[pptp-server] ARP Binding ?!?

Timothy Findlay Timothy.Findlay at austrimtextiles.com.au
Mon Nov 19 16:05:12 CST 2001


Hi There,

I didn't quite follow the first bit, and I'm no network Guru, but the
network here (128.x.x.x) was setup long before my time. I know there are
RFC1819 thingo's set aside for internal networks though (192.168.x.x,
10.x.x.x etc. etc.) but as I mentioned, it was all setup before my time.

Are there actually legitimate 128.x.x.x addresses live on the net are there
?? unfortunately I'd have quite an uphill battle changing things as there
are a few hundred PC's and umpteen servers that would need to be changed.
and for the most part people have the attitude of "Hey, but it all works
doesn't it ?"

Even the poptop VPN does actually work, if I manually go and change that
proxy-arp file for my internal ethernet (eth1) ... <shrug>.... it's just
messy, and a pain to do...

Thanks for your feedback,

Tim.



-----Original Message-----
From: Allan Clark [mailto:allanc at caldera.com]
Sent: Tuesday, 20 November 2001 8:57 AM
To: Timothy Findlay
Cc: 'Jerry Vonau'; 'pptp-server at lists.schulte.org'
Subject: Re: [pptp-server] ARP Binding ?!?


Hey everyone;

DO we still have a problem with PPP "assuming" various netmasks based on
Class-ful IP?  ie assuming 24 bits on a 192.x.y subnet?

Whether we do or we don't, I would strongly suggest that using "128.x.y"
as a network is just asking for trouble.

Allan


> Timothy Findlay wrote:
> 
> Hi,
> 
> My conf file looks like so....
> 
> option /etc/ppp/options
> localip 128.1.6.2
> remoteip 128.1.6.38-40
> listen 203.44.64.xxx
> 
> I originally had the localip setting set to 128.1.6.35-37 but I
> figured if they could all tunnel back through my main private IP
> (128.1.6.2) on the box, this would save some IP's.
> 
> Just for ref. my options file looks like...
> name atgproxy1
> ms-wins 128.1.6.7
> auth
> require-chap
> proxyarp
> 
> Thanks for your reply.... any other thoughts/ideas welcome ....
> 
> Tim.
> 
> -----Original Message-----
> From: Jerry Vonau [mailto:jvonau at home.com]
> Sent: Monday, 19 November 2001 9:37 PM
> To: Timothy Findlay
> Cc: 'pptp-server at lists.schulte.org'
> Subject: Re: [pptp-server] ARP Binding ?!?
> 
> Timothy:
> 
> What is your local ip & remote ip set to in the pptpd.conf file?
> Should be from the private lan address range.
> 
> Jerry Vonau
> 
> > Timothy Findlay wrote:
> >
> > Hi,
> >
> > I've got poptop all installed (it's my second time around - it used
> to work a
> > treat on the original server) and so far so good. It logs in and
> auth's me ok,
> > and I can ping/telnet to my VPN server box, but I cant touch the
> Network
> > behind it. The network looks a little like...
> >
> > Road Warrior
> > 203.x.x.x (Live IP) : ppp0
> >        |
> >        |
> > 203.x.x.x (Live IP) : eth0
> > VPN / Firewall Gateway
> > 128.1.x.x (Private IP) : eth1
> >        |
> >        |
> > 128.1.x.x (Private Network)
> > Private Network
> >
> > I have "proxy-arp" in my options file and a 1 in
> > /proc/sys/net/ipv4/ip_forward, but according to the messages file
> (when a
> > connection is established) it binds proxy arp to eth0!!
> >
> > I had a hunt around under /proc/sys/net/conf/eth0 and saw the
> proxy-arp file
> > thing, which was 0 so I cat'd a 1 to it and everything started
> working
> > (yippie!) but I know this isn't really the right way to be doing
> things. I
> > know as soon as I reboot these settings will re-set (erk!) ... I'm
> running
> > Redhat 7.2 ... does anyone know where I should set the proxy-arp
> thing
> > properly ??
> >
> > Any thoughts greatly appreciated.
> >
> > Tim.
> >
> > ---------------------------------------------------------------
> > CAUTION - This message may contain privileged and confidential
> information intended only for the use of the addressee named above. If
> you are not the intended recipient of this message you are hereby
> notified that any use, dissemination, distribution or reproduction of
> this message is prohibited. If you have received this message in error
> please delete it and notify Austrim Textiles Pty Ltd. Any views
> expressed in this message are those of the individual sender and may
> not necessarily reflect the views of Austrim Textiles Pty Ltd.
> 
> >
> > Although antivirus software is used to scan mail messages Austrim
> Textiles Pty Ltd excludes all liability for viruses or similar in any
> outbound mail message.
> 
> > ---------------------------------------------------------------
> 
> ---------------------------------------------------------------
> CAUTION - This message may contain privileged and confidential information
intended only for the use of the addressee named above. If you are not the
intended recipient of this message you are hereby notified that any use,
dissemination, distribution or reproduction of this message is prohibited.
If you have received this message in error please delete it and notify
Austrim Textiles Pty Ltd. Any views expressed in this message are those of
the individual sender and may not necessarily reflect the views of Austrim
Textiles Pty Ltd.
> 
> Although antivirus software is used to scan mail messages Austrim Textiles
Pty Ltd excludes all liability for viruses or similar in any outbound mail
message.
> ---------------------------------------------------------------


---------------------------------------------------------------
CAUTION - This message may contain privileged and confidential information intended only for the use of the addressee named above. If you are not the intended recipient of this message you are hereby notified that any use, dissemination, distribution or reproduction of this message is prohibited. If you have received this message in error please delete it and notify Austrim Textiles Pty Ltd. Any views expressed in this message are those of the individual sender and may not necessarily reflect the views of Austrim Textiles Pty Ltd.

Although antivirus software is used to scan mail messages Austrim Textiles Pty Ltd excludes all liability for viruses or similar in any outbound mail message.
---------------------------------------------------------------

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.schulte.org/mailman/private/pptp-server/attachments/20011120/f07717ae/attachment.html>


More information about the pptp-server mailing list