Help!  VPN with Leopard & Leopard server isn't working!

Hello all,
I have tried (and tried, and tried) to get VPN to work on Leopard server v10.5.1 and I cannot get this to work no matter what I have tried. here is my setup:
Router:
New Airport Extreme Base station running firmware v7.1.1. I have my server open to the world (for this test)
Server:
Mac Mini running v10.5.1 server. Both VPN L2TP and PPTP is setup and configured. NAT is NOT turned on, the AEBS is doing DHCP for me (should the server be doing that?).
When I try to connect via PPTP here is my log:
2007-11-23 10:41:22 EST Incoming call... Address given to client = 192.168.4.121
Fri Nov 23 10:41:22 2007 : Directory Services Authentication plugin initialized
Fri Nov 23 10:41:22 2007 : Directory Services Authorization plugin initialized
Fri Nov 23 10:41:22 2007 : PPTP incoming call in progress from '208.xxx.xxx.xxx'...
Fri Nov 23 10:41:23 2007 : PPTP connection established.
Fri Nov 23 10:41:23 2007 : using link 0
Fri Nov 23 10:41:23 2007 : Using interface ppp0
Fri Nov 23 10:41:23 2007 : Connect: ppp0 <--> socket[34:17]
Fri Nov 23 10:41:23 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:26 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:29 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:32 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:35 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:38 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:41 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:44 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:47 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:50 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x407014ff> <pcomp> <accomp>]
Fri Nov 23 10:41:53 2007 : LCP: timeout sending Config-Requests
Fri Nov 23 10:41:53 2007 : Connection terminated.
Fri Nov 23 10:41:53 2007 : PPTP disconnecting...
Fri Nov 23 10:41:53 2007 : PPTP disconnected
2007-11-23 10:41:53 EST --> Client with address = 192.168.4.121 has hungup
I can see that my system is receiving the request for VPN, but my workstation isn't responding it seems. I have had this working under 10.4, but cannot get server 10.5 to work at all.
Any ideas?

Hi All,
Exactly the same problem here, but with one VPN it works most of the time:
Sun Nov 25 14:50:27 2007 : PPTP connecting to server '10.0.4.35
10.0.4.35' (10.0.4.35)...
Sun Nov 25 14:50:28 2007 : PPTP connection established.
Sun Nov 25 14:50:28 2007 : using link 0
Sun Nov 25 14:50:28 2007 : Using interface ppp0
Sun Nov 25 14:50:28 2007 : Connect: ppp0 <--> socket[34:17]
Sun Nov 25 14:50:28 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:31 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:34 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:37 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:40 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x52583874> <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfReq id=0x1 <asyncmap 0xffffffff> <mru 1460> <magic 0xe14a182f> <quality lqr 00 00 17 70> <auth chap MS-v2>]
Sun Nov 25 14:50:43 2007 : lcp_reqci: returning CONFREJ.
Sun Nov 25 14:50:43 2007 : sent [LCP ConfRej id=0x1 <quality lqr 00 00 17 70>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : sent [LCP ConfReq id=0x2 <asyncmap 0x0> <magic 0x52583874>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfRej id=0x1 <pcomp> <accomp>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfReq id=0x2 <asyncmap 0xffffffff> <mru 1460> <magic 0xe14a182f> <auth chap MS-v2>]
Sun Nov 25 14:50:43 2007 : lcp_reqci: returning CONFACK.
Sun Nov 25 14:50:43 2007 : sent [LCP ConfAck id=0x2 <asyncmap 0xffffffff> <mru 1460> <magic 0xe14a182f> <auth chap MS-v2>]
Sun Nov 25 14:50:43 2007 : rcvd [LCP ConfAck id=0x2 <asyncmap 0x0> <magic 0x52583874>]
Sun Nov 25 14:50:43 2007 : sent [LCP EchoReq id=0x0 magic=0x52583874]
Sun Nov 25 14:50:43 2007 : rcvd [LCP EchoReq id=0x0 magic=0xe14a182f 00 00 00 00 e1 4a 18 2f]
Sun Nov 25 14:50:43 2007 : sent [LCP EchoRep id=0x0 magic=0x52583874 00 00 00 00 e1 4a 18 2f]
Sun Nov 25 14:50:43 2007 : rcvd [CHAP Challenge id=0x1 <33373237373537323934343739393131>, name = ""]
While with other VPN it does not work most of the time:
Sun Nov 25 14:49:52 2007 : PPTP connecting to server '*******************' (*************)...
Sun Nov 25 14:49:52 2007 : PPTP connection established.
Sun Nov 25 14:49:52 2007 : using link 0
Sun Nov 25 14:49:52 2007 : Using interface ppp0
Sun Nov 25 14:49:52 2007 : Connect: ppp0 <--> socket[34:17]
Sun Nov 25 14:49:53 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:49:56 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:49:59 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:02 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:05 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:08 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:11 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:14 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:17 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:20 2007 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0x8533a7cf> <pcomp> <accomp>]
Sun Nov 25 14:50:23 2007 : LCP: timeout sending Config-Requests
Sun Nov 25 14:50:23 2007 : Connection terminated.
Sun Nov 25 14:50:23 2007 : PPTP disconnecting...
Sun Nov 25 14:50:23 2007 : PPTP disconnected

Similar Messages

  • Help me! My Message Server isn't work!

    My server works well before the suddenly power down.
    Solaris 8, Message Server 5.1 patch 1
    I can telnet my smtp server by telnet localhost 25
    but when I type HELO there is no response
    The POP3 and HTTP works well.
    Log in the tcp_master:
    pmt_tls_init failed in sslinit(-1)
    Continuing normally without TLS support....
    Log in the job_controller:
    os_map_file:lock failed -11
    Can't get the lock. Another dirsync might be running
    Log in my dirsync.trc:
    Cannot get the dirsync lock
    Even when I reboot my server or restart the msgserver,
    the problem is still.
    Help me! Please!
    It emergence!

    If you have iMS 5.2 you can and SHOULD configure Direct LDAP, per the Appendix B from the Administration Guide:
    http://docs.sun.com/source/816-6009-10/dirldap.htm
    You also should download and install Patch 1, as there are hundreds of fixes there.
    You also will want to open a tech support ticket to get a current hotfix (1.25), with hundreds of further fixes.
    Now, for your specific problem:
    21:03:49.08: os_map_file: lock failed - 11
    This is not a fatal error. It only means that when one thread has tried to open a file, some other thread already has it opened. We see these all the time, and they're not a problem.
    "my mail server doesn't work" really doesn't give me anything to go on. Consider Messaging Server a loosely coupled set of modules. Each module can fail, but each fails in a different way, and has a different recovery technique. "doesn't work" doesn't tell me where it failed, or what has failed. that being the case, I have a great deal of difficulty telling you what is wrong, or how to fix it.
    It's like you call your auto mechanic on the phone, and say, "my car won't go". He's going to need to find out several things, before he can tell you what he will charge you to fix it. "Does the engine start? Does it stall right away? Are there any lights on the dash? Does it go into gear?" etc. A better description of the problem really is the first thing we need.

  • Hi, recently i bought macbook pro with retina display and installed windows 8 professional original software also. but in windows 8 track pad is not working properly. can you help me with providing drivers for trackpad to work on windows 8 professional .

    hi, recently i bought macbook pro with retina display and installed windows 8 professional original software also. but in windows 8 track pad/ TOUCHPAD is not working properly. can you help me with providing drivers for trackpad to work on windows 8 professional .

    Did you download and install the Windows Support software? If you did, did you use the Boot Camp Control icon to set up the trackpad how you want it?
    http://www.apple.com/support/bootcamp/
    https://discussions.apple.com/community/windows_software/boot_camp

  • VPN with OS X Server 10.2.8

    Is it possible to create VPN with OSX 10.2.8 ? I can´t find any issue at Mac Help or somewhere else.
    OS X Server G4   Mac OS X (10.2.x)  

    Issue resolved.

  • Creating VPN with OS X Serve 10.4.4 from iMac Intel

    Hi all,
    Has anyone else had problems creating a VPN (PPTP) connection with a MacOS X Server (10.4.4)?
    Everytime I get the following error in my connection log (in Internet Connect)
    Received bad configure-nak/rej
    And after 1 minute the connection closes...
    Xander

    I have the same problem when connecting from home on my iMac Core Duo to a PPTP server running on Mac OS X Server 10.3.8 at my office. My iMac connects fine for at least 60 seconds but then within the next 5 seconds I get disconnected. The VPN server has been working fine for months and I can still connect with my iBook running 10.3.9 and my old Power Mac G4 running 10.3.9 worked fine too up until I replaced it with the iMac. All of these machines are using the built-in VPN client configured using Internet Connect.
    What types of VPN connections (PPTP, IPSec, etc.) and servers (OS X Server, Cisco, SonicWALL, etc.) are you all trying to connect to and what VPN client are you using?
    -- Dave

  • Help me with Report Application Server SDK

    Please, I need help with Report Application Server SDK.
    public static void rpt2xml(ReportClientDocument rcd) {
    IXMLExportFormat xmlExportFormat = new XMLExportFormat();
    XMLExportFormats xmlExportFormats = new XMLExportFormats();
    IXMLExportFormatOptions xmlExpFormatOpts = new XMLExportFormatOptions();
    PrintOutputController rcdPrint = rcd.getPrintOutputController();
    xmlExportFormats = rcdPrint.getSavedXMLExportFormats(); //  <------ ERROR HERE
                                        //" This method is undefined
                                               // for the type PrintOutpupController", ¿why?
    int index = xmlExportFormats.getDefaultExportSelection();
    xmlExpFormatOpts.setXMLExportSelection(index);
    xmlExportFormat = xmlExportFormats.getXMLExportFormat(index);
    Edited by: Diego XMunch on Mar 1, 2011 3:35 PM

    I819738 wrote:
    Ok, so you do have the right version of Crystal Reports.  I would like to see which assemblies you have referenced in your project and their assembly versions.  Might also be good to list your imports/using statements as well.
    Hi, I´m trying to use Report Engine SDK buy I have this error:
    com.businessobjects.rebean.wi.ServerException: Error interno al llamar a la API 'openDocumentMDP'. (Error: ERR_WIS_30270)
         at com.businessobjects.rebean.wi.occa.OccaDocumentComAdapter.checkOpenDocError(Unknown Source)
         at com.businessobjects.rebean.wi.occa.OccaDocumentComAdapter.openDocument(Unknown Source)
         at com.businessobjects.rebean.occa.OccaReportEngineComAdapter.openDocument(Unknown Source)
         at com.businessobjects.rebean.wi.ReportEngineImpl.openDocument(Unknown Source)
         at com.businessobjects.rebean.wi.occa.WebiReportEngine.openDocument(Unknown Source)
         at org.apache.jsp.login_jsp._jspService(login_jsp.java:163)
         at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:97)
         at javax.servlet.http.HttpServlet.service(HttpServlet.java:802)
         at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:334)
         at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:314)
         at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:264)
         at javax.servlet.http.HttpServlet.service(HttpServlet.java:802)
         at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:252)
         at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:173)
         at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:213)
         at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:178)
         at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:126)
         at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:105)
         at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:107)
         at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:148)
         at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:869)
         at org.apache.coyote.http11.Http11BaseProtocol$Http11ConnectionHandler.processConnection(Http11BaseProtocol.java:664)
         at org.apache.tomcat.util.net.PoolTcpEndpoint.processSocket(PoolTcpEndpoint.java:527)
         at org.apache.tomcat.util.net.LeaderFollowerWorkerThread.runIt(LeaderFollowerWorkerThread.java:80)
         at org.apache.tomcat.util.threads.ThreadPool$ControlRunnable.run(ThreadPool.java:684)
         at java.lang.Thread.run(Thread.java:619)
    Edited by: Diego XMunch on Mar 10, 2011 3:37 PM

  • Help (pleeeease) with configuring FTP server connection

    HI...I am so frustrated. You have to understand that I am not completely stupid, but I just cannot understand the process which will allow me to connect to a **^&-**** FTP server!!!
    Here's the deal:
    Me, graphic designer, designing among other things, websites.
    Dreamweaver, the software program that I use to design websites.
    So, I design a site, and configure it to upload via FTP. I get the FTP hostname, username, password info from the intended Internet Service Provider, and load that info into the required fields in the Site Manager window. Everything is great until I try to connect to the server....it just won't do it! I get error messages that state flatly that I cannot connect to the remote server, for reasons that are as bland as "username and password information incorrect". I have called the ISP to determine if I am using the correct username, password blah blah blah, and everything checks out on their end. It seems that everyone else but me can connect to a bloody FTP server! Harrumph.
    So...what can I do? Is it that something in the System Preferences panel needs to be adjusted to allow me access to FTP? I have fiddled around a little in there, but don't change anything, because I don't know what TCP/IP, proxy settings, etc. MEANS!!! All I did was allow FTP access (duh).
    Another point of interest is permissions...somewhere along the way, during my long and convoluted journey with this problem, a message came up that mentioned that. Permissions. Don't know what that means either.
    Is there anyone out there that can help me?? I am so confused, and just need a little education. I would greatly appreciate any advice or information. Thanks! Janelle
    iMacG4   Mac OS X (10.4.7)  

    Hi Janelle: I assume the domain is georgeponzini.com
    1. http://georgeponzini.com/index.htm works so we know you have an index.htm page uploaded to the server but it contains no information at all, like you uploaded a completely blank page, no title, no code, nothing, nada...
    2. http://georgeponzini.com/index.html does not exist, you never uploaded a page so what we see is an error page, saying such a file does not exist.
    3. The link you have ftp-dom.earthlink.net/ is for uploading directly from a browser but I could not get it to work in Safari but does work in Firefox, which you can consider downloading and using.
    4. If you can upload from your Control Center at Earthlink.net, that's a no brainer, this is the option to take, you cannot make any errors doing it this way. But that we'll figure out next... It's ok you do not see a public_html folder you are probably already in it when you log in. Where you given instructions to upload into the WEBDOCS/ folder, if so you did that right.
    BTW - have you checked with Earthlink that Control Center will work on a Mac using Safari asa browser
    5. Your index.htm page/file is NOT where you upload to, the index.htm IS the 'Home Page' or 'Index Page'. You're seeing a white page because it contains no information, but you must have uploaded a file/page named index.htm (see 1 above)
    6. If you have files/pages uploaded in the correct area, see if you can rename any file index.html - I am sure you can do this at the Control Center, if not do this on your computer and use 'save as' > index.html - upload this file/page and see if it displays
    Let me know what happens, Rick
    iMac G5 iSight 20" - 30G iPOD - HP Pav 15" WS and Toshiba Sat 17" WS   Mac OS X (10.4.7)   Canon 20D & A620

  • Help needed with Snow Leopard/Lion partitions

    I'm still using Snow Leopard but will be installing Lion soon. First I want to make sure I don't lose the few Rosetta/PPC apps that I still need.
    I've read several threads about partitioning to create a dual boot for both Lion and SL.
    What I want to do is this, and I'd appreciate a bit of help/guidance:-
    I have two external FW HDs, daisychained. Both of them have two partitions.
    External Drive A (500Gb) has one major partition (let's call it (1) ) that I want to leave for backing up everything, which I already do using CarbonCopyCloner. (I don't use Time Machine).
    The other partition (2) is for specific files. When I get round to installing Lion, I will continue to backup on this HD, so the old PPC apps on it presumably won't work.
    External Drive B (300 Gb) has one partition (3) that I use for backing up music files, and it won't matter what, if anything, Lion changes in them.
    The other partition (4) on this drive is free and has about 30 Gb free. What I want to do is use my Snow Leopard Install disc and install SL onto this partition (4), including Rosetta, make it bootable and then add the few PPC apps that I need into it.
    AFTER all that, I'm going to Install Lion onto my iMac (with the extarnals unplugged).
    So in theory, I can boot either into the iMac drive itself for Lion, or partition (4) for Snow Leopard.
    Questions-
    Does this look like it'll work?
    Does it matter that I haven't installed Lion before creating the SL Boot in (4)? Seems that several people have had problems installing Lion BEFORE trying to rescue PPC apps.
    When backing up my music files from a Lion environment to (3), does it matter that the drive shares a SL partition (4)?

    10.6 Ships with Symbol.ttf rather than Symbol.dfont. It's in /System/Library/Fonts/
    If you absolutely need the .dfont you could pull it off an old system. I have one handy and can sent you a link, but the ttf is probably better to use. See attached for version difference between ttf, dfont and the windows SYMBOL.TTF.
    The new one has ~30 more characters added to it and matches the windows version.

  • Need help setting up VPN with OS X Server 2.2

    I just bought OS X Server in the hopes that it would be a simpler way to set up VPN for use with my iPhone.  I've tried a couple third party VPN configuration tools before with older versions of OSX but was never able to get it working.  Now I'm running 10.8.2 and Server 2.2.  I've made some progress, but I'm not quite there yet.
    Here's what I have set up in the VPN window:
    And the user I created:
    The User services show that VPN is selected:
    I let the Server app configure my Airport Extreme, and it looks like it set up the port mapping:
    Here are my iPhone settings
    -Server is set to my iMac's public IP address assigned by my ISP
    -Password is the password I gave the user account
    When I turn the VPN on in the iPhone I get:
    "Connecting..."
    "Starting..."
    "Authenticating..."
    then an error:
    "VPN Connection
    Authentification failed."
    What am I missing?
    Thanks,
    Sean

    Hi,
    1701
    UDP
    L2TP
    l2f
    Mac OS X Server VPN service
    1723
    TCP
    PPTP
    pptp
    Mac OS X Server VPN service
    Try L2TP

  • Setting up VPN with OS X Server/Netgear FVS318 and remote offices

    I am a newbie to VPN and am hoping someone can help get the config right. We have an Xserve (Server 10.4) and a range of G5's (OS 10.4) in 3 remote offices and want to setup a VPN between the remote offices back to the xServe. All 3 remote office are behind their own WGT624 router. Our setup looking like this:
    Remote Office G5 (OS 10.4)
    |
    |
    Netgear WGT624 (with dynamic IP address supplied by ISP)
    |
    |
    Cable Modem
    |
    |
    **INTERNET**
    |
    |
    Cable Modem
    |
    |
    Netgear FVS318 (v1) with static IP of 61.xxx.xxx.xxx
    |
    |
    xServe (OS X 10.4 Server)
    Can someone please walk me through the setup we need at head office and how we setup the branch office.
    Thanks

    Hi,
    1701
    UDP
    L2TP
    l2f
    Mac OS X Server VPN service
    1723
    TCP
    PPTP
    pptp
    Mac OS X Server VPN service
    Try L2TP

  • L2TP based VPN with OpenS/WAN server, OpenSSL machine certificates

    I cannot seem to get OSX to accept the machine certificates for a VPN connection using Internet Connect.
    I have generated OpenSSL x509 certificates for the server and client side, the same process has generated certificates that work just dandy with WindowsXP. The certificates have "subjectAltName=" key/value pairs assigned to the IP address of the VPN server.
    Once generated I import the certificates into OS X (you have to run KeyChain Access with "sudo" from the console to get this to work). The certificate authority seems to be ok, the CA has been added to the x509Roots, and when I examine the machine certificate for my OS X install using KeyChain Access the certificate is marked valid.
    I generated the hash link for the certificate:
    ln -s /etc/racoon/certs/certname.pem /etc/racoon/certs/'openssl x509 -noout -in certname.pem'.0
    From the console I run '
    openssl verify certname.pem
    It fails unless I specify '-CAPath /etc/racoon/certs', then it passes.
    When Internet Connect is setup to use the certificates I can see in the OpenS/WAN logs that the OS X box connects and negotiates IPSEC to MAIN_3. At this point pluto logs the following:
    ignoring informational payload, type INVALIDCERTAUTHORITY
    This repeats for several re-tries before the OS X side gives up. No useful logging is generated on the OS X side for me to debug, and everything from the OpenS/WAN side seems to be kosher, it appears to be an oakley/racoon issue with validating the machine certificate provided by OpenS/WAN to the OS X side, with the OS X side unable to verify the certificate.
    Has anyone solved this? Any ideas on how to improve the logging output from OS X so I can see what racoon/oakley is carping about in the certificate files it is using?

    I'm having the same problem. I've got a machine cert on my Mac OS 10.4.6 client that was issued by my Win2003 CA. When I try and connect, it just hangs and then dies. In the Security Logs on the 2003 L2TP server, I even see a successful IKE negotiation (MS Event ID 541 and 543 below).
    EventID 541:
    IKE security association established.
    Mode:
    Key Exchange Mode (Main Mode)
    Peer Identity:
    Certificate based Identity.
    Peer Subject C=US, S=City, L=State, O=Company, OU=group, CN=machine.subdomain.company.com, E=[email protected]
    Peer SHA Thumbprint peerthumbrint
    Peer Issuing Certificate Authority O=company.com, CN=Certificate Authority
    Root Certificate Authority O=company.com, CN=Certificate Authority
    My Subject CN=server.subdomain.company.com
    My SHA Thumbprint mythumbrint
    Peer IP Address: x.x.x.x
    Filter:
    Source IP Address x.x.x.x
    Source IP Address Mask 255.255.255.255
    Destination IP Address x.x.x.x
    Destination IP Address Mask 255.255.255.255
    Protocol 0
    Source Port 0
    Destination Port 0
    IKE Local Addr x.x.x.x
    IKE Peer Addr x.x.x.x
    IKE Source Port 500
    IKE Destination Port 500
    Peer Private Addr
    Parameters:
    ESP Algorithm Triple DES CBC
    HMAC Algorithm SHA
    Lifetime (sec) 3600
    MM delta time (sec) 1
    EventID 543:
    IKE security association ended.
    Mode: Key Exchange (Main mode)
    Filter:
    Source IP Address X.X.X.X
    Source IP Address Mask 255.255.255.255
    Destination IP Address X.X.X.X
    Destination IP Address Mask 255.255.255.255
    Protocol 0
    Source Port 0
    Destination Port 0
    IKE Local Addr X.X.X.X
    IKE Peer Addr X.X.X.X
    IKE Source Port 500
    IKE Destination Port 500
    Peer Private Addr
    At least give me a some methods to debug with.

  • Help Needed With Basic Client/Server App

    I was wondering if anyone can help with a simple blackjack client/server application i've been writting (basically its a moddified chat application). The problem i'm having seems to lie within the connection management i've written.
    What i'm trying to get is that only 4 players can connect at one time and that each player takes a turn (which i've implemented using threads) to play their hand (as you would if you were playing it for real). The problem is that it will allow the players to connect, but oddly enough, it will not allow a new transaction to be created (i.e. allow a player to take their turn) until 2 players have connected.
    Even when it does create the transaction, after taking input from the client once, the server seems to stop doing anything without any error message of any kind.
    Its really annoyed me now, so you guys are my last hope!
    The code can be found in full here:
    Client Application: http://stuweb3.cmp.uea.ac.uk/~y0241725/WinEchoClient.java
    Server Application: http://stuweb3.cmp.uea.ac.uk/~y0241725/ThreadServer.java
    Card Class: http://stuweb3.cmp.uea.ac.uk/~y0241725/Card.java
    Deck Class: http://stuweb3.cmp.uea.ac.uk/~y0241725/Deck.java
    Please feel free to play around with this code as much as you feel necessary!

    (one last bump back up the forum before i give up on this completely)

  • Can any one help me with this chat server

    The code below is of a client and server but the problem is that the msg can be sent only from the server and not the client I want that whenever a msg is sent from the server the control for writing the msg should go on to the client n den vise versa n should continue till the connection is terminated..plz help me....!
    CoDES
    for client
    import java.io.BufferedReader;
    import java.io.IOException;
    import java.io.InputStreamReader;
    import java.net.InetAddress;
    import java.net.Socket;
    import java.net.UnknownHostException;
    class client {
    public static void main(String[] args) throws IOException {
    Socket s =null;
    BufferedReader b=null;
    try{
    s=new Socket( InetAddress.getLocalHost(),98);
    b=new BufferedReader(new InputStreamReader(s.getInputStream()));
    catch(UnknownHostException u) {
    System.err.println("i dont know host");
    System.exit(0);
    String inp;
    while((inp=b.readLine())!=null){
    System.out.println(inp);
    b.close();
    s.close();
    FOR SERVER$
    import java.io.BufferedReader;
    import java.io.IOException;
    import java.io.InputStreamReader;
    import java.io.PrintWriter;
    import java.net.ServerSocket;
    import java.net.Socket;
    import java.nio.channels.ServerSocketChannel;
    public class server {
    public static void main(String[] args) throws IOException {
    ServerSocket s1=null;
    try{
    s1=new ServerSocket(98);
    }catch(IOException u1)
    System.err.println("could not find port 98");
    System.exit(1);
    Socket c=null;
    try{
    c=s1.accept();
    System.out.println("connection from"+c);
    catch(IOException e)
    System.out.println("accept failed");
    System.exit(1);
    PrintWriter out=new PrintWriter(c.getOutputStream(),true);
    BufferedReader in=new BufferedReader(new InputStreamReader(c.getInputStream()));
    String I;
    BufferedReader sin=new BufferedReader(new InputStreamReader(System.in));
    System.out.println("i am ready to type now");
    while((I=sin.readLine())!=null) {
    out.println(I);
    out.close();
    sin.close();
    c.close();
    s1.close();
    }

    What you need is to have two loops running at the same time. One for receiving messages and other for waiting user input. This can be done by using separate threads.
    For example after client has made connection to server, start a new thread that runs loop for receiving messages from the socket and printing them to System.out. Then in the default thread start loop for reading users input. The server could have similar structure.
    So, what I think you are looking for are threads.

  • Ip helper-address with two dhcp server

    I have two dhcp server running on vlan1, which serving our workstation on vlan2. 10.10.10.51 is our primary and 10.10.10.52 is secondary server.
    My question is:
    - Which server would my workstation get the dhcp from?
    - If the primary server is down, could I reach the second dhcp server? and if the primary server back online.. Which server would be serving our dhcp client?
    interface Vlan1
    ip address 10.10.10.1 255.255.255.0
    no ip redirects
    ip directed-broadcast
    interface Vlan2
    ip address 10.10.20.1 255.255.255.0
    ip helper-address 10.10.10.51
    ip helper-address 10.10.10.52
    no ip redirects
    ip directed-broadcast

    Hi,
    I don't agree.
    AFAIK, using two ip helper-address entries in a router config will cause the dhcp request being sent to BOTH dhcp servers.
    So both the primary and secondary dhcp server will send a dhcp offer to the workstation. The workstation will choose one of the offers and confirm it to the server.
    So ip helper-address command will not help you to choose if dhcp server is primary or secondary.
    You can either use different dynamic address pools on primary and secondary dhcp server (and the same static entries) or to arrange some kind of dhcp server failover:
    See
    http://www.microsoft.com/windows2000/en/server/help/default.asp?url=/windows2000/en/server/help/sag_DHCP_imp_ClusteringSupport.htm
    There is also RFC 2131 describing DHCP Failover Protocol.
    Regards,
    Milan

  • PLEASE HELP me with my Client/Server problem !!!

    I have a method that can currently only recieve one file at a time, but I need it to be able to recieve multiple incomming files. My problem is that it can recieve the first file, but when the send file is sent to this method, it freezes. Can somebody please help me debug it!! I need to get this working by tonight. Thanks!
    public class A implements Runnable {
            String hostname;
            private Thread runner;
            public A () {}
            public void receive() throws IOException {
                    try {
                            while (true) {
                                    Socket s = ss.accept();            
                                    s.close();
                    } catch (Exception e) {
                            System.out.println(e);
            public void run() {
                    try {
                            ServerSocket ss = new ServerSocket(1111);
                            while (true) {
                                    receive();
                    } catch (IOException ioe) {
                            System.out.println("IOException in run()\n" + ioe.getMessage());
            private void stop() {Runner = null;}
            public void request(String fileName) {
                    if(runner == null) {
                   runner = new Thread(this);
                   runner.start();
                            try {
                                    send(fileName);
                            } catch (Exception e) {
                                System.out.println("Exception in run()\n" + e.getMessage());
    }

    you have a while(true) in your receive, so you accept the socket, do the // ... stuff, close it, and then sit there waiting to accept another one again. Am I seeing that correctly?

Maybe you are looking for