Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > Management, Networking, Logging and Reporting

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-24-2009, 02:56 AM
warchild's Avatar
Junior Member
 
Join Date: Aug 2008
Posts: 5
Default IPSec VPN in Windows7 and l2tp VPN

I used to be able to use the windows XP vpn, and windows 7 build 7000 IPSec VPN without issue, and then I updated to w7 build 7100.

When using the IPSec VPN I receive the following in the logs, basically I get a a lot of GRE errors.

2009:06:22-08:51:06 fish pppd-pptp[28209]: remote IP address 10.194.9.2
2009:06:22-08:51:07 fish pppd-pptp[28213]: id="2201" severity="info" sys="SecureNet" sub="vpn" event="Connection started" username="wendy" variant="pptp" srcip="218.215.56.248" virtual_ip="10.194.9.2"
2009:06:22-09:00:30 fish pptpd[28208]: GRE: buffering packet #3337 (expecting #3332, lost or reordered)
2009:06:22-09:00:30 fish pptpd[28208]: GRE: buffering packet #3339 (expecting #3332, lost or reordered)
2009:06:22-09:00:30 fish pptpd[28208]: GRE: buffering packet #3340 (expecting #3332, lost or reordered)
2009:06:22-09:00:30 fish pptpd[28208]: GRE: buffering packet #3346 (expecting #3332, lost or reordered)
2009:06:22-09:00:30 fish pptpd[28208]: GRE: buffering packet #3348 (expecting #3332, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3350 (expecting #3332, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3354 (expecting #3332, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3356 (expecting #3332, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3357 (expecting #3332, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 5 packets
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3337 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 1 packets
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3339 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3340 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3360 (expecting #3341, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 5 packets
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3346 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 1 packets
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3348 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3364 (expecting #3349, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 1 packets
2009:06:22-09:00:31 fish pptpd[28208]: GRE: accepting #3350 from queue
2009:06:22-09:00:31 fish pptpd[28208]: GRE: buffering packet #3365 (expecting #3351, lost or reordered)
2009:06:22-09:00:31 fish pptpd[28208]: GRE: timeout waiting for 3 packets

the symptoms are it connects and works sometimes and when it does work it only stays connected for 5 minutes or so, other times it just flatly refuses to authenticate and connect.

I then tried setting up l2tp. I have never had success with it but I turned it on and downloaded the certificate. Double clicked on the certificate run through the import wizard and when you look at the certificate mmc, I can find my certificate.

I then change the VPN settings client side, tell it it is now a l2tp IPSec that must have encryption.

it refuses straight away saying there is no certificate. I never understood how the connection dialog creates the relationship between the connection its self and the certificate. My only guess is that username, is that right? As you do not select it in the connection options.

any ideas? Thanks
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 06:30 AM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.