URL: https://www.opennet.me/cgi-bin/openforum/vsluhboard.cgi
Форум: vsluhforumID1
Нить номер: 84745
[ Назад ]

Исходное сообщение
"freebsd + vpn +mpd5"

Отправлено pink_floyd , 02-Апр-09 00:41 
пытаюсь настроить впн в freebsd 7.1 с помощью mpd5

локальный ip = 10.10.16.81
шлюз 10.10.0.1
dns 195.149.200.230
vpn сервер 91.196.244.250
netmask 255.255.128.0

mpd.conf

default: load pptp_client

pptp_client:

create bundle static B1
set iface route default
set ipcp ranges 0.0.0.0/0 0.0.0.0/0

create link static L1 pptp
set link action bundle B1
set auth authname MY_LOGIN
set auth password MY_PASSWORD
set link max-redial 0
set link mtu 1460
set link keep-alive 20 75
set pptp peer 91.196.244.250
set pptp disable windowing
open

в rc.conf добавил
mpd_enable="YES"
mpd_mode="-b" # это вроде если шлюз и впн сервер находятся в разны подсетях

поднимается интерфейс ng0, но пинг никуда не идет

ng0: flags=88d1<IP,POINTTOPOINT,RUNNING,NOARP,SILMPLEX,MULTICAST> metric 0 mtu mtu 1460
inet <МОЙ ВНЕШНИЙ ip> --> 82.137.137.228 (я как понял это реальный ip сервера) netmask 0xffffffff

в resolv.conf: nameserver 195.149.200.230

mpd.log
[B1] Bundle: Interface ng0 created
[L1] Link: OPEN event
[L1] LCP: Open event
[L1] LCP: state change Initial --> Starting
[L1] LCP: LayerStart
[L1] PPTP call successful
[L1] Link: UP event
[L1] Link: origination is local
[L1] LCP: Up event
[L1] LCP: state change Starting --> Req-Sent
[L1] LCP: SendConfigReq #1
[L1]   ACFCOMP
[L1]   PROTOCOMP
[L1]   ACCMAP 0xffffffff
[L1]   MRU 1500
[L1]   MAGICNUM bfc73096
[L1]   AUTHPROTO CHAP MD5
[L1] LCP: state change Req-Sent --> Ack-Sent
[L1] LCP: rec'd Configure Ack #1 (Ack-Sent)
[L1]   ACFCOMP
[L1]   PROTOCOMP
[L1]   ACCMAP 0x000a0000
[L1]   MRU 1500
[L1]   MAGICNUM 4585a3a6
[L1] LCP: state change Ack-Sent --> Opened
[L1] LCP: auth: peer wants CHAP, I want nothing
[L1] LCP: LayerUp
[L1] CHAP: rec'd CHALLENGE #1 len 23
[L1]   Name: ""
[L1] CHAP: Using authname "MY_LOGIN"
[L1] CHAP: sending RESPONSE #1 len: 30
[L1] CHAP: rec'd SUCCESS #1 len: 13
[L1]   MESG: Welcome!!
[L1] LCP: authorization successful
[L1] Link: Matched action 'bundle "B1" ""'
[L1] Link: Join bundle "B1"
[B1] Bundle: Status update: up 1 link, total bandwidth 64000 bps
[B1] IPCP: Open event
[B1] IPCP: state change Initial --> Starting
[B1] IPCP: LayerStart
[B1] IPCP: Up event
[B1] IPCP: state change Startring --> Req-Sent
[B1] IPCP: SendConfigReq #1
[B1]   IPADDR 0.0.0.0
[B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
[L1] rec'd unexpected protocol CCP, rejecting
[B1] IPCP: rec'd Configure Request #1 (Req-Sent)
[B1]   IPADDR 82.137.137.228
[B1]     82.137.137.228 is OK
[B1] IPCP: SendConfigAck #1
[B1]   IPADDR 82.137.137.228
[B1] IPCPL state change Req-Sent --> Ack-Sent
[L1] rec'd unexpected protocol IPV6CP
[B1] IPCP: rec'd Configure Reject #1 (Ack-Sent)
[B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
[B1] IPCP: SendConfigReq #2
[B1]   IPADDR 0.0.0.0
[L1] rec'd unexpected protocol IPV6CP, rejecting
[B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
[B1]   IPADDR <ВНЕШНИЙ IP>
[B1]     <ВНЕШНИЙ IP> is OK
[B1] IPCP: SendConfigReq #3 (Ack-Sent)
[B1]   IPADDR: <ВНЕШНИЙ IP>
[B1] IPCP: rec'd Configure Ack #3 (Ack-Sent)
[B1]   IPADDR <ВНЕШНИЙ IP>
[B1] IPCP: state change Ack-Sent --> Opened
[B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
[B1] IPCP: LayerUP
[B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
[B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
[B1]   <ВНЕШНИЙ IP> -> 82.137.137.228
[B1] IFACE: Add route 0.0.0.0/0 82.137.137.228 failed: File exists
[B1] IFACE: Up event
[L1] rec'd unexpected protocol IPV6CP, rejecting

еще вопрос: какие роуты нужно прописать в rc.conf? и нужно ли вообще :)


Содержание

Сообщения в этом обсуждении
"freebsd + vpn +mpd5"
Отправлено urusha , 02-Апр-09 10:22 
set iface up-script /path/if-up.sh
set iface down-script /path/if-down.sh

в скриптах
if-up.sh

#!/bin/sh
gateway_ip="10.10.0.1"

route delete $4
route add $4 $gateway_ip
route add default $4

echo $4 > /tmp/dr


if-down.sh
#!/bin/sh
gateway_ip="10.10.0.1"

dr=`cat /tmp/dr`
route delete $dr
route delete default
rm -f /var/dr

в rc.conf маршрут до впн сервера


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 02-Апр-09 16:52 
>[оверквотинг удален]
>gateway_ip="10.10.0.1"
>
>dr=`cat /tmp/dr`
>route delete $dr
>route delete default
>rm -f /var/dr
>
>
>
>в rc.conf маршрут до впн сервера

тот же эффект, закоментил в mpd.conf
set iface route default
set ipcp range ...
добавил скрипты, закоментил defaultroute="10.10.0.1" в rc.conf
добавил роут route add -host 91.196.244.250 10.10.0.1


"freebsd + vpn +mpd5"
Отправлено urusha , 02-Апр-09 20:39 
>тот же эффект

покажите нанешний лог при подключении и вывод netstat -rn до после и ifconfig после


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 03-Апр-09 19:16 
>>тот же эффект
>
>покажите нанешний лог при подключении и вывод netstat -rn до после и
>ifconfig после

mpd.conf
        create bundle static B1
        set iface up-script /usr/local/etc/mpd5/if-up.sh
        set iface down-script /urs/local/etc/mpd5/if-down.sh
        create link static L1 pptp
        set link action bundle B1
        set auth authname LOGIN
        set auth password PASSW
        set link max-redial 0
        set link mtu 1460
        set link keep-alive 20 75
        set pptp peer 91.196.244.250
        set pptp disable windowing
        open


Apr  4 05:05:50 bsd_desktop mpd: Multi-link PPP daemon for FreeBSD
Apr  4 05:05:50 bsd_desktop mpd:
Apr  4 05:05:50 bsd_desktop mpd: process 1074 started, version 5.1 (root@freebsd.org 18:20  9-Sep-2008)
Apr  4 05:05:50 bsd_desktop mpd: CONSOLE: listening on 127.0.0.1 5005
Apr  4 05:05:50 bsd_desktop mpd: web: listening on 0.0.0.0 5006
Apr  4 05:05:50 bsd_desktop mpd: [B1] Bundle: Interface ng0 created
Apr  4 05:05:50 bsd_desktop mpd: [L1] Link: OPEN event
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: Open event
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: state change Initial --> Starting
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: LayerStart
Apr  4 05:05:50 bsd_desktop mpd: [L1] PPTP call successful
Apr  4 05:05:50 bsd_desktop mpd: [L1] Link: UP event
Apr  4 05:05:50 bsd_desktop mpd: [L1] Link: origination is local
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: Up event
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: state change Starting --> Req-Sent
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: SendConfigReq #1
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MAGICNUM 850dec58
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: rec'd Configure Request #1 (Req-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MAGICNUM a51ed07c
Apr  4 05:05:50 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: SendConfigAck #1
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MAGICNUM a51ed07c
Apr  4 05:05:50 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: state change Req-Sent --> Ack-Sent
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: rec'd Configure Ack #1 (Ack-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 05:05:50 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MAGICNUM 850dec58
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: state change Ack-Sent --> Opened
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: auth: peer wants CHAP, I want nothing
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: LayerUp
Apr  4 05:05:50 bsd_desktop mpd: [L1] CHAP: rec'd CHALLENGE #1 len: 24
Apr  4 05:05:50 bsd_desktop mpd: [L1]   Name: ""
Apr  4 05:05:50 bsd_desktop mpd: [L1] CHAP: Using authname "sid2"
Apr  4 05:05:50 bsd_desktop mpd: [L1] CHAP: sending RESPONSE #1 len: 25
Apr  4 05:05:50 bsd_desktop mpd: [L1] CHAP: rec'd SUCCESS #1 len: 13
Apr  4 05:05:50 bsd_desktop mpd: [L1]   MESG: Welcome!!
Apr  4 05:05:50 bsd_desktop mpd: [L1] LCP: authorization successful
Apr  4 05:05:50 bsd_desktop mpd: [L1] Link: Matched action 'bundle "B1" ""'
Apr  4 05:05:50 bsd_desktop mpd: [L1] Link: Join bundle "B1"
Apr  4 05:05:50 bsd_desktop mpd: [B1] Bundle: Status update: up 1 link, total bandwidth 64000 bps
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: Open event
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: state change Initial --> Starting
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: LayerStart
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: Up event
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: state change Starting --> Req-Sent
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: SendConfigReq #1
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  4 05:05:50 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  4 05:05:50 bsd_desktop mpd: [L1] rec'd unexpected protocol CCP, rejecting
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Configure Request #1 (Req-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  4 05:05:50 bsd_desktop mpd: [B1]     82.137.137.228 is OK
Apr  4 05:05:50 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, allow comp-cid
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: SendConfigAck #1
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  4 05:05:50 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, allow comp-cid
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: state change Req-Sent --> Ack-Sent
Apr  4 05:05:50 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Configure Reject #1 (Ack-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: SendConfigReq #2
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  4 05:05:50 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 195.149.202.168
Apr  4 05:05:50 bsd_desktop mpd: [B1]     195.149.202.168 is OK
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: SendConfigReq #3
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 195.149.202.168
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Configure Ack #3 (Ack-Sent)
Apr  4 05:05:50 bsd_desktop mpd: [B1]   IPADDR 195.149.202.168
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: state change Ack-Sent --> Opened
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: LayerUp
Apr  4 05:05:50 bsd_desktop mpd: [B1]   195.149.202.168 -> 82.137.137.228
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Adding IPv4 address to ng0 failed: File exists
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Up event
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Terminate Request #2 (Opened)
Apr  4 05:05:50 bsd_desktop mpd: [B1]   195.149.202.168 -> 82.137.137.228
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Adding IPv4 address to ng0 failed: File exists
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Up event
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: rec'd Terminate Request #2 (Opened)
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: state change Opened --> Stopping
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: SendTerminateAck #4
Apr  4 05:05:50 bsd_desktop mpd: [B1] IPCP: LayerDown
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Removing IPv4 address from ng0 failed: Can't assign requested address
Apr  4 05:05:50 bsd_desktop mpd: [B1] IFACE: Down event

до:
Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
default            10.10.0.1          UGS         0      239    re0
10.10.0.0/17       link#1             UC          0        0    re0
10.10.0.1          00:13:46:3d:d5:64  UHLW        3        4    re0   1200
10.10.16.84        00:00:0a:0a:10:54  UHLW        1     2098    re0    750
10.10.17.14        00:00:0a:0a:11:0e  UHLW        1        3    re0    721
82.137.137.228     10.10.0.1          UGHS        0        0    re0
127.0.0.1          127.0.0.1          UH          0        0    lo0

Internet6:
Destination                       Gateway                       Flags      Netif Expire
::1                               ::1                           UHL         lo0
fe80::%lo0/64                     fe80::1%lo0                   U           lo0
fe80::1%lo0                       link#3                        UHL         lo0
ff01:3::/32                       fe80::1%lo0                   UC          lo0
ff02::%lo0/32                     fe80::1%lo0                   UC          lo0


после:
Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
default            10.10.0.1          UGS         0      212    re0
10.10.0.0/17       link#1             UC          0        0    re0
10.10.0.1          00:13:46:3d:d5:64  UHLW        3        4    re0   1199
10.10.16.84        00:00:0a:0a:10:54  UHLW        1     2053    re0    790
10.10.17.14        00:00:0a:0a:11:0e  UHLW        1        3    re0    761
82.137.137.228     10.10.0.1          UGHS        0        0    re0
127.0.0.1          127.0.0.1          UH          0        0    lo0

Internet6:
Destination                       Gateway                       Flags      Netif Expire
::1                               ::1                           UHL         lo0
fe80::%lo0/64                     fe80::1%lo0                   U           lo0
fe80::1%lo0                       link#3                        UHL         lo0
ff01:3::/32                       fe80::1%lo0                   UC          lo0
ff02::%lo0/32                     fe80::1%lo0                   UC          lo0

re0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
        options=389b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,WOL_UCAST,WOL_MCAST,WOL_MAGIC>
        ether 00:00:0a:0a:10:51
        inet 10.10.16.81 netmask 0xffff8000 broadcast 10.10.127.255
        media: Ethernet autoselect (100baseTX <full-duplex>)
        status: active
plip0: flags=108810<POINTOPOINT,SIMPLEX,MULTICAST,NEEDSGIANT> metric 0 mtu 1500
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
        inet6 fe80::1%lo0 prefixlen 64 scopeid 0x3
        inet6 ::1 prefixlen 128
        inet 127.0.0.1 netmask 0xff000000
ng0: flags=8890<POINTOPOINT,NOARP,SIMPLEX,MULTICAST> metric 0 mtu 1500


202.168 - мой внешний ip
netgraph подключен

# grep NETGRAPH /usr/src/sys/conf/NOTES
options NETGRAPH
options NETGRAPH_PPP
options NETGRAPH_PPTPGRE



"freebsd + vpn +mpd5"
Отправлено urusha , 03-Апр-09 21:50 
хм, попробуйте добавить дефолтный маршрут через шлюз, маршрут до 91.196.244.250, остальные если были уберите, а скрипты привести к такому виду:
if-up.sh

#!/bin/sh
gateway_ip="10.10.0.1"

route add $4 $gateway_ip
route delete default
route add default $4

echo $4 > /tmp/dr


if-down.sh

#!/bin/sh
gateway_ip="10.10.0.1"

dr=`cat /tmp/dr`
route delete $dr
route delete default
route add default $gateway_ip
rm -f /var/dr

если не выйдет, напишите вывод лога, и попобуйте в первом варианте данных мной скриптов закоментить строчки с добавлением удалением дефулт роута (в rc.conf дефулт роут остается через шлюз) и проверить выдался ли вам айпи впн ип адрес, если выдался пропишите через
впн шлюз (в выводе ng0 после ->) маршрут к какому нибудь серваку в инете... и пингуйте, не получится - вывод лога


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 00:49 
>[оверквотинг удален]
>route delete $dr
>route delete default
>route add default $gateway_ip
>rm -f /var/dr
>
>если не выйдет, напишите вывод лога, и попобуйте в первом варианте данных
>мной скриптов закоментить строчки с добавлением удалением дефулт роута (в rc.conf
>дефулт роут остается через шлюз) и проверить выдался ли вам айпи
>впн ип адрес, если выдался пропишите через
>впн шлюз (в выводе ng0 после ->) маршрут к какому нибудь серваку в инете... и пингуйте, не получится - вывод лога

изменил скрипты на выше вами написанные, в роутах  оставил только маршрут до днса (это я как понял в любом случае надо) и до впн сервера, в итоге в интерфейсе стал показывать IP

inet 195.149.202.167 --> 82.137.137.228 netmask 0xffffffff

попробовал прописать маршрут, однако он не пингуется


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 00:58 
вот лог:

Apr  4 10:57:20 bsd_desktop mpd: Multi-link PPP daemon for FreeBSD
Apr  4 10:57:20 bsd_desktop mpd:
Apr  4 10:57:20 bsd_desktop mpd: process 1031 started, version 5.1 (root@freebsd.org 18:20  9-Sep-2008)
Apr  4 10:57:20 bsd_desktop mpd: CONSOLE: listening on 127.0.0.1 5005
Apr  4 10:57:20 bsd_desktop mpd: web: listening on 0.0.0.0 5006
Apr  4 10:57:20 bsd_desktop mpd: [B1] Bundle: Interface ng0 created
Apr  4 10:57:20 bsd_desktop mpd: [L1] Link: OPEN event
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: Open event
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: state change Initial --> Starting
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: LayerStart
Apr  4 10:57:20 bsd_desktop mpd: [L1] PPTP call successful
Apr  4 10:57:20 bsd_desktop mpd: [L1] Link: UP event
Apr  4 10:57:20 bsd_desktop mpd: [L1] Link: origination is local
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: Up event
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: state change Starting --> Req-Sent
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: SendConfigReq #1
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MAGICNUM cf323781
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: rec'd Configure Request #1 (Req-Sent)
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MAGICNUM 54957460
Apr  4 10:57:20 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: SendConfigAck #1
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MAGICNUM 54957460
Apr  4 10:57:20 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: state change Req-Sent --> Ack-Sent
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: rec'd Configure Ack #1 (Ack-Sent)
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACFCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  4 10:57:20 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MRU 1500
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MAGICNUM cf323781
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: state change Ack-Sent --> Opened
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: auth: peer wants CHAP, I want nothing
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: LayerUp
Apr  4 10:57:20 bsd_desktop mpd: [L1] CHAP: rec'd CHALLENGE #1 len: 43
Apr  4 10:57:20 bsd_desktop mpd: [L1]   Name: ""
Apr  4 10:57:20 bsd_desktop mpd: [L1] CHAP: Using authname "MY_LOGIN"
Apr  4 10:57:20 bsd_desktop mpd: [L1] CHAP: sending RESPONSE #1 len: 30
Apr  4 10:57:20 bsd_desktop mpd: [L1] CHAP: rec'd SUCCESS #1 len: 13
Apr  4 10:57:20 bsd_desktop mpd: [L1]   MESG: Welcome!!
Apr  4 10:57:20 bsd_desktop mpd: [L1] LCP: authorization successful
Apr  4 10:57:20 bsd_desktop mpd: [L1] Link: Matched action 'bundle "B1" ""'
Apr  4 10:57:20 bsd_desktop mpd: [L1] Link: Join bundle "B1"
Apr  4 10:57:20 bsd_desktop mpd: [B1] Bundle: Status update: up 1 link, total bandwidth 64000 bps
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: Open event
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: state change Initial --> Starting
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: LayerStart
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: Up event
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: state change Starting --> Req-Sent
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: SendConfigReq #1
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  4 10:57:20 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  4 10:57:20 bsd_desktop mpd: [L1] rec'd unexpected protocol CCP, rejecting
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: rec'd Configure Request #1 (Req-Sent)
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  4 10:57:20 bsd_desktop mpd: [B1]     82.137.137.228 is OK
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: SendConfigAck #1
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: state change Req-Sent --> Ack-Sent
Apr  4 10:57:20 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: rec'd Configure Reject #1 (Ack-Sent)
Apr  4 10:57:20 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: SendConfigReq #2
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  4 10:57:20 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  4 10:57:20 bsd_desktop mpd: [B1]     195.149.202.167 is OK
Apr  4 10:57:20 bsd_desktop mpd: [B1] IPCP: SendConfigReq #3
Apr  4 10:57:20 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  4 10:57:21 bsd_desktop mpd: [B1] IPCP: rec'd Configure Ack #3 (Ack-Sent)
Apr  4 10:57:21 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  4 10:57:21 bsd_desktop mpd: [B1] IPCP: state change Ack-Sent --> Opened
Apr  4 10:57:21 bsd_desktop mpd: [B1] IPCP: LayerUp
Apr  4 10:57:21 bsd_desktop mpd: [B1]   195.149.202.167 -> 82.137.137.228
Apr  4 10:57:21 bsd_desktop mpd: [B1] IFACE: Up event
Apr  4 10:57:23 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 11:56 
вот теперь лог чистый, это хорошо, покажите netstat -rn до после.
где-то маршрута нехватает

"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 13:08 
>вот теперь лог чистый, это хорошо, покажите netstat -rn до после.
>где-то маршрута нехватает

до:

Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
10.10.0.0/17       link#1             UC          0        0    re0
10.10.0.1          00:13:46:3d:d5:64  UHLW        3        0    re0   1200
10.10.16.83        00:00:0a:0a:10:53  UHLW        1      308    re0   1127
91.196.244.250     10.10.0.1          UGHS        0        0    re0
127.0.0.1          127.0.0.1          UH          0        0    lo0
195.149.200.230    10.10.0.1          UGHS        0        0    re0

Internet6:
Destination                       Gateway                       Flags      Netif Expire
::1                               ::1                           UHL         lo0
fe80::%lo0/64                     fe80::1%lo0                   U           lo0
fe80::1%lo0                       link#3                        UHL         lo0
ff01:3::/32                       fe80::1%lo0                   UC          lo0
ff02::%lo0/32                     fe80::1%lo0                   UC          lo0


после:

Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
default            82.137.137.228     UGS         0       10    ng0
10.10.0.0/17       link#1             UC          0        0    re0
10.10.0.1          00:13:46:3d:d5:64  UHLW        4        0    re0   1200
10.10.16.83        00:00:0a:0a:10:53  UHLW        1      350    re0   1079
82.137.137.228     10.10.0.1          UGHS        1        0    re0
91.196.244.250     10.10.0.1          UGHS        0       27    re0
127.0.0.1          127.0.0.1          UH          0        0    lo0
195.149.200.230    10.10.0.1          UGHS        0        1    re0

Internet6:
Destination                       Gateway                       Flags      Netif Expire
::1                               ::1                           UHL         lo0
fe80::%lo0/64                     fe80::1%lo0                   U           lo0
fe80::1%lo0                       link#3                        UHL         lo0
ff01:3::/32                       fe80::1%lo0                   UC          lo0
ff02::%lo0/32                     fe80::1%lo0                   UC          lo0


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 13:23 
странно, вроде все ок...
на фаерволе все разрешено?
что из вот этого пингуется?
82.137.137.228
10.10.0.1
91.196.244.250
195.149.200.230

можно попробывать в подключенном состоянии
route delete 82.137.137.228
route add 82.137.137.228 91.196.244.250



"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 14:37 
>[оверквотинг удален]
>на фаерволе все разрешено?
>что из вот этого пингуется?
>82.137.137.228
>10.10.0.1
>91.196.244.250
>195.149.200.230
>
>можно попробывать в подключенном состоянии
>route delete 82.137.137.228
>route add 82.137.137.228 91.196.244.250

какая-то херня получается с новыми скриптами, роуты не удаляются, исправил на старые
вообщем то же самое

роуты до днс и впн сервера, как я понял, должны быть до подключения
после подключения добавляются

82.137.137.228     195.149.202.167    UH          1        0    ng0
default            82.137.137.228     UGS         0        3    ng0

Apr  5 00:34:24 bsd_desktop mpd: Multi-link PPP daemon for FreeBSD
Apr  5 00:34:24 bsd_desktop mpd:
Apr  5 00:34:24 bsd_desktop mpd: process 3664 started, version 5.1 (root@freebsd.org 18:20  9-Sep-2008)
Apr  5 00:34:24 bsd_desktop mpd: CONSOLE: listening on 127.0.0.1 5005
Apr  5 00:34:24 bsd_desktop mpd: web: listening on 0.0.0.0 5006
Apr  5 00:34:24 bsd_desktop mpd: [B1] Bundle: Interface ng0 created
Apr  5 00:34:24 bsd_desktop mpd: [L1] Link: OPEN event
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: Open event
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: state change Initial --> Starting
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: LayerStart
Apr  5 00:34:24 bsd_desktop mpd: [L1] PPTP call successful
Apr  5 00:34:24 bsd_desktop mpd: [L1] Link: UP event
Apr  5 00:34:24 bsd_desktop mpd: [L1] Link: origination is local
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: Up event
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: state change Starting --> Req-Sent
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: SendConfigReq #1
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACFCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MRU 1500
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MAGICNUM a9cbc990
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: rec'd Configure Request #1 (Req-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACFCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MRU 1500
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MAGICNUM 329d21c9
Apr  5 00:34:24 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: SendConfigAck #1
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACFCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACCMAP 0xffffffff
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MRU 1500
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MAGICNUM 329d21c9
Apr  5 00:34:24 bsd_desktop mpd: [L1]   AUTHPROTO CHAP MD5
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: state change Req-Sent --> Ack-Sent
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: rec'd Configure Ack #1 (Ack-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACFCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   PROTOCOMP
Apr  5 00:34:24 bsd_desktop mpd: [L1]   ACCMAP 0x000a0000
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MRU 1500
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MAGICNUM a9cbc990
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: state change Ack-Sent --> Opened
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: auth: peer wants CHAP, I want nothing
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: LayerUp
Apr  5 00:34:24 bsd_desktop mpd: [L1] CHAP: rec'd CHALLENGE #1 len: 39
Apr  5 00:34:24 bsd_desktop mpd: [L1]   Name: ""
Apr  5 00:34:24 bsd_desktop mpd: [L1] CHAP: Using authname "ukgsanny2"
Apr  5 00:34:24 bsd_desktop mpd: [L1] CHAP: sending RESPONSE #1 len: 30
Apr  5 00:34:24 bsd_desktop mpd: [L1] CHAP: rec'd SUCCESS #1 len: 13
Apr  5 00:34:24 bsd_desktop mpd: [L1]   MESG: Welcome!!
Apr  5 00:34:24 bsd_desktop mpd: [L1] LCP: authorization successful
Apr  5 00:34:24 bsd_desktop mpd: [L1] Link: Matched action 'bundle "B1" ""'
Apr  5 00:34:24 bsd_desktop mpd: [L1] Link: Join bundle "B1"
Apr  5 00:34:24 bsd_desktop mpd: [B1] Bundle: Status update: up 1 link, total bandwidth 64000 bps
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: Open event
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: state change Initial --> Starting
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: LayerStart
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: Up event
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: state change Starting --> Req-Sent
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: SendConfigReq #1
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  5 00:34:24 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  5 00:34:24 bsd_desktop mpd: [L1] rec'd unexpected protocol CCP, rejecting
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: rec'd Configure Request #1 (Req-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  5 00:34:24 bsd_desktop mpd: [B1]     82.137.137.228 is OK
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: SendConfigAck #1
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 82.137.137.228
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: state change Req-Sent --> Ack-Sent
Apr  5 00:34:24 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: rec'd Configure Reject #1 (Ack-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [B1]   COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: SendConfigReq #2
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 10.10.16.81
Apr  5 00:34:24 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: rec'd Configure Nak #2 (Ack-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  5 00:34:24 bsd_desktop mpd: [B1]     195.149.202.167 is OK
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: SendConfigReq #3
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: rec'd Configure Ack #3 (Ack-Sent)
Apr  5 00:34:24 bsd_desktop mpd: [B1]   IPADDR 195.149.202.167
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: state change Ack-Sent --> Opened
Apr  5 00:34:24 bsd_desktop mpd: [B1] IPCP: LayerUp
Apr  5 00:34:24 bsd_desktop mpd: [B1]   195.149.202.167 -> 82.137.137.228
Apr  5 00:34:24 bsd_desktop mpd: [B1] IFACE: Up event
Apr  5 00:34:27 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting

мне кажется что-то тут неладное с роутами


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 15:41 
бардак, давайте сначала, в rc.conf добавьте:

default_route="10.10.0.1"
static_routes="dns vpn"
route_dns="195.149.200.230"
route_vpn="91.196.244.250"

скрипты такие:

#!/bin/sh
gateway_ip="10.10.0.1"

route delete $4
route add $4 $gateway_ip
route delete default
route add default $4

echo $4 > /tmp/dr

if-down.sh

#!/bin/sh
gateway_ip="10.10.0.1"

dr=`cat /tmp/dr`
route delete $dr
route delete default
route add default $gateway_ip
rm -f /var/dr

перезагрузитесь и попробуйте снова

если не поможет, читайте предыдущий мой пост


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 15:43 
сори, в rc.conf подправьте строчки
route_dns="195.149.200.230 10.10.0.1"
route_vpn="91.196.244.250 10.10.0.1"

"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 16:22 
>сори, в rc.conf подправьте строчки
>route_dns="195.149.200.230 10.10.0.1"
>route_vpn="91.196.244.250 10.10.0.1"

я уже в отчаянии :( исправил скрипты на последние вами написанные, поправил rc.conf после остановки mpd/usr/local/etc/rc.c/mpd5 stop не удаляется роут 82.137.137.228 и при следующем подключении в интерфейсе ng0 отсутствует строчка
inet 195.149.202.167 --> 82.137.137.228 netmask 0xffffffff
приходится удалять вручную, пинг все не идет :(

и что это за строчка?
Apr  5 02:24:37 bsd_desktop mpd: [L1] rec'd unexpected protocol IPV6CP, rejecting


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 16:35 
пинг все не идет :(
куда не идет и куда идет?
пробывали
route delete 82.137.137.228
route add 82.137.137.228 91.196.244.250
тоже не идет?



"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 16:48 
>пинг все не идет :(
>куда не идет и куда идет?
>пробывали
>route delete 82.137.137.228
>route add 82.137.137.228 91.196.244.250
>тоже не идет?

пробовал, тоже пинга нет
пингую google.com


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 17:01 
>пробовал, тоже пинга нет

вы пинговали все адреса которые я перечислил и до всех нет пинга?


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 04-Апр-09 17:07 
>>пробовал, тоже пинга нет
>
>вы пинговали все адреса которые я перечислил и до всех нет пинга?
>

пингуются все, кроме 82.137.137.228


"freebsd + vpn +mpd5"
Отправлено urusha , 04-Апр-09 17:34 
>пингуются все, кроме 82.137.137.228

узнайте у провайдера, какие маршруты у вас во внутренней сети, должно быть на сайте или позвоните...
вообще по-моему у вас маска для re0 не правильная стоит судя по http://91.196.244.250/, поставьте 255.255.0.0, может поможет


"freebsd + vpn +mpd5"
Отправлено pink_floyd , 07-Апр-09 21:52 
>>пингуются все, кроме 82.137.137.228
>
>узнайте у провайдера, какие маршруты у вас во внутренней сети, должно быть
>на сайте или позвоните...
>вообще по-моему у вас маска для re0 не правильная стоит судя по
>http://91.196.244.250/, поставьте 255.255.0.0, может поможет

вообщем все сделал, нужно было удалить дефалт роут и просто добавить дефалт 82.137.137.228


"freebsd + vpn +mpd5"
Отправлено test , 29-Окт-09 18:35 
Просветите, чем mpd4 и mpd5 различаются? Почему все на 5-ке стараются поднять?

"freebsd + vpn +mpd5"
Отправлено Игорь , 30-Окт-09 00:27 
распишите поподробнее решение, сижу с  той же проблемой...не пингуеться дальше провайдера ничего (((