bottleneck
Choose style:

Author Topic: VPN Server Connection Problems  (Read 14059 times)

0 Members and 1 Guest are viewing this topic.

Offline tastewar1

  • Backer
  • *
  • Posts: 36
  • Thanks: 0
  • Registered : 20/08/2014
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
Re: VPN Server Connection Problems
« Reply #15 on: May 26, 2016, 09:27:22 am »
Sounds like your provider isn't all that helpful, but a long time ago, I was able to get VZ to change the config of my ONT so that the RJ-45 was active for IP rather than coax.

Offline Zimmie

  • Backer
  • *
  • Posts: 10
  • Thanks: 0
  • Registered : 20/09/2014
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
Re: VPN Server Connection Problems
« Reply #16 on: July 01, 2016, 09:54:07 pm »
I would appreciate any help getting my G1100 in bridge mode. I've been looking, but haven't found anything that works.

Here is what happened when I tried to enable VPN on my Android phone while connected to my iPad's hotspot:
Code: [Select]
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: received Vendor ID payload [RFC 3947] method set to=115
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02] meth=107, but already using method 115
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n] meth=106, but already using method 115
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-00]
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: ignoring Vendor ID payload [FRAGMENTATION 80000000]
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: packet from 70.xxx.xxx.xxx:3211: received Vendor ID payload [Dead Peer Detection]
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: responding to Main Mode from unknown peer 70.xxx.xxx.xxx
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: transition from state STATE_MAIN_R0 to state STATE_MAIN_R1
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: STATE_MAIN_R1: sent MR1, expecting MI2
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike (MacOS X): both are NATed
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: STATE_MAIN_R2: sent MR2, expecting MI3
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: Main mode peer ID is ID_IPV4_ADDR: '172.xxx.11.12'
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: new NAT mapping for #4, was 70.xxx.xxx.xxx:3211, now 70.xxx.xxx.xxx:3204
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: STATE_MAIN_R3: sent MR3, ISAKMP SA established {auth=OAKLEY_PRESHARED_KEY cipher=aes_256 prf=OAKLEY_SHA2_256 group=modp1024}
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: ignoring informational payload, type IPSEC_INITIAL_CONTACT msgid=00000000
May 24 14:50:08 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: received and ignored informational message
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #4: the peer proposed: 17x.5x.xx3.1xx/32:17/1701 -> 172.xxx.11.12/32:17/0
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: responding to Quick Mode proposal {msgid:5db5a2d9}
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5:     us: 192.168.1.154<192.168.1.154>:17/1701
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5:   them: 70.xxx.xxx.xxx[172.xxx.11.12]:17/0
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: keeping refhim=4294901761 during rekey
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: transition from state STATE_QUICK_R0 to state STATE_QUICK_R1
May 24 14:50:09 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: STATE_QUICK_R1: sent QR1, inbound IPsec SA installed, expecting QI2
May 24 14:50:10 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
May 24 14:50:10 AlmondPlus authpriv.warn pluto[4090]: "myvpn"[3] 70.xxx.xxx.xxx #5: STATE_QUICK_R2: IPsec SA established transport mode {ESP=>0x0931ba88 <0x7a5f407a xfrm=AES_256-HMAC_SHA2_256 NATOA=none NATD=70.xxx.xxx.xxx:3204 DPD=none}

Sorry about my delay in getting back to you. Working longer hours than I'd like.

I tried dumping the config from my FiOS router. No dice. The config file seems to be base64-encoded binary data, which is all kinds of gross. Since that won't work, I'll try to describe how mine is set up.

Under My Network > Network Connections > Advanced, I have "Network (Home/Office)". It contains Ethernet and Coax. Next, I have "Broadband Connection (Ethernet/Coax)". I also have the 5 GHz radio, which is disabled, and the 2.4 GHz radio, which is also disabled.

In "Network (Home/Office)", I have turned off IP Address Distribution. It is set to be a bridge with the underlying devices Ethernet and Coax. It has the IP 192.168.1.1 with a 24-bit subnet mask. I left the IP so I can configure a machine with a 192.168.1.X address and manage the device in case something goes wrong.

Ethernet is of connection type "Hardware Ethernet Switch". IP Address Distribution is off.

Coax is of type "Hardware MoCA". IP Address Distribution is off.

Broadband Connection (Ethernet/Coax) is of type "Ethernet/Coax". IP Address Distribution is off. It has the same MAC address as my Ethernet switch interface, and I don't think I set that.

Firewall is set to low IPv4, medium IPv6. Pretty much everything else on the FiOS router is disabled.

 

Page created in 0.053 seconds with 18 queries.

bottleneck