Миграция за рубеж
Народ, у кого какой опыт по сабжу? Кто куда свалил и на сколько?
Народ, у кого какой опыт по сабжу? Кто куда свалил и на сколько?
таблица маршрутизации на сервере, где 192.168.0.0/24 - сеть клиента.
192.168.0.0 10.10.10.2 255.255.255.0 UG 0 0 0 tun0
10.10.10.0 10.10.10.2 255.255.255.0 UG 0 0 0 tun0
Собственно сабж - не идут пакеты в сеть клиента. У кого какие соображения?
Конфиг сервера
port 1194
proto udp
dev tun
ca /etc/openvpn/ca.crt
cert /etc/openvpn/server.crt
key /etc/openvpn/server.key # This file should be kept secret
dh /etc/openvpn/dh1024.pem
server 10.10.10.0 255.255.255.0 # vpn subnet
ifconfig-pool-persist ipp.txt
push «route 192.168.3.0 255.255.255.0» # home subnet
keepalive 10 120
comp-lzo
user nobody
group nogroup
persist-key
persist-tun
status /var/log/openvpn-status.log
log-append /var/log/openvpn.log
verb 4
mute 20
client-to-client
client-config-dir /etc/openvpn/ccd
route 192.168.0.0 255.255.255.0 # Маршрут от сервера до филиала
daemon
Имеется PPTP сервер на debian, столкнулся с такой проблемой: при прохождении через pptp некоторого количества байт интерфейс падает, причем, что на виндовых клиентах, что на линуксовых. Кто сталкивался, подскажите куда копать?
Лог на клиенте:
# cat /var/log/syslog
Apr 4 11:25:52 set pppd[3902]: Script /etc/ppp/ip-down finished (pid 4603), status = 0x0
Apr 4 11:26:02 set pptp[4619]: anon log[main:pptp.c:314]: The synchronous pptp option is NOT activated
Apr 4 11:26:02 set pppd[3902]: using channel 13
Apr 4 11:26:02 set pppd[3902]: Using interface ppp0
Apr 4 11:26:02 set pppd[3902]: Connect: ppp0 <--> /dev/pts/3
Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 1 'Start-Control-Connection-Request'
Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:739]: Received Start Control Connection Reply
Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:773]: Client connection established.
Apr 4 11:26:03 set pppd[3902]: sent [LCP ConfReq id=0x11 <asyncmap 0x0> <magic 0xc6a2a1a2> <pcomp> <accomp>]
Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 7 'Outgoing-Call-Request'
Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:858]: Received Outgoing Call Reply.
Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:897]: Outgoing call established (call ID 0, peer's call ID 2432).
Apr 4 11:26:03 set pppd[3902]: rcvd [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x45bdbba7> <pcomp> <accomp>]
Apr 4 11:26:03 set pppd[3902]: sent [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x45bdbba7> <pcomp> <accomp>]
Apr 4 11:26:03 set pppd[3902]: rcvd [LCP ConfAck id=0x11 <asyncmap 0x0> <magic 0xc6a2a1a2> <pcomp> <accomp>]
Apr 4 11:26:03 set pppd[3902]: sent [LCP EchoReq id=0x0 magic=0xc6a2a1a2]
Apr 4 11:26:03 set pppd[3902]: rcvd [LCP EchoReq id=0x0 magic=0x45bdbba7]
Apr 4 11:26:03 set pppd[3902]: sent [LCP EchoRep id=0x0 magic=0xc6a2a1a2]
Apr 4 11:26:03 set pppd[3902]: rcvd [CHAP Challenge id=0x41 <2cf506240d5439b8210256957fba8389>, name = «pptpd»]
Apr 4 11:26:03 set pppd[3902]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access
Apr 4 11:26:03 set pppd[3902]: sent [CHAP Response id=0x41 <c82ebbef74ba4fef42a81cfde354a56400000000000000004bf8c7b9ac4ed08fdb6cc0aaa6d61154f24e64de06c8a92300>, name = «set»]
Apr 4 11:26:03 set pppd[3902]: rcvd [LCP EchoRep id=0x0 magic=0x45bdbba7]
Apr 4 11:26:03 set pppd[3902]: rcvd [CHAP Success id=0x41 «S=5EEA90916C3BA2C9A0119D66F84AAAB333C9C9B4 M=Access granted»]
Apr 4 11:26:03 set pppd[3902]: CHAP authentication succeeded
Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfReq id=0x11 <mppe +H -M +S +L -D -C>]
Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfReq id=0x1 <mppe +H -M +S -L -D -C>]
Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfAck id=0x1 <mppe +H -M +S -L -D -C>]
Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfNak id=0x11 <mppe +H -M +S -L -D -C>]
Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfReq id=0x12 <mppe +H -M +S -L -D -C>]
Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfAck id=0x12 <mppe +H -M +S -L -D -C>]
Apr 4 11:26:03 set pppd[3902]: MPPE 128-bit stateless compression enabled
Apr 4 11:26:03 set pppd[3902]: sent [IPCP ConfReq id=0xa <compress VJ 0f 01> <addr 192.168.3.208>]
Apr 4 11:26:03 set pppd[3902]: rcvd [IPCP ConfReq id=0x1 <compress VJ 0f 01> <addr 192.168.3.207>]
Apr 4 11:26:03 set pppd[3902]: sent [IPCP ConfAck id=0x1 <compress VJ 0f 01> <addr 192.168.3.207>]
Apr 4 11:26:03 set pppd[3902]: rcvd [IPCP ConfAck id=0xa <compress VJ 0f 01> <addr 192.168.3.208>]
Apr 4 11:26:03 set pppd[3902]: Cannot determine ethernet address for proxy ARP
Apr 4 11:26:03 set pppd[3902]: local IP address 192.168.3.208
Apr 4 11:26:03 set pppd[3902]: remote IP address 192.168.3.207
Apr 4 11:26:03 set pppd[3902]: Script /etc/ppp/ip-up started (pid 4626)
Apr 4 11:26:03 set pppd[3902]: Script /etc/ppp/ip-up finished (pid 4626), status = 0x0
Apr 4 11:27:03 set pptp[4625]: anon log[logecho:pptp_ctrl.c:677]: Echo Reply received.
Apr 4 11:27:25 set acpid: client 1162[0:0] has disconnected
Apr 4 11:27:25 set acpid: client connected from 1162[0:0]
Apr 4 11:27:37 set pulseaudio[1920]: ratelimit.c: 45 events suppressed
Apr 4 11:27:52 set acpid: client 1162[0:0] has disconnected
Лог на сервере:
# cat /var/log/syslog
Apr 4 11:46:17 gw pptpd[5508]: CTRL: Received PPTP Control Message (type: 5)
Apr 4 11:46:17 gw pptpd[5508]: CTRL: Made a ECHO RPLY packet
Apr 4 11:46:17 gw pptpd[5508]: CTRL: I wrote 20 bytes to the client.
Apr 4 11:46:17 gw pptpd[5508]: CTRL: Sent packet to client
Apr 4 11:46:47 gw pptpd[5508]: GRE: accepting packet #286
Apr 4 11:46:47 gw pptpd[5508]: GRE: accepting packet #287