Install RRAS in routing mode only and dedicate that route to a single external IP address. Don't use that IP for ISA at all. ISA and RRAS NAT can't be used together, so that won't work. Jim Harrison MCP(2K), A+, Network+, PCG ----- Original Message ----- From: "Ruh Johann" <jruh@xxxxxxxx> To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx> Sent: Sunday, September 09, 2001 11:30 PM Subject: [isalist] RE : Re: RE : Re: VPN server behind ISA http://www.ISAserver.org Hi, Thank's for your answers, so in this case how can I circumventing ISA only for PPTP packets to let them pass to my VPN Server? Is it so dangerous ( when it's possible ) to let a VPN open behind ISA when you use radius authentification for example ? ..... Thank's ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: jim@xxxxxxxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub')