pptpd require-chapms-v2 require-mppe-128 a ppp 2.4.2
Vladimir Volcko
konference na magichouse.cz
Úterý Září 2 19:19:46 CEST 2003
DD!
Snazim se na RH9 rozchodit VPN pro win2000 klienty pomoci mschap-v2 a
128 bit sifrovanim. Bouzel se mi to vsak nedari.
Pouzite verze:
ppp-2.4.2b3.
poptop-1.1.4
kernelmod-0.8.1
kernel-2.4.20-20.9
Jake podstatne veci musi byt v konfiguracnich souborech? Moje
konfigurace je nasledujici:
---chap-secrets---
# Secrets for authentication using CHAP
# client server secret IP addresses
vpnuser * vpn *
---options.pptpd---
name *
lock
dump
logfd 2
debug
logfile /var/log/pptpd.log
auth
require-mschap-v2
require-mppe-128
#noccp
novj
novjccomp
nopcomp
noaccomp
nobsdcomp
nodeflate
vysledkem je vzdy nasledujici:
using channel 104
Using interface ppp0
Connect: ppp0 <--> /dev/pts/8
sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic
0x554a384d>]
rcvd [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic
0x554a384d>]
rcvd [LCP ConfReq id=0x1 <magic 0x7fd76b77> <pcomp> <accomp> <callback
CBCP> <mrru 1614> <endpoint
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [LCP ConfRej id=0x1 <pcomp> <accomp> <callback CBCP> <mrru 1614>]
rcvd [LCP ConfReq id=0x2 <magic 0x7fd76b77> <endpoint
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [LCP ConfAck id=0x2 <magic 0x7fd76b77> <endpoint
[local:59.e9.8a.ab.aa.ae.4f.06.90.5c.d6.08.86.7d.be.02.00.00.00.34]>]
sent [CHAP Challenge id=0xf5 <7fefc7db07f799ecea3509138a1b4ae6>, name = "*"]
rcvd [LCP code=0xc id=0x3 7f d7 6b 77 4d 53 52 41 53 56 35 2e 30 30]
sent [LCP CodeRej id=0x2 0c 03 00 12 7f d7 6b 77 4d 53 52 41 53 56 35 2e
30 30]
rcvd [LCP code=0xc id=0x4 7f d7 6b 77 4d 53 52 41 53 2d 31 2d 53 59 53
2d 4b 4f 55 43 4b 59 50]
sent [LCP CodeRej id=0x3 0c 04 00 1b 7f d7 6b 77 4d 53 52 41 53 2d 31 2d
53 59 53 2d 4b 4f 55 43 4b 59 50]
rcvd [CHAP Response id=0xf5
<dbbffe53a6b468ac2fa8c8e410a6b34c000000000000000098770e706a41344dfebe696ca02ea59d1ef5224baf2f5b2000>,
name = "vpnuser"]
Peer vpn failed CHAP authentication
sent [CHAP Failure id=0xf5 "E=691 R=1 C=7fefc7db07f799ecea3509138a1b4ae6
V=0 M=Access denied"]
sent [LCP TermReq id=0x4 "Authentication failed"]
rcvd [LCP TermAck id=0x4 "Authentication failed"]
Connection terminated.
pozd. do dialogu ve win uzivatele a heslo vkladam presne podle
chap-secrets a na klientovi je povolena pouze autorizace mschap-v2.
Mohl by me nekdo popostrcit spravnym smerem?
Další informace o konferenci Linux