pptpd require-chapms-v2 require-mppe-128 a ppp 2.4.2

Vladimir Volcko konference na magichouse.cz
Úterý Září 2 19:19:46 CEST 2003


DD!
   Snazim se na RH9 rozchodit VPN pro win2000 klienty pomoci mschap-v2 a 
128 bit sifrovanim. Bouzel se mi to vsak nedari.
Pouzite verze:
ppp-2.4.2b3.
poptop-1.1.4
kernelmod-0.8.1
kernel-2.4.20-20.9

Jake podstatne veci musi byt v konfiguracnich souborech? Moje 
konfigurace je nasledujici:

---chap-secrets---
# Secrets for authentication using CHAP
# client        server  secret                  IP addresses
vpnuser             *       vpn                     *

---options.pptpd---
name *

lock
dump
logfd 2
debug
logfile /var/log/pptpd.log

auth
require-mschap-v2
require-mppe-128

#noccp
novj
novjccomp
nopcomp
noaccomp
nobsdcomp
nodeflate

vysledkem je vzdy nasledujici:
using channel 104
Using interface ppp0
Connect: ppp0 <--> /dev/pts/8
sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 
0x554a384d>]
rcvd [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 
0x554a384d>]
rcvd [LCP ConfReq id=0x1 <magic 0x7fd76b77> <pcomp> <accomp> <callback 
CBCP> <mrru 1614> <endpoint 
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [LCP ConfRej id=0x1 <pcomp> <accomp> <callback CBCP> <mrru 1614>]
rcvd [LCP ConfReq id=0x2 <magic 0x7fd76b77> <endpoint 
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [LCP ConfAck id=0x2 <magic 0x7fd76b77> <endpoint 
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [CHAP Challenge id=0xf5 <7fefc7db07f799ecea3509138a1b4ae6>, name = "*"]
rcvd [LCP code=0xc id=0x3 7f d7 6b 77 4d 53 52 41 53 56 35 2e 30 30]
sent [LCP CodeRej id=0x2 0c 03 00 12 7f d7 6b 77 4d 53 52 41 53 56 35 2e 
30 30]
rcvd [LCP code=0xc id=0x4 7f d7 6b 77 4d 53 52 41 53 2d 31 2d 53 59 53 
2d 4b 4f 55 43 4b 59 50]
sent [LCP CodeRej id=0x3 0c 04 00 1b 7f d7 6b 77 4d 53 52 41 53 2d 31 2d 
53 59 53 2d 4b 4f 55 43 4b 59 50]
rcvd [CHAP Response id=0xf5 
<dbbffe53a6b468ac2fa8c8e410a6b34c000000000000000098770e706a41344dfebe696ca02ea59d1ef5224baf2f5b2000>, 
name = "vpnuser"]
Peer vpn failed CHAP authentication
sent [CHAP Failure id=0xf5 "E=691 R=1 C=7fefc7db07f799ecea3509138a1b4ae6 
V=0 M=Access denied"]
sent [LCP TermReq id=0x4 "Authentication failed"]
rcvd [LCP TermAck id=0x4 "Authentication failed"]
Connection terminated.

pozd. do dialogu ve win uzivatele a heslo vkladam presne podle 
chap-secrets a na klientovi je povolena pouze autorizace mschap-v2.

Mohl by me nekdo popostrcit spravnym smerem?





Další informace o konferenci Linux