From owner-freebsd-net@FreeBSD.ORG Mon Sep 12 10:49:36 2005 Return-Path: X-Original-To: freebsd-net@freebsd.org Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 3B57D16A41F for ; Mon, 12 Sep 2005 10:49:36 +0000 (GMT) (envelope-from bsd-daemon@spray.se) Received: from lmfilto01.st1.spray.net (lmfilto01.st1.spray.net [212.78.202.65]) by mx1.FreeBSD.org (Postfix) with ESMTP id 554AF43D45 for ; Mon, 12 Sep 2005 10:49:34 +0000 (GMT) (envelope-from bsd-daemon@spray.se) Received: from localhost (localhost [127.0.0.1]) by lmfilto01.st1.spray.net (Postfix) with ESMTP id 59E2D1E3282 for ; Mon, 12 Sep 2005 10:49:33 +0000 (GMT) Received: from lmcodec02.st1.spray.net ([212.78.202.56]) by localhost (lmfilto01.st1.spray.net [212.78.202.32]) (amavisd-new, port 10024) with ESMTP id 14920-03 for ; Mon, 12 Sep 2005 10:49:33 +0000 (GMT) Received: from lmcodec02.st1.spray.net (localhost [127.0.0.1]) by lmcodec02.st1.spray.net (Postfix) with SMTP id 2EDC3AB206 for ; Mon, 12 Sep 2005 10:49:33 +0000 (GMT) Comment: DomainKeys? See http://antispam.yahoo.com/domainkeys DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=spray.se; h=From:Subject; b=RAS//C4bvt8tt3nou4oI+a7BSX3qPPWtA8RTYOd50J1k+IwUsMbBD9uRmGnM2g+n/fEqZILqNDJx91Wu8EudIrfUErCYkXf+xKrgIhy5yQSFr5gjCONMKqCLqyrld60kagS57HPeXo1TJ5MFEhbUnhpCW9RSm+jElUdlTvmA8N8=; From: "G B" To: freebsd-net@freebsd.org Message-ID: <17691085124991@lycos-europe.com> X-Mailer: LycosMail X-Priority: 3 X-Originating-IP: 213.199.67.100 Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="=_NextPart_Lycos_49911769108513_ID" Date: Mon, 12 Sep 2005 10:49:33 +0000 (GMT) X-Virus-Scanned: by amavisd-new at spray.net Subject: pptpclient vpn connection with FreeBSD 6.0-BETA4 X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 12 Sep 2005 10:49:36 -0000 This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible. --=_NextPart_Lycos_49911769108513_ID Content-Type: text/plain; charset="windows-1252" Content-Transfer-Encoding: 7bit Hello all, I'm trying to connect a FreeBSD client computer to a Watchguard company firewall that only has PPTP VPN connectivity. # uname -sr FreeBSD 6.0-BETA4 pptpclient 1.7.0 + patch-aa and patch-ac from ports (also tried the older 1.5.0 from ports) /etc/ppp/ppp.conf company: set authname username set authkey password set timeout 0 set ifaddr 0 0 add 192.168.100.0/24 HISADDR disable ipv6cp /var/log/messages Sep 12 11:35:30 thinkpad pptp[819]: anon log[main:pptp.c:267]: The synchronous pptp option is NOT activated Sep 12 11:35:30 thinkpad pptp[822]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 1 'Start-Control-Connection-Request' Sep 12 11:35:30 thinkpad pptp[822]: anon log[ctrlp_disp:pptp_ctrl.c:738]: Received Start Control Connection Reply Sep 12 11:35:30 thinkpad pptp[822]: anon log[ctrlp_disp:pptp_ctrl.c:772]: Client connection established. Sep 12 11:35:31 thinkpad pptp[822]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 7 'Outgoing-Call-Request' Sep 12 11:35:31 thinkpad pptp[822]: anon log[ctrlp_disp:pptp_ctrl.c:857]: Received Outgoing Call Reply. Sep 12 11:35:31 thinkpad pptp[822]: anon log[ctrlp_disp:pptp_ctrl.c:896]: Outgoing call established (call ID 0, peer's call ID 1). Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 1 Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 2 Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 3 Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 4 Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 5 Sep 12 11:35:34 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 6 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 7 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 8 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 9 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 10 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 11 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 12 Sep 12 11:35:35 thinkpad pptp[823]: anon log[decaps_gre:pptp_gre.c:388]: accepting packet 13 Sep 12 11:36:31 thinkpad pptp[822]: anon log[logecho:pptp_ctrl.c:676]: Echo Reply received. Sep 12 11:37:31 thinkpad pptp[822]: anon log[logecho:pptp_ctrl.c:676]: Echo Reply received. Sep 12 11:39:31 thinkpad last message repeated 2 times /var/log/ppp.log Sep 12 11:35:32 thinkpad ppp[819]: Phase: Using interface: tun0 Sep 12 11:35:32 thinkpad ppp[819]: Phase: deflink: Created in closed state Sep 12 11:35:32 thinkpad ppp[819]: Phase: PPP Started (direct mode). Sep 12 11:35:32 thinkpad ppp[819]: Phase: bundle: Establish Sep 12 11:35:32 thinkpad ppp[819]: Phase: deflink: closed -> opening Sep 12 11:35:32 thinkpad ppp[819]: Phase: deflink: Connected! Sep 12 11:35:32 thinkpad ppp[819]: Phase: deflink: opening -> carrier Sep 12 11:35:33 thinkpad ppp[819]: Phase: deflink: carrier -> lcp Sep 12 11:35:34 thinkpad ppp[819]: Phase: bundle: Authenticate Sep 12 11:35:34 thinkpad ppp[819]: Phase: deflink: his = CHAP 0x81, mine = none Sep 12 11:35:34 thinkpad ppp[819]: Phase: Chap Input: CHALLENGE (16 bytes from watchguard) Sep 12 11:35:34 thinkpad ppp[819]: Phase: Chap Output: RESPONSE (username) Sep 12 11:35:34 thinkpad ppp[819]: Phase: Chap Input: SUCCESS (S=XXXXXXXXXXXXXXXXXXXXXXXXX) Sep 12 11:35:34 thinkpad ppp[819]: Phase: deflink: lcp -> open Sep 12 11:35:34 thinkpad ppp[819]: Phase: bundle: Network # ifconfig tun0 tun0: flags=8051 mtu 336 inet 192.168.100.242 --> 192.168.100.1 netmask 0xffffffff Opened by PID 819 # netstat -rn Routing tables Internet: Destination Gateway Flags Refs Use Netif Expire default 213.199.xx.xx UGS 0 81 fxp0 127.0.0.1 127.0.0.1 UH 0 10 lo0 192.168.100 192.168.100.1 UGS 0 12 tun0 192.168.100.1 192.168.100.242 UH 1 18 tun0 213.199.xx link#2 UC 0 0 fxp0 213.199.xx.xx 00:00:0c:xx:xx:xx UHLW 2 0 fxp0 577 So the tunnel seems to be up, but there seems to be no traffic reaching the other side: # ping 192.168.100.1 PING 192.168.100.1 (192.168.100.1): 56 data bytes ^C --- 192.168.100.1 ping statistics --- 6 packets transmitted, 0 packets received, 100% packet loss Is pptp broken on FreeBSD 6.x or is there another problem? FWIW the connection works from another computer running Mac OS X 10.3 --=_NextPart_Lycos_49911769108513_ID--