Your question is VERY vague and therefore can NOT be answered.  However,
I will attempt to do the best with the limited information you provided.

I will assume that the VPN server is sitting behind the Firewall or on
the Firewall itself.  If you are using PPTP (microsoft VPN) then the
firewall need to open port 1723 so that VPN connection can go through. 
Once the VPN connection is established, you just telnet to your terminal
server just like you do at your office.  Just think of the VPN connection
as such that you are part of your office LAN.  Now if you are using L2TP
or L2F or IPSec then different ports need to be open on the Firewall for
this to work.

Now
"Is it possible to change the terminal server configuration so it answers
on a different port such as port 80?"  Actually, this can be done if you
have control of the Firewall (which I don't think you do).  Furthermore,
the IP address of the Terminal server is a RFC1918 address (aka private
address).  To make it work, what happened is that the firewall will
listen for service on port 80 for a particular VALID external IP
address.  The firewall will then REDIRECT the traffic (port 80 in this
case) to the terminal server at port 23.  I have done this on my Linux
Firewall with iptables (aka netfilter).  You just open telnet session on
a remote machine and use port 80 to connect to you terminal server. 
However, I doubt that you have access to the Firewall to make this work
or that you will be forbidden by the company to do so.  The dangerous in
doing this is that everything (including username and password) will be
transmitted in the CLEAR.  I strongly suggest that you use the first
method which extends your remote machine as part of your officice LAN. 

The alternative method is to set up an SSH server and have it NATed to
the Firewall.  You can connect to your terminal server by first SSH
(version 2 is recommended) to the SSH server, then telnet to your
terminal server.  That's what I use at work.  I find that this is the
best way to go.

Does it make any sense to you?

Sean

>From: "Lurker" >Reply-To: "Lurker" >To: [EMAIL PROTECTED] >Subject:
Need to bypass Firewall-Can the telnet port be changed? [7:12707] >Date:
Tue, 17 Jul 2001 15:55:53 -0400 > >I need to use the VPN to get to my
study lab in the office. Unfortunately, >telnet appears to be blocked. Is
it possible to change the terminal server >configuration so it answers on
misconduct and Nondisclosure violations to [EMAIL PROTECTED]

------------------------------------------------------------------------

Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12730&t=12730
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to