To be able to connect to a Windows based PPTP VPN through a OpenBSD firewall you’ll need to make a couple of changes to allow GRE traffic through.
first add the following to
then add the following to the filter section in your
pass in on $ext_if proto gre all keep state
pass out on $ext_if proto gre all keep state
To make the changes effective without having to reboot issue the following as root:
pfctl -f /etc/pf.conf