FreeBSD 6.2
mpd-3.18_5
У машины 2 сетевые одна в первую подсеть смотрит, 2-ая в 66
pf пропускает пропускает порт 1723
Код: Выделить всё
pass in quick on $ext_if proto { tcp, udp } from $VPN_table to self port 1723
Брандмауэр с обеих сторон отключен
Но что самое главное потом через время связь восстанавливается...
mpd.conf
Код: Выделить всё
default:
load pptp0
load pptp1
# User 0
pptp0:
new -i ng0 pptp0 pptp0
set ipcp ranges 192.168.1.11/32 192.168.66.81/32
load pptp_standart
# User 1
pptp1:
new -i ng1 pptp1 pptp1
set ipcp ranges 192.168.1.11/32 192.168.66.230/32
load pptp_standart
########################################################################
pptp_standart:
set iface disable on-demand
set bundle disable multilink
set link yes acfcomp protocomp
set link no pap chap
set link enable chap
set link keep-alive 60 180
set ipcp yes vjcomp
set ipcp dns 192.168.66.1
set ipcp nbns 192.168.66.1
set iface enable proxy-arp
set bundle enable compression
set ccp yes mpp-compress
set ccp yes mppc
set ccp yes mpp-e128
set ccp yes mpp-stateless
set bundle yes crypt-reqd
set iface idle 0
set iface session 0
set pptp self 192.168.1.11
set pptp enable incoming
set pptp disable originate
set pptp disable windowing
Код: Выделить всё
# User 0
pptp0:
set link type pptp
set pptp disable delayed-ack
set pptp disable windowing
set pptp enable incoming
set pptp disable originate
# User 1
pptp1:
set link type pptp
set pptp disable delayed-ack
set pptp disable windowing
set pptp enable incoming
set pptp disable originate
Код: Выделить всё
# pptp0:
user0 "password0" 192.168.66.81
# pptp1:
user1 "password1" 192.168.66.230
Код: Выделить всё
Nov 10 22:21:36 test mpd: mpd: PPTP connection from 87.59.26.*:2756
Nov 10 22:21:36 test mpd: pptp0: attached to connection with 87.59.26.*:2756
Nov 10 22:21:36 test mpd: [pptp0] IFACE: Open event
Nov 10 22:21:36 test mpd: [pptp0] IPCP: Open event
Nov 10 22:21:36 test mpd: [pptp0] IPCP: state change Initial --> Starting
Nov 10 22:21:36 test mpd: [pptp0] IPCP: LayerStart
Nov 10 22:21:36 test mpd: [pptp0] IPCP: Open event
Nov 10 22:21:36 test mpd: [pptp0] bundle: OPEN event in state CLOSED
Nov 10 22:21:36 test mpd: [pptp0] opening link "pptp0"...
Nov 10 22:21:36 test mpd: [pptp0] link: OPEN event
Nov 10 22:21:36 test mpd: [pptp0] LCP: Open event
Nov 10 22:21:36 test mpd: [pptp0] LCP: state change Initial --> Starting
Nov 10 22:21:36 test mpd: [pptp0] LCP: LayerStart
Nov 10 22:21:36 test mpd: [pptp0] device: OPEN event in state DOWN
Nov 10 22:21:36 test mpd: [pptp0] attaching to peer's outgoing call
Nov 10 22:21:36 test mpd: [pptp0] device is now in state OPENING
Nov 10 22:21:36 test mpd: [pptp0] device: UP event in state OPENING
Nov 10 22:21:36 test mpd: [pptp0] device is now in state UP
Nov 10 22:21:36 test mpd: [pptp0] link: UP event
Nov 10 22:21:36 test mpd: [pptp0] link: origination is remote
Nov 10 22:21:36 test mpd: [pptp0] LCP: Up event
Nov 10 22:21:36 test mpd: [pptp0] LCP: state change Starting --> Req-Sent
Nov 10 22:21:36 test mpd: [pptp0] LCP: phase shift DEAD --> ESTABLISH
Nov 10 22:21:36 test mpd: [pptp0] LCP: SendConfigReq #1
Nov 10 22:21:36 test mpd: ACFCOMP
Nov 10 22:21:36 test mpd: PROTOCOMP
Nov 10 22:21:36 test mpd: MRU 1500
Nov 10 22:21:36 test mpd: MAGICNUM 06d4183a
Nov 10 22:21:36 test mpd: AUTHPROTO CHAP MSOFTv2
Nov 10 22:21:36 test mpd: pptp0-0: ignoring SetLinkInfo
Nov 10 22:21:36 test mpd: [pptp0] LCP: rec'd Configure Request #0 link 0 (Req-Sent)
Nov 10 22:21:36 test mpd: MRU 1400
Nov 10 22:21:36 test mpd: MAGICNUM 28fb50f7
Nov 10 22:21:36 test mpd: PROTOCOMP
Nov 10 22:21:36 test mpd: ACFCOMP
Nov 10 22:21:36 test mpd: CALLBACK
Nov 10 22:21:36 test mpd: Not supported
Nov 10 22:21:36 test mpd: [pptp0] LCP: SendConfigRej #0
Nov 10 22:21:36 test mpd: CALLBACK
Nov 10 22:21:36 test mpd: [pptp0] LCP: rec'd Configure Request #1 link 0 (Req-Sent)
Nov 10 22:21:36 test mpd: MRU 1400
Nov 10 22:21:36 test mpd: MAGICNUM 28fb50f7
Nov 10 22:21:36 test mpd: PROTOCOMP
Nov 10 22:21:36 test mpd: ACFCOMP
Nov 10 22:21:36 test mpd: [pptp0] LCP: SendConfigAck #1
Nov 10 22:21:36 test mpd: MRU 1400
Nov 10 22:21:36 test mpd: MAGICNUM 28fb50f7
Nov 10 22:21:36 test mpd: PROTOCOMP
Nov 10 22:21:36 test mpd: ACFCOMP
Nov 10 22:21:36 test mpd: [pptp0] LCP: state change Req-Sent --> Ack-Sent
Nov 10 22:21:38 test mpd: [pptp0] LCP: SendConfigReq #2
Nov 10 22:21:38 test mpd: ACFCOMP
Nov 10 22:21:38 test mpd: PROTOCOMP
Nov 10 22:21:38 test mpd: MRU 1500
Nov 10 22:21:38 test mpd: MAGICNUM 06d4183a
Nov 10 22:21:38 test mpd: AUTHPROTO CHAP MSOFTv2
Nov 10 22:21:38 test mpd: [pptp0] LCP: rec'd Configure Ack #2 link 0 (Ack-Sent)
Nov 10 22:21:38 test mpd: ACFCOMP
Nov 10 22:21:38 test mpd: PROTOCOMP
Nov 10 22:21:38 test mpd: MRU 1500
Nov 10 22:21:38 test mpd: MAGICNUM 06d4183a
Nov 10 22:21:38 test mpd: AUTHPROTO CHAP MSOFTv2
Nov 10 22:21:38 test mpd: [pptp0] LCP: state change Ack-Sent --> Opened
Nov 10 22:21:38 test mpd: [pptp0] LCP: phase shift ESTABLISH --> AUTHENTICATE
Nov 10 22:21:38 test mpd: [pptp0] LCP: auth: peer wants nothing, I want CHAP
Nov 10 22:21:38 test mpd: [pptp0] CHAP: sending CHALLENGE
Nov 10 22:21:38 test mpd: [pptp0] LCP: LayerUp
Nov 10 22:21:38 test mpd: pptp0-0: ignoring SetLinkInfo
Nov 10 22:21:38 test mpd: [pptp0] LCP: rec'd Ident #2 link 0 (Opened)
Nov 10 22:21:38 test mpd: MESG: MSRASV5.10
Nov 10 22:21:38 test mpd: [pptp0] LCP: rec'd Ident #3 link 0 (Opened)
Nov 10 22:21:38 test mpd: MESG: MSRAS-0-komp
Nov 10 22:21:38 test mpd: [pptp0] CHAP: rec'd RESPONSE #1
Nov 10 22:21:38 test mpd: Name: "user1"
Nov 10 22:21:38 test mpd: Peer name: "user1"
Nov 10 22:21:38 test mpd: Response is valid
Nov 10 22:21:38 test mpd: [pptp0] CHAP: sending SUCCESS
Nov 10 22:21:38 test mpd: [pptp0] LCP: authorization successful
Nov 10 22:21:38 test mpd: [pptp0] LCP: phase shift AUTHENTICATE --> NETWORK
Nov 10 22:21:38 test mpd: [pptp0] setting interface ng0 MTU to 1400 bytes
Nov 10 22:21:38 test mpd: [pptp0] up: 1 link, total bandwidth 64000 bps
Nov 10 22:21:38 test mpd: [pptp0] IPCP: Up event
Nov 10 22:21:38 test mpd: [pptp0] IPCP: state change Starting --> Req-Sent
Nov 10 22:21:38 test mpd: [pptp0] IPCP: SendConfigReq #1
Nov 10 22:21:38 test mpd: IPADDR 192.168.1.11
Nov 10 22:21:38 test mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Nov 10 22:21:38 test mpd: [pptp0] CCP: Open event
Nov 10 22:21:38 test mpd: [pptp0] CCP: state change Initial --> Starting
Nov 10 22:21:38 test mpd: [pptp0] CCP: LayerStart
Nov 10 22:21:38 test mpd: [pptp0] CCP: Up event
Nov 10 22:21:38 test mpd: [pptp0] CCP: state change Starting --> Req-Sent
Nov 10 22:21:38 test mpd: [pptp0] CCP: SendConfigReq #1
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 40 bits are enabled -> no
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 56 bits are enabled -> no
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 128 bits are enabled -> yes
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x01000041: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] CCP: rec'd Configure Request #4 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x010000e1: MPPC MPPE, 40 bit, 56 bit, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 40 bits are acceptable -> no
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 56 bits are acceptable -> no
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 128 bits are acceptable -> yes
Nov 10 22:21:38 test mpd: [pptp0] CCP: SendConfigNak #4
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x01000041: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] IPCP: rec'd Configure Request #5 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: IPADDR 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.230
Nov 10 22:21:38 test mpd: PRIDNS 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.1
Nov 10 22:21:38 test mpd: PRINBNS 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.1
Nov 10 22:21:38 test mpd: SECDNS 0.0.0.0
Nov 10 22:21:38 test mpd: SECNBNS 0.0.0.0
Nov 10 22:21:38 test mpd: [pptp0] IPCP: SendConfigRej #5
Nov 10 22:21:38 test mpd: SECDNS 0.0.0.0
Nov 10 22:21:38 test mpd: SECNBNS 0.0.0.0
Nov 10 22:21:38 test mpd: [pptp0] IPCP: rec'd Configure Reject #1 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Nov 10 22:21:38 test mpd: [pptp0] IPCP: SendConfigReq #2
Nov 10 22:21:38 test mpd: IPADDR 192.168.1.11
Nov 10 22:21:38 test mpd: [pptp0] CCP: rec'd Configure Ack #1 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x01000041: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] CCP: state change Req-Sent --> Ack-Rcvd
Nov 10 22:21:38 test mpd: [pptp0] CCP: rec'd Configure Request #6 link 0 (Ack-Rcvd)
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x01000041: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] CCP: Checking whether 128 bits are acceptable -> yes
Nov 10 22:21:38 test mpd: [pptp0] CCP: SendConfigAck #6
Nov 10 22:21:38 test mpd: MPPC
Nov 10 22:21:38 test mpd: 0x01000041: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] CCP: state change Ack-Rcvd --> Opened
Nov 10 22:21:38 test mpd: [pptp0] CCP: LayerUp
Nov 10 22:21:38 test mpd: Compress using: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: Decompress using: MPPC MPPE, 128 bit, stateless
Nov 10 22:21:38 test mpd: [pptp0] setting interface ng0 MTU to 1218 bytes
Nov 10 22:21:38 test mpd: [pptp0] IPCP: rec'd Configure Request #7 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: IPADDR 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.230
Nov 10 22:21:38 test mpd: PRIDNS 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.1
Nov 10 22:21:38 test mpd: PRINBNS 0.0.0.0
Nov 10 22:21:38 test mpd: NAKing with 192.168.66.1
Nov 10 22:21:38 test mpd: [pptp0] IPCP: SendConfigNak #7
Nov 10 22:21:38 test mpd: IPADDR 192.168.66.230
Nov 10 22:21:38 test mpd: PRIDNS 192.168.66.1
Nov 10 22:21:38 test mpd: PRINBNS 192.168.66.1
Nov 10 22:21:38 test mpd: [pptp0] IPCP: rec'd Configure Ack #2 link 0 (Req-Sent)
Nov 10 22:21:38 test mpd: IPADDR 192.168.1.11
Nov 10 22:21:38 test mpd: [pptp0] IPCP: state change Req-Sent --> Ack-Rcvd
Nov 10 22:21:38 test mpd: [pptp0] IPCP: rec'd Configure Request #8 link 0 (Ack-Rcvd)
Nov 10 22:21:38 test mpd: IPADDR 192.168.66.230
Nov 10 22:21:38 test mpd: 192.168.66.230 is OK
Nov 10 22:21:38 test mpd: PRIDNS 192.168.66.1
Nov 10 22:21:38 test mpd: PRINBNS 192.168.66.1
Nov 10 22:21:38 test mpd: [pptp0] IPCP: SendConfigAck #8
Nov 10 22:21:38 test mpd: IPADDR 192.168.66.230
Nov 10 22:21:38 test mpd: PRIDNS 192.168.66.1
Nov 10 22:21:38 test mpd: PRINBNS 192.168.66.1
Nov 10 22:21:38 test mpd: [pptp0] IPCP: state change Ack-Rcvd --> Opened
Nov 10 22:21:38 test mpd: [pptp0] IPCP: LayerUp
Nov 10 22:21:38 test mpd: 192.168.1.11 -> 192.168.66.230
Nov 10 22:21:38 test mpd: [pptp0] IFACE: Up event
Nov 10 22:21:38 test mpd: [pptp0] setting interface ng0 MTU to 1218 bytes
Nov 10 22:21:38 test mpd: [pptp0] exec: /sbin/ifconfig ng0 192.168.1.11 192.168.66.230 netmask 0xffffffff -link0
Nov 10 22:21:38 test mpd: [pptp0] exec: /usr/sbin/arp -s 192.168.66.230 0:c0:44:a6:d:ff pub
Nov 10 22:21:38 test mpd: [pptp0] exec: /sbin/route add 192.168.1.11 -iface lo0
Nov 10 22:21:38 test mpd: [pptp0] IFACE: Up event
Далее без изменений......