LINUX.ORG.RU

Сообщения Klubkin

 

Миграция за рубеж

Народ, у кого какой опыт по сабжу? Кто куда свалил и на сколько?

Klubkin
()

openvpn и удаленные офисы

таблица маршрутизации на сервере, где 192.168.0.0/24 - сеть клиента.

192.168.0.0 10.10.10.2 255.255.255.0 UG 0 0 0 tun0

10.10.10.0 10.10.10.2 255.255.255.0 UG 0 0 0 tun0

Собственно сабж - не идут пакеты в сеть клиента. У кого какие соображения?

Конфиг сервера

port 1194

proto udp

dev tun

ca /etc/openvpn/ca.crt

cert /etc/openvpn/server.crt

key /etc/openvpn/server.key # This file should be kept secret

dh /etc/openvpn/dh1024.pem

server 10.10.10.0 255.255.255.0 # vpn subnet

ifconfig-pool-persist ipp.txt

push «route 192.168.3.0 255.255.255.0» # home subnet

keepalive 10 120

comp-lzo

user nobody

group nogroup

persist-key

persist-tun

status /var/log/openvpn-status.log

log-append /var/log/openvpn.log

verb 4

mute 20

client-to-client

client-config-dir /etc/openvpn/ccd

route 192.168.0.0 255.255.255.0 # Маршрут от сервера до филиала

daemon

Klubkin
()

Отваливается pptp сессия

Имеется PPTP сервер на debian, столкнулся с такой проблемой: при прохождении через pptp некоторого количества байт интерфейс падает, причем, что на виндовых клиентах, что на линуксовых. Кто сталкивался, подскажите куда копать?

Лог на клиенте:

# cat /var/log/syslog

Apr 4 11:25:52 set pppd[3902]: Script /etc/ppp/ip-down finished (pid 4603), status = 0x0

Apr 4 11:26:02 set pptp[4619]: anon log[main:pptp.c:314]: The synchronous pptp option is NOT activated

Apr 4 11:26:02 set pppd[3902]: using channel 13

Apr 4 11:26:02 set pppd[3902]: Using interface ppp0

Apr 4 11:26:02 set pppd[3902]: Connect: ppp0 <--> /dev/pts/3

Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 1 'Start-Control-Connection-Request'

Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:739]: Received Start Control Connection Reply

Apr 4 11:26:02 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:773]: Client connection established.

Apr 4 11:26:03 set pppd[3902]: sent [LCP ConfReq id=0x11 <asyncmap 0x0> <magic 0xc6a2a1a2> <pcomp> <accomp>]

Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_rep:pptp_ctrl.c:251]: Sent control packet type is 7 'Outgoing-Call-Request'

Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:858]: Received Outgoing Call Reply.

Apr 4 11:26:03 set pptp[4625]: anon log[ctrlp_disp:pptp_ctrl.c:897]: Outgoing call established (call ID 0, peer's call ID 2432).

Apr 4 11:26:03 set pppd[3902]: rcvd [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x45bdbba7> <pcomp> <accomp>]

Apr 4 11:26:03 set pppd[3902]: sent [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x45bdbba7> <pcomp> <accomp>]

Apr 4 11:26:03 set pppd[3902]: rcvd [LCP ConfAck id=0x11 <asyncmap 0x0> <magic 0xc6a2a1a2> <pcomp> <accomp>]

Apr 4 11:26:03 set pppd[3902]: sent [LCP EchoReq id=0x0 magic=0xc6a2a1a2]

Apr 4 11:26:03 set pppd[3902]: rcvd [LCP EchoReq id=0x0 magic=0x45bdbba7]

Apr 4 11:26:03 set pppd[3902]: sent [LCP EchoRep id=0x0 magic=0xc6a2a1a2]

Apr 4 11:26:03 set pppd[3902]: rcvd [CHAP Challenge id=0x41 <2cf506240d5439b8210256957fba8389>, name = «pptpd»]

Apr 4 11:26:03 set pppd[3902]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access

Apr 4 11:26:03 set pppd[3902]: sent [CHAP Response id=0x41 <c82ebbef74ba4fef42a81cfde354a56400000000000000004bf8c7b9ac4ed08fdb6cc0aaa6d61154f24e64de06c8a92300>, name = «set»]

Apr 4 11:26:03 set pppd[3902]: rcvd [LCP EchoRep id=0x0 magic=0x45bdbba7]

Apr 4 11:26:03 set pppd[3902]: rcvd [CHAP Success id=0x41 «S=5EEA90916C3BA2C9A0119D66F84AAAB333C9C9B4 M=Access granted»]

Apr 4 11:26:03 set pppd[3902]: CHAP authentication succeeded

Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfReq id=0x11 <mppe +H -M +S +L -D -C>]

Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfReq id=0x1 <mppe +H -M +S -L -D -C>]

Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfAck id=0x1 <mppe +H -M +S -L -D -C>]

Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfNak id=0x11 <mppe +H -M +S -L -D -C>]

Apr 4 11:26:03 set pppd[3902]: sent [CCP ConfReq id=0x12 <mppe +H -M +S -L -D -C>]

Apr 4 11:26:03 set pppd[3902]: rcvd [CCP ConfAck id=0x12 <mppe +H -M +S -L -D -C>]

Apr 4 11:26:03 set pppd[3902]: MPPE 128-bit stateless compression enabled

Apr 4 11:26:03 set pppd[3902]: sent [IPCP ConfReq id=0xa <compress VJ 0f 01> <addr 192.168.3.208>]

Apr 4 11:26:03 set pppd[3902]: rcvd [IPCP ConfReq id=0x1 <compress VJ 0f 01> <addr 192.168.3.207>]

Apr 4 11:26:03 set pppd[3902]: sent [IPCP ConfAck id=0x1 <compress VJ 0f 01> <addr 192.168.3.207>]

Apr 4 11:26:03 set pppd[3902]: rcvd [IPCP ConfAck id=0xa <compress VJ 0f 01> <addr 192.168.3.208>]

Apr 4 11:26:03 set pppd[3902]: Cannot determine ethernet address for proxy ARP

Apr 4 11:26:03 set pppd[3902]: local IP address 192.168.3.208

Apr 4 11:26:03 set pppd[3902]: remote IP address 192.168.3.207

Apr 4 11:26:03 set pppd[3902]: Script /etc/ppp/ip-up started (pid 4626)

Apr 4 11:26:03 set pppd[3902]: Script /etc/ppp/ip-up finished (pid 4626), status = 0x0

Apr 4 11:27:03 set pptp[4625]: anon log[logecho:pptp_ctrl.c:677]: Echo Reply received.

Apr 4 11:27:25 set acpid: client 1162[0:0] has disconnected

Apr 4 11:27:25 set acpid: client connected from 1162[0:0]

Apr 4 11:27:37 set pulseaudio[1920]: ratelimit.c: 45 events suppressed

Apr 4 11:27:52 set acpid: client 1162[0:0] has disconnected

Лог на сервере:

# cat /var/log/syslog

Apr 4 11:46:17 gw pptpd[5508]: CTRL: Received PPTP Control Message (type: 5)

Apr 4 11:46:17 gw pptpd[5508]: CTRL: Made a ECHO RPLY packet

Apr 4 11:46:17 gw pptpd[5508]: CTRL: I wrote 20 bytes to the client.

Apr 4 11:46:17 gw pptpd[5508]: CTRL: Sent packet to client

Apr 4 11:46:47 gw pptpd[5508]: GRE: accepting packet #286

Apr 4 11:46:47 gw pptpd[5508]: GRE: accepting packet #287

Klubkin
()

RSS подписка на новые темы