I'm trying to set up the Smartpass VPN client to go through my GNATBox Light
3.0.3.  According to the manufacturer, all I should need to do is allow port
3845 outbound, which the default filter does.  The problem is, when I
install the client on my PC, it reboots my PC, and the immediately goes out
on port 3845 to my company's firewall to register.  Or at least that's what
the browser says (ie. firewall.mycompany.com:3845/olr).  I enter the
necessary information (name and firewall address:HTTP proxy port) and click
the register button, and eventually the connection times out.

I checked my log and find a remote filter block message with two odd things:
1. There is a completely different port indicated that changes every time
listed, and
2. I think the message indicates that it is blocking from the protected
interface to the external interface.

Here is an example (I'm paraphrasing as I'm not in front of the log right
now):
        Remote Access Filer blocks 192.168.5.5:1029 > 64.14.100.54:80

I've tried everything short of allowing all protocols from any address on
any interface to get this transaction completed.

My questions are:
A. Why is a remote access filter blocking replies to an outbound connection?
B. Why does the port number change each time?
C. Why is the remote access filter from the protected to the external?
D. How should this be set up to allow traffic from the office firewall IP
(call it fff.fff.fff.fff)?

Joab Ben Stieglitz
mailto:[EMAIL PROTECTED]


Reply via email to