Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




163 posts

Master Geek
+1 received by user: 64
Inactive user


Topic # 109163 13-Sep-2012 14:44 Send private message

Hi,

I've read and absorbed all that I can, attempted numerous times but cannot seem to get this to work. This issue could be DD-WRT, QNAP, Android or simply pebcak - so I hope I've selected the correct forum.

Want: To use VPN on Galaxy S3 (unrooted standard) to connect to home network.

At home: DD-WRT v24-sp2 (04/13/11) std (SVN revision 16785) on Buffalo WZR HP AG300H which is bridged to Draytek Vigor 120

NAS: Qnap TS-412 Turbo NAS (3.7.3 Build 20120801)

On the DD-WRT router I can confirm that:

1. PPTP is routed correctly - port 1723 TCP (configured via UPNP on QNAP).
2. VPN Passthrough is enabled.

On the QNAP NAS I can confirm that:

1. PPTP VPN Server is enabled.
2. Authentication: MS-CHAPV2
3. Encryption: AES 128
4. I have configured a vpn user and password.

On the Galaxy S3:

1. The login and password are correct.
2. Type: PPTP
3. PPP encryption (MPPE) is ticked.
4. On 2Degrees.


In the Syslog I have this entry when I attempt to connect
* masked DST IP address
* bob is the dd-wrt router not the qnap.

<4>1 2012-09-13T14:19:50+12:00 bob kernel - - - kernel: [  533.440000] DROP IN=ppp0 OUT= MAC= SRC=118.149.64.50 DST=122.57.***.** LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=2173 DF PROTO=47

Which is interesting seeing as my IP address is 118.149.114.241 when I use Whatismyip in a browser on the mobile. What is the IP different?

Anyone able to point me in the right direction? What am I missing?

Thank you,
M.


Create new topic
368 posts

Ultimate Geek
+1 received by user: 1


  Reply # 686504 15-Sep-2012 18:25 Send private message

Dude, I share your pain, I've been there done that.

IP protocol 47 is GRE (General Routing Encapsulation) and you'll need to make sure this protocol has access on your path to the NAS which you have enabled as a PPTP server.

An IP protocol should not be confused with a TCP/UDP port 'number' as these represent an access layer one level up.

You'll need IP port 1723 and IP protocol 47 forwarded to the NAS too.

I used Tomato firmware on a Linksys E4200v1, as, well, I could, my router allows it and thus reduces the need to open additional TCP/UDP ports on the NAS. My PPTP 'tunnel' ends at the router.

You may be able to configure a PPTP server on the Buffalo WZR HP AG300H using DD-WRT and thus reduce the requirement for port forwarding.

Create new topic



Twitter »

Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

National AI group launching next month
Posted 25-May-2017 09:54


New Zealand Digital Future, according to tech companies
Posted 25-May-2017 09:51


New Microsoft Surface Pro delivers outstanding battery life, performance
Posted 25-May-2017 09:34


Garmin VIRB 360 brings immersive 360-degree 5.7K camera experience
Posted 25-May-2017 09:30


Telecommunications monitoring report: Are you being served?
Posted 24-May-2017 11:54


NetValue partners with CRM Provider SugarCRM
Posted 23-May-2017 20:04


Terabyte looms as Vocus users download 430GB a month
Posted 19-May-2017 14:51


2degrees tips into profit after seven lean years
Posted 19-May-2017 09:47


2degrees growth story continues
Posted 17-May-2017 15:25


Symantec Blocks 22 Million Attempted WannaCry Ransomware Attacks Globally
Posted 17-May-2017 12:41


HPE Unveils Computer Built for the Era of Big Data
Posted 17-May-2017 12:39


Samsung Galaxy S8 Plus review: Beautiful, feature-packed
Posted 16-May-2017 20:14


After ten years of mail pain Spark is done with Yahoo
Posted 15-May-2017 13:12


Warnings from security firms: do not click that link or risk your computer being infected
Posted 15-May-2017 10:11


Pushpay named NZ Hi-Tech Company of the Year 2017
Posted 15-May-2017 09:59



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.