On 10/16/05, Juergen Moellenhoff <jm at oic dot de> wrote:
>
> that's not the rule I mean :-), you refer to the rule for the PPTP
> interface but I had to add a rule to the WAN interface so that to the
> port TCP/1723 (PPTP control port) is open for a connection, this was not
> necessary with the 1.11 version.
shouldn't be necessary now either. In my status.php, under ipfstat
-nio, I have:
@2 pass in quick proto tcp from any to 12.202.x.x/32 port = 1723 keep
state group 200
as an automatically added rule. right below the automatically added
rule that allows GRE. Do you not see that rule on yours?
-Chris |