DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

Firewall addition needed for VPN?

  • bradley porter
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
21 Oct 2010 21:57 #1 by bradley porter
Firewall addition needed for VPN? was created by bradley porter
Dear All,

I could connect to my 2820Vn via PPTP VPN and all seemed well until I noticed that some of my network was not available to me - such as file sharing and RDP access via local addressing. I assumed that since I acquired an internal address (for example, 192.168.1.12) via the VPN then I should be seen on the network as 'internal' and be past through to nodes.

However, I could not do this until I added a firewall from WAN-LAN stating that anything from 192.168.1.0/255.255.255.0 was allowed access - then full service was restored and all started working as envisaged.

Is this right? Should I have had to create an inbound firewall rule for a VPN connection to use resources within the LAN?

Thanks in advance.

Brad

Kind regards,
Bradley Porter

Please Log in or Create an account to join the conversation.

  • bradley porter
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
23 Oct 2010 21:53 #2 by bradley porter
Replied by bradley porter on topic Firewall addition needed for VPN?
Anyone got any feedback on this one?

Kind regards,
Bradley Porter

Please Log in or Create an account to join the conversation.

More
24 Oct 2010 13:51 #3 by kc_
Replied by kc_ on topic Firewall addition needed for VPN?
I've always had to have the rule in .. don't know if its by design or a bug though.

Please Log in or Create an account to join the conversation.

  • bradley porter
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
24 Oct 2010 14:12 #4 by bradley porter
Replied by bradley porter on topic Firewall addition needed for VPN?
Thanks for the post.

I think it makes some sense as you still are a 'WAN' connection and you would want firewall rules to be applied if security to parts of your LAN is needed.

Kind regards,
Bradley Porter

Please Log in or Create an account to join the conversation.