Author Topic: pptp vpn  (Read 3311 times)

0 Members and 1 Guest are viewing this topic.

Offline dobroman

  • Newbie
  • *
  • Posts: 9
  • Karma: +0/-0
    • http://
pptp vpn
« on: January 22, 2008, 02:00:54 »
Модем в режиме роутера адрес к серверу 192,168,1,1
Адрес на серве 192,168,1,2

На работе ubuntu server 6.06
Не получается подключиться из дома. Пробовал внутри локальной сети - работает.
На модеме port forwarding стоит, другие сервисы (ssh, http) работают.
Стоит echo "1" /proc/sys/net/ipv4/ip_forward
Стоит echo "1" /proc/sys/net/ipv4/ip_dynaddr

Дома winxpsp2, при подключении висит окошко "Проверка имени и пароля" после чего коннект рубится

/etc/ppp/pptpd-options:
[div class=\'codetop\']CODE[div class=\'codemain\' style=\'height:200px;white-space:pre;overflow:auto\']name pptpd

chapms-strip-domain

refuse-pap
require-chap
require-mschap
require-mschap-v2
require-mppe-128

#ms-dns 10.0.0.1
ms-dns 217.18.130.30

#ms-wins 10.0.0.3
#ms-wins 10.0.0.4

proxyarp
nodefaultroute
debug
dump
lock
nobsdcomp

mtu 1476
mru 1476
auth

/etc/pptpd.conf:
[div class=\'codetop\']CODE[div class=\'codemain\' style=\'height:200px;white-space:pre;overflow:auto\']
ppp /usr/sbin/pppd
option /etc/ppp/pptpd-options
debug

#noipparam
logwtmp

#bcrelay eth1


localip 192.168.0.1
remoteip 192.168.0.234-238,192.168.0.245


/var/log/syslog:
[div class=\'codetop\']CODE[div class=\'codemain\' style=\'height:200px;white-space:pre;overflow:auto\']Jan 22 01:49:04 mail pptpd[16255]: MGR: Launching /usr/sbin/pptpctrl to handle client
Jan 22 01:49:04 mail pptpd[16255]: CTRL: local address = 192.168.0.1
Jan 22 01:49:04 mail pptpd[16255]: CTRL: remote address = 192.168.0.234
Jan 22 01:49:04 mail pptpd[16255]: CTRL: pppd options file = /etc/ppp/pptpd-options
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Client МОЙ АДРЕС control connection started
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Received PPTP Control Message (type: 1)
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Made a START CTRL CONN RPLY packet
Jan 22 01:49:04 mail pptpd[16255]: CTRL: I wrote 156 bytes to the client.
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Sent packet to client
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Received PPTP Control Message (type: 7)
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Set parameters to 100000000 maxbps, 64 window size
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Made a OUT CALL RPLY packet
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Starting call (launching pppd, opening GRE)
Jan 22 01:49:04 mail pptpd[16255]: CTRL: pty_fd = 6
Jan 22 01:49:04 mail pptpd[16255]: CTRL: tty_fd = 7
Jan 22 01:49:04 mail pptpd[16256]: CTRL (PPPD Launcher): program binary = /usr/sbin/pppd
Jan 22 01:49:04 mail pptpd[16256]: CTRL (PPPD Launcher): local address = 192.168.0.1
Jan 22 01:49:04 mail pptpd[16256]: CTRL (PPPD Launcher): remote address = 192.168.0.234
Jan 22 01:49:04 mail pppd[16256]: Plugin /usr/lib/pptpd/pptpd-logwtmp.so loaded.
Jan 22 01:49:04 mail pppd[16256]: pptpd-logwtmp: $Version$
Jan 22 01:49:04 mail pppd[16256]: pppd options in effect:
Jan 22 01:49:04 mail pppd[16256]: debug debug^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: dump^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: plugin /usr/lib/pptpd/pptpd-logwtmp.so^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: auth^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: refuse-pap^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: name pptpd^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: pptpd-original-ip МОЙ АДРЕС^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: 115200^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: lock^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: crtscts^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: local^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: asyncmap 0^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: mru 1476^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: mtu 1476^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: lcp-echo-failure 4^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: lcp-echo-interval 30^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: hide-password^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: chapms-strip-domain^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: ipparam МОЙ АДРЕС^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: ms-dns xxx # [don't know how to print value]^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: nodefaultroute^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: proxyarp^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: 192.168.0.1:192.168.0.234^I^I# (from command line)
Jan 22 01:49:04 mail pppd[16256]: nobsdcomp^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: require-mppe-128^I^I# (from /etc/ppp/pptpd-options)
Jan 22 01:49:04 mail pppd[16256]: noipx^I^I# (from /etc/ppp/options)
Jan 22 01:49:04 mail pppd[16256]: pppd 2.4.4b1 started by root, uid 0
Jan 22 01:49:04 mail pptpd[16255]: CTRL: I wrote 32 bytes to the client.
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Sent packet to client
Jan 22 01:49:04 mail pppd[16256]: using channel 58
Jan 22 01:49:04 mail pppd[16256]: Using interface ppp0
Jan 22 01:49:04 mail pppd[16256]: Connect: ppp0 <--> /dev/pts/1
Jan 22 01:49:04 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:04 mail pptpd[16255]: GRE: Bad checksum from pppd.
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Received PPTP Control Message (type: 15)
Jan 22 01:49:04 mail pptpd[16255]: CTRL: Got a SET LINK INFO packet with standard ACCMs
Jan 22 01:49:04 mail pppd[16256]: rcvd [LCP ConfReq id=0x0 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:04 mail pppd[16256]: sent [LCP ConfRej id=0x0 <callback CBCP>]
Jan 22 01:49:06 mail pppd[16256]: rcvd [LCP ConfReq id=0x1 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:06 mail pppd[16256]: sent [LCP ConfRej id=0x1 <callback CBCP>]
Jan 22 01:49:07 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:09 mail pppd[16256]: rcvd [LCP ConfReq id=0x2 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:09 mail pppd[16256]: sent [LCP ConfRej id=0x2 <callback CBCP>]
Jan 22 01:49:10 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:13 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:13 mail pppd[16256]: rcvd [LCP ConfReq id=0x3 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:13 mail pppd[16256]: sent [LCP ConfRej id=0x3 <callback CBCP>]
Jan 22 01:49:16 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:17 mail pppd[16256]: rcvd [LCP ConfReq id=0x4 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:17 mail pppd[16256]: sent [LCP ConfRej id=0x4 <callback CBCP>]
Jan 22 01:49:19 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:21 mail pppd[16256]: rcvd [LCP ConfReq id=0x5 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:21 mail pppd[16256]: sent [LCP ConfRej id=0x5 <callback CBCP>]
Jan 22 01:49:22 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:25 mail pppd[16256]: rcvd [LCP ConfReq id=0x6 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:25 mail pppd[16256]: sent [LCP ConfRej id=0x6 <callback CBCP>]
Jan 22 01:49:25 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:28 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:29 mail pppd[16256]: rcvd [LCP ConfReq id=0x7 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:29 mail pppd[16256]: sent [LCP ConfRej id=0x7 <callback CBCP>]
Jan 22 01:49:31 mail pppd[16256]: sent [LCP ConfReq id=0x1 <mru 1476> <asyncmap 0x0> <auth chap MD5> <magic 0xc07a2dc7> <pcomp> <accomp>]
Jan 22 01:49:33 mail pppd[16256]: rcvd [LCP ConfReq id=0x8 <mru 1400> <magic 0x2296e9c> <pcomp> <accomp> <callback CBCP>]
Jan 22 01:49:33 mail pppd[16256]: sent [LCP ConfRej id=0x8 <callback CBCP>]
Jan 22 01:49:34 mail pppd[16256]: LCP: timeout sending Config-Requests
Jan 22 01:49:34 mail pppd[16256]: Connection terminated.
Jan 22 01:49:34 mail pppd[16256]: Modem hangup
Jan 22 01:49:34 mail pppd[16256]: Exit.
Jan 22 01:49:34 mail pptpd[16255]: GRE: read(fd=6,buffer=80505c0,len=8196) from PTY failed: status = -1 error = Input/output error, usually caused by unexpected termination of pppd, check option syntax and pppd logs
Jan 22 01:49:34 mail pptpd[16255]: CTRL: PTY read or GRE write failed (pty,gre)=(6,7)
Jan 22 01:49:34 mail pptpd[16255]: CTRL: Reaping child PPP[16256]
Jan 22 01:49:34 mail pptpd[16255]: CTRL: Client МОЙ АДРЕС control connection finished
Jan 22 01:49:34 mail pptpd[16255]: CTRL: Exiting now
Jan 22 01:49:34 mail pptpd[3692]: MGR: Reaped child 16255

Если у телепатов сядут батарейки я еще чего-нибудь напишу  
it is a good day to die

Offline demiurg

  • Hero Member
  • *****
  • Posts: 1014
  • Karma: +0/-0
    • http://larin.tomsk.ru
pptp vpn
« Reply #1 on: January 22, 2008, 10:51:34 »
Quote from: dobroman
Модем в режиме роутера адрес к серверу 192,168,1,1
Адрес на серве 192,168,1,2

На работе ubuntu server 6.06
Не получается подключиться из дома. Пробовал внутри локальной сети - работает.
На модеме port forwarding стоит, другие сервисы (ssh, http) работают.
Стоит echo "1" /proc/sys/net/ipv4/ip_forward
Стоит echo "1" /proc/sys/net/ipv4/ip_dynaddr

Дома winxpsp2, при подключении висит окошко "Проверка имени и пароля" после чего коннект рубится

Если у телепатов сядут батарейки я еще чего-нибудь напишу  
А если отрубить шифрование и сжатие (MPPE/MPPC) тоже обрывается?

Offline dobroman

  • Newbie
  • *
  • Posts: 9
  • Karma: +0/-0
    • http://
pptp vpn
« Reply #2 on: January 22, 2008, 13:42:33 »
Закомментировал строчку
#require-mppe-128
Не помогло
it is a good day to die

Offline demiurg

  • Hero Member
  • *****
  • Posts: 1014
  • Karma: +0/-0
    • http://larin.tomsk.ru
pptp vpn
« Reply #3 on: January 22, 2008, 18:38:16 »
Quote from: dobroman
Закомментировал строчку
#require-mppe-128
Не помогло
А на клиенте соответственно тоже выключили шифрование?