<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.tbpindustries.com/index.php?action=history&amp;feed=atom&amp;title=PPTP</id>
	<title>PPTP - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.tbpindustries.com/index.php?action=history&amp;feed=atom&amp;title=PPTP"/>
	<link rel="alternate" type="text/html" href="https://wiki.tbpindustries.com/index.php?title=PPTP&amp;action=history"/>
	<updated>2026-04-24T04:50:49Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.31.1</generator>
	<entry>
		<id>https://wiki.tbpindustries.com/index.php?title=PPTP&amp;diff=162&amp;oldid=prev</id>
		<title>Goldbolt: /* PPTP Server */</title>
		<link rel="alternate" type="text/html" href="https://wiki.tbpindustries.com/index.php?title=PPTP&amp;diff=162&amp;oldid=prev"/>
		<updated>2019-08-27T17:21:07Z</updated>

		<summary type="html">&lt;p&gt;‎&lt;span dir=&quot;auto&quot;&gt;&lt;span class=&quot;autocomment&quot;&gt;PPTP Server&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #222; text-align: center;&quot;&gt;Revision as of 17:21, 27 August 2019&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l10&quot; &gt;Line 10:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 10:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This will show how to set up a PPTP server on Arch Linux.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This will show how to set up a PPTP server on Arch Linux.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;Install &lt;/del&gt;https://wiki.archlinux.org/index.php/Install] the [https://www.archlinux.org/packages/?name=pptpd pptpd] package.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[https://wiki.archlinux.org/index.php/&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;Install &lt;/ins&gt;Install] the [https://www.archlinux.org/packages/?name=pptpd pptpd] package.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Configuration examples can be found in the /usr/share/doc/pptpd directory.&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;&amp;#160;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #222; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Configuration examples can be found in the /usr/share/doc/pptpd directory.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Goldbolt</name></author>
		
	</entry>
	<entry>
		<id>https://wiki.tbpindustries.com/index.php?title=PPTP&amp;diff=161&amp;oldid=prev</id>
		<title>Goldbolt: Created page with &quot;The Point-to-Point Tunneling Protocol (PPTP) is an obsolete method for implementing virtual private networks. PPTP has many well known security issues.  PPTP uses a TCP contro...&quot;</title>
		<link rel="alternate" type="text/html" href="https://wiki.tbpindustries.com/index.php?title=PPTP&amp;diff=161&amp;oldid=prev"/>
		<updated>2019-08-27T16:50:08Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;The Point-to-Point Tunneling Protocol (PPTP) is an obsolete method for implementing virtual private networks. PPTP has many well known security issues.  PPTP uses a TCP contro...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;The Point-to-Point Tunneling Protocol (PPTP) is an obsolete method for implementing virtual private networks. PPTP has many well known security issues.&lt;br /&gt;
&lt;br /&gt;
PPTP uses a TCP control channel and a Generic Routing Encapsulation tunnel to encapsulate PPP packets. Many modern VPNs use various forms of UDP for this same functionality.&lt;br /&gt;
&lt;br /&gt;
The PPTP specification does not describe encryption or authentication features and relies on the Point-to-Point Protocol being tunneled to implement any and all security functionalities.&lt;br /&gt;
&lt;br /&gt;
The PPTP implementation that ships with the Microsoft Windows product families implements various levels of authentication and encryption natively as standard features of the Windows PPTP stack. The intended use of this protocol is to provide security levels and remote access levels comparable with typical VPN products. &lt;br /&gt;
&lt;br /&gt;
=PPTP Server=&lt;br /&gt;
This will show how to set up a PPTP server on Arch Linux.&lt;br /&gt;
&lt;br /&gt;
[Install https://wiki.archlinux.org/index.php/Install] the [https://www.archlinux.org/packages/?name=pptpd pptpd] package.&lt;br /&gt;
&lt;br /&gt;
Configuration examples can be found in the /usr/share/doc/pptpd directory.&lt;br /&gt;
Create /etc/ppp/options.pptpd with the following options:&lt;br /&gt;
    &lt;br /&gt;
    # Read man pppd to see the full list of available options&lt;br /&gt;
    &lt;br /&gt;
    # The name of the local system for authentication purposes&lt;br /&gt;
    name pptpd&lt;br /&gt;
    &lt;br /&gt;
    # Refuse PAP, CHAP or MS-CHAP connections but accept connections with&lt;br /&gt;
    # MS-CHAPv2 or MPPE with 128-bit encryption&lt;br /&gt;
    refuse-pap&lt;br /&gt;
    refuse-chap&lt;br /&gt;
    refuse-mschap&lt;br /&gt;
    require-mschap-v2&lt;br /&gt;
    require-mppe-128&lt;br /&gt;
    &lt;br /&gt;
    # Add entry to the ARP system table&lt;br /&gt;
    proxyarp&lt;br /&gt;
    &lt;br /&gt;
    # For the serial device to ensure exclusive access to the device&lt;br /&gt;
    lock&lt;br /&gt;
    &lt;br /&gt;
    # Disable BSD-Compress and Van Jacobson TCP/IP header compression&lt;br /&gt;
    nobsdcomp&lt;br /&gt;
    novj&lt;br /&gt;
    novjccomp&lt;br /&gt;
    &lt;br /&gt;
    # Disable file logging&lt;br /&gt;
    nolog&lt;br /&gt;
    &lt;br /&gt;
    ms-dns 9.9.9.9&lt;br /&gt;
    ms-dns 8.8.8.8&lt;br /&gt;
&lt;br /&gt;
Create /etc/ppp/chap-secrets for logins:&lt;br /&gt;
    # Secrets for authentication using CHAP&lt;br /&gt;
    # client	server	secret			IP addresses&lt;br /&gt;
      username1         pptpd   password1                     *&lt;br /&gt;
Be aware that this file is stored in plaintext along with usernames and passwords.&lt;br /&gt;
&lt;br /&gt;
Create /etc/sysctl.d/30-ipforward.conf with the following:&lt;br /&gt;
&lt;br /&gt;
    net.ipv4.ip_forward=1&lt;br /&gt;
&lt;br /&gt;
Apply the configuration:&lt;br /&gt;
    sysctl --system&lt;br /&gt;
&lt;br /&gt;
Now run the following to configure iptables settings to enable access for PPTP Clients:&lt;br /&gt;
    # Accept all packets via ppp* interfaces (for example, ppp0)&lt;br /&gt;
    iptables -A INPUT -i ppp+ -j ACCEPT&lt;br /&gt;
    iptables -A OUTPUT -o ppp+ -j ACCEPT&lt;br /&gt;
    &lt;br /&gt;
    # Accept incoming connections to port 1723 (PPTP)&lt;br /&gt;
    iptables -A INPUT -p tcp --dport 1723 -j ACCEPT&lt;br /&gt;
    &lt;br /&gt;
    # Accept GRE packets&lt;br /&gt;
    iptables -A INPUT -p 47 -j ACCEPT&lt;br /&gt;
    iptables -A OUTPUT -p 47 -j ACCEPT&lt;br /&gt;
    &lt;br /&gt;
    # Enable IP forwarding&lt;br /&gt;
    iptables -F FORWARD&lt;br /&gt;
    iptables -A FORWARD -j ACCEPT&lt;br /&gt;
    &lt;br /&gt;
    # Enable NAT for eth0 on ppp* interfaces&lt;br /&gt;
    iptables -A POSTROUTING -t nat -o eth0 -j MASQUERADE&lt;br /&gt;
    iptables -A POSTROUTING -t nat -o ppp+ -j MASQUERADE&lt;br /&gt;
Replace &amp;quot;eth0&amp;quot; with the proper interface name. &lt;br /&gt;
&lt;br /&gt;
Save the new iptables rules with:&lt;br /&gt;
    iptables-save &amp;gt; /etc/iptables/iptables.rules&lt;br /&gt;
&lt;br /&gt;
To load /etc/iptables/iptables.rules automatically after boot, enable the iptables.service unit: &lt;br /&gt;
    systemctl enable iptables.service&lt;br /&gt;
&lt;br /&gt;
Open port 1723 to the server and start and enable the PPTP Server using the following: &lt;br /&gt;
    systemctl enable pptpd.service&lt;br /&gt;
    systemctl start pptpd.service&lt;/div&gt;</summary>
		<author><name>Goldbolt</name></author>
		
	</entry>
</feed>