LINUX.ORG.RU
ФорумAdmin

Проблема с PPTP


0

0

В общих чертах ситуация такова: сервак на Debian, был впн (клиент из пакета pptp-linux), после смены провайдера перенастроил только логин/пароль в chap-secrets, да адрес впн сервера в /etc/ppp/peers/vpn0.

Вывод pon vpn0 debug dump logfd 2 nodetach:

pppd options in effect: debug # (from command line) nodetach # (from command line) logfd 2 # (from command line) dump # (from command line) noauth # (from /etc/ppp/options.pptp) refuse-pap # (from /etc/ppp/options.pptp) refuse-chap # (from /etc/ppp/options.pptp) refuse-mschap # (from /etc/ppp/options.pptp) refuse-eap # (from /etc/ppp/options.pptp) name <my_login> # (from /etc/ppp/peers/vpn0) remotename PPTP # (from /etc/ppp/peers/vpn0) # (from /etc/ppp/options.pptp) pty pptp 172.18.48.69 --nolaunchpppd # (from /etc/ppp/peers/vpn0) crtscts # (from /etc/ppp/options) # (from /etc/ppp/options) asyncmap 0 # (from /etc/ppp/options) lcp-echo-failure 4 # (from /etc/ppp/options) lcp-echo-interval 30 # (from /etc/ppp/options) hide-password # (from /etc/ppp/options) ipparam vpn0 # (from /etc/ppp/peers/vpn0) proxyarp # (from /etc/ppp/options) noipx # (from /etc/ppp/options) using channel 12 Using interface ppp0 Connect: ppp0 <--> /dev/pts/1 sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x53e1340f> <pcomp> <accomp>] rcvd [LCP ConfReq id=0x1 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x1 <auth chap MD5>] rcvd [LCP ConfReq id=0x2 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x2 <auth chap MD5>] rcvd [LCP ConfReq id=0x3 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x3 <auth chap MD5>] rcvd [LCP ConfReq id=0x4 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x4 <auth chap MD5>] rcvd [LCP ConfReq id=0x5 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x5 <auth chap MD5>] rcvd [LCP ConfReq id=0x6 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x6 <auth chap MD5>] rcvd [LCP ConfReq id=0x7 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x7 <auth chap MD5>] rcvd [LCP ConfReq id=0x8 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x8 <auth chap MD5>] rcvd [LCP ConfReq id=0x9 <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0x9 <auth chap MD5>] rcvd [LCP ConfReq id=0xa <auth chap MD5> <magic 0x343d1492>] No auth is possible sent [LCP ConfRej id=0xa <auth chap MD5>] rcvd [LCP TermReq id=0xb] sent [LCP TermAck id=0xb] Script pptp 172.18.48.69 --nolaunchpppd finished (pid 4835), status = 0x0 Modem hangup Connection terminated.

Форумы почитал, пробовал менять сжатие/шифрование в options.pptp - безрезультатно. Буду невероятно благодарен за помощь

Ответ на: комментарий от ierton
pppd options in effect:
debug # (from command line)
nodetach # (from command line)
logfd 2 # (from command line)
dump # (from command line)
noauth # (from /etc/ppp/options.pptp)
refuse-pap # (from /etc/ppp/options.pptp)
refuse-chap # (from /etc/ppp/options.pptp)
refuse-mschap # (from /etc/ppp/options.pptp)
refuse-eap # (from /etc/ppp/options.pptp)
name <my_login> # (from /etc/ppp/peers/vpn0)
remotename PPTP # (from /etc/ppp/peers/vpn0)
# (from /etc/ppp/options.pptp)
pty pptp 172.18.48.69 --nolaunchpppd # (from /etc/ppp/peers/vpn0)
crtscts # (from /etc/ppp/options)
# (from /etc/ppp/options)
asyncmap 0 # (from /etc/ppp/options)
lcp-echo-failure 4 # (from /etc/ppp/options)
lcp-echo-interval 30 # (from /etc/ppp/options)
hide-password # (from /etc/ppp/options)
ipparam vpn0 # (from /etc/ppp/peers/vpn0)
proxyarp # (from /etc/ppp/options)
noipx # (from /etc/ppp/options)
using channel 12
Using interface ppp0
Connect: ppp0 <--> /dev/pts/1
sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x53e1340f> <pcomp> <accomp>]
rcvd [LCP ConfReq id=0x1 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x1 <auth chap MD5>]
rcvd [LCP ConfReq id=0x2 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x2 <auth chap MD5>]
rcvd [LCP ConfReq id=0x3 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x3 <auth chap MD5>]
rcvd [LCP ConfReq id=0x4 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x4 <auth chap MD5>]
rcvd [LCP ConfReq id=0x5 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x5 <auth chap MD5>]
rcvd [LCP ConfReq id=0x6 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x6 <auth chap MD5>]
rcvd [LCP ConfReq id=0x7 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x7 <auth chap MD5>]
rcvd [LCP ConfReq id=0x8 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x8 <auth chap MD5>]
rcvd [LCP ConfReq id=0x9 <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0x9 <auth chap MD5>]
rcvd [LCP ConfReq id=0xa <auth chap MD5> <magic 0x343d1492>]
No auth is possible
sent [LCP ConfRej id=0xa <auth chap MD5>]
rcvd [LCP TermReq id=0xb]
sent [LCP TermAck id=0xb]
Script pptp 172.18.48.69 --nolaunchpppd finished (pid 4835), status = 0x0
Modem hangup
Connection terminated.
GroundRush
() автор топика
Ответ на: комментарий от GroundRush
> refuse-pap # (from /etc/ppp/options.pptp)
> refuse-chap # (from /etc/ppp/options.pptp)
> refuse-mschap # (from /etc/ppp/options.pptp)
> refuse-eap # (from /etc/ppp/options.pptp)

Возможно, новый провайдер использет один метод шифрования из этих, которые заблокированы? Попробуйте закомментить эти строчки.

ierton ★★
()
Ответ на: комментарий от GroundRush
Connect: ppp0 <--> /dev/pts/1
sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x53e1340f> <pcomp> <accomp>]
rcvd [LCP ConfReq id=0x1 <auth chap MD5> <magic 0x343d1492>]
No auth is possible

Собсно вотже - сервак хочет аутентификации по методу chap. А ваш pptp послыает его нафиг, так как у него стоит refuse-chap.

ierton ★★
()
Ответ на: комментарий от ierton
pon vpn0 debug dump logfd 2 nodetach
pppd options in effect:
debug		# (from command line)
nodetach		# (from command line)
logfd 2		# (from command line)
dump		# (from command line)
noauth		# (from /etc/ppp/options.pptp)
name 0892148516@internet.beeline.ru		# (from /etc/ppp/peers/vpn0)
remotename PPTP		# (from /etc/ppp/peers/vpn0)
		# (from /etc/ppp/options.pptp)
pty pptp 172.18.48.69 --nolaunchpppd mtu 1492		# (from /etc/ppp/peers/vpn0)
crtscts		# (from /etc/ppp/options)
		# (from /etc/ppp/options)
asyncmap 0		# (from /etc/ppp/options)
lcp-echo-failure 4		# (from /etc/ppp/options)
lcp-echo-interval 30		# (from /etc/ppp/options)
hide-password		# (from /etc/ppp/options)
ipparam vpn0		# (from /etc/ppp/peers/vpn0)
proxyarp		# (from /etc/ppp/options)
noipx		# (from /etc/ppp/options)
using channel 18
Using interface ppp0
Connect: ppp0 <--> /dev/pts/2
sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0xb9e2dfc3> <pcomp> <accomp>]
rcvd [LCP ConfReq id=0x1 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x1 <auth chap MD5>]
rcvd [LCP ConfReq id=0x2 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x2 <auth chap MD5>]
rcvd [LCP ConfReq id=0x3 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x3 <auth chap MD5>]
rcvd [LCP ConfReq id=0x4 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x4 <auth chap MD5>]
rcvd [LCP ConfReq id=0x5 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x5 <auth chap MD5>]
rcvd [LCP ConfReq id=0x6 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x6 <auth chap MD5>]
rcvd [LCP ConfReq id=0x7 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x7 <auth chap MD5>]
rcvd [LCP ConfReq id=0x8 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x8 <auth chap MD5>]
rcvd [LCP ConfReq id=0x9 <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0x9 <auth chap MD5>]
rcvd [LCP ConfReq id=0xa <auth chap MD5> <magic 0x34cf4882>]
No auth is possible
sent [LCP ConfRej id=0xa <auth chap MD5>]
rcvd [LCP TermReq id=0xb]
sent [LCP TermAck id=0xb]
Script pptp 172.18.48.69 --nolaunchpppd mtu 1492 finished (pid 5418), status = 0x0
Modem hangup
Connection terminated.
GroundRush
() автор топика
Ответ на: комментарий от ierton

Да вроде верно все... Ладно, буду курить дальше. Спасибо, что откликнулись

GroundRush
() автор топика
Ответ на: комментарий от vden

Да, конечно есть, перепроверил раз на 100 - все правильно

GroundRush
() автор топика

>после смены провайдера

ключевой момент ящитаю.
Большинство (ну может не большинство, но достаточно большая часть) провайдеров режут pptp.

Ip0 ★★★★
()
Ответ на: комментарий от GroundRush

Ну теперь осталось попробовать другие методы авторизации, допустим дописать

"require-mschap-v2"

mky ★★★★★
()
Вы не можете добавлять комментарии в эту тему. Тема перемещена в архив.