To allow internal clients to create PPTP connections to an endpoint on the public side of an ISA firewall, you have to explicitly configure the PPTP pass through in the ISA Management program.
To enable PPTP client connections through an ISA firewall, follow these steps:
- Start the ISA Management program, and then click Access Policy.
- Right-click IP Packet Filters, and then click Properties.
- On the General tab, click to select Enable IP Routing.
- On the PPTP tab, click to select the PPTP through ISA firewall box.
This enables PPTP through the ISA server, and creates a filter labeled, "SecureNAT PPTP". By doing so, PPTP sessions can be created through the firewall.
Note: You will not be able to use a PPTP connection by using either the Winsock Proxy Client, or the ISA Firewall Client. Clients will require a Gateway address to provide a network route through the ISA server for PPTP connections to be made successfully.