Добрый день, возможно вы сможете подсказать.
Сервер PPTP поднят на Debian 5. С ним вполне нормально уже работает 1 AP190, но вот со вторым затык.
Код:
xxx.xxx.xxx.xxx - ip адпака
xxx.xxx.xxx.1 - шлюз провайдера
yyy.yyy.yyy.yyy - удаленный сервер pptp
yyy - логин/ пароль
Код:
!
version 8.237
!
hostname barn_baltic
!
!
no bridge spanning-tree
!
ip classless
!
proxy-arp
!
access-list 30 permit ip host xxx.xxx.xxx.xxx host yyy.yyy.yyy.yyy
access-list 30 permit udp host xxx.xxx.xxx.xxx any eq domain
access-list 30 permit icmp host xxx.xxx.xxx.xxx any
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq 22
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq telnet
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq 1494
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq 3389
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq smtp
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq pop3
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq 143
access-list 30 permit tcp host xxx.xxx.xxx.xxx any eq 5190
access-list 30 permit udp host xxx.xxx.xxx.xxx any eq ntp
access-list 31 permit ip host yyy.yyy.yyy.yyy host xxx.xxx.xxx.xxx
access-list 31 permit tcp any host xxx.xxx.xxx.xxx established
access-list 31 permit udp any host xxx.xxx.xxx.xxx
access-list 31 permit icmp any host xxx.xxx.xxx.xxx
!
dhcp-list 1 type server
dhcp-list 1 address server 192.168.41.20 192.168.41.100 255.255.255.
dhcp-list 1 option domain-name barnaul.gudver.ru
dhcp-list 1 option dns 192.168.110.1
dhcp-list 1 option router-option 192.168.42.1
!
nat-list 1 pat address xxx.xxx.xxx.xxx
nat-list 1 pat static-entry tcp 1723 local
nat-list 1 pat static-entry icmp ping local
nat-list 1 pat group-static-entry tcp 20 23 local
nat-list 1 pat static-entry tcp 69 local
nat-list 1 pat static-entry udp 69 local
nat-list 1 pat static-entry tcp 80 local
nat-list 1 pat static-entry tcp 161 local
nat-list 1 pat static-entry udp 161 local
nat-list 1 pat static-entry tcp 950 192.168.41.2
nat-list 1 pat static-entry tcp 966 192.168.41.2
nat-list 1 pat static-entry tcp 4800 192.168.41.2
nat-list 1 pat static-entry tcp 4899 192.168.41.59
!
no ip-share enable
ip-share interface net-side ether0.0
ip-share interface local-side ether1.0
!
interface ether0.0
no ip address
encapsulation ppp-pptp
mtu 1460
pptp ip remote yyy.yyy.yyy.yyy
ppp authentication chap
ppp chap hostname yyy
ppp chap password yyy
ppp echo interval 5
no ppp ipcp ms-dns
no ppp ipcp default-route
!
interface ether1.0
ip address 192.168.41.1 255.255.255.0
ip nat-group 1 pat pptp0
ip dhcp-group 1
!
interface pptp0
ip address xxx.xxx.xxx.xxx 255.255.255.0
ip access-group 31 in
ip access-group 30 out
!
snmp community xxx.xxx.xxx.xxx public ro
snmp name barn_baltic
!
no arp reset
!
route 0.0.0.0 0.0.0.0 xxx.xxx.xxx.1
!
service snmpd
service ntp
При этом на addPac debug выдает следующее
Код:
ether0.0 LCP: TIMEOUT (REQSENT) retransmits 6
ether0.0 LCP: O CONFREQ id=1
MagicNumber 0x276d
ether0.0 LCP: TIMEOUT (REQSENT) retransmits 5
ether0.0 LCP: O CONFREQ id=1
MagicNumber 0x276d
Could not open control connection to yyy.yyy.yyy.yyy
Заранее спасибо.