Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 15 Jul 2001 21:31:09 -0400
From:      Bill Moran <wmoran@iowna.com>
To:        Joe Clarke <marcus@marcuscom.com>
Cc:        freebsd-questions@FreeBSD.ORG
Subject:   Re: Problems with PPTP using mpd
Message-ID:  <3B5243DD.8E62FB96@iowna.com>
References:  <20010714032823.J1703-100000@shumai.marcuscom.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Joe Clarke wrote:
> 
> Do you have the crypto libs on your system?  Do you have
> /usr/lib/libdescrypt.*?

Yes, I do have the libraries you describe.

> You may also try disabling the need for Microsoft
> CHAP authentication on the server.  In order for MPD to use MSCHAP, you
> need to compile with DES.

I believe that I've tried every possible combination of radio-button
options at this point. I'm assuming that what you're talking about is the
"accept any auth", "accept only encrypted auth", etc options.
I'm still not getting a connection.

> I know MSCHAPv2 has been known to cause
> problems with non-MS products.  You might try disabling that as well if
> it's enabled.

Hmmm ... I just upgraded the NT workstation to SP6a. Do you know how I
turn off MSCHAPv2?

Overall this is very strange. If I understand all this diagnostice stuff,
mpd is requesting chap auth, which NT acknowledges, then mpd acks that
an agreed auth has been reached (MSCHAP) which NT then rejects. Doesn't
make any sense to me, but I may be reading it wrong.

Any other ideas? Or things to try?

-Bill

> 
> Joe Clarke
> 
> On Fri, 13 Jul 2001, Bill Moran wrote:
> 
> > Using FreeBSD 4.3 and mpd 3.2
> > I'm trying to set up a PPTP connection to an NT 4 workstation. The FreeBSD
> > box is calling to the NT WS.
> > Things seem to go fairly well except it can't authenticate. Here is a
> > script capture of what happens:
> >
> > Script started on Fri Jul 13 22:19:13 2001
> > Multi-link PPP for FreeBSD, by Archie L. Cobbs.
> > Based on iij-ppp, by Toshiharu OHNO.
> > mpd: pid 7306, version 3.2 (root@gohan14.freebsd.org 18:57 19-Apr-2001)
> > [pptp1] ppp node is "mpd7306-pptp1"
> > [pptp1] using interface ng0
> > [pptp1:pptp1] open
> > [pptp1] IFACE: Open event
> > [pptp1] IPCP: Open event
> > [pptp1] IPCP: state change Initial --> Starting
> > [pptp1] IPCP: LayerStart
> > [pptp1:pptp1] [pptp1] bundle: OPEN event in state CLOSED
> > [pptp1] opening link "pptp1"...
> > [pptp1] link: OPEN event
> > [pptp1] LCP: Open event
> > [pptp1] LCP: state change Initial --> Starting
> > [pptp1] LCP: LayerStart
> > [pptp1] device: OPEN event in state DOWN
> > pptp0: connecting to 10.0.0.50:1723
> > [pptp1] device is now in state OPENING
> > pptp0: connected to 10.0.0.50:1723
> > pptp0: attached to connection with 10.0.0.50:1723
> > pptp0-0: outgoing call connected at 64000 bps
> > [pptp1] PPTP call successful
> > [pptp1] device: UP event in state OPENING
> > [pptp1] device is now in state UP
> > [pptp1] link: UP event
> > [pptp1] link: origination is local
> > [pptp1] LCP: Up event
> > [pptp1] LCP: state change Starting --> Req-Sent
> > [pptp1] LCP: phase shift DEAD --> ESTABLISH
> > [pptp1] LCP: SendConfigReq #1
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Configure Request #0 link 0 (Req-Sent)
> >  AUTHPROTO CHAP MSOFT
> >  MAGICNUM 00005010
> >  PROTOCOMP
> >  ACFCOMP
> > [pptp1] LCP: SendConfigAck #0
> >  AUTHPROTO CHAP MSOFT
> >  MAGICNUM 00005010
> >  PROTOCOMP
> >  ACFCOMP
> > [pptp1] LCP: state change Req-Sent --> Ack-Sent
> > [pptp1] LCP: rec'd Configure Reject #1 link 0 (Ack-Sent)
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #2
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #3
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Configure Reject #3 link 0 (Ack-Sent)
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #4
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Configure Reject #4 link 0 (Ack-Sent)
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #5
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Configure Reject #5 link 0 (Ack-Sent)
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #6
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Configure Reject #6 link 0 (Ack-Sent)
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #7
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: rec'd Terminate Request #1 link 0 (Ack-Sent)
> > [pptp1] LCP: state change Ack-Sent --> Req-Sent
> > [pptp1] LCP: SendTerminateAck #8
> > [pptp1] LCP: rec'd Terminate Request #2 link 0 (Req-Sent)
> > [pptp1] LCP: SendTerminateAck #9
> > [pptp1] LCP: SendConfigReq #10
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > [pptp1] LCP: SendConfigReq #11
> >  ACFCOMP
> >  PROTOCOMP
> >  MRU 1500
> >  MAGICNUM 27325afc
> >  AUTHPROTO CHAP MSOFT
> > pptp0-0: peer call disconnected res=admin action err=none
> > pptp0-0: killing channel
> > [pptp1] PPTP call terminated
> > pptp0: closing connection with 10.0.0.50:1723
> > [pptp1] device: DOWN event in state UP
> > [pptp1] device is now in state DOWN
> >
> >
> > Any thoughts? My mpd.links:
> >
> > pptp1:
> >  set link type pptp
> >  set pptp enable originate
> >  set pptp disable incoming
> >  set pptp self 10.0.0.99
> >  set pptp peer 10.0.0.50
> >
> >
> > My mpd.conf
> >
> > default:
> >  load pptp1
> >
> > pptp1:
> >  new -i ng0 pptp1 pptp1
> >  set iface idle 0
> >  set iface route 192.168.0.0/16
> >  set iface addrs 192.168.0.1 192.168.0.2
> >  set bundle disable multilink
> >  set bundle authname "testusr"
> >  set bundle password "test"
> >  set link no pap
> >  set link yes chap
> >  set link keep-alive 10 75
> >  set ipcp yes vjcomp
> >  set ipcp ranges 192.168.0.1/32 192.168.0.2/32
> > # set ccp yes mppc
> > # set ccp yes mpp-e40
> > # set ccp yes mpp-e128
> > # set bundle enable crypt-reqd
> > # set ccp yes mpp-stateless
> >
> > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > with "unsubscribe freebsd-questions" in the body of the message
> >
> >

-- 
It may be that true happiness is nothing more than the ability to *always*
know the right thing to say at the right time,  whereas true misery is the
state of perpetually saying to oneself, "What I *should* have said was..."

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3B5243DD.8E62FB96>