[ previous ] [ next ] [ threads ]
 
 From:  Paul Dugas <paul at dugas dot cc>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] PPTP through NAT
 Date:  Thu, 23 Mar 2006 20:51:27 -0500
On Tue, 2006-03-21 at 23:12 +0800, edward mzj wrote:
> search the mpd log for something like SendConfigRej and see what's
> rejected by the mpd.
> 
> > on the office m0n0 box when I try to connect.  I see a few "LCP:
> > SendConfigReq" entries and their dumps then "call cleared by peer".

After the "mdp: PPTP connection from ..." stuff at the start a session,
I get:

Mar 22 10:27:58 mpd: [pt0] LCP: SendConfigReq #218 
Mar 22 10:27:58 mpd: ACFCOMP 
Mar 22 10:27:58 mpd: PROTOCOMP 
Mar 22 10:27:58 mpd: MRU 1500 
Mar 22 10:27:58 mpd: MAGICNUM afd71d8a 
Mar 22 10:27:58 mpd: AUTHPROTO CHAP MSOFTv2 
Mar 22 10:27:58 mpd: MP MRRU 1600 
Mar 22 10:27:58 mpd: MP SHORTSEQ 
Mar 22 10:27:58 mpd: ENDPOINTDISC [802.1] 00 00 24 c4 3d 10 
Mar 22 10:27:58 mpd: pptp0-0: ignoring SetLinkInfo 
Mar 22 10:28:00 mpd: [pt0] LCP: SendConfigReq #219 
Mar 22 10:28:00 mpd: ACFCOMP 
Mar 22 10:28:00 mpd: PROTOCOMP 
Mar 22 10:28:00 mpd: MRU 1500 
Mar 22 10:28:00 mpd: MAGICNUM afd71d8a 
Mar 22 10:28:00 mpd: AUTHPROTO CHAP MSOFTv2 
Mar 22 10:28:00 mpd: MP MRRU 1600 
Mar 22 10:28:00 mpd: MP SHORTSEQ 
Mar 22 10:28:00 mpd: ENDPOINTDISC [802.1] 00 00 24 c4 3d 10
...

Every couple seconds, I see the SendConfigReq block repeated until it
gives up:

Mar 22 10:32:00 mpd: pptp0-0: call cleared by peer 
Mar 22 10:32:00 mpd: pptp0-0: killing channel 
Mar 22 10:32:00 mpd: [pt0] PPTP call terminated
...

The only part that jumps out to me is the "ignoring SetLinkInfo" part
but I'm not sure what the means.

I don't see any rejection messages so I'm left assuming that the ACK
response from m0n0 isn't getting back to the client for some reason.
Does this make sense?  I'm thinking that I need to get onsite and start
sniffing.  If anybody has something else I might try, I'm eater to hear
about it.

Paul

PS: Could I have an MTU issue with the PPPOE links and the intermediate
NAT router at the office site?
-- 
Paul Dugas, Computer Engineer                Dugas Enterprises, LLC
paul at dugas dot cc        phone: 404-932-1355     522 Black Canyon Park
http://dugas.cc        fax: 866-751-6494     Canton, GA 30114 USA
--
On site at GDOT's W.Annex, 404-463-2860 x199
--
This e-mail and any attachments are confidential.  If you receive
this message in error or are not the intended recipient, you should
not retain, distribute, disclose or use any of this information and
you should destroy the e-mail and any attachments or copies.
signature.asc (0.2 KB, application/pgp-signature)