On Thu, January 19, 2006 13:58, LinuXKiD wrote: > > Hi, > > I've a small lan with linux router debian: > - 2.4.28 kernel > - iptables 1.3.0 > - pptp patch-o-matic-ng and others patchs > - Adsl internet connection. > > Lan share internet connection with MASQUERADE (iptables nat) > and I've loaded modules pptp and gre (conntrack and nat) > > lsmod: > > Module Size Used by Not tainted ... > ip_nat_proto_gre 1508 0 (unused) > ip_nat_pptp 2572 0 (unused) I'm not sure ; perhaps you need to unload ip_nat_pptp. I thought you needed this when *you* run a PPTP server *behind* the firewall. For me, pptp masq stopped working when I loaded ip_nat_pptp, but I must say that was about 2 years ago. ... > ip_conntrack_pptp 2832 1 [ip_nat_pptp] > ip_conntrack_proto_gre 2676 0 [ip_nat_pptp ip_conntrack_pptp] ... > well... the problem is when two , or more lan hosts want to access > same vpn server with pptp "microsoft vpn protocol" > > Only one host can connect to VPN simultaneously And.. What rules do you have so far concerning pptp ? Gr, Rob