What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

VPN not working, using 378.51 - RT-AC66U

Rassal

Regular Contributor
Hi,

I am using Merlin firmware for quite some time now, really like it.

Today, i decided to kick myself, and re-do a WHOLE config (as per 378.50 requested factory reset).

So i did a factory reset of my 378.49 merlin firmware, and flashed to 378.51 and re-did the whole configuration manually.

Everything works, except, i can't get PPTP VPN working.

SO i refered to your FAQ about VPN, and this is what i did:

1. VPN server is enable

VPN is enabled, and i got one user created with a password, along with a list of 10 IP addresses i allow for connection. It's running under the router, validated throug logs. I also have a DDNS configured and working over ASUS, and i tested the DDNS configuration with some ports i am forwarding, succesfully, so DDNS for the router is working.

2. If you are using OpenVPN connection,

I am not using OpenVPN, using the standard PPTP VPN

3. ASUSWRT can only support one VPN server mode connection at one time.

Only using PPTP VPN, all others are disabled

4.VPN service does not support WAN connection type in PPTP/L2TP VPN pass through mode.

I am using Automatic IP

When i configure my VPN connection information, either on my LAPTOP or my Android phone, it says connecting... and it never connects.

What am i doing wrong?

I did some other testing, and when i forwarded port 1723 on the WAN side to my local router internal IP, it started to work. But if i do not forward port 1723, it doesn't work.

Seems that PPTP doesn't enable 1723 on the WAN side by default... i got a work around, but i taught enabling VPN would open port 1723 on the wan side, which doesnt seems to be the case
 
Last edited:
Factory default reset must be done after flashing, not before.
 
Hi, i re-did a factory reset, just to make sure... re-did the whole configuration, same thing.

And i found the problem... if you enable DMZ it will kill the outside port 1723. If you disable DMZ it works.

So the reason why i was able to redirect port 1723 on the WAN to the router bypassed the DMZ problem...

Now i am probably convinced you will tell me you shouldn't enable DMZ... but it would be nice to tell people that if you enable DMZ it will impact VPN unless you redirect WAN port 1723 to the internal IP of the Router on the LAN...

I left DMZ disabled, as i am not sure if my Vonage VoIP still requires DMZ access, i will test it...
 
I left DMZ disabled, as i am not sure if my Vonage VoIP still requires DMZ access, i will test it...

I've had Vonage for maybe 10 years with a Cisco adapter; it didn't require DMZ. Just cancelled the service in favor of an Obitai.
 

Similar threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top