Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How Do I VPN My Linksys BEFSR41 1

Status
Not open for further replies.

m32

Technical User
Oct 12, 2002
10
US
I am trying to setup my Linksys BEFSR41 router to VPN. I am running WinXP Home Edition, but can easily install Win2000Srvr (W2KSRVR would not be a domain controller).
Could someone please walk me through the setup on the Linksys BEFSR41 router. Also, would I need 2 NICs (on the srvr) or can I get away with just 1. Please help.
 
If you are trying to allow VPN IN, you can set your machine as the DMZ host. Beware though, this will expose your machine to the internet. Otherwise, I don't believe it possible. I tried for a couple weeks to port forward VPN traffic to my VPN server with the BEFSR41 with no luck. Apparently it will not recognize GRE packets. If you are VPNing OUT, it will work by default... Thanks,

Matt Wray
 
Matt, thanks for your response. Why is it that the BEFSR41 will not recognize GRE packets? Does it have to do with the Linksys BEFSR41 itself (firmware). Seperate from that, if I wanted to VPN by not using the Linksys router. I could set up a multihomed W2K Srvr and put it in front of the linksys, right?

Plase let me know.
Thanks

Mark Marquez
MCP
 
The Linksys router does not recognize that type of packet, something to do with the design of it, I guess...
To answer your second question, Yes, that would work... Thanks,

Matt Wray
 
I disagree with the statement that it will not let it in. It will let in some VPNs, like the ones tha MS uses in Windows by default. It will also allow for Cisco IPsec VPN tunnels to Passthrough them, assuming you enable the IPsec passtrhu. What it will not do is terminate a VPN of course. You cannot forward GRE packets as that is not understoond by the simple controller in the linksys OS. They do not come in on a TCP/UDP port, so forwarding is poinless anyways. All you can do is allow passthroughs and set the MTU down to 1492 or less to allow for the overhead of the tunnel if needs be. That is how I get most of my tunnels through is to change the MTU to 1492 and let it be, if you are trying something fancy, like setting up VPN concentrator or multiple tunnels you will be out of luck, but in that case spend the money and buy a real firewall to handle that. This BEFSR41 is a good little SOHO device for what it does, but it does not do it all, just keep that in mind. In the mean time it does do VPNs you just need the MTU, passthrough and most importantly to set up both ends properly to handle the tunnel.

EV
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top