[pptp-server] Need Help-Domain Auth. via PoPToP

Mike Stanton mstanton at lumend.com
Fri Mar 10 13:49:13 CST 2000


Steve,

Thanks for your time...

No, my linux box is not yet a firewall. I do have TCP port 1723 specified in
the services file though.

Here is the netstat -rn output from the Win98 client:

Active Routes:

  Network Address          Netmask  Gateway Address        Interface  Metric
          0.0.0.0          0.0.0.0    206.170.6.130    206.170.6.130       1
         10.0.0.0        255.0.0.0      10.0.10.101      10.0.10.101       1
(win98)10.0.10.101 255.255.255.255        127.0.0.1        127.0.0.1       1
        127.0.0.0        255.0.0.0        127.0.0.1        127.0.0.1       1
(linux) 170.1.x.x  255.255.255.255    206.170.6.130    206.170.6.130       1
      206.170.6.0    255.255.255.0    206.170.6.130    206.170.6.130       1
    206.170.6.130  255.255.255.255        127.0.0.1        127.0.0.1       1
    206.170.6.255  255.255.255.255    206.170.6.130    206.170.6.130       1
        224.0.0.0        224.0.0.0    206.170.6.130    206.170.6.130       1
        224.0.0.0        224.0.0.0      10.0.10.101      10.0.10.101       1
  255.255.255.255  255.255.255.255    206.170.6.130    206.170.6.130       1

Route Table

Active Connections

  Proto  Local Address          Foreign Address        State
  TCP    206.170.6.130:1035     170.1.x.x:1723      ESTABLISHED

Here is the server output:

Kernel IP routing table
Destination     Gateway         Genmask         Flags   MSS Window  irtt
Iface
10.0.10.101     0.0.0.0         255.255.255.255 UH        0 0          0
ppp0
170.1.x.x       0.0.0.0         255.255.255.255 UH        0 0          0
eth0
10.0.10.250     0.0.0.0         255.255.255.255 UH        0 0          0
eth1
170.1.x.0       0.0.0.0         255.255.255.192 U         0 0          0
eth0
10.0.10.0       0.0.0.0         255.255.255.0   U         0 0          0
eth1
127.0.0.0       0.0.0.0         255.0.0.0       U         0 0          0 lo
0.0.0.0         170.1.x.x       0.0.0.0         UG        0 0          0
eth0

eth0      Link encap:Ethernet  HWaddr 00:60:97:05:4F:0E  
          inet addr:170.1.x.x  Bcast:170.1.x.255  Mask:255.255.255.192
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:1725 errors:0 dropped:0 overruns:0 frame:0
          TX packets:826 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 
          Interrupt:9 Base address:0xfcc0 

eth1      Link encap:Ethernet  HWaddr 00:50:04:CF:96:14  
          inet addr:10.0.10.250  Bcast:10.0.10.255  Mask:255.255.255.0
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:861 errors:0 dropped:0 overruns:0 frame:0
          TX packets:184 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:100 
          Interrupt:11 Base address:0xfc00 

lo        Link encap:Local Loopback  
          inet addr:127.0.0.1  Mask:255.0.0.0
          UP LOOPBACK RUNNING  MTU:3924  Metric:1
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0
          TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:0 

ppp0      Link encap:Point-to-Point Protocol  
          inet addr:10.0.10.250  P-t-P:10.0.10.101  Mask:255.255.255.255
          UP POINTOPOINT RUNNING NOARP MULTICAST  MTU:1500  Metric:1
          RX packets:376 errors:7 dropped:0 overruns:0 frame:0
          TX packets:15 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:10

-----Original Message-----
From: Cowles, Steve [mailto:Steve.Cowles at gte.net]
Sent: Friday, March 10, 2000 11:18 AM
To: 'pptp-server at lists.schulte.org'
Subject: RE: [pptp-server] Need Help-Domain Auth. via PoPToP


Your propably going to have to post the output of "netstat -rn" from both
the linux box (poptop server) and the remote client. Also "ifconfig" output
might help also.

BTW: Is your linux box acting as a firewall? If so, have you enabled
(ACCEPT) proto 47 and port 1723?? This bit me the first time I setup Poptop.

Steve Cowles

-----Original Message-----
From: Mike Stanton [mailto:mstanton at lumend.com]
Sent: Friday, March 10, 2000 1:05 PM
To: 'Cowles, Steve'; 'pptp-server at lists.schulte.org'
Subject: RE: [pptp-server] Need Help-Domain Auth. via PoPToP


1.) No
2.) No
3.) Yes
4.) I do have a similar message in my log file, however, it is referring to
the eth1, my internal network interface.
5.) Error 6118: The computer(s) sharing resources in this workgroup cannot
be located. The computer(s) might have been restarted. Wait a few minutes...

-----Original Message-----
From: Cowles, Steve [mailto:Steve.Cowles at gte.net]
Sent: Friday, March 10, 2000 10:56 AM
To: 'pptp-server at lists.schulte.org'
Subject: RE: [pptp-server] Need Help-Domain Auth. via PoPToP




-----Original Message-----
From: Mike Stanton [mailto:mstanton at lumend.com]
Sent: Friday, March 10, 2000 12:14 PM
To: 'pptp-server at lists.schulte.org'
Subject: [pptp-server] Need Help-Domain Auth. via PoPToP


Hello everyone,

I'm running PoPToP 1.0.0 on Linux Mandrake 7.0. w/ Samba 2.0.6. My Win98
client (w/ updated 128-bit patch) can establish a 128-bit connection without
incident, but cannot authenticate to the Win NT Domain.  I keep receiving an
error message saying that no NT domain is available. I've tried specifying
in the lmhosts file the domain and PDC and I've also tried specifying the
WINS and DNS servers in the TCP settings of the VPN connectoid.

Can anyone tell me what I'm doing wrong?  I'm so close, yet so far...

Thanks,

Mike

_______________________________________________
pptp-server maillist  -  pptp-server at lists.schulte.org
http://lists.schulte.org/mailman/listinfo/pptp-server
List services provided by www.schulte.org!

1) Can you ping the PDC server after you create the VPN?
2) Can you ping the WINS server after you create the VPN?
3) Does "winipcfg" show the proper settings? e.g. WINS server.
4) Do you see the following (similer) line in your log files when
establishing a connection?
Mar 10 11:43:06 voyager pppd[725]: found interface eth0 for proxy arp

If your unable to ping the PDC or WINS server (from the remote) then this is
a network routing problem which is usually caused by the linux pppd server
not acting as a proxy arp for your connection.

5) What error do you see when typing: net view /domain:<MS Domain Name> fro
the remote.

Steve Cowles

_______________________________________________
pptp-server maillist  -  pptp-server at lists.schulte.org
http://lists.schulte.org/mailman/listinfo/pptp-server
List services provided by www.schulte.org!

_______________________________________________
pptp-server maillist  -  pptp-server at lists.schulte.org
http://lists.schulte.org/mailman/listinfo/pptp-server
List services provided by www.schulte.org!




More information about the pptp-server mailing list