[FUGSPBR] MPD - VPN

Jeandre Uchoa jeandreu em yahoo.com.br
Sex Dez 3 19:05:03 BRST 2004


Prezados Senhores,




                          Estou com um problema no MPD, gostaria que alguém
me desse um luz por gentileza.


                           É o seguinte, estou com cenario:


Servidor
IP Externo:       200.145.145.140
IP Interno:       10.67.2.113 Mascara de rede interna: 255.255.0.0

      Setei minha interface remota virtual como 10.67.2.114, consigo pingar
o servidor minha interface de lan, mas nao consigo pingar nenhum ip da minha
rede, o que poderia ser?

Tenho essas regras de IPFW:

00100 allow tcp from any to 200.145.145.140 dst-port 1723
00200 allow tcp from 200.145.145.140 1723 to any
00300 allow gre from 200.145.145.140 to any
00300 allow ip from any to 10.67.2.0/24 via rl1
00400 allow gre from any to 200.145.145.140
00400 allow ip from 10.67.2.0/24 to any via rl1
65535 allow ip from any to any

Olhem o log com mpd usando parametro -k :



[root em DSC ~]
 3# mpd -k
Multi-link PPP for FreeBSD, by Archie L. Cobbs.
Based on iij-ppp, by Toshiharu OHNO.
mpd: pid 6306, version 3.18 (root em dsc.supernet.br 12:19  2-Dec-2004)
[pptp0] ppp node is "mpd6306-pptp0"
Usage: set pptp self ip [port]
mpd: local IP address for PPTP is 0.0.0.0
[pptp0] using interface ng0
[pptp0:pptp0] mpd: PPTP connection from 200.145.145.142:1449
pptp0: attached to connection with 200.145.145.142:1449
[pptp0] IFACE: Open event
[pptp0] IPCP: Open event
[pptp0] IPCP: state change Initial --> Starting
[pptp0] IPCP: LayerStart
[pptp0] IPCP: Open event
[pptp0] bundle: OPEN event in state CLOSED
[pptp0] opening link "pptp0"...
[pptp0] link: OPEN event
[pptp0] LCP: Open event
[pptp0] LCP: state change Initial --> Starting
[pptp0] LCP: LayerStart
[pptp0] device: OPEN event in state DOWN
[pptp0] attaching to peer's outgoing call
[pptp0] device is now in state OPENING
[pptp0] device: UP event in state OPENING
[pptp0] device is now in state UP
[pptp0] link: UP event
[pptp0] link: origination is remote
[pptp0] LCP: Up event
[pptp0] LCP: state change Starting --> Req-Sent
[pptp0] LCP: phase shift DEAD --> ESTABLISH
[pptp0] LCP: SendConfigReq #1
 ACFCOMP
 PROTOCOMP
 MRU 1500
 MAGICNUM a7d5c716
 AUTHPROTO CHAP MSOFTv2
pptp0-0: ignoring SetLinkInfo
[pptp0] LCP: rec'd Configure Request #0 link 0 (Req-Sent)
MRU 1400
 MAGICNUM 26d95e8c
 PROTOCOMP
 ACFCOMP
 CALLBACK
   Not supported
[pptp0] LCP: SendConfigRej #0
 CALLBACK
[pptp0] LCP: rec'd Configure Request #1 link 0 (Req-Sent)
 MRU 1400
 MAGICNUM 26d95e8c
 PROTOCOMP
 ACFCOMP
[pptp0] LCP: SendConfigAck #1
 MRU 1400
 MAGICNUM 26d95e8c
 PROTOCOMP
 ACFCOMP
[pptp0] LCP: state change Req-Sent --> Ack-Sent
[pptp0] LCP: SendConfigReq #2
 ACFCOMP
 PROTOCOMP
 MRU 1500
 MAGICNUM a7d5c716
 AUTHPROTO CHAP MSOFTv2
[pptp0] LCP: rec'd Configure Ack #2 link 0 (Ack-Sent)
 ACFCOMP
 PROTOCOMP
 MRU 1500
 MAGICNUM a7d5c716
 AUTHPROTO CHAP MSOFTv2
[pptp0] LCP: state change Ack-Sent --> Opened
[pptp0] LCP: phase shift ESTABLISH --> AUTHENTICATE
[pptp0] LCP: auth: peer wants nothing, I want CHAP
[pptp0] CHAP: sending CHALLENGE
[pptp0] LCP: LayerUp
pptp0-0: ignoring SetLinkInfo
[pptp0] LCP: rec'd Ident #2 link 0 (Opened)
 MESG: MSRASV5.10
[pptp0] LCP: rec'd Ident #3 link 0 (Opened)
 MESG: MSRAS-0-ROBRTW000564
[pptp0] CHAP: rec'd RESPONSE #1
 Name: "jeandre"
Peer name: "jeandre"
 Response is valid
[pptp0] CHAP: sending SUCCESS
[pptp0] LCP: authorization successful
[pptp0] LCP: phase shift AUTHENTICATE --> NETWORK
[pptp0] setting interface ng0 MTU to 1400 bytes
[pptp0] up: 1 link, total bandwidth 64000 bps
[pptp0] IPCP: Up event
[pptp0] IPCP: state change Starting --> Req-Sent
[pptp0] IPCP: SendConfigReq #1
 IPADDR 10.69.2.114
 COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
[pptp0] CCP: Open event
[pptp0] CCP: state change Initial --> Starting
[pptp0] CCP: LayerStart
[pptp0] CCP: Up event
[pptp0] CCP: state change Starting --> Req-Sent
[pptp0] CCP: SendConfigReq #1
[pptp0] CCP: Checking whether 40 bits are enabled -> yes
[pptp0] CCP: Checking whether 56 bits are enabled -> no
[pptp0] CCP: Checking whether 128 bits are enabled -> yes
 MPPC
   0x01000060: MPPE, 40 bit, 128 bit, stateless
[pptp0] CCP: rec'd Configure Request #4 link 0 (Req-Sent)
 MPPC
   0x01000041: MPPC MPPE, 128 bit, stateless
[pptp0] CCP: Checking whether 128 bits are acceptable -> yes
[pptp0] CCP: SendConfigNak #4
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] IPCP: rec'd Configure Request #5 link 0 (Req-Sent)
 IPADDR 0.0.0.0
   NAKing with 10.69.2.114
 PRIDNS 0.0.0.0
   NAKing with 10.69.1.11
 PRINBNS 0.0.0.0
   NAKing with 10.69.1.10
 SECDNS 0.0.0.0
 SECNBNS 0.0.0.0
[pptp0] IPCP: SendConfigRej #5
 SECDNS 0.0.0.0
 SECNBNS 0.0.0.0
[pptp0] IPCP: rec'd Configure Reject #1 link 0 (Req-Sent)
 COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
[pptp0] IPCP: SendConfigReq #2
 IPADDR 10.69.2.114
[pptp0] CCP: rec'd Configure Nak #1 link 0 (Req-Sent)
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] CCP: SendConfigReq #2
[pptp0] CCP: Checking whether 40 bits are enabled -> no
[pptp0] CCP: Checking whether 56 bits are enabled -> no
[pptp0] CCP: Checking whether 128 bits are enabled -> yes
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] CCP: rec'd Configure Request #6 link 0 (Req-Sent)
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] CCP: Checking whether 128 bits are acceptable -> yes
[pptp0] CCP: SendConfigAck #6
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] CCP: state change Req-Sent --> Ack-Sent
[pptp0] IPCP: rec'd Configure Request #7 link 0 (Req-Sent)
 IPADDR 0.0.0.0
   NAKing with 10.69.2.114
 PRIDNS 0.0.0.0
   NAKing with 10.69.1.11
 PRINBNS 0.0.0.0
   NAKing with 10.69.1.10
[pptp0] IPCP: SendConfigNak #7
 IPADDR 10.69.2.114
 PRIDNS 10.69.1.11
 PRINBNS 10.69.1.10
[pptp0] IPCP: rec'd Configure Ack #2 link 0 (Req-Sent)
 IPADDR 10.69.2.114
[pptp0] IPCP: state change Req-Sent --> Ack-Rcvd
[pptp0] CCP: rec'd Configure Ack #2 link 0 (Ack-Sent)
 MPPC
   0x01000040: MPPE, 128 bit, stateless
[pptp0] CCP: state change Ack-Sent --> Opened
[pptp0] CCP: LayerUp
  Compress using: MPPE, 128 bit, stateless
Decompress using: MPPE, 128 bit, stateless
[pptp0] setting interface ng0 MTU to 1396 bytes
[pptp0] IPCP: rec'd Configure Request #8 link 0 (Ack-Rcvd)
 IPADDR 10.69.2.114
   10.69.2.114 is OK
 PRIDNS 10.69.1.11
 PRINBNS 10.69.1.10
[pptp0] IPCP: SendConfigAck #8
 IPADDR 10.69.2.114
 PRIDNS 10.69.1.11
 PRINBNS 10.69.1.10
[pptp0] IPCP: state change Ack-Rcvd --> Opened
[pptp0] IPCP: LayerUp
  10.69.2.114 -> 10.69.2.114
[pptp0] IFACE: Up event
[pptp0] setting interface ng0 MTU to 1396 bytes
[pptp0] exec: /sbin/ifconfig ng0 10.69.2.114 10.69.2.114 netmask 
0xffffffff -link0
[pptp0] exec: /usr/sbin/arp -s 10.69.2.114 0:e0:7d:df:ad:f5 pub
[pptp0] exec: command returned 256
[pptp0] exec: /sbin/route add 10.69.2.114 -iface lo0
[pptp0] exec: command returned 256
[pptp0] exec: /sbin/route add 10.69.0.0 10.69.2.114 -netmask 0xffff0000
[pptp0] exec: command returned 256
[pptp0] IFACE: Up event



Desculpe pelo longo e-mail.


Atenciosamente,


Jeandre 

_______________________________________________________________
Para enviar um novo email para a lista: fugspbr em fugspbr.org
Sair da Lista: http://lists.fugspbr.org/listinfo.cgi
Historico: http://www4.fugspbr.org/lista/html/FUG-BR/



Mais detalhes sobre a lista de discussão freebsd