Kenneth,
I cant see single LCP coming in..anyway provide following outputs after
turning debugs on.
show radius statistics.
debug aaa authen
debug ppp mppe pack
show ppp mppe virtual-access
if no traces comes up with this debugs..then turn "debug ip pack det" &
place pptp call again I am expecting tcp packet here..if not then there is
definatly L2 problems.. Also looking from configs I can see only FE, may i
know where is the PPTP call is arriving? Is it over PPPoE ( FE0/1 )?? Kindly
provide your topology based on configs I am assuming every thing is local.
thanks,
rahul.
----- Original Message -----
From: "Kenneth"
To:
Sent: Wednesday, June 13, 2001 5:49 PM
Subject: Re: PPP Negotiation question --- HELP!!! PLEASE! [7:8438]
> Here's my config, Rahul, I hope you can help me out on this. I also have
the
> debugs included below the configs.
>
> !
> ! Last configuration change at 15:12:59 EDT Wed Jun 13 2001 by klorenzo
> !
> version 12.2
> no service single-slot-reload-enable
> service timestamps debug datetime localtime
> service timestamps log datetime localtime
> service password-encryption
> !
> hostname XXX
> !
> logging buffered 12000 debugging
> logging rate-limit console 10 except errors
> aaa new-model
> aaa authentication login default group radius local none
> aaa authentication login console group radius local none
> aaa authentication login vty group radius local
> aaa authentication ppp default group radius local
> aaa authorization exec default group radius local
> aaa authorization exec telnet group radius
> aaa accounting exec shell start-stop group radius
> aaa accounting network default start-stop group radius
> enable secret 5 XXX.
> !
> clock timezone EST -5
> clock summer-time EDT recurring
> ip subnet-zero
> no ip source-route
> !
> !
> no ip finger
> ip domain-name ctnet.com
> ip name-server 192.168.1.11
> !
> ip inspect audit-trail
> ip audit attack action alarm drop
> ip audit notify log
> ip audit po max-events 100
> ip dhcp-server 192.168.1.11
> no ip dhcp-client network-discovery
> ip ssh time-out 120
> ip ssh authentication-retries 3
> vpdn enable
> no vpdn logging local
> no vpdn logging remote
> no vpdn logging user
> !
> vpdn-group 1
> ! Default PPTP VPDN group
> accept-dialin
> protocol pptp
> virtual-template 1
>
> !
> !
> call rsvp-sync
> !
> !
> !
> !
> !
> !
> !
> !
> interface Loopback0
> ip address 172.16.3.1 255.255.255.0
> !
> interface FastEthernet0/0
> ip address 192.168.1.10 255.255.255.0
> speed 100
> full-duplex
> !
> interface Serial0/0
> no ip address
> shutdown
> no fair-queue
> !
> interface FastEthernet0/1
> ip address A.B.C.D 255.255.255.0
> duplex auto
> speed auto
> pppoe enable
> !
> interface Virtual-Template1
> ip unnumbered Loopback0
> ip mroute-cache
> peer default ip address pool testpool
> ppp encrypt mppe 128
> ppp authentication ms-chap
> !
> router eigrp 1000
> passive-interface FastEthernet0/1
> network 172.16.0.0
> network 192.168.1.0
> no auto-summary
> no eigrp log-neighbor-changes
> !
> ip local pool testpool 172.16.3.2 172.16.3.10
> ip kerberos source-interface any
> ip classless
> ip route 0.0.0.0 0.0.0.0 A.B.C.D
> ip route X.Y.0.0 255.255.0.0 X.Y.1.1
> no ip http server
> !
> ip radius source-interface FastEthernet0/0
> !
> snmp-server community network~elites1 RO
> snmp-server location Cleveland,OH
> snmp-server contact Kenneth Lorenzo
> radius-server host 192.168.1.195 auth-port 1645 acct-port 1646
> radius-server retransmit 2
> radius-server timeout 10
> radius-server deadtime 2
> radius-server key 7 XXX!
> dial-peer cor custom
> !
> !
> !
> !
> banner motd ^C
> **********************************************
> * *
> * Access to this router is logged *
> * Unauthorized Access is not allowed *
> * and will be persecuted to the *
> * full extent of the law *
> * *
> **********************************************
> ^C
> !
> line con 0
> exec-timeout 5 0
> authorization exec telnet
> accounting exec shell
> login authentication console
> transport input none
> line aux 0
> no exec
> authorization exec telnet
> accounting exec shell
> login authentication console
> line vty 0 4
> authorization exec telnet
> accounting exec shell
> login authentication vty
> transport input ssh
> line vty 5 15
> authorization exec telnet
> accounting exec shell
> login authentication vty
> transport input ssh
> !
> ntp clock-period 17179778
> ntp server 192.168.1.2
> end
>
>
> ------ Debugs ---
>
> Jun 13 15:23:47: Vi1 LCP: TIMEout: State REQsent
> Jun 13 15:23:47: Vi1 LCP: O CONFREQ [REQsent] id 38 len 15
> Jun 13 15:23:47: Vi1 LCP: AuthProto MS-CHAP (0x0305C22380)
> Jun 13 15:23:47: Vi1 LCP: MagicNumber 0x067E3C84 (0x0506067E3C84)
> Jun 13 15:23:47: Vi1 VPDN: O out
> Jun 13 15:23:49: Vi1 LCP: TIMEout: State REQsent
> Jun 13 15:23:49: Vi1 LCP: O CONFREQ [REQsent] id 39 len 15
> Jun 13 15:23:49: Vi1 LCP: AuthProto MS-CHAP (0x0305C22380)
> Jun 13 15:23:49: Vi1 LCP: MagicNumber 0x067E3C84 (0x0506067E3C84)
> Jun 13 15:23:49: Vi1 VPDN: O out
> Jun 13 15:23:49: Vi1 PPP: Outbound ip packet dropped, line protocol not up
> Jun 13 15:23:51: Vi1 LCP: TIMEout: State REQsent
> Jun 13 15:23:51: Vi1 LCP: O CONFREQ [REQsent] id 40 len 15
> Jun 13 15:23:51: Vi1 LCP: AuthProto MS-CHAP (0x0305C22380)
> Jun 13 15:23:51: Vi1 LCP: MagicNumber 0x067E3C84 (0x0506067E3C84)
> Jun 13 15:23:51: Vi1 VPDN: O out
>
>
>
>
> ""Rahul Kachalia"" wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Kenneth,
> >
> > Can you paste those contents & if possible configs of router.
> >
> > thanks,
> > rahul.
> > ----- Original Message -----
> > From: "Kenneth"
> > To:
> > Sent: Wednesday, June 13, 2001 3:59 PM
> > Subject: PPP Negotiation question --- HELP!!! PLEASE! [7:8438]
> >
> >
> > > Can anyone shed light on this problem im having.
> > >
> > > I have 1 laptop with Sniffer pro and a router on the other end running
> > PPTP
> > > set for Ms-chap authentication.
> > >
> > > When I tried to establish a PPTP session from the laptop to the
router,
> > all
> > > it does is it times out. The router is acting as a PPTP server.
> > >
> > > When I look at the sniffer's output, I can see the:
> > >
> > > 1) PPP ConfReq sent to the Router from my laptop
> > > 2) PPP ConfReq sent from the router to my laptop
> > > 3) PPP ConfAck sent from my laptop to the Router
> > >
> > > but when I look at the debug PPP negotiation on the router, all I see
is
> > > that the router keep sending out PPP ConfReq and it's timing out. It's
> not
> > > receiving any of the ConfAck being sent out by my laptop. I don't have
> any
> > > firewall installed on my laptop and I know for a fact that it worked
> > talking
> > > to an NT Server-based PPTP.
> > >
> > > I'm really stumped with this problem. Any help would be greatly
> > appreciated.
Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=8465&t=8438
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]