учить надо основы сетей
что в этой конструкции обозначает 192.168.0.255/32 ?
и какой броадкаст будет в 192.168.0.255/32set ipcp ranges 192.168.0.255/32 ippool poolsat
м?
ответите на вопросы
поймете как минимум одну ошибку
дальше будет видно
и какой броадкаст будет в 192.168.0.255/32set ipcp ranges 192.168.0.255/32 ippool poolsat
risk94 писал(а):работает если выдача происходит прописыванием соответствующему аккаунту адреса из диапозона подсети внешнего интерфейса. причем не суть важно что в конфиге динамического пула. Динамически не выдается адрес. где затыка??
Код: Выделить всё
set ippool add poolsat 192.168.10.200 192.168.10.220
это понятно. динамически - нифига не выдает. Тоесть, если в файле mpd.secret явно не прописать адрес - то соединения не происходит по причине невыдачи серваком ip-ника. я вот про что.Cancer писал(а):risk94 писал(а):работает если выдача происходит прописыванием соответствующему аккаунту адреса из диапозона подсети внешнего интерфейса. причем не суть важно что в конфиге динамического пула. Динамически не выдается адрес. где затыка??смотрите, тут пул от 200 до 220Код: Выделить всё
set ippool add poolsat 192.168.10.200 192.168.10.220
но выдает начиная с 200 , т.е если он не занят выдаст 200
а если вдруг на момент подключения будут заняты 200,201,202,203 вам выдаст 204 , понятно?
И не будет выдаваться, у тебя внешинй ip 192.168.1.111, ты серверу VPN назначаешь адрес привязки 192.168.100.255 и пул адресов для клиента из сети 192.168.100.*, спрашивается, а есть ли физический интерфейс с адресом 192.168.100.255, когда ты прописываешь ip в mpd.secret у тебя до сервиса динамической раздачи не доходитrisk94 писал(а): это понятно. динамически - нифига не выдает. Тоесть, если в файле mpd.secret явно не прописать адрес - то соединения не происходит по причине невыдачи серваком ip-ника. я вот про что.
Код: Выделить всё
# cat mpd.conf
startup:
default: # загружаем по умолчанию профиль vpn
load vpn
vpn:
set ippool add poolsat 192.168.1.111 192.168.1.253
create bundle template B
set iface enable proxy-arp
set iface idle 1800
set iface enable tcpmssfix
set ipcp yes vjcomp
set ipcp ranges 192.168.1.254/32 ippool poolsat
set ipcp dns 172.16.100.100
set bundle enable compression
set ccp yes mppc
set mppc yes e40
set mppc yes e128
set mppc yes stateless
create link template L pptp
set link action bundle B
set link enable multilink
set link yes acfcomp protocomp
set link mtu 1460
set link no pap chap
set link enable chap
set link keep-alive 10 60
set pptp self 172.16.100.100
set link enable incomingemt
Код: Выделить всё
# cat mpd.secret
usr usr 192.168.1.112
Код: Выделить всё
set ipcp ranges 192.168.1.254/32 ippool poolsat
risk94 писал(а):Код: Выделить всё
# cat mpd.conf startup: default: # загружаем по умолчанию профиль vpn load vpn vpn: set ippool add poolsat 192.168.1.111 192.168.1.253 set ipcp ranges 192.168.1.254/32 ippool poolsat тут пофиг че ставить. хоть 0, хоть 255[/quote] set ippool add poolsat 192.168.1.112 192.168.1.253 set ipcp ranges 192.168.1.111/32 ippool poolsat
а версию ОС mpd и типа фаера можно? у меня например FreeBSD 6.1+PF и mpd 3.18 работает прекрасно. если интересно могу выложить конфиги.risk94 писал(а):Понадобилось для проверки функционала одной железки поднять mpd
paradox писал(а):кинь полный лог от начала до конца
когда винда неможет соедениться
Код: Выделить всё
# cat mpd.log
Feb 7 11:21:54 emt mpd: caught fatal signal term
Feb 7 11:21:56 emt mpd: process 22841 terminated
Feb 7 11:21:58 emt mpd: Multi-link PPP daemon for FreeBSD
Feb 7 11:21:58 emt mpd:
Feb 7 11:21:58 emt mpd: process 26182 started, version 5.0b1 (root@emt.mine.nu 10:47 4-Feb-2009)
Feb 7 11:21:58 emt mpd: mpd.conf:20: Unknown command: 'set user'. Try "help".
Feb 7 11:21:58 emt mpd: CONSOLE: listening on 127.0.0.1 5005
Feb 7 11:21:58 emt mpd: web: listening on 172.16.100.100 5006
Feb 7 11:21:58 emt mpd: mpd.conf:59: Unknown command: 'set mppc'. Try "help".
Feb 7 11:21:58 emt mpd: mpd.conf:60: Unknown command: 'set mppc'. Try "help".
Feb 7 11:21:58 emt mpd: mpd.conf:61: Unknown command: 'set mppc'. Try "help".
Feb 7 11:21:58 emt mpd: PPTP: waiting for connection on 172.16.100.100
Feb 7 11:22:24 emt mpd: [L-1] Accepting PPTP connection
Feb 7 11:22:24 emt mpd: [L-1] link: OPEN event
Feb 7 11:22:24 emt mpd: [L-1] LCP: Open event
Feb 7 11:22:24 emt mpd: [L-1] LCP: state change Initial --> Starting
Feb 7 11:22:24 emt mpd: [L-1] LCP: LayerStart
Feb 7 11:22:24 emt mpd: [L-1] PPTP: attaching to peer's outgoing call
Feb 7 11:22:24 emt mpd: [L-1] link: UP event
Feb 7 11:22:24 emt mpd: [L-1] link: origination is remote
Feb 7 11:22:24 emt mpd: [L-1] LCP: Up event
Feb 7 11:22:24 emt mpd: [L-1] LCP: state change Starting --> Req-Sent
Feb 7 11:22:24 emt mpd: [L-1] LCP: SendConfigReq #1
Feb 7 11:22:24 emt mpd: ACFCOMP
Feb 7 11:22:24 emt mpd: PROTOCOMP
Feb 7 11:22:24 emt mpd: MRU 1500
Feb 7 11:22:24 emt mpd: MAGICNUM e4587fc2
Feb 7 11:22:24 emt mpd: AUTHPROTO CHAP MSOFTv2
Feb 7 11:22:24 emt mpd: MP MRRU 1600
Feb 7 11:22:24 emt mpd: ENDPOINTDISC [802.1] 00 60 08 a0 f0 04
Feb 7 11:22:25 emt mpd: [L-1] LCP: rec'd Configure Request #0 (Req-Sent)
Feb 7 11:22:25 emt mpd: MRU 1400
Feb 7 11:22:25 emt mpd: MAGICNUM 21f52ec1
Feb 7 11:22:25 emt mpd: PROTOCOMP
Feb 7 11:22:25 emt mpd: ACFCOMP
Feb 7 11:22:25 emt mpd: CALLBACK 6
Feb 7 11:22:25 emt mpd: [L-1] LCP: SendConfigRej #0
Feb 7 11:22:25 emt mpd: CALLBACK 6
Feb 7 11:22:25 emt mpd: [L-1] LCP: rec'd Configure Request #1 (Req-Sent)
Feb 7 11:22:25 emt mpd: MRU 1400
Feb 7 11:22:25 emt mpd: MAGICNUM 21f52ec1
Feb 7 11:22:25 emt mpd: PROTOCOMP
Feb 7 11:22:25 emt mpd: ACFCOMP
Feb 7 11:22:25 emt mpd: [L-1] LCP: SendConfigAck #1
Feb 7 11:22:25 emt mpd: MRU 1400
Feb 7 11:22:25 emt mpd: MAGICNUM 21f52ec1
Feb 7 11:22:25 emt mpd: PROTOCOMP
Feb 7 11:22:25 emt mpd: ACFCOMP
Feb 7 11:22:25 emt mpd: [L-1] LCP: state change Req-Sent --> Ack-Sent
Feb 7 11:22:26 emt mpd: [L-1] LCP: SendConfigReq #2
Feb 7 11:22:26 emt mpd: ACFCOMP
Feb 7 11:22:26 emt mpd: PROTOCOMP
Feb 7 11:22:26 emt mpd: MRU 1500
Feb 7 11:22:26 emt mpd: MAGICNUM e4587fc2
Feb 7 11:22:26 emt mpd: AUTHPROTO CHAP MSOFTv2
Feb 7 11:22:26 emt mpd: MP MRRU 1600
Feb 7 11:22:26 emt mpd: ENDPOINTDISC [802.1] 00 60 08 a0 f0 04
Feb 7 11:22:26 emt mpd: [L-1] LCP: rec'd Configure Reject #2 (Ack-Sent)
Feb 7 11:22:26 emt mpd: MP MRRU 1600
Feb 7 11:22:26 emt mpd: ENDPOINTDISC [802.1] 00 60 08 a0 f0 04
Feb 7 11:22:26 emt mpd: [L-1] LCP: SendConfigReq #3
Feb 7 11:22:26 emt mpd: ACFCOMP
Feb 7 11:22:26 emt mpd: PROTOCOMP
Feb 7 11:22:26 emt mpd: MRU 1500
Feb 7 11:22:26 emt mpd: MAGICNUM e4587fc2
Feb 7 11:22:26 emt mpd: AUTHPROTO CHAP MSOFTv2
Feb 7 11:22:26 emt mpd: [L-1] LCP: rec'd Configure Ack #3 (Ack-Sent)
Feb 7 11:22:26 emt mpd: ACFCOMP
Feb 7 11:22:26 emt mpd: PROTOCOMP
Feb 7 11:22:26 emt mpd: MRU 1500
Feb 7 11:22:26 emt mpd: MAGICNUM e4587fc2
Feb 7 11:22:26 emt mpd: AUTHPROTO CHAP MSOFTv2
Feb 7 11:22:26 emt mpd: [L-1] LCP: state change Ack-Sent --> Opened
Feb 7 11:22:26 emt mpd: [L-1] LCP: auth: peer wants nothing, I want CHAP
Feb 7 11:22:26 emt mpd: [L-1] CHAP: sending CHALLENGE len:17
Feb 7 11:22:26 emt mpd: [L-1] LCP: LayerUp
Feb 7 11:22:26 emt mpd: [L-1] LCP: rec'd Ident #2 (Opened)
Feb 7 11:22:26 emt mpd: [L-1] LCP: rec'd Ident #3 (Opened)
Feb 7 11:22:26 emt mpd: [L-1] CHAP: rec'd RESPONSE #1
Feb 7 11:22:26 emt mpd: Name: "usr"
Feb 7 11:22:26 emt mpd: [L-1] AUTH: Auth-Thread started
Feb 7 11:22:26 emt mpd: [L-1] AUTH: Trying INTERNAL
Feb 7 11:22:26 emt mpd: [L-1] AUTH: INTERNAL returned undefined
Feb 7 11:22:26 emt mpd: [L-1] AUTH: Auth-Thread finished normally
Feb 7 11:22:26 emt mpd: [L-1] CHAP: ChapInputFinish: status undefined
Feb 7 11:22:26 emt mpd: Response is valid
Feb 7 11:22:26 emt mpd: Reply message: S=9E3E30A72BF20CEA1E71C1B9E34725FDA8B0B6AE
Feb 7 11:22:26 emt mpd: [L-1] CHAP: sending SUCCESS len:42
Feb 7 11:22:26 emt mpd: [L-1] LCP: authorization successful
Feb 7 11:22:26 emt mpd: [L-1] Matched link action 'bundle "B" ""'
Feb 7 11:22:26 emt mpd: [L-1] Creating new bundle using template "B".
Feb 7 11:22:26 emt mpd: [B-1] using interface ng0
Feb 7 11:22:26 emt mpd: [B-1] Bundle up: 1 link, total bandwidth 64000 bps
Feb 7 11:22:26 emt mpd: [B-1] IPCP: Open event
Feb 7 11:22:26 emt mpd: [B-1] IPCP: state change Initial --> Starting
Feb 7 11:22:26 emt mpd: [B-1] IPCP: LayerStart
Feb 7 11:22:26 emt mpd: [B-1] CCP: Open event
Feb 7 11:22:26 emt mpd: [B-1] CCP: state change Initial --> Starting
Feb 7 11:22:26 emt mpd: [B-1] CCP: LayerStart
Feb 7 11:22:26 emt mpd: [B-1] IPCP: Up event
Feb 7 11:22:26 emt mpd: [B-1] IPCP: state change Starting --> Req-Sent
Feb 7 11:22:26 emt mpd: [B-1] IPCP: SendConfigReq #1
Feb 7 11:22:26 emt mpd: IPADDR 192.168.1.111
Feb 7 11:22:26 emt mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Feb 7 11:22:26 emt mpd: [B-1] CCP: Up event
Feb 7 11:22:26 emt mpd: [B-1] CCP: state change Starting --> Req-Sent
Feb 7 11:22:26 emt mpd: [B-1] CCP: SendConfigReq #1
Feb 7 11:22:26 emt mpd: [L-1] AUTH: Accounting-Thread started
Feb 7 11:22:26 emt mpd: [L-1] AUTH: Accounting-Thread finished normally
Feb 7 11:22:26 emt mpd: [B-1] CCP: rec'd Configure Request #4 (Req-Sent)
Feb 7 11:22:26 emt mpd: MPPC
Feb 7 11:22:26 emt mpd: 0x01000001:MPPC, stateless
Feb 7 11:22:26 emt mpd: [B-1] CCP: SendConfigRej #4
Feb 7 11:22:26 emt mpd: MPPC
Feb 7 11:22:26 emt mpd: 0x01000001:MPPC, stateless
Feb 7 11:22:26 emt mpd: [B-1] IPCP: rec'd Configure Request #5 (Req-Sent)
Feb 7 11:22:26 emt mpd: IPADDR 0.0.0.0
Feb 7 11:22:26 emt mpd: no IP address available for peer!
Feb 7 11:22:26 emt mpd: NAKing with 0.0.0.0
Feb 7 11:22:26 emt mpd: PRIDNS 0.0.0.0
Feb 7 11:22:26 emt mpd: NAKing with 172.16.100.100
Feb 7 11:22:26 emt mpd: PRINBNS 0.0.0.0
Feb 7 11:22:26 emt mpd: SECDNS 0.0.0.0
Feb 7 11:22:26 emt mpd: SECNBNS 0.0.0.0
Feb 7 11:22:26 emt mpd: [B-1] IPCP: SendConfigRej #5
Feb 7 11:22:26 emt mpd: PRINBNS 0.0.0.0
Feb 7 11:22:26 emt mpd: SECDNS 0.0.0.0
Feb 7 11:22:26 emt mpd: SECNBNS 0.0.0.0
Feb 7 11:22:26 emt mpd: [B-1] IPCP: rec'd Configure Reject #1 (Req-Sent)
Feb 7 11:22:26 emt mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Feb 7 11:22:26 emt mpd: [B-1] IPCP: SendConfigReq #2
Feb 7 11:22:26 emt mpd: IPADDR 192.168.1.111
Feb 7 11:22:26 emt mpd: [B-1] CCP: rec'd Configure Ack #1 (Req-Sent)
Feb 7 11:22:26 emt mpd: [B-1] CCP: state change Req-Sent --> Ack-Rcvd
Feb 7 11:22:26 emt mpd: [B-1] CCP: rec'd Terminate Request #6 (Ack-Rcvd)
Feb 7 11:22:26 emt mpd: [B-1] CCP: state change Ack-Rcvd --> Req-Sent
Feb 7 11:22:26 emt mpd: [B-1] CCP: SendTerminateAck #2
Feb 7 11:22:26 emt mpd: [B-1] IPCP: rec'd Configure Request #7 (Req-Sent)
Feb 7 11:22:26 emt mpd: IPADDR 0.0.0.0
Feb 7 11:22:26 emt mpd: no IP address available for peer!
Feb 7 11:22:26 emt mpd: NAKing with 0.0.0.0
Feb 7 11:22:26 emt mpd: PRIDNS 0.0.0.0
Feb 7 11:22:26 emt mpd: NAKing with 172.16.100.100
Feb 7 11:22:26 emt mpd: [B-1] IPCP: SendConfigNak #7
Feb 7 11:22:26 emt mpd: IPADDR 0.0.0.0
Feb 7 11:22:26 emt mpd: PRIDNS 172.16.100.100
Feb 7 11:22:26 emt mpd: [B-1] IPCP: rec'd Configure Ack #2 (Req-Sent)
Feb 7 11:22:26 emt mpd: IPADDR 192.168.1.111
Feb 7 11:22:26 emt mpd: [B-1] IPCP: state change Req-Sent --> Ack-Rcvd
Feb 7 11:22:26 emt mpd: [B-1] IPCP: rec'd Terminate Request #8 (Ack-Rcvd)
Feb 7 11:22:26 emt mpd: [B-1] IPCP: state change Ack-Rcvd --> Req-Sent
Feb 7 11:22:26 emt mpd: [B-1] IPCP: SendTerminateAck #3
Feb 7 11:22:28 emt mpd: [B-1] IPCP: rec'd Terminate Request #9 (Req-Sent)
Feb 7 11:22:28 emt mpd: [B-1] IPCP: SendTerminateAck #4
Feb 7 11:22:28 emt mpd: [B-1] CCP: rec'd Terminate Request #10 (Req-Sent)
Feb 7 11:22:28 emt mpd: [B-1] CCP: SendTerminateAck #3
Feb 7 11:22:28 emt mpd: [B-1] CCP: SendConfigReq #4
Feb 7 11:22:28 emt mpd: [B-1] IPCP: SendConfigReq #5
Feb 7 11:22:28 emt mpd: IPADDR 192.168.1.111
Feb 7 11:22:30 emt mpd: [L-1] LCP: rec'd Terminate Request #11 (Opened)
Feb 7 11:22:30 emt mpd: [L-1] LCP: state change Opened --> Stopping
Feb 7 11:22:30 emt mpd: [L-1] AUTH: Accounting data for user usr: 6 seconds, 188 octets in, 132 octets out
Feb 7 11:22:30 emt mpd: [B-1] Bundle up: 0 links, total bandwidth 9600 bps
Feb 7 11:22:30 emt mpd: [B-1] IPCP: Close event
Feb 7 11:22:30 emt mpd: [B-1] IPCP: state change Req-Sent --> Closing
Feb 7 11:22:30 emt mpd: [B-1] IPCP: SendTerminateReq #6
Feb 7 11:22:30 emt mpd: [B-1] error writing len 8 frame to bypass: Network is down
Feb 7 11:22:30 emt mpd: [B-1] CCP: Close event
Feb 7 11:22:30 emt mpd: [B-1] CCP: state change Req-Sent --> Closing
Feb 7 11:22:30 emt mpd: [B-1] CCP: SendTerminateReq #5
Feb 7 11:22:30 emt mpd: [B-1] error writing len 8 frame to bypass: Network is down
Feb 7 11:22:30 emt mpd: [B-1] IPCP: Down event
Feb 7 11:22:30 emt mpd: [B-1] IPCP: LayerFinish
Feb 7 11:22:30 emt mpd: [B-1] No NCPs left. Closing links...
Feb 7 11:22:30 emt mpd: [B-1] IPCP: state change Closing --> Initial
Feb 7 11:22:30 emt mpd: [B-1] CCP: Down event
Feb 7 11:22:30 emt mpd: [B-1] CCP: LayerFinish
Feb 7 11:22:30 emt mpd: [B-1] CCP: state change Closing --> Initial
Feb 7 11:22:30 emt mpd: [B-1] Bundle shutdown
Feb 7 11:22:30 emt mpd: [L-1] AUTH: Cleanup
Feb 7 11:22:30 emt mpd: [L-1] LCP: SendTerminateAck #4
Feb 7 11:22:30 emt mpd: [L-1] LCP: LayerDown
Feb 7 11:22:30 emt mpd: [L-1] AUTH: Accounting-Thread started
Feb 7 11:22:30 emt mpd: [L-1] AUTH: Accounting-Thread finished normally
Feb 7 11:22:30 emt mpd: [L-1] PPTP call terminated
Feb 7 11:22:30 emt mpd: [L-1] link: DOWN event
Feb 7 11:22:30 emt mpd: [L-1] LCP: Close event
Feb 7 11:22:30 emt mpd: [L-1] LCP: state change Stopping --> Closing
Feb 7 11:22:30 emt mpd: [L-1] LCP: Down event
Feb 7 11:22:30 emt mpd: [L-1] LCP: LayerFinish
Feb 7 11:22:30 emt mpd: [L-1] LCP: state change Closing --> Initial
Feb 7 11:22:30 emt mpd: [L-1] link: SHUTDOWN event
в конфиге все ок.snorlov писал(а):Проверь
set link enable incomingemt
у меня
set link enable incoming
еще раз доказывает что конфиг левыйFeb 7 11:21:58 emt mpd: mpd.conf:20: Unknown command: 'set user'. Try "help".Feb 7 11:21:58 emt mpd: CONSOLE: listening on 127.0.0.1 5005Feb 7 11:21:58 emt mpd: web: listening on 172.16.100.100 5006Feb 7 11:21:58 emt mpd: mpd.conf:59: Unknown command: 'set mppc'. Try "help".Feb 7 11:21:58 emt mpd: mpd.conf:60: Unknown command: 'set mppc'. Try "help".Feb 7 11:21:58 emt mpd: mpd.conf:61: Unknown command: 'set mppc'. Try "help".
Код: Выделить всё
# tar -xvf mppc-1.0.tgz -C /usr/src/sys/net/
# ee /usr/src/sys/modules/netgraph/mppc/Makefile
NETGRAPH_MPPC_COMPRESSION?= 1
# cd /usr/src/sys/modules/netgraph/mppc
# make && make install && make clean
Код: Выделить всё
options NETGRAPH
options NETGRAPH_ETHER
options NETGRAPH_SOCKET
options NETGRAPH_TEE
options NETGRAPH_MPPC_ENCRYPTION
options NETGRAPH_MPPC_COMPRESSION
options NETGRAPH_BPF
options NETGRAPH_IFACE
options NETGRAPH_KSOCKET
options NETGRAPH_PPP
options NETGRAPH_PPTPGRE
options NETGRAPH_TCPMSS
options NETGRAPH_VJC
options NETGRAPH_ONE2MANY
options NETGRAPH_RFC1490
options NETGRAPH_TEE
options NETGRAPH_TTY
options NETGRAPH_UI
Код: Выделить всё
# cat /var/log/mpd.log | grep ' mppc'
Feb 25 16:23:14 gate mpd: mpd.conf:59: Unknown command: 'set mppc'. Try "help".
Feb 25 16:23:14 gate mpd: mpd.conf:60: Unknown command: 'set mppc'. Try "help".
Feb 25 16:23:14 gate mpd: mpd.conf:61: Unknown command: 'set mppc'. Try "help".
Код: Выделить всё
ip: 125.5.5.254
mask: 255.255.255.252
gate: 125.5.5.253
dns: 125.5.5.1
Код: Выделить всё
ip: 172.16.100.100
mask: 255.255.0.0
Код: Выделить всё
default:
load vpn
vpn:
set ippool add poolsat 192.168.14.2 192.168.14.253
create bundle template B
set iface enable proxy-arp
set iface idle 1800
set iface enable tcpmssfix
set ipcp yes vjcomp
set ipcp ranges 192.168.14.255/32 ippool poolsat
set ipcp dns 172.16.100.100
set bundle enable compression
set ccp yes mppc
set mppc yes e128
set mppc yes stateless
set link action bundle B
set link enable multilink
set link yes acfcomp protocomp
set link mtu 1460
set link no pap chap
set link enable chap
set link keep-alive 10 60
set pptp self 172.16.100.100
set link enable incoming
Код: Выделить всё
usr1 testpwd 192.168.14.2
Код: Выделить всё
oif="nve0"
onet="125.5.5.252"
omask="255.255.255.252"
oip="125.5.5.254"
iif="ste0"
inet="172.16.0.0"
imask="255.255.0.0"
iip="172.16.100.100"
${fwcmd} add check_state
${fwcmd} add pipe 1 tcp from ${oip} to any via ${oif}
${fwcmd} add pipe 1 udp from ${oip} to any via ${oif}
${fwcmd} add pipe 1 ip from ${oip} to any via ${oif}
${fwcmd} pipe 1 config bw 100Mbit/s
${fwcmd} add allow tcp from ${iip} 1723 to any keep-state
${fwcmd} add allow tcp from any to ${iip} 1723
${fwcmd} add allow gre from any to any
${fwcmd} add allow udp from any to any domain
${fwcmd} add allow udp from any domain to any
${fwcmd} add pass tcp from any to any 80 via ${oip}
${fwcmd} add pass tcp from any 80 to any
${fwcmd} add pipe 21 all from not ${inet}:${imask} to 192.168.14.2
${fwcmd} add pipe 22 all from 192.168.14.2 to not ${inet}:${imask}
${fwcmd} pipe 21 config bw 128KBit/s
${fwcmd} pipe 22 config bw 64KBit/s
Код: Выделить всё
May 30 20:59:14 agw mpd: [L-1] Accepting PPTP connection
May 30 20:59:14 agw mpd: [L-1] link: OPEN event
May 30 20:59:14 agw mpd: [L-1] LCP: Open event
May 30 20:59:14 agw mpd: [L-1] LCP: state change Initial --> Starting
May 30 20:59:14 agw mpd: [L-1] LCP: LayerStart
May 30 20:59:14 agw mpd: [L-1] PPTP: attaching to peer's outgoing call
May 30 20:59:14 agw mpd: [L-1] link: UP event
May 30 20:59:14 agw mpd: [L-1] link: origination is remote
May 30 20:59:14 agw mpd: [L-1] LCP: Up event
May 30 20:59:14 agw mpd: [L-1] LCP: state change Starting --> Req-Sent
May 30 20:59:14 agw mpd: [L-1] LCP: SendConfigReq #1
May 30 20:59:14 agw mpd: ACFCOMP
May 30 20:59:14 agw mpd: PROTOCOMP
May 30 20:59:14 agw mpd: MRU 1500
May 30 20:59:14 agw mpd: MAGICNUM abeaf1a6
May 30 20:59:14 agw mpd: AUTHPROTO CHAP MSOFTv2
May 30 20:59:14 agw mpd: MP MRRU 1600
May 30 20:59:14 agw mpd: ENDPOINTDISC [802.1] 00 0c 76 16 ef 14
May 30 20:59:14 agw mpd: [L-1] LCP: rec'd Configure Request #0 (Req-Sent)
May 30 20:59:14 agw mpd: MRU 1400
May 30 20:59:14 agw mpd: MAGICNUM 2c617ec2
May 30 20:59:14 agw mpd: PROTOCOMP
May 30 20:59:14 agw mpd: ACFCOMP
May 30 20:59:14 agw mpd: [L-1] LCP: SendConfigAck #1
May 30 20:59:14 agw mpd: MRU 1400
May 30 20:59:14 agw mpd: MAGICNUM 2c617ec2
May 30 20:59:14 agw mpd: PROTOCOMP
May 30 20:59:14 agw mpd: ACFCOMP
May 30 20:59:14 agw mpd: [L-1] LCP: state change Req-Sent --> Ack-Sent
May 30 20:59:16 agw mpd: [L-1] LCP: SendConfigReq #2
May 30 20:59:16 agw mpd: ACFCOMP
May 30 20:59:16 agw mpd: PROTOCOMP
May 30 20:59:16 agw mpd: MRU 1500
May 30 20:59:16 agw mpd: MAGICNUM abeaf1a6
May 30 20:59:16 agw mpd: AUTHPROTO CHAP MSOFTv2
May 30 20:59:16 agw mpd: MP MRRU 1600
May 30 20:59:16 agw mpd: ENDPOINTDISC [802.1] 00 0c 76 16 ef 14
May 30 20:59:16 agw mpd: [L-1] LCP: rec'd Configure Reject #2 (Ack-Sent)
May 30 20:59:16 agw mpd: MP MRRU 1600
May 30 20:59:16 agw mpd: ENDPOINTDISC [802.1] 00 0c 76 16 ef 14
May 30 20:59:16 agw mpd: [L-1] LCP: SendConfigReq #3
May 30 20:59:16 agw mpd: ACFCOMP
May 30 20:59:16 agw mpd: PROTOCOMP
May 30 20:59:16 agw mpd: MRU 1500
May 30 20:59:16 agw mpd: MAGICNUM abeaf1a6
May 30 20:59:16 agw mpd: AUTHPROTO CHAP MSOFTv2
May 30 20:59:16 agw mpd: [L-1] LCP: rec'd Configure Ack #3 (Ack-Sent)
May 30 20:59:16 agw mpd: ACFCOMP
May 30 20:59:16 agw mpd: PROTOCOMP
May 30 20:59:16 agw mpd: MRU 1500
May 30 20:59:16 agw mpd: MAGICNUM abeaf1a6
May 30 20:59:16 agw mpd: AUTHPROTO CHAP MSOFTv2
May 30 20:59:16 agw mpd: [L-1] LCP: state change Ack-Sent --> Opened
May 30 20:59:16 agw mpd: [L-1] LCP: auth: peer wants nothing, I want CHAP
May 30 20:59:16 agw mpd: [L-1] CHAP: sending CHALLENGE len:17
May 30 20:59:16 agw mpd: [L-1] LCP: LayerUp
May 30 20:59:16 agw mpd: [L-1] LCP: rec'd Ident #2 (Opened)
May 30 20:59:16 agw mpd: [L-1] LCP: rec'd Ident #3 (Opened)
May 30 20:59:16 agw mpd: [L-1] CHAP: rec'd RESPONSE #1
May 30 20:59:16 agw mpd: Name: "usr1"
May 30 20:59:16 agw mpd: [L-1] AUTH: Auth-Thread started
May 30 20:59:16 agw mpd: [L-1] AUTH: Trying INTERNAL
May 30 20:59:16 agw mpd: [L-1] AUTH: INTERNAL returned undefined
May 30 20:59:16 agw mpd: [L-1] AUTH: Auth-Thread finished normally
May 30 20:59:16 agw mpd: [L-1] CHAP: ChapInputFinish: status undefined
May 30 20:59:16 agw mpd: Response is valid
May 30 20:59:16 agw mpd: Reply message: S=13656F17A34D4D6D61D343E4BF442F5C58D68382
May 30 20:59:16 agw mpd: [L-1] CHAP: sending SUCCESS len:42
May 30 20:59:16 agw mpd: [L-1] LCP: authorization successful
May 30 20:59:16 agw mpd: [L-1] Matched link action 'bundle "B" ""'
May 30 20:59:16 agw mpd: [L-1] Creating new bundle using template "B".
May 30 20:59:16 agw mpd: [B-1] using interface ng0
May 30 20:59:16 agw mpd: [B-1] Bundle up: 1 link, total bandwidth 64000 bps
May 30 20:59:16 agw mpd: [B-1] IPCP: Open event
May 30 20:59:16 agw mpd: [B-1] IPCP: state change Initial --> Starting
May 30 20:59:16 agw mpd: [B-1] IPCP: LayerStart
May 30 20:59:16 agw mpd: [B-1] CCP: Open event
May 30 20:59:16 agw mpd: [B-1] CCP: state change Initial --> Starting
May 30 20:59:16 agw mpd: [B-1] CCP: LayerStart
May 30 20:59:16 agw mpd: [B-1] IPCP: Up event
May 30 20:59:16 agw mpd: [B-1] IPCP: state change Starting --> Req-Sent
May 30 20:59:16 agw mpd: [B-1] IPCP: SendConfigReq #1
May 30 20:59:16 agw mpd: IPADDR 125.5.5.254
May 30 20:59:16 agw mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
May 30 20:59:16 agw mpd: [B-1] CCP: Up event
May 30 20:59:16 agw mpd: [B-1] CCP: state change Starting --> Req-Sent
May 30 20:59:16 agw mpd: [B-1] CCP: SendConfigReq #1
May 30 20:59:16 agw mpd: [L-1] AUTH: Accounting-Thread started
May 30 20:59:16 agw mpd: [L-1] AUTH: Accounting-Thread finished normally
May 30 20:59:16 agw mpd: [B-1] CCP: rec'd Configure Request #4 (Req-Sent)
May 30 20:59:16 agw mpd: MPPC
May 30 20:59:16 agw mpd: 0x01000001:MPPC, stateless
May 30 20:59:16 agw mpd: [B-1] CCP: SendConfigRej #4
May 30 20:59:16 agw mpd: MPPC
May 30 20:59:16 agw mpd: 0x01000001:MPPC, stateless
May 30 20:59:16 agw mpd: [B-1] IPCP: rec'd Configure Request #5 (Req-Sent)
May 30 20:59:16 agw mpd: IPADDR 0.0.0.0
May 30 20:59:16 agw mpd: NAKing with 192.168.14.2
May 30 20:59:16 agw mpd: PRIDNS 0.0.0.0
May 30 20:59:16 agw mpd: NAKing with 172.16.100.100
May 30 20:59:16 agw mpd: PRINBNS 0.0.0.0
May 30 20:59:16 agw mpd: SECDNS 0.0.0.0
May 30 20:59:16 agw mpd: SECNBNS 0.0.0.0
May 30 20:59:16 agw mpd: [B-1] IPCP: SendConfigRej #5
May 30 20:59:16 agw mpd: PRINBNS 0.0.0.0
May 30 20:59:16 agw mpd: SECDNS 0.0.0.0
May 30 20:59:16 agw mpd: SECNBNS 0.0.0.0
May 30 20:59:16 agw mpd: [B-1] IPCP: rec'd Configure Reject #1 (Req-Sent)
May 30 20:59:16 agw mpd: COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
May 30 20:59:16 agw mpd: [B-1] IPCP: SendConfigReq #2
May 30 20:59:16 agw mpd: IPADDR 125.5.5.254
May 30 20:59:16 agw mpd: [B-1] CCP: rec'd Configure Ack #1 (Req-Sent)
May 30 20:59:16 agw mpd: [B-1] CCP: state change Req-Sent --> Ack-Rcvd
May 30 20:59:16 agw mpd: [B-1] CCP: rec'd Terminate Request #6 (Ack-Rcvd)
May 30 20:59:16 agw mpd: [B-1] CCP: state change Ack-Rcvd --> Req-Sent
May 30 20:59:16 agw mpd: [B-1] CCP: SendTerminateAck #2
May 30 20:59:16 agw mpd: [B-1] IPCP: rec'd Configure Request #7 (Req-Sent)
May 30 20:59:16 agw mpd: IPADDR 0.0.0.0
May 30 20:59:16 agw mpd: NAKing with 192.168.14.2
May 30 20:59:16 agw mpd: PRIDNS 0.0.0.0
May 30 20:59:16 agw mpd: NAKing with 172.16.100.100
May 30 20:59:16 agw mpd: [B-1] IPCP: SendConfigNak #7
May 30 20:59:16 agw mpd: IPADDR 192.168.14.2
May 30 20:59:16 agw mpd: PRIDNS 172.16.100.100
May 30 20:59:16 agw mpd: [B-1] IPCP: rec'd Configure Ack #2 (Req-Sent)
May 30 20:59:16 agw mpd: IPADDR 125.5.5.254
May 30 20:59:16 agw mpd: [B-1] IPCP: state change Req-Sent --> Ack-Rcvd
May 30 20:59:16 agw mpd: [B-1] IPCP: rec'd Configure Request #8 (Ack-Rcvd)
May 30 20:59:16 agw mpd: IPADDR 192.168.14.2
May 30 20:59:16 agw mpd: 192.168.14.2 is OK
May 30 20:59:16 agw mpd: PRIDNS 172.16.100.100
May 30 20:59:16 agw mpd: [B-1] IPCP: SendConfigAck #8
May 30 20:59:16 agw mpd: IPADDR 192.168.14.2
May 30 20:59:16 agw mpd: PRIDNS 172.16.100.100
May 30 20:59:16 agw mpd: [B-1] IPCP: state change Ack-Rcvd --> Opened
May 30 20:59:16 agw mpd: [B-1] IPCP: LayerUp
May 30 20:59:16 agw mpd: 125.5.5.254 -> 192.168.14.2
May 30 20:59:16 agw mpd: [B-1] IFACE: Up event
May 30 20:59:17 agw mpd: [B-1] CCP: rec'd Terminate Request #9 (Req-Sent)
May 30 20:59:17 agw mpd: [B-1] CCP: SendTerminateAck #3
May 30 20:59:18 agw mpd: [B-1] CCP: SendConfigReq #4
May 30 20:59:20 agw mpd: [B-1] CCP: SendConfigReq #5
May 30 20:59:20 agw mpd: [B-1] CCP: rec'd Terminate Ack #5 (Req-Sent)
May 30 20:59:22 agw mpd: [B-1] CCP: SendConfigReq #6
May 30 20:59:22 agw mpd: [B-1] CCP: rec'd Terminate Ack #6 (Req-Sent)
May 30 20:59:24 agw mpd: [B-1] CCP: SendConfigReq #7
May 30 20:59:24 agw mpd: [B-1] CCP: rec'd Terminate Ack #7 (Req-Sent)
May 30 20:59:26 agw mpd: [B-1] CCP: SendConfigReq #8
May 30 20:59:26 agw mpd: [B-1] CCP: rec'd Terminate Ack #8 (Req-Sent)
May 30 20:59:28 agw mpd: [B-1] CCP: SendConfigReq #9
May 30 20:59:28 agw mpd: [B-1] CCP: rec'd Terminate Ack #9 (Req-Sent)
May 30 20:59:30 agw mpd: [B-1] CCP: SendConfigReq #10
May 30 20:59:30 agw mpd: [B-1] CCP: rec'd Terminate Ack #10 (Req-Sent)
May 30 20:59:32 agw mpd: [B-1] CCP: SendConfigReq #11
May 30 20:59:32 agw mpd: [B-1] CCP: rec'd Terminate Ack #11 (Req-Sent)
May 30 20:59:34 agw mpd: [B-1] CCP: SendConfigReq #12
May 30 20:59:34 agw mpd: [B-1] CCP: rec'd Terminate Ack #12 (Req-Sent)
May 30 20:59:36 agw mpd: [B-1] CCP: SendConfigReq #13
May 30 20:59:36 agw mpd: [B-1] CCP: rec'd Terminate Ack #13 (Req-Sent)
May 30 20:59:38 agw mpd: [B-1] CCP: parameter negotiation failed
May 30 20:59:38 agw mpd: [B-1] CCP: Close event
May 30 20:59:38 agw mpd: [B-1] CCP: state change Req-Sent --> Closing
May 30 20:59:38 agw mpd: [B-1] CCP: SendTerminateReq #14
May 30 20:59:38 agw mpd: [B-1] CCP: state change Closing --> Closed
May 30 20:59:38 agw mpd: [B-1] CCP: LayerFinish
May 30 20:59:38 agw mpd: [B-1] CCP: rec'd Terminate Ack #14 (Closed)
May 30 20:59:57 agw mpd: [L-1] LCP: rec'd Terminate Request #10 (Opened)
May 30 20:59:57 agw mpd: [L-1] LCP: state change Opened --> Stopping
May 30 20:59:57 agw mpd: [L-1] AUTH: Accounting data for user dyadya: 43 seconds, 4245 octets in, 1
May 30 20:59:57 agw mpd: [B-1] Bundle up: 0 links, total bandwidth 9600 bps
May 30 20:59:57 agw mpd: [B-1] IPCP: Close event
May 30 20:59:57 agw mpd: [B-1] IPCP: state change Opened --> Closing
May 30 20:59:57 agw mpd: [B-1] IPCP: SendTerminateReq #3
May 30 20:59:57 agw mpd: [B-1] error writing len 8 frame to bypass: Network is down
May 30 20:59:57 agw mpd: [B-1] IPCP: LayerDown
May 30 20:59:57 agw mpd: [L-1] AUTH: Accounting-Thread started
May 30 20:59:57 agw mpd: [B-1] IFACE: Down event
May 30 20:59:57 agw mpd: [B-1] CCP: Close event
May 30 20:59:57 agw mpd: [B-1] IPCP: Down event
May 30 20:59:57 agw mpd: [B-1] IPCP: LayerFinish
May 30 20:59:57 agw mpd: [B-1] No NCPs left. Closing links...
May 30 20:59:57 agw mpd: [B-1] IPCP: state change Closing --> Initial
May 30 20:59:57 agw mpd: [B-1] CCP: Down event
May 30 20:59:57 agw mpd: [B-1] CCP: state change Closed --> Initial
May 30 20:59:57 agw mpd: [B-1] Bundle shutdown
May 30 20:59:57 agw mpd: [L-1] AUTH: Cleanup
May 30 20:59:57 agw mpd: [L-1] LCP: SendTerminateAck #4
May 30 20:59:57 agw mpd: [L-1] LCP: LayerDown
May 30 20:59:57 agw mpd: [L-1] AUTH: Accounting-Thread finished normally
May 30 20:59:59 agw mpd: [L-1] LCP: rec'd Terminate Request #11 (Stopping)
May 30 20:59:59 agw mpd: [L-1] LCP: SendTerminateAck #5
May 30 20:59:59 agw mpd: [L-1] LCP: state change Stopping --> Stopped
May 30 20:59:59 agw mpd: [L-1] LCP: LayerFinish
May 30 20:59:59 agw mpd: [L-1] PPTP call terminated
May 30 20:59:59 agw mpd: [L-1] link: DOWN event
May 30 20:59:59 agw mpd: [L-1] LCP: Close event
May 30 20:59:59 agw mpd: [L-1] LCP: state change Stopped --> Closed
May 30 20:59:59 agw mpd: [L-1] LCP: Down event
May 30 20:59:59 agw mpd: [L-1] LCP: state change Closed --> Initial
May 30 20:59:59 agw mpd: [L-1] link: SHUTDOWN event
Код: Выделить всё
ip: 172.16.10.10
mask: 255.255.0.0
gate: 172.16.100.100
dns: 172.16.100.100
paradox писал(а):мультилинк выключи
и включи mppe
вообще хватит сочинять конфиги
пользуйтесь примерами с mpd