[ previous ] [ next ] [ threads ]
 
 From:  Jared <jmashburn at ubtanet dot com>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Trouble with pptp
 Date:  13 Oct 2003 12:28:35 -0600
Hello all, Im very new to this List and this is my first post.  I am
having some trouble with pptp on M0n0wall.  I have looked through the
archives and didn't see anything that helped me.

Heres the situation.  I have to m0n0wall setups.  Both connected to the
Internet with Static IP Addresses. They also have a private interface on
them.  I would like to connnect both private networks. (i.e. PPTP VPN)
On the PPTP Server/client configuration is below including some of the
status.cgi of both.

The problem Im having is that, it never brings my WAN(pptp client) up..
It seems to authenticate, but in the logs I see there may be some
problems.. For example: "protocol CPP was rejected"


If anyone can help, I would really applicate it. If you need more info
let me know. 

Thanks Jared





<Server config>
PPTP Server

Interfaces:
LAN Address: 10.1.4.2

PPTP:
Server Address: 10.1.4.3
Remote Address Range : 10.1.4.80/28
Require 128-bit Encryption is Checked

Rules:
WAN
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*

LAN
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*


PPTP Clients
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*

</Server Config>


<Client Config>
PPTP Client
Interfaces:
LAN Address: 192.168.0.1

WAN:
PPTP
Username: same as in Server
Password: same as in Server
Local IP Address:  Public address for Client
Remote IP 	   Public Address for server


Rules:
WAN
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*

LAN
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*


PPTP Clients
Proto	Source 	Port	Destination 	Port 
*	*	*	*		*
TCP 	PPTP C	*	PPTP C		*
</Client config>




<Server status.cgi> ***** last 200 system log entries *****
Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: state change Stopping -->
 Stopped 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: phase shift TERMINATE -->
 ESTABLISH 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: LayerFinish 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device: CLOSE event in state UP 
 Oct 13 06:15:47 m0n0wall mpd: pptp0-0: clearing call 
 Oct 13 06:15:47 m0n0wall mpd: pptp0-0: killing channel 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] PPTP call terminated 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IFACE: Close event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IPCP: Close event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IPCP: state change Starting -->
 Initial 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IPCP: LayerFinish 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IFACE: Close event 
 Oct 13 06:15:47 m0n0wall mpd: pptp0: closing connection with
 63.170.64.37:2372 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] IFACE: Close event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device is now in state CLOSING 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] bundle: CLOSE event in state
 OPENED 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] closing link "pptpc0"... 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device: DOWN event in state
 CLOSING 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device is now in state DOWN 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] link: CLOSE event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: Close event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: state change Stopped -->
 Closed 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device: DOWN event in state
DOWN  Oct 13 06:15:47 m0n0wall mpd: [pptpc0] device is now in state DOWN
Oct 13 06:15:47 m0n0wall mpd: [pptpc0] link: DOWN event 
Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: Down event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: state change Closed -->
 Initial 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: phase shift ESTABLISH -->
 DEAD 
 Oct 13 06:15:47 m0n0wall mpd: pptp0: killing connection with
 63.170.64.37:2372 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] link: DOWN event 
 Oct 13 06:15:47 m0n0wall mpd: [pptpc0] LCP: Down event 
 Oct 13 06:15:56 m0n0wall mpd: mpd: PPTP connection from
 63.170.64.37:2373 
 Oct 13 06:15:56 m0n0wall mpd: pptp0: attached to connection with
 63.170.64.37:2373 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IFACE: Open event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: Open event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: state change Initial -->
 Starting 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: LayerStart 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: Open event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] bundle: OPEN event in state
 CLOSED 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] opening link "pptpc0"... 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] link: OPEN event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: Open event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: state change Initial -->
 Starting 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: LayerStart 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] device: OPEN event in state
DOWN  Oct 13 06:15:56 m0n0wall mpd: [pptpc0] attaching to peer's
outgoing all
 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] device is now in state OPENING 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] device: UP event in state PENING
 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] device is now in state UP 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] link: UP event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] link: origination is remote 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: Up event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: state change Starting -->
 Req-Sent 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: phase shift DEAD -->
 ESTABLISH 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: SendConfigReq #232 
 Oct 13 06:15:56 m0n0wall mpd:  ACFCOMP 
 Oct 13 06:15:56 m0n0wall mpd:  PROTOCOMP 
 Oct 13 06:15:56 m0n0wall mpd:  MRU 1500 
 Oct 13 06:15:56 m0n0wall mpd:  MAGICNUM c356b73c 
 Oct 13 06:15:56 m0n0wall mpd:  AUTHPROTO CHAP MSOFTv2 
 Oct 13 06:15:56 m0n0wall mpd:  MP MRRU 1600 
 Oct 13 06:15:56 m0n0wall mpd:  MP SHORTSEQ 
 Oct 13 06:15:56 m0n0wall mpd:  ENDPOINTDISC [802.1] 00 60 08 34 b7 ec 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: rec'd Configure Request #92
 link 0 (Req-Sent) 
 Oct 13 06:15:56 m0n0wall mpd:  MRU 1500 
 Oct 13 06:15:56 m0n0wall mpd:  MAGICNUM 52952790 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: SendConfigAck #92 
 Oct 13 06:15:56 m0n0wall mpd:  MRU 1500 
 Oct 13 06:15:56 m0n0wall mpd:  MAGICNUM 52952790 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: state change Req-Sent -->
 Ack-Sent 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: rec'd Configure Reject #232
 link 0 (Ack-Sent) 
 Oct 13 06:15:56 m0n0wall mpd:  ACFCOMP 
 Oct 13 06:15:56 m0n0wall mpd:  PROTOCOMP 
 Oct 13 06:15:56 m0n0wall mpd:  MP MRRU 1600 
 Oct 13 06:15:56 m0n0wall mpd:  MP SHORTSEQ 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: SendConfigReq #233 
 Oct 13 06:15:56 m0n0wall mpd:  MRU 1500 
 Oct 13 06:15:56 m0n0wall mpd:  MAGICNUM c356b73c 
 Oct 13 06:15:56 m0n0wall mpd:  AUTHPROTO CHAP MSOFTv2 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: rec'd Configure Ack #233
 link 0 (Ack-Sent) 
 Oct 13 06:15:56 m0n0wall mpd:  MRU 1500 
 Oct 13 06:15:56 m0n0wall mpd:  MAGICNUM c356b73c 
 Oct 13 06:15:56 m0n0wall mpd:  AUTHPROTO CHAP MSOFTv2 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: state change Ack-Sent -->
 Opened 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: phase shift ESTABLISH -->
 AUTHENTICATE 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: auth: peer wants nothing, I
 want CHAP 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CHAP: sending CHALLENGE 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: LayerUp 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CHAP: rec'd RESPONSE #1 
 Oct 13 06:15:56 m0n0wall mpd:  Name: "jared" 
 Oct 13 06:15:56 m0n0wall mpd:  Peer name: "jared" 
 Oct 13 06:15:56 m0n0wall mpd:  Response is valid 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CHAP: sending SUCCESS 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: authorization successful 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: phase shift AUTHENTICATE ->
 NETWORK 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] setting interface ng1 MTU to 460
 bytes 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] up: 1 link, total bandwidth 4000
 bps 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: Up event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: state change Starting -->
 Req-Sent 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: SendConfigReq #215 
 Oct 13 06:15:56 m0n0wall mpd:  IPADDR 10.1.4.3 
 Oct 13 06:15:56 m0n0wall mpd:  COMPPROTO VJCOMP, 16 comp. channels, no
 comp-cid 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: Open event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: state change Initial -->
 Starting 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: LayerStart 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: Up event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: state change Starting -->
 Req-Sent 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: SendConfigReq #64 
 Oct 13 06:15:56 m0n0wall mpd:  MPPC 
 Oct 13 06:15:56 m0n0wall mpd:    0x01000040: MPPE, 128 bit, stateless 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: rec'd Configure Request 83
 link 0 (Req-Sent) 
 Oct 13 06:15:56 m0n0wall mpd:  IPADDR 0.0.0.0 
 Oct 13 06:15:56 m0n0wall mpd:    NAKing with 10.1.4.80 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: SendConfigNak #83 
 Oct 13 06:15:56 m0n0wall mpd:  IPADDR 10.1.4.80 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: rec'd Configure Reject 215
 link 0 (Req-Sent) 
 Oct 13 06:15:56 m0n0wall mpd:  COMPPROTO VJCOMP, 16 comp. channels, no
 comp-cid 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: SendConfigReq #216 
 Oct 13 06:15:56 m0n0wall mpd:  IPADDR 10.1.4.3 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: rec'd Protocol Reject #83
 link 0 (Opened) 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] LCP: protocol CCP was rejected 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: protocol was rejected by
 peer 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: Close event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: state change Req-Sent -->
 Closing 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: SendTerminateReq #65 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: encryption required, but
 MPPE was not negotiated in both directions 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: failed to negotiate equired
 encryption 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: Close event 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: state change Closing -->
 Closed 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: LayerFinish 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: failed to negotiate
 required encryption 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: state change Req-Sent -->
 Stopped 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] IPCP: LayerFinish 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] CCP: LayerFinish 
 Oct 13 06:15:56 m0n0wall mpd: [pptpc0] bundle: CLOSE event in st
</Server status.cgi>





<Client status.cgi>
Oct 13 12:14:55 m0n0wall mpd: [pptp] CHAP: rec'd CHALLENGE #1 
Oct 13 12:14:55 m0n0wall mpd:  Name: "" 
Oct 13 12:14:55 m0n0wall mpd:  Using authname "jared" 
Oct 13 12:14:55 m0n0wall mpd: [pptp] CHAP: sending RESPONSE 
Oct 13 12:14:55 m0n0wall mpd: [pptp] CHAP: rec'd SUCCESS #1 
Oct 13 12:14:55 m0n0wall mpd:  MESG:
S=DFAC39C341B3792265AEF3494F0C2E06A4E8910B 
Oct 13 12:14:55 m0n0wall mpd: [pptp] LCP: authorization successful 
Oct 13 12:14:55 m0n0wall mpd: [pptp] LCP: phase shift AUTHENTICATE -->
NETWORK 
Oct 13 12:14:55 m0n0wall mpd: [pptp] setting interface ng0 MTU to 1500
bytes 
Oct 13 12:14:55 m0n0wall mpd: [pptp] up: 1 link, total bandwidth 64000
bps 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: Up event 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: state change Starting -->
Req-Sent 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: SendConfigReq #69 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 0.0.0.0 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: rec'd Configure Request #196
link 0 (Req-Sent) 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 10.1.4.3 
Oct 13 12:14:55 m0n0wall mpd:    10.1.4.3 is OK 
Oct 13 12:14:55 m0n0wall mpd:  COMPPROTO VJCOMP, 16 comp. channels, no
comp-cid 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: SendConfigRej #196 
Oct 13 12:14:55 m0n0wall mpd:  COMPPROTO VJCOMP, 16 comp. channels, no
comp-cid 
Oct 13 12:14:55 m0n0wall mpd: [pptp] rec'd unexpected protocol CCP on
link 0, rejecting 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: rec'd Configure Nak #69 link
0 (Req-Sent) 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 10.1.4.80 
Oct 13 12:14:55 m0n0wall mpd:    10.1.4.80 is OK 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: SendConfigReq #70 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 10.1.4.80 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: rec'd Configure Request #197
link 0 (Req-Sent) 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 10.1.4.3 
Oct 13 12:14:55 m0n0wall mpd:    10.1.4.3 is OK 
Oct 13 12:14:55 m0n0wall mpd: [pptp] IPCP: SendConfigAck #197 
Oct 13 12:14:55 m0n0wall mpd:  IPADDR 10.1.4.3 
</Client status.cgi	>