Hi Raymond, > > > > VPN Server Internal IP:192.168.0.1 > > VPN Server public IP (hosted by the firewall) is a global > address. So > > IPTables server performs NAT. > How are you doinf NAT? Does the public ip get bound to an > interface on the iptables server, e.g. eth0:1? Yes I've configured all my global addresses on eth0 of the linux box, the router cisco simply forward all the requests to it. I've used your script but it doesn't work for me. The problem seems to be the same, the VPN client reachs the tcp port of the vpn server (1723) but then hangs for a few seconds and finally it stops showing up the same error message ("721 remote computer is not responding"). The vpn server doesn't log anything of these attempt. Maybe the problem could be at kernel level :| Thanks, Alexio