Project

General

Profile

Issue #3308

ppp to disconnect shortly after the connection

Added by shawn hsiao 9 months ago. Updated 1 day ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
-
Affected version:
5.7.1
Resolution:
No feedback

Description

Hi I'm working on getting xl2tpd and strongswan working to finish my VPN setup.
Right now ppp seems to disconnect shortly after the connection is started. I'm not sure what I'm missing at this point.

My strongSwan config:
ipsec.conf:

config setup

conn %default
ikelifetime=60m
keylife=20m
rekeymargin=3m
keyingtries=1
keyexchange=ikev1
authby=secret
ike=aes128-sha1-modp2048!
esp=aes128-sha1-modp2048!

conn myvpn
keyexchange=ikev1
left=%defaultroute
auto=start
authby=secret
type=transport
leftprotoport=17/1701
rightprotoport=17/1701
right=xxx.xxx.xxx.xxx
rightid=xxx.xxx.xxx.xxx

ipsec.secrets:

: PSK "xxxx"

My xl2tpd config:

xl2tpd.conf2:

[lac myvpn]
lns = xxx.xxx.xxx.xxx
ppp debug = yes
pppoptfile = /etc/ppp/options.l2tpd.client
length bit = yes
options.l2tpd.client

ipcp-accept-local
ipcp-accept-remote
refuse-eap
require-chap
noccp
noauth
mtu 1500
mru 1500
noipdefault
defaultroute
usepeerdns
connect-delay 5000
name $VPN_USER
password $VPN_PASSWORD

ipsec up myvpn show:

generating QUICK_MODE request 51445901 [ HASH SA No KE ID ID NAT-OA NAT-OA ]
sending packet: from 10.66.66.1764500 to xxxx.xxxx.xxx.xxx4500 (460 bytes)
received packet: from xxx.xxx.xxx.xxx4500 to 10.66.66.1764500 (92 bytes)
parsed INFORMATIONAL_V1 request 3280927359 [ HASH N(DPD) ]
received packet: from xxx.xxx.xxx.xxx4500 to 10.66.66.1764500 (444 bytes)
parsed QUICK_MODE response 51445901 [ HASH SA No KE ID ID NAT-OA NAT-OA ]
selected proposal: ESP:AES_CBC_128/HMAC_SHA1_96/MODP_2048/NO_EXT_SEQ
detected rekeying of CHILD_SA myvpn{15}
CHILD_SA myvpn{16} established with SPIs cb2df352_i bc7865ff_o and TS 10.66.66.176/32[udp/l2f] === xxx.xxx.xxx.xxx/32[udp/l2f]
connection 'myvpn' established successfully

Run ifconfig after echo "c myvpn" > /var/run/xl2tpd/l2tp-control
produces a lot of interface pppx:

239: ppp0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.192 peer 1.0.0.1/32 scope global ppp0
valid_lft forever preferred_lft forever
240: ppp1: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.7 peer 1.0.0.1/32 scope global ppp1
valid_lft forever preferred_lft forever
241: ppp2: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.158 peer 1.0.0.1/32 scope global ppp2
valid_lft forever preferred_lft forever
242: ppp3: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.149 peer 1.0.0.1/32 scope global ppp3
valid_lft forever preferred_lft forever
243: ppp4: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.177 peer 1.0.0.1/32 scope global ppp4
valid_lft forever preferred_lft forever
244: ppp5: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.84 peer 1.0.0.1/32 scope global ppp5
valid_lft forever preferred_lft forever
245: ppp6: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.180 peer 1.0.0.1/32 scope global ppp6
valid_lft forever preferred_lft forever
246: ppp7: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.147 peer 1.0.0.1/32 scope global ppp7
valid_lft forever preferred_lft forever
247: ppp8: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.100 peer 1.0.0.1/32 scope global ppp8
valid_lft forever preferred_lft forever
248: ppp9: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.30 peer 1.0.0.1/32 scope global ppp9
valid_lft forever preferred_lft forever
249: ppp10: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.78 peer 1.0.0.1/32 scope global ppp10
valid_lft forever preferred_lft forever
250: ppp11: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.169 peer 1.0.0.1/32 scope global ppp11
valid_lft forever preferred_lft forever
251: ppp12: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.153 peer 1.0.0.1/32 scope global ppp12
valid_lft forever preferred_lft forever
252: ppp13: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast qlen 3
link/ppp
inet 10.10.10.139 peer 1.0.0.1/32 scope global ppp13
valid_lft forever preferred_lft forever

Then all these disappeared shortly after
How can I solve it?Thank!

History

#1 Updated by Tobias Brunner 1 day ago

  • Status changed from New to Closed
  • Resolution set to No feedback

Also available in: Atom PDF