Project

General

Profile

Bug #1448

PPTP VPN Radius authentication and accounting don't work

Added by Zeev Zalessky over 8 years ago. Updated over 8 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
PPTP
Target version:
Start date:
04/20/2011
Due date:
% Done:

0%

Estimated time:
Affected Version:
2.0
Affected Architecture:
i386

Description

PPTP VPN configured to use radius authentication and accounting. no traffic to radius server. no users authentication.
logs:

Apr 20 10:32:32 pptps: [pt15] using interface pptpd15
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt14] using interface pptpd14
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt13] using interface pptpd13
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt12] using interface pptpd12
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt11] using interface pptpd11
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt10] using interface pptpd10
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt9] using interface pptpd9
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt8] using interface pptpd8
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt7] using interface pptpd7
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt6] using interface pptpd6
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt5] using interface pptpd5
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt4] using interface pptpd4
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt3] using interface pptpd3
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt2] using interface pptpd2
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt1] using interface pptpd1
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:32 pptps: [pt0] using interface pptpd0
Apr 20 10:32:32 pptps: PPTP: waiting for connection on 0.0.0.0
Apr 20 10:32:31 pptps: Label 'startup' not found
Apr 20 10:32:31 pptps: process 8601 started, version 4.4.1 (root@FreeBSD_8.0_pfSense_2.0-snaps.pfsense.org 09:33 5-Apr-2011)
Apr 20 10:32:31 pptps:

PPTP_Config.png (124 KB) PPTP_Config.png Zeev Zalessky, 04/20/2011 10:45 AM
mpd.conf (3.02 KB) mpd.conf Zeev Zalessky, 04/20/2011 03:33 PM
mpd.links (2.22 KB) mpd.links Zeev Zalessky, 04/20/2011 03:33 PM
mpd.secret (30 Bytes) mpd.secret passwords are masked Zeev Zalessky, 04/20/2011 03:33 PM

Associated revisions

Revision b8f71fde (diff)
Added by Scott Ullrich almost 12 years ago

MFC:
Ticket #1448 IP Address sorting was MF'd from HEAD

History

#1 Updated by Ermal Lu├ži over 8 years ago

Can you show the contents of cat /var/etc/pptp-vpn/*

#2 Updated by Zeev Zalessky over 8 years ago

attached files from requested directory

#3 Updated by Brian G over 8 years ago

Instead of opening a new bug i figured i would add to this.

I am having the same issue with PPTP authenticating to a radius server. To make things worse, i am unable to disable radius authentication. When i disable radius authentication and click save, i get:

The following input errors were detected:
A valid RADIUS server address must be specified.

#4 Updated by Chris Buechler over 8 years ago

  • Status changed from New to Feedback
  • Priority changed from High to Normal

it works fine. Also disables fine, you have to actually disable it by unchecking, you can't just take out the IP.

#5 Updated by Chris Buechler over 8 years ago

  • Status changed from Feedback to Closed

doubly confirmed, accounting and auth work fine. The posted config is correct. If you're seeing no traffic to your RADIUS server, you're looking in the wrong place or filtering wrong. Post to the forum or mailing list for further help.

#6 Updated by Zeev Zalessky over 8 years ago

please reopen it. PPTP Auth via radius not working in 32bit version!!!!

#7 Updated by Chris Buechler over 8 years ago

it is definitely working on 32 bit.

#8 Updated by Zeev Zalessky over 8 years ago

Just tested with 64bit version. it's work directly after install using same config backup. 32 bit not working (latest build)

log of 32bit:

Apr 21 10:12:35

pptps: pptp0: killing connection with 192.168.100.136 50084

Apr 21 10:12:35

pptps: pptp0: closing connection with 192.168.100.136 50084

Apr 21 10:12:35

pptps: [pt0] LCP: state change Closed --> Initial

Apr 21 10:12:35

pptps: [pt0] LCP: Down event

Apr 21 10:12:35

pptps: [pt0] LCP: state change Stopped --> Closed

Apr 21 10:12:35

pptps: [pt0] LCP: Close event

Apr 21 10:12:35

pptps: [pt0] link: DOWN event

Apr 21 10:12:35

pptps: [pt0] PPTP call terminated

Apr 21 10:12:35

pptps: pptp0-0: killing channel

Apr 21 10:12:35

pptps: pptp0-0: clearing call

Apr 21 10:12:35

pptps: [pt0] LCP: LayerFinish

Apr 21 10:12:35

pptps: [pt0] LCP: state change Req-Sent --> Stopped

Apr 21 10:12:35

pptps: [pt0] LCP: parameter negotiation failed

Apr 21 10:12:35

pptps: [pt0] LCP: not converging

Apr 21 10:12:35

pptps: CALLBACK 6

Apr 21 10:12:35

pptps: ACFCOMP

Apr 21 10:12:35

pptps: PROTOCOMP

Apr 21 10:12:35

pptps: MAGICNUM 20a73123

Apr 21 10:12:35

pptps: MRU 1400

Apr 21 10:12:35

pptps: [pt0] LCP: rec'd Configure Request #5 (Req-Sent)

Apr 21 10:12:34

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:34

pptps: MP SHORTSEQ

Apr 21 10:12:34

pptps: MP MRRU 1600

Apr 21 10:12:34

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:34

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:34

pptps: MRU 1500

Apr 21 10:12:34

pptps: PROTOCOMP

Apr 21 10:12:34

pptps: ACFCOMP

Apr 21 10:12:34

pptps: [pt0] LCP: SendConfigReq #18

Apr 21 10:12:32

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:32

pptps: MP SHORTSEQ

Apr 21 10:12:32

pptps: MP MRRU 1600

Apr 21 10:12:32

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:32

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:32

pptps: MRU 1500

Apr 21 10:12:32

pptps: PROTOCOMP

Apr 21 10:12:32

pptps: ACFCOMP

Apr 21 10:12:32

pptps: [pt0] LCP: SendConfigReq #17

Apr 21 10:12:31

pptps: CALLBACK 6

Apr 21 10:12:31

pptps: [pt0] LCP: SendConfigRej #4

Apr 21 10:12:31

pptps: CALLBACK 6

Apr 21 10:12:31

pptps: ACFCOMP

Apr 21 10:12:31

pptps: PROTOCOMP

Apr 21 10:12:31

pptps: MAGICNUM 20a73123

Apr 21 10:12:31

pptps: MRU 1400

Apr 21 10:12:31

pptps: [pt0] LCP: rec'd Configure Request #4 (Req-Sent)

Apr 21 10:12:30

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:30

pptps: MP SHORTSEQ

Apr 21 10:12:30

pptps: MP MRRU 1600

Apr 21 10:12:30

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:30

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:30

pptps: MRU 1500

Apr 21 10:12:30

pptps: PROTOCOMP

Apr 21 10:12:30

pptps: ACFCOMP

Apr 21 10:12:30

pptps: [pt0] LCP: SendConfigReq #16

Apr 21 10:12:28

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:28

pptps: MP SHORTSEQ

Apr 21 10:12:28

pptps: MP MRRU 1600

Apr 21 10:12:28

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:28

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:28

pptps: MRU 1500

Apr 21 10:12:28

pptps: PROTOCOMP

Apr 21 10:12:28

pptps: ACFCOMP

Apr 21 10:12:28

pptps: [pt0] LCP: SendConfigReq #15

Apr 21 10:12:27

pptps: CALLBACK 6

Apr 21 10:12:27

pptps: [pt0] LCP: SendConfigRej #3

Apr 21 10:12:27

pptps: CALLBACK 6

Apr 21 10:12:27

pptps: ACFCOMP

Apr 21 10:12:27

pptps: PROTOCOMP

Apr 21 10:12:27

pptps: MAGICNUM 20a73123

Apr 21 10:12:27

pptps: MRU 1400

Apr 21 10:12:27

pptps: [pt0] LCP: rec'd Configure Request #3 (Req-Sent)

Apr 21 10:12:26

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:26

pptps: MP SHORTSEQ

Apr 21 10:12:26

pptps: MP MRRU 1600

Apr 21 10:12:26

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:26

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:26

pptps: MRU 1500

Apr 21 10:12:26

pptps: PROTOCOMP

Apr 21 10:12:26

pptps: ACFCOMP

Apr 21 10:12:26

pptps: [pt0] LCP: SendConfigReq #14

Apr 21 10:12:24

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:24

pptps: MP SHORTSEQ

Apr 21 10:12:24

pptps: MP MRRU 1600

Apr 21 10:12:24

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:24

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:24

pptps: MRU 1500

Apr 21 10:12:24

pptps: PROTOCOMP

Apr 21 10:12:24

pptps: ACFCOMP

Apr 21 10:12:24

pptps: [pt0] LCP: SendConfigReq #13

Apr 21 10:12:23

pptps: CALLBACK 6

Apr 21 10:12:23

pptps: [pt0] LCP: SendConfigRej #2

Apr 21 10:12:23

pptps: CALLBACK 6

Apr 21 10:12:23

pptps: ACFCOMP

Apr 21 10:12:23

pptps: PROTOCOMP

Apr 21 10:12:23

pptps: MAGICNUM 20a73123

Apr 21 10:12:23

pptps: MRU 1400

Apr 21 10:12:23

pptps: [pt0] LCP: rec'd Configure Request #2 (Req-Sent)

Apr 21 10:12:22

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:22

pptps: MP SHORTSEQ

Apr 21 10:12:22

pptps: MP MRRU 1600

Apr 21 10:12:22

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:22

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:22

pptps: MRU 1500

Apr 21 10:12:22

pptps: PROTOCOMP

Apr 21 10:12:22

pptps: ACFCOMP

Apr 21 10:12:22

pptps: [pt0] LCP: SendConfigReq #12

Apr 21 10:12:20

pptps: CALLBACK 6

Apr 21 10:12:20

pptps: [pt0] LCP: SendConfigRej #1

Apr 21 10:12:20

pptps: CALLBACK 6

Apr 21 10:12:20

pptps: ACFCOMP

Apr 21 10:12:20

pptps: PROTOCOMP

Apr 21 10:12:20

pptps: MAGICNUM 20a73123

Apr 21 10:12:20

pptps: MRU 1400

Apr 21 10:12:20

pptps: [pt0] LCP: rec'd Configure Request #1 (Req-Sent)

Apr 21 10:12:20

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:20

pptps: MP SHORTSEQ

Apr 21 10:12:20

pptps: MP MRRU 1600

Apr 21 10:12:20

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:20

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:20

pptps: MRU 1500

Apr 21 10:12:20

pptps: PROTOCOMP

Apr 21 10:12:20

pptps: ACFCOMP

Apr 21 10:12:20

pptps: [pt0] LCP: SendConfigReq #11

Apr 21 10:12:18

pptps: CALLBACK 6

Apr 21 10:12:18

pptps: [pt0] LCP: SendConfigRej #0

Apr 21 10:12:18

pptps: CALLBACK 6

Apr 21 10:12:18

pptps: ACFCOMP

Apr 21 10:12:18

pptps: PROTOCOMP

Apr 21 10:12:18

pptps: MAGICNUM 20a73123

Apr 21 10:12:18

pptps: MRU 1400

Apr 21 10:12:18

pptps: [pt0] LCP: rec'd Configure Request #0 (Req-Sent)

Apr 21 10:12:18

pptps: ENDPOINTDISC [802.1] 00 15 17 7c aa d4

Apr 21 10:12:18

pptps: MP SHORTSEQ

Apr 21 10:12:18

pptps: MP MRRU 1600

Apr 21 10:12:18

pptps: AUTHPROTO CHAP MSOFTv2

Apr 21 10:12:18

pptps: MAGICNUM 4ec888ca

Apr 21 10:12:18

pptps: MRU 1500

Apr 21 10:12:18

pptps: PROTOCOMP

Apr 21 10:12:18

pptps: ACFCOMP

Apr 21 10:12:18

pptps: [pt0] LCP: SendConfigReq #10

Apr 21 10:12:18

pptps: [pt0] LCP: state change Starting --> Req-Sent

Apr 21 10:12:18

pptps: [pt0] LCP: Up event

Apr 21 10:12:18

pptps: [pt0] link: origination is remote

Apr 21 10:12:18

pptps: [pt0] link: UP event

Apr 21 10:12:18

pptps: [pt0] PPTP: attaching to peer's outgoing call

Apr 21 10:12:18

pptps: [pt0] LCP: LayerStart

Apr 21 10:12:18

pptps: [pt0] LCP: state change Initial --> Starting

Apr 21 10:12:18

pptps: [pt0] LCP: Open event

Apr 21 10:12:18

pptps: [pt0] link: OPEN event

Apr 21 10:12:18

pptps: [pt0] opening link "pt0"...

Apr 21 10:12:18

pptps: [pt0] Accepting PPTP connection

Apr 21 10:12:18

pptps: pptp0: attached to connection with 192.168.100.136 50084

Apr 21 10:12:18

pptps: PPTP: Incoming control connection from 192.168.100.136 50084 to 62.90.152.252 1723

#9 Updated by Chris Buechler over 8 years ago

  • Status changed from Closed to Feedback

I find it very hard to believe there is any difference between amd64 and i386, all my systems that work fine are i386. will set to Feedback for eri to look at some point.

#10 Updated by Zeev Zalessky over 8 years ago

i found why its don't work. Eri removed pptp proxy patch at 16/3/2011. i have amd64 iso from 10 Mar 2011 and this iso works, but amd64 version has bug with pptp cheksum calculation (wrong endianity)

#11 Updated by Chris Buechler over 8 years ago

  • Status changed from Feedback to Closed

this isn't an actual issue, there is a separate issue for the broken checksums

Also available in: Atom PDF