[pptp-server] Error 645 puzzle

yan seiner yan at cardinalengineering.com
Sun Jan 14 15:40:25 CST 2001


Thanks for the answer - but it won't work for me.  The isdn router I 
have is so brain damaged that it can't forward ports/protocols without 
NAT.  It's all or nothing - either everything gets natted and forwarded, 
or everything gets forwarded.  No way to simply pick out one protocol to 
forward....

I need a pptpd/pppd that "know" they're behind NAT, and so give the 
client a "spoofed" ip with the public IP rather than the internal IP....

As I said, I was successful in patching ftp for this, but pptp/pppd 
seems a lot more complex....

--Yan

Kyle Hodgson wrote:

> 				
> I hit this one too with my Solaris ipfilter/ipnat machine.  I had to put a rdr
> rule in that redirected all proto 47 (GRE) traffic to the correct ip address.
> The only difference is that in my situation the client is nat'ed, the server has
> a real ip.  Here's the ipnat config:
> 
> rdr ppp0 0/32 port 0 -> 192.168.49.2 port 0 gre
> 
> which means redirect on ppp0 all traffic all ports to $client_ip port 0 gre.  To
> get this to work of course I had to define gre in /etc/protocols:
> <snip>
> gre	47	GRE	# Needed by pptp
> 
> I should think a similar nat entry would help you...
> 
> Originally from yan seiner <yan at cardinalengineering.com>, forwarded by kyleh
> 
> I had been using Win95 to connect to my poptop server until recently.  I
> had no need of my laptop for a while.  Now when I try to conect, I get:
> 
> Error 645: The Microsoft Dialup Adapter is in use or not responding
> properly.
> 
> This used to work fine.  I have uninstalled and reinstalled windows
> networking - no joy.
> 
> OK, so I looked at the logs on the server. Seems that my ISDN modem (an
> Eicon DIVA LAN MODEM) does not like pptp...
> 
> Here's the snippet from the log:
> 
> Jan 14 08:09:23 aphrodite pptpd[11946]: CTRL: Client 63.85.246.20
> control connection started
> Jan 14 08:09:23 athena-r IP_NAT NatOut: ip:192.168.129.2 pptp T=2,
> id:256 peer:256
> Jan 14 08:09:23 aphrodite pptpd[11946]: CTRL: Starting call (launching
> pppd, opening GRE)
> Jan 14 08:09:23 aphrodite pppd[11947]: pppd 2.3.10 started by root, uid 0
> Jan 14 08:09:23 athena-r IP_NAT NatOut: ip:192.168.129.2 pptp T=8,
> id:0 peer:0
> Jan 14 08:09:23 aphrodite pppd[11947]: Using interface ppp0
> Jan 14 08:09:23 aphrodite pppd[11947]: Connect: ppp0 <--> /dev/pts/6
> Jan 14 08:09:25 aphrodite pppd[11947]: Modem hangup
> Jan 14 08:09:25 athena-r IP_NAT NatOut: ip:192.168.129.2 pptp T=13,
> id:0 peer:1024
> Jan 14 08:09:25 aphrodite pppd[11947]: Connection terminated.
> Jan 14 08:09:25 aphrodite pptpd[11946]: CTRL: Error with select(), quitting
> Jan 14 08:09:25 aphrodite pppd[11947]: Exit.
> Jan 14 08:09:25 aphrodite pptpd[11946]: CTRL: Client 63.85.246.20
> control connection finished
> 
> Could someone please give me a hand in interpreting this?
> 
> aphrodite is the pptp server. athena-r is the lan-modem.
> 
> The lan modem does NAT and the pptp server is behind the NAT.  I've been
> successful in patching ftp, for example to work behind a NATed isdn
> router.  I'm assuming that this is similar - pptpd is reporting the
> NATed address and not the real address.
> 
> My setup:
> 
> real world <-> athena (router w/NAT) <-> aphrodite (firewall w/ pptp
> server) <-> internal network
> 
> Thanks,
> 
> --Yan
> 
> 
> 
> 
> _______________________________________________
> pptp-server maillist  -  pptp-server at lists.schulte.org
> http://lists.schulte.org/mailman/listinfo/pptp-server
> List services provided by www.schulteconsulting.com!
> 	
> 				
> 
> 





More information about the pptp-server mailing list