[KLUG Members] PPTP.

Bruce Smith bruce at armintl.com
Sat Oct 23 20:12:21 EDT 2004


> > > You're certain your VPN server isn't blocking the CIFS ports?  
> > Yeah, that was it.  Crap!  I was preventing SMB from leaking.
> 
> If your using proxy-arp you can just reapply the anti-leak rule to the
> external interface only ...

You can't specify interfaces in the PREROUTING chain.  :-)
But that's OK, I switched to the FORWARD chain, and it's working now.

> > > Is WINS working,  you really *NEED* WINS to do anything CIFS over the VPN 
> > > connection.  
> > I have WINS configured on Samba, but I never tried it before.
> 
> Add ms-wins a.b.c.d to the ppp options file on the server.

Seems to do the trick.

> > Yes, I see that.  With the XP box hooked outside my firewall on a 10BT
> > connection to my internal network it's VERY slow.  I can hardly wait to
> > try it from a remote location!  :-/
> 
> What do you have the MTU/MRU set to.  Really LOW works best, I set mine
> at 296.  Also make sure you have all the compression *disabled*.

Makes sense.  I remember my days of dial-up networking, and smaller
MTU/MRU was much better for interactive stuff.  Large values were only
good for large file transfers, not much else.

I switched to 296 and it's still dog slow from home.  Good thing I'm not
going to be using it myself!  :-)

 - BS




More information about the Members mailing list