Hi Victor,
>we are running Zonealarm Firewalls on all machines.
You need at least ZoneAlarm 2.6 in order to be able to use VPN. Also, you must allow outgoing TCP/IP traffic on a wide range of ports on the VPN server, because VPN uses a dynamically assigned TCP port to talk back to the client. Finally, VPN uses a different protocol, not TCP, which is not routable thru NAT. This requires that the VPN server has a designated public IP address or is directly connected with the internet provider. If a firewall or router is placed inbetween, the VPN server must be configured on the router/firewall as a DMZ server.
Christof
--
Christof