pptp-сервер и ошибка 619
Добавлено: 2013-08-27 10:16:14
на debian 7 поднял pptpd, при подключении виндовый клиент выдаёт ошибку 619, а в логах сервера появляется:
/var/log/daemon
/var/log/pptpd.log
Конфиги следующие:
/etc/pptpd.conf
/etc/ppp/pptpd-options
в iptables добавил
/var/log/daemon
Код: Выделить всё
Aug 27 07:03:20 paran0id pptpd[2008]: MGR: Launching /usr/sbin/pptpctrl to handle client
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: local address = 192.168.111.1
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: remote address = 192.168.111.200
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: pppd options file = /etc/ppp/pptpd-options
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Client <ip клиента> control connection started
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 1)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Made a START CTRL CONN RPLY packet
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: I wrote 156 bytes to the client.
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Sent packet to client
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 7)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Set parameters to 100000000 maxbps, 64 window size
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Made a OUT CALL RPLY packet
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Starting call (launching pppd, opening GRE)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: pty_fd = 6
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: tty_fd = 7
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: I wrote 32 bytes to the client.
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Sent packet to client
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): program binary = /usr/sbin/pppd
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): local address = 192.168.111.1
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): remote address = 192.168.111.200
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 15)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Got a SET LINK INFO packet with standard ACCMs
Aug 27 07:03:50 paran0id pptpd[2008]: GRE: read(fd=6,buffer=804f620,len=8196) from PTY failed: status = -1 error = Input/output error, usually caused by unexpected termination of pppd, check option syntax and pppd logs
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: PTY read or GRE write failed (pty,gre)=(6,7)
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Reaping child PPP[2009]
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Client <ip клиента> control connection finished
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Exiting now
Aug 27 07:03:50 paran0id pptpd[1889]: MGR: Reaped child 2008
Код: Выделить всё
using channel 76
Using interface ppp0
Connect: ppp0 <--> /dev/pts/1
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
LCP: timeout sending Config-Requests
Connection terminated.
Modem hangup
/etc/pptpd.conf
Код: Выделить всё
ppp /usr/sbin/pppd
option /etc/ppp/pptpd-options
debug
localip 192.168.111.1
remoteip 192.168.111.200-255
Код: Выделить всё
name pptpd
auth
refuse-pap
refuse-chap
refuse-mschap
require-mschap-v2
require-mppe-128
ms-dns 192.168.111.1
ms-wins 192.168.111.1
proxyarp
nodefaultroute
debug
lock
nobsdcomp
nopersist
logfile /var/log/pptpd.log
novj
novjccomp
mtu 500
mru 500
Код: Выделить всё
iptables -A INPUT -p gre -j ACCEPT
iptables -A INPUT -m tcp -p tcp --dport 1723 -j ACCEPT
iptables -A INPUT -p 47 -j ACCEPT
iptables -A OUTPUT -p 47 -j ACCEPT
iptables -A INPUT -i ppp+ -j ACCEPT
iptables -A OUTPUT -o ppp+ -j ACCEPT
iptables -A POSTROUTING -t nat -o eth0 -j MASQUERADE
iptables -A POSTROUTING -t nat -o ppp+ -j MASQUERADE