedefault = 0.0.0.0 for all addresses)
Set Type to UDP.
If you wish to restrict the incoming VPN connections to acertain port range, type in the range in Sourceport(s). (If unsure leave default.)
Set Destination port(s) to 1701 - 1701. This isthe standard port for PPTP
Set Inbound and Outbound toAllow.
Press Apply.
Save configuration and restart the device, for changes totake effect !
IPSEC: open UDP port 500 (standart port - required for VPNaccess)
From a computer on the LAN, access the web user interface ofDSL-G804V
In Advanced - Firewall, press Next.
Select Add TCP/UDP Filter
Type in a Name, set theSchedule (if unsure use Always On)
If you wish to restrict the incoming VPN connections to acertain IP range, type in the range in Source IPAddress(es) with corresponding Netmask.(leave default = 0.0.0.0 for all addresses)
Set Destination IP Address(es). (leavedefault = 0.0.0.0 for all addresses)
Set Type to UDP.
If you wish to restrict the incoming VPN connections to acertain port range, type in the range in Sourceport(s). (If unsure leave default.)
Set Destination port(s) to 500 - 500. This isthe standard port for PPTP
Set Inbound and Outbound toAllow.
Press Apply.
Save configuration and restart the device, for changes totake effect !