Страница 1 из 1

pptp-сервер и ошибка 619

Добавлено: 2013-08-27 10:16:14
paran0id
на debian 7 поднял pptpd, при подключении виндовый клиент выдаёт ошибку 619, а в логах сервера появляется:

/var/log/daemon

Код: Выделить всё

Aug 27 07:03:20 paran0id pptpd[2008]: MGR: Launching /usr/sbin/pptpctrl to handle client
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: local address = 192.168.111.1
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: remote address = 192.168.111.200
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: pppd options file = /etc/ppp/pptpd-options
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Client <ip клиента> control connection started
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 1)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Made a START CTRL CONN RPLY packet
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: I wrote 156 bytes to the client.
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Sent packet to client
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 7)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Set parameters to 100000000 maxbps, 64 window size
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Made a OUT CALL RPLY packet
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Starting call (launching pppd, opening GRE)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: pty_fd = 6
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: tty_fd = 7
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: I wrote 32 bytes to the client.
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Sent packet to client
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): program binary = /usr/sbin/pppd
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): local address = 192.168.111.1
Aug 27 07:03:20 paran0id pptpd[2009]: CTRL (PPPD Launcher): remote address = 192.168.111.200
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Received PPTP Control Message (type: 15)
Aug 27 07:03:20 paran0id pptpd[2008]: CTRL: Got a SET LINK INFO packet with standard ACCMs
Aug 27 07:03:50 paran0id pptpd[2008]: GRE: read(fd=6,buffer=804f620,len=8196) from PTY failed: status = -1 error = Input/output error, usually caused by unexpected termination of pppd, check option syntax and pppd logs
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: PTY read or GRE write failed (pty,gre)=(6,7)
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Reaping child PPP[2009]
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Client <ip клиента> control connection finished
Aug 27 07:03:50 paran0id pptpd[2008]: CTRL: Exiting now
Aug 27 07:03:50 paran0id pptpd[1889]: MGR: Reaped child 2008
/var/log/pptpd.log

Код: Выделить всё

using channel 76
Using interface ppp0
Connect: ppp0 <--> /dev/pts/1
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
sent [LCP ConfReq id=0x1 <mru 500> <asyncmap 0x0> <auth chap MS-v2> <magic 0xeb02f5bb> <pcomp> <accomp>]
LCP: timeout sending Config-Requests
Connection terminated.
Modem hangup
Конфиги следующие:

/etc/pptpd.conf

Код: Выделить всё

ppp /usr/sbin/pppd
option /etc/ppp/pptpd-options
debug
localip 192.168.111.1
remoteip 192.168.111.200-255

/etc/ppp/pptpd-options

Код: Выделить всё

name pptpd
auth
refuse-pap
refuse-chap
refuse-mschap
require-mschap-v2
require-mppe-128
ms-dns 192.168.111.1
ms-wins 192.168.111.1
proxyarp
nodefaultroute
debug
lock
nobsdcomp 
nopersist
logfile /var/log/pptpd.log
novj
novjccomp
mtu 500
mru 500

в iptables добавил

Код: Выделить всё

iptables -A INPUT -p gre -j ACCEPT
iptables -A INPUT -m tcp -p tcp --dport 1723 -j ACCEPT
iptables -A INPUT -p 47 -j ACCEPT
iptables -A OUTPUT -p 47 -j ACCEPT
iptables -A INPUT -i ppp+ -j ACCEPT
iptables -A OUTPUT -o ppp+ -j ACCEPT
iptables -A POSTROUTING -t nat -o eth0 -j MASQUERADE
iptables -A POSTROUTING -t nat -o ppp+ -j MASQUERADE