My VPN server on 10.4.11 has gone bad

Hi!
The basic problem with my Tiger server is that users will be unable to login after the server has been running for a while. I have narrowed the possible causes a bit and now it seems like the VPN service is somehow contributing to this problem.
Because VPN needs more than 1 IP address, I was somehow afraid that the problem is somehow related to Samba not working correctly over 2 IPs on the same subnet, because it advertises itself on both or so it seems looking at the logs. But, to narrow thinsg down even more, I removed the alias IP so the server has just a single connected interface with a single IP address. The problem is still there.
When I start the VPN service, this is what I see in the kdc.log:
Mar 24 11:17:56 p0002.prx krb5kdc[313](info): AS_REQ (7 etypes {18 17 16 23 1 3 2}) 212.47.207.2: NEEDED_PREAUTH: [email protected] for krbtgt/[email protected], Additional pre-authentication required
Mar 24 11:17:56 p0002.prx krb5kdc[313](info): AS_REQ (7 etypes {18 17 16 23 1 3 2}) 212.47.207.2: ISSUE: authtime 1206350276, etypes
{rep=16 tkt=16 ses=16}, [email protected] for krbtgt/[email protected]
Mar 24 11:18:01 p0002.prx krb5kdc[313](info): AS_REQ (7 etypes {18 17 16 23 1 3 2}) 212.47.207.2: ISSUE: authtime 1206350281, etypes
{rep=16 tkt=16 ses=16}, [email protected] for krbtgt/[email protected]
Mar 24 11:18:01 p0002.prx krb5kdc[313](info): DISPATCH: repeated (retransmitted?) request from 212.47.207.2, resending previous response
Mar 24 11:18:01 p0002.prx krb5kdc[313](info): DISPATCH: repeated (retransmitted?) request from 212.47.207.2, resending previous response
And after that the last message (resending previous response) just keeps filling the log tens of time per second. But this is just a symptom. The real problem is that from now on the users are unable to log into the domain (the server is the PDC). Samba's log.smbd has line like this:
[2008/03/24 11:21:57, 0] pdbods.c:odssamgetsampwnam(2329) odssam_getsampwnam: [0]getsam_recordattributes dsRecTypeStandard:Users no account for 'agnes'!
Looking at OD settings the checkbox in front of the "Enable Directory Binding" is missing and cannot be set and saved - it just keeps going back to unset status. Moreover, it was not possible to browse user accounts in the WGM.
The system.log had lines like this at the same time:
Mar 24 11:18:19 p0002 DirectoryService[156]: could not load the replica file.
Stopping VPN service didn't help, I just made a restart of the server to restore order in the domain. Also, I think that thing went wrong only after I actually made a VPN connection, just starting VPN service did nothing wrong.
Can anybody help me with this?
Andrus

My solution was to buy a separate VPN appliance from Nokia.

Similar Messages

  • Can Apple replace my macbook pro (mid 2012) retina's battery if I think that the battery health has gone bad/in need of and renewal?

    Can Apple replace my macbook pro (mid 2012) retina's battery if I think that the battery health has gone bad/in need of and renewal???
    I've had my Macbook for about 11 months now and i use it every day; its gone though about 420 cycles of charging and using the power, and i noticed the battrey preformance has decreased (as expected). The problem isn't sevear yet but it would comfort me knowing that i could replace the battery in the near future
    Please contact me or answer the question if you know anything about this!

    Exitio\'s Apple wrote:
    Can Apple replace my macbook pro (mid 2012) retina's battery if I think that the battery health has gone bad/in need of and renewal???
    No only if they think under warranty/AppleCare, but your likely able to pay for a new battery if they have them, which they might not yet since it's such a new machine still.
    BTW, I have a Early 2011 17" MBP, 27 months old, charges to 97% and has only 14 cycles.

  • RAM has gone bad 4 times now, anyone else have bad RAM?

    I purchased a 17" MBP (Early 2010) the week they were released. In the first 2 months, one stick of RAM would go bad at a time. This happened 3 times. The Apple Store replaced them the first 2 times, but on the third failure (after doing a diagnostic that found nothing) they decided to replace the unit with a new MBP.
    It has been just over a month and one stick of RAM has gone bad on my new MBP. This is the 4th RAM failure.
    I keep my MBP on my desk 99% of the time. I'm not doing anything crazy with it. It's almost always plugged in to a power source. I've owned many Macs and PCs over the years and never had RAM problems like this.
    I got the feeling the genius employee who helped me this time was getting suspicious of the frequent RAM failures on two separate macs. If I were him, I would be too. But I know I'm not doing anything that would cause this (and I'm not opening up the insides of the MBP for fear of voiding warranty).
    Has anyone else had an issue like this? Can anyone think of something that could bring about RAM failures this frequent? Was the 1st computer defective and the 2nd one just bad luck with a bad stick of RAM?
    If if makes a difference. On the 1st MBP, when booting up I'd get a blank screen, no beeps. With the 2nd MBP, I'm getting a blank screen but 3 beeps/blinking lights that repeat.

    Hi
    likely to be coincidence, unless you've a very very spiky power supply there, and/or a power adapter that wasn't renewed at the same time as the mbp.

  • Why is it Adobe has gone bad ?

    After weeks of mucking around  - it looks as if I am after over 14 years of supporting Adobe  .... leaving Photoshop and Adobe ....
    :O(
    They say they support us  -- promise to call you back and fix your problems .... then leave you for weeks doing nothing!
    You call them back ... whats going on you ask .... you explain the issues again ...... they attempt to fix them  ...... nope no luck.
    We will call you back tomorrow to fix it for you. .......
    Again  ... no calls at all - you wait for days .... a week no calls ......
    Yep this Cloud stuff works well guys - thanks for the frustration - you ask again via email for help  ..... third - fourth time  ... again do we have to try to get you to help ..... or at least do what you say you will ... call back ?
    If you cant fix it .... if you cant even call us back when you say you will ..... why should we believe anything you say?
    I know many users are ok with what you have done and many are using your cloud with limited or no issues.
    But the measure of a person / company is not what you can do when things are great - but how you support those with issues ... and in this case you have failed.

    Thanks Jeff - you are right this is a support forum ... but guess what - this is when people pay attention ... not when it's behind closed doors - then it's easier to just ignore.
    In any case what you say is certainly correct  - support forums =.
    We finally got to moving over to the Cloud base of Photoshop.  ( CC PS )
    Installed cloud - installed CC PS - all good so far - then open Photoshop - it closed immediately.
    Was Cloud open - Yes
    Tried rebooting - just in case.
    Opened PS - splash screen - menus all going - it closed again.
    Ok Check the net - yep its a known issue.
    Close Cloud - open PS - Now it tells me I have a trial version.
    Open up a chat version of help with Adobe - after a while - and several attempts to fix  I get told that I would be contacted the next day as it was beyond their area of help.
    1 day - no call - 2,3,4 ...... ok I get it I'm not getting a call.
    I call them.
    Someone will help tomorrow.
    Nope !
    So I call back - now the guy on the phone was nice - he really did try to help - about half an hour to an hour later - no good he had to escalate it up the chain - I did tell him I had tried everything he did.
    So .... we will call you back tomorrow with a new Tech. .... yeah you guessed it  .... no call 3 days later.
    Really - c'mon!
    In any case this is the issue - it wont start and stay active for me to use.
    We did finally get past the part where it thought it was a trial version ....... now it just wont start .......
    So yeah Jeff I am pretty pissed off and have had a rant.
    Still not fixed.
    CS 5 Suite works fine  - and so does the Downloaded version of Lightroom.
    OS - Windows 7 Ultimate
    32MB ram
    Photoshop Opens and closes immediately.
    "You have cross-posted the exact same message in multiple forums...what you are doing won't actually help you...you know that right?"
    Was actually hoping someone else has gone down the road and found Adobe more helpful ......
    I do appreciate your point of view.

  • Hi All,I have an iMac 24'' 2007 and my HDD has gone bad.

    Hi everybody ... I am in desperate need of help,concerning the replacement drive! All I find on Amazon,for example,are SATA III drives,and my iMac,being quite old,has SATA I,I suppose?! My question is ... will my machine recognize the SATA III drive,once installed??? I know that the connectors are identical to all SATAs but,since the replacement procedure is quite complicated,I beg you to,at least,tell me if I have to do something prior to the replacement?
    I've read somewhere that one should reduce the thoughput from 6 to 3 GB/sec,or something like that,whith some jumpers,but all that is alien to me!!!
    I am pressed by work and deadlines,so I would appreciate immencely any feedback!!!
    Thanx in advance,
    George
    Just for info,I am looking at a WD Caviar Green 1TB SATA III ... ???

    The reason I advise having this done by Apple service techs is if you open this iMac up and work on it yourself and you fail to get your iMac working again, you will not be able to bring to Apple, directly, any longer. They will not do the repairs or installations needed to your iMac. You will be forced to take it to a third party Apple authorized service center for repairs from now on if you attempt to do this drive replacement, yourself.
    Tearing down and reassembling an iMac is not for a "newbie" or novice computer user/ upgrader.
    iMacs do not have any easily serviceable or user upgradeable parts inside.
    I have a lot of Mac upgrading experience and the newer flat style  iMacs (and the much older eMacs) are about the only Macs I will not attempt to try and work on.
    Too many screws and screw sizes. Too many really fiddly and fragile connections. Just too many variables of things that can either break or forget or hook up improperly. The 2005 and newer flat screen style generations of iMacs are just complicated and finicky puzzles to work on.

  • How do you know when your raid controller has gone bad?

    I fired up my xserve raid 14X400 with 2X512mb Raid Controllers and drives 1-7 on the left won't show up at all. I swapped the controllers and then drives 8-14 won't show up. I have been trying to update the firmware from 1.5 to the latest and keep getting an error with the upper controller. I can't find anywhere that you can buy a new controller. Anybody know what I should do? My apple warranty ended in June and I didn't update it so Apple isn't going to help. What should I do? Can you have the controller card itself serviced? Thanks for any help. Also, I'm hoping that my media is still good?
    Todd Stanley
    Deadliest Catch Producer/shooter

    Hi
    If you have swopped the controllers around and the problem follows the controller then that is a pretty good indication that something is not quite right with the controller. Obviously reseating - basically pulling out the affected controller, a good blast of air inside to remove and dust/grit that might possibly be stopping a good connection and pushing it back again - the controller to see if that makes a difference is one thing you should do. Swopping them over effectively does this anyway. What does the events log in RAID Admin say? There is usually some indication in the log if there has been a problem.
    Its an obvious question and possibly you may have forgotten it in the panic but when you purchased the XServe RAID did you not take up the spare parts kit option? If you did install the replacement controller. If you did not and in view of the fact you did not take out the extended warranty seems overly optimistic, your only recourse in my view is to remove the affected controller and send it to your nearest Apple Repair Specialist - or deal with Apple themselves. They should send you a replacement under their Global Service Exchange Program. Make sure you send the faulty part as well as knowing the XServe RAID’s Serial Number. They should send a 90 day warranty replacement within 2 days. If you are in the UK its going to be expensive (approx £350VATshipping). Actually its going to be expensive wherever you are.
    There is a possibility that one of the other guys knows a method of getting this going again and will hopefully post a suggestion soon. However the sooner you act on this the sooner you can get your RAID array back on line. I do hope you have a current and effective backup in place just in case. You should be doing this anyway.
    Hope this helps, Tony

  • Photoshop and Illustrator link has gone bad

    hi.
    I cannot get illustrator to open my smart objects from photoshop.
    usually the process is double click the vector smart object, it opens in Illustrator.
    Now I get an error message that says
    'Could not edit original smart object because the application which created the smart object could not be launched.'
    What should I try?  I tried calling tech support but they weren't able to understand the issue.

    Somehow your OS has lost the association of the .ai file extension with the Illustrator application. (or PDF, or EPS - whichever you are using)
    You need to reset that association, so the OS can launch Illustrator when Photoshop asks it to edit the .ai file.

  • When do I know sensor has gone bad?

    I have had for 18 months. Did not know about "putting it to sleep" when not in use. I am walking three/four miles and my reading keeps saying I've gone .15 miles and burned 4 calories...it was working fine last week, but when I reset my weight, nothing has worked right since? I've tried to recalibrate, but that isn't working either....I don't know what to do next!!

    I had the same problem - sensor was saying I'd only run .25 mile when I had done more.
    I found this on the Nike+ Support Forums and tried it this morning. It seemed to work for my problem.
    http://forums.nike.com/thread.jspa?messageID=242470&#242470
    Hi Pete_D,
    I'm sorry to hear that your new sensor sounds like it's dead or at least dying on arrival. That's definitely not cool!
    Before you give up on it, I'd like you to try a couple of things to see whether you can resuscitate the new sensor. If these suggestions don't prove helpful, your best bet is to return the new sensor to the place of purchase. Given the fact that you just bought it, I'm hopeful that a quick and easy exchange can be arranged.
    First, though, try this:
    1. Put your sensor to sleep and then wake it again. To put your sensor to sleep, remove it from your shoe, flip it over so that you can access the sleep/wake button, and hold the button down for approximately a three count. Then, to wake the sensor, give the button a quick press.
    2. Reset your iPod nano. This is a good standard step to take whenever you experience weird Nike + iPod behavior; it won't result in the loss of any data, but it will refresh your settings. Please press and hold down both the Menu button and the center button at the same time, holding them down until the Apple logo appears on your screen.
    3. Try to establish an active link by getting aggressive with your new sensor. Navigate to the linking screen on your iPod nano (Nike + iPod > Settings > Sensor > Link) and tap the sensor against your desk or another solid surface to simulate a footstrike. Sometimes, it's easier to set up your initial link this way than by walking around to activate your sensor. Once the sensor has been found, record and upload a test workout; then take a look to see whether the "replace sensor soon" message still appears. I'm hoping that the message is left over from your old sensor, and will disappear once you record a workout successfully using the new sensor.
    4. Record and upload a normal workout. Once you've established your link by tapping the sensor, you'll want to make sure your sensor can also pick up your normal footstrike and record your workout accurately.
    If these options don't prove helpful, please make sure you return or exchange your sensor as soon as possible. As I noted above, it's best if you can work with the retailer from whom you purchased the sensor. If this isn't a good option for you, remember that Apple offers a one-year warranty on the product; you can visit them in person at an Apple store or give them a call at 1-800-APL-CARE to learn about your options.
    I hope this helps, and I hope to see you up and running again soon!
    Cheers,
    Clover

  • I am pretty sure my video card has gone bad in my macbook pro, I want to retrieve data before replacing it.  Is this possible?

    My video card has failed and I want to retrieve photos.  Can this be done?

    Welcome to Apple Support Communities
    I wouldn't worry about that. Take your Mac to an Apple Store or reseller and let them repair your Mac. If it's a GPU failure, your hard drive is OK, and you will have the same hard drive with the same data after getting the MacBook Pro repaired.
    However, it's recommended to make a backup. As you can't start up your Mac, what you can do is to take out the hard drive and connect it to another Mac through a USB to SATA adapter, so you can recover your files

  • Upgraded to 10.8.1 and now my WD external drive has gone "bad".

    Worked well last night when I moved large files on to it to make room for Creative Cloud apps...
    Then this morning after installing 10.8.1 upgrade and restarting, it didn't appear and is unreadable.
    Disk utility said it could not repair it.
    Have gone to the WD site, downloaded and upgraded the firmware & software, the WD diagnostics seems to be stuck
    on the 90% complete mark.
    Do you think this is Mountain Lion or do I need to have the external hard drive taken to a place that
    can (hopefully) take off all of my client files and time machine backups (ouch!)
    Thanks so much!

    MommaKaren,
    I'm in the same situation, certainly it's a problem with Moutain Lion. I did a rollback to Lion yesterday and my HD MyBook worked as usual.
    It's not the first time that WD have this kind of compatibility issues with Apple OS, It seems like everytime Apple makes major chages in its core OS the problems apears.
    I'll wait for a solution from Apple (system update) or WD (firmware update).
    WD is denying this compatibility issue, but everyday the number of users with the same problem increase, thus expect a solution pretty soon.
    Regards,
    Ewerton

  • Is it possible to enter the password via itunes to retrieve information from my iphone if the lcd has gone bad

    Hi,
    Is it possible to enter the password to your iphone via itunes if the lcd on your screen is preventing you from doing so? i would like to be able to sync my calendar and notes from iphone to my computer but my phone is locked.

    No. If you had previously synced the iphone to your computer you would not have to enter a passcode on the phone, as the devices would have established a trust relationship. Absent that there is no way to unlock the phone.

  • I cannot open iCal because of a problem. Can anybody help me? The computer will not allow it to open and sends a message to apple each time. The icon has gone from the dock, but ical works on my iPad and I am afraid to sync it with my computer.?

    I cannot open iCal because of a problem. Can anybody help me? The computer will not allow it to open and sends a message to apple each time. The icon has gone from the dock, but ical works on my iPad and I am afraid to sync it with my computer in case it wipes everything .

    I have the exact same problem. I have not changed anything. This is probably a bug or something that has gone bad with Mac OS X (10.7.2). I have not found any solution for this on the web.
    MacBook Pro, Mac OS X (10.7.2).

  • Windows 8.1 VPN Server Setup - No Network softwaare to choose

    Hi Everyone
    Windows 8.1
    Setting up an incoming VPN Server.
    When I try to create a New Incoming Connection via  Control Panel > Network and Sharing Center > Change adapter settings > Alt - F > New Incoming Connection.
    The wizard appears so  I check the User Account > Next  > Check Through the Internet > Next  bringing up the Allow connections to this computer window where I should be able select Networking software to be enabled and then go on
    to click Allow Access button.   The networking software to highlight window is blank.  Using the Install... button below this window brings up the Select Network Feature Type window where I can highlight a feature (Client, Service or Protocol)
    and click Add button .  It returns to the Allow connections window which has not changed and nothing is added.  Still blank.
    How do I get the network software to be there to select?
    I have done this on other machines and had no problems at all.  It worked the way it should. 
    After I did an image and reset operating system, the VPN Server Setup worked as it should.  Restored image as it is way to much work to rebuild the machine. So any ideas?
    Any and all help will be appreciated.
    Thanks in advance. Lowell

    Hi,
    Did you mean you have solved this problem by resetting Windows?
    Regarding to current information, this issue can be caused by port settings or corrupted Windows components.
    Please check if the VPN port 1723 has been set as allowed in both your Firewall and router settings pages.
    Also, we may fix such issue by running following repair command:
    NOTE: Please run these commands as administrator.
    SFC /SCANNOW
    dism /online /cleanup-image /restorehealth
    For further help, you can upload %windir%\logs\CBS\cbs.log and %windir%\Logs\DISM\dism.log into Onedrive or similar file service and share the link here for our research.
    Kate Li
    TechNet Community Support

  • Can't connect to vpn server

    I am now setting up the vpn server using mac mini with Mac OSX v 10.7 Lion Server. After setting up, I found that I can't make connection.
    When I check out the console, I find that the vpnd continue assign IP address to the same client and then hungup as follows:
    Is there any solution?
    11/17/11 2:31:56.180 PM racoon: IKE Packet: receive success. (Responder, Main-Mode message 1).
    11/17/11 2:31:56.181 PM racoon: IKE Packet: transmit success. (Responder, Main-Mode message 2).
    11/17/11 2:31:56.206 PM racoon: IKE Packet: receive success. (Responder, Main-Mode message 3).
    11/17/11 2:31:56.225 PM racoon: IKE Packet: transmit success. (Responder, Main-Mode message 4).
    11/17/11 2:31:56.241 PM racoon: IKEv1 Phase1 AUTH: success. (Responder, Main-Mode Message 5).
    11/17/11 2:31:56.241 PM racoon: IKE Packet: receive success. (Responder, Main-Mode message 5).
    11/17/11 2:31:56.241 PM racoon: IKEv1 Phase1 Responder: success. (Responder, Main-Mode).
    11/17/11 2:31:56.241 PM racoon: IKE Packet: transmit success. (Responder, Main-Mode message 6).
    11/17/11 2:31:56.241 PM racoon: IPSec Phase1 established (Initiated by peer).
    11/17/11 2:31:57.098 PM racoon: IPSec Phase2 started (Initiated by me).
    11/17/11 2:31:57.098 PM racoon: IKE Packet: transmit success. (Initiator, Quick-Mode message 1).
    11/17/11 2:31:57.102 PM racoon: IPSec Phase2 started (Initiated by peer).
    11/17/11 2:31:57.102 PM racoon: IKE Packet: receive success. (Responder, Quick-Mode message 1).
    11/17/11 2:31:57.102 PM racoon: IKE Packet: transmit success. (Responder, Quick-Mode message 2).
    11/17/11 2:31:57.104 PM racoon: IKE Packet: receive success. (Responder, Quick-Mode message 3).
    11/17/11 2:31:57.105 PM racoon: IKEv1 Phase2 Responder: success. (Responder, Quick-Mode).
    11/17/11 2:31:57.105 PM racoon: IPSec Phase2 established (Initiated by peer).
    11/17/11 2:31:57.157 PM vpnd: Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:31:57.157 PM com.apple.ppp.l2tp: 2011-11-17 14:31:57 CST Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:31:57.180 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:31:57.181 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:31:58.156 PM vpnd: Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:31:58.156 PM com.apple.ppp.l2tp: 2011-11-17 14:31:58 CST Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:31:58.177 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:31:58.179 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:31:59.156 PM vpnd: Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:31:59.156 PM com.apple.ppp.l2tp: 2011-11-17 14:31:59 CST Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:31:59.178 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:31:59.179 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:00.100 PM racoon: IKE Packet: transmit success. (Phase2 Retransmit).
    11/17/11 2:32:00.157 PM vpnd: Incoming call... Address given to client = 137.189.141.140
    11/17/11 2:32:00.157 PM com.apple.ppp.l2tp: 2011-11-17 14:32:00 CST Incoming call... Address given to client = 137.189.141.140
    11/17/11 2:32:00.178 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:00.180 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:02.102 PM racoon: IKE Packet: transmit success. (Phase1 Retransmit).
    11/17/11 2:32:03.103 PM racoon: IKE Packet: transmit success. (Phase2 Retransmit).
    11/17/11 2:32:06.107 PM racoon: IKE Packet: transmit success. (Phase2 Retransmit).
    11/17/11 2:32:09.110 PM racoon: IKEv1 Phase2: maximum retransmits. (Phase2 maximum retransmits).
    11/17/11 2:32:12.114 PM racoon: IKE Packet: transmit success. (Phase1 Retransmit).
    11/17/11 2:32:17.191 PM vpnd: --> Client with address = 137.189.141.137 has hungup
    11/17/11 2:32:17.191 PM com.apple.ppp.l2tp: 2011-11-17 14:32:17 CST --> Client with address = 137.189.141.137 has hungup
    11/17/11 2:32:18.163 PM vpnd: Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:32:18.163 PM com.apple.ppp.l2tp: 2011-11-17 14:32:18 CST Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:32:18.180 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:18.184 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:18.186 PM vpnd: --> Client with address = 137.189.141.138 has hungup
    11/17/11 2:32:18.186 PM com.apple.ppp.l2tp: 2011-11-17 14:32:18 CST --> Client with address = 137.189.141.138 has hungup
    11/17/11 2:32:19.163 PM vpnd: Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:32:19.163 PM com.apple.ppp.l2tp: 2011-11-17 14:32:19 CST Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:32:19.180 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:19.184 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:19.186 PM vpnd: --> Client with address = 137.189.141.139 has hungup
    11/17/11 2:32:19.186 PM com.apple.ppp.l2tp: 2011-11-17 14:32:19 CST --> Client with address = 137.189.141.139 has hungup
    11/17/11 2:32:20.164 PM com.apple.ppp.l2tp: 2011-11-17 14:32:20 CST Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:32:20.164 PM vpnd: Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:32:20.187 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:20.188 PM vpnd: --> Client with address = 137.189.141.140 has hungup
    11/17/11 2:32:20.188 PM com.apple.ppp.l2tp: 2011-11-17 14:32:20 CST --> Client with address = 137.189.141.140 has hungup
    11/17/11 2:32:20.189 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:21.164 PM vpnd: Incoming call... Address given to client = 137.189.141.140
    11/17/11 2:32:21.164 PM com.apple.ppp.l2tp: 2011-11-17 14:32:21 CST Incoming call... Address given to client = 137.189.141.140
    11/17/11 2:32:21.185 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:21.187 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:29.130 PM racoon: IKE Packet: transmit success. (Phase1 Retransmit).
    11/17/11 2:32:38.192 PM vpnd: --> Client with address = 137.189.141.137 has hungup
    11/17/11 2:32:38.192 PM com.apple.ppp.l2tp: 2011-11-17 14:32:38 CST --> Client with address = 137.189.141.137 has hungup
    11/17/11 2:32:39.141 PM racoon: IKE Packet: transmit success. (Phase1 Retransmit).
    11/17/11 2:32:39.172 PM vpnd: Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:32:39.172 PM com.apple.ppp.l2tp: 2011-11-17 14:32:39 CST Incoming call... Address given to client = 137.189.141.137
    11/17/11 2:32:39.189 PM vpnd: --> Client with address = 137.189.141.138 has hungup
    11/17/11 2:32:39.189 PM com.apple.ppp.l2tp: 2011-11-17 14:32:39 CST --> Client with address = 137.189.141.138 has hungup
    11/17/11 2:32:39.191 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:39.192 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:40.172 PM vpnd: Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:32:40.172 PM com.apple.ppp.l2tp: 2011-11-17 14:32:40 CST Incoming call... Address given to client = 137.189.141.138
    11/17/11 2:32:40.194 PM pppd: pppd 2.4.2 (Apple version 560.13) started by root, uid 0
    11/17/11 2:32:40.197 PM pppd: L2TP incoming call in progress from '137.189.141.146'...
    11/17/11 2:32:40.198 PM vpnd: --> Client with address = 137.189.141.139 has hungup
    11/17/11 2:32:40.198 PM com.apple.ppp.l2tp: 2011-11-17 14:32:40 CST --> Client with address = 137.189.141.139 has hungup
    11/17/11 2:32:41.173 PM vpnd: Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:32:41.173 PM com.apple.ppp.l2tp: 2011-11-17 14:32:41 CST Incoming call... Address given to client = 137.189.141.139
    11/17/11 2:32:41.191 PM vpnd: --> Client with address = 137.189.141.140 has hungup

    I have no new information to report to help you with this, but I am also seeing the same issue. The same behavior happens when connecting through my router *or* via ATT iPhone tethering. 

  • Cisco VPN server internal connection

    I have a cisco 1841 router which I use as VPN server. This is the configuration:
    Cisco#show running-config Building configuration...Current configuration : 6382 bytes!version 15.1service tcp-keepalives-inservice tcp-keepalives-outservice timestamps debug datetime msecservice timestamps log datetime msecno service password-encryption!hostname Cisco!boot-start-markerboot-end-marker!!enable secret 5 $1$Xg19$MKt1eIm4yrmDwcYn1z0x2/enable password qwerty!aaa new-model!!aaa authentication login default localaaa authentication login ciscocp_vpn_xauth_ml_1 localaaa authorization exec default local aaa authorization network ciscocp_vpn_group_ml_1 local !         !!         !!         aaa session-id common!         dot11 syslogip source-route!!         !!         !ip cef    no ipv6 cef!         multilink bundle-name authenticated!         crypto pki token default removal timeout 0!         crypto pki trustpoint TP-self-signed-947112914 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-947242914 revocation-check none rsakeypair TP-self-signed-947182914!         !crypto pki certificate chain TP-self-signed-947142914 certificate self-signed 01  3082023B 308201A4 A0030201 02020101 300D0609 2A874886 F70D1101 04050030   30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274   69666963 6174652D 39343731 34325931 34301E17 0D313131 31323532 30353931   325A170D 32303031 30313030 30303030 5A303031 2E302C06 03559403 1325444F   532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3934 37313432   39313430 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100   B4C6CC16 5EA2210F D4A0234B 90D9E29C E1132F0D 491CC9BC F513EF57 A5986C31   C03BC061 B3B4E103 0005F992 A7CA2605 8C46FCB2 C22AAC4B 739D1DC2 49EA3883   253D553C A1E7BD3A 26D49347 86414B11 5C03F4E6 A4BD5306 CD857F99 0A567B85   FD639414 C2E25161 74A52A7B 32753F25 AE8FDC73 EC859EEC D8A1C9C4 D8A50EED   02030100 01A36530 63300F06 03551D13 0101FF04 05300301 01FF3010 0603551D   11040930 07820543 6973636F 301F0603 551D2304 18301680 14414AD6 2A674283   54CC008C A6B81E1D 7A3B09A4 8C301D06 03551D0E 04160414 414AD62A 67428354   CC008CA6 B81E1D7A 3B09A48C 300D0609 2A864886 F70D0101 04050003 8181007B   00264BAE A55C3CB0 20F83B46 A047F400 3B5748CA D8C64A49 5484FE1E 7588949F   A8E5EBAE BE5FAD22 0C89FC92 671E0BB6 1155EB76 21E72F07 68F76AE3 2F0CB2C6   EC26A8C1 C3EA1300 CE284F9B 3E3F6BB9 7807CF63 8154BC4B AD33392E 68347E0B   F78AE625 818C3A4E 6E0302D8 26DF4890 08E42063 37BF9026 BF4E251D A86EEA        quit!!         license udi pid CISCO1841 sn FCZ150218ACusername root privilege 15 password 0 qwertyusername admin secret 5 $1$78MV2Yc72fwt5PoEm.eK33PlKw1username test privilege 15 password 0 test_123!redundancy!!         ! crypto ctcp keepalive 6crypto ctcp port 443 !         crypto isakmp policy 1 encr 3des hash md5 authentication pre-share group 2crypto isakmp keepalive 10 10 periodiccrypto isakmp nat keepalive 20!         crypto isakmp client configuration group cisco key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_client include-local-lan max-users 1000 netmask 255.255.255.0!crypto isakmp client configuration group server_1 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_1 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_2 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_2 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_3 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_3 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_4 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_4 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_5 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_5 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_6 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_6 include-local-lan netmask 255.255.255.0!crypto isakmp client configuration group server_7 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_7 save-password include-local-lan netmask 255.255.255.0!         crypto isakmp client configuration group server_8 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_8 include-local-lan netmask 255.255.255.0!         crypto isakmp client configuration group server_9 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_9 include-local-lan netmask 255.255.255.0!         crypto isakmp client configuration group server_10 key qwerty dns 8.8.8.8 domain cisco.com pool SDM_POOL_server_10 include-local-lan netmask 255.255.255.0!         crypto ipsec security-association lifetime seconds 86400crypto ipsec security-association idle-time 86400!crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac !crypto dynamic-map SDM_DYNMAP_1 1 set transform-set ESP-3DES-SHA reverse-route!!         crypto map SDM_CMAP_1 local-address FastEthernet0/0crypto map SDM_CMAP_1 client authentication list ciscocp_vpn_xauth_ml_1crypto map SDM_CMAP_1 isakmp authorization list ciscocp_vpn_group_ml_1crypto map SDM_CMAP_1 client configuration address respondcrypto map SDM_CMAP_1 65535 ipsec-isakmp dynamic SDM_DYNMAP_1 !         !!         !!         interface Loopback0 ip address 172.16.0.1 255.255.255.255!interface FastEthernet0/0 ip address 192.168.1.130 255.255.255.0 ip flow ingress speed auto full-duplex no mop enabled crypto map SDM_CMAP_1!interface FastEthernet0/1 no ip address shutdown speed auto full-duplex no mop enabled!         ip local pool SDM_POOL_client 10.10.10.51 10.10.10.190ip local pool SDM_POOL_server_1 10.10.10.1ip local pool SDM_POOL_server_2 10.10.10.2ip local pool SDM_POOL_server_3 10.10.10.3ip local pool SDM_POOL_server_4 10.10.10.4ip local pool SDM_POOL_server_5 10.10.10.5ip local pool SDM_POOL_server_6 10.10.10.6ip local pool SDM_POOL_server_7 10.10.10.7ip local pool SDM_POOL_server_8 10.10.10.8ip local pool SDM_POOL_server_9 10.10.10.9ip local pool SDM_POOL_server_10 10.10.10.10ip forward-protocol ndip http serverip http authentication localip http secure-server!         !ip route 0.0.0.0 0.0.0.0 192.168.1.1!logging esm configaccess-list 100 remark CCP_ACL Category=4access-list 100 permit ip 10.10.0.0 0.0.255.255 any!!         !!         !!         !!         control-plane!         !!         line con 0line aux 0line vty 0 4 password qwerty transport input telnet ssh!         scheduler allocate 20000 1000end       Cisco#
    I have a VPN clients which can connect to the VPN server and communicate  each other. I want to connect dedicated server to port FE 0/1 and all  VPN clients to be able to see and communicate with the server. How I can  connect the two networks?

    Ideally, VPN connectivity is tested from devices behind the endpoint devices that do the encryption, yet many users test VPN connectivity with the ping command on the devices that do the encryption. While the ping generally works for this purpose, it is important to source your ping from the correct interface. If the ping is sourced incorrectly, it can appear that the VPN connection has failed when it really works. If ping works continuously then the problem can be that the xauth times out. Increase the timeout value for AAA server in order to resolve this issue.
    For further information about troubleshoot the VPN connectivity click this link.
    http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml#solunf

Maybe you are looking for

  • Plugin problem using webserver 6.0

    Dear All, I am using Sun One WebServer 6.0 ( sp6 in Windows XP), and I have a proxy setting for Sun One AppServer 7.0 (in Windows XP). I have setup the obj.conf and magnus.conf as required in the documentation. I am getting an error ---- Configuratio

  • Changing list of top participants?

    I was in the Reader forum and needed to take a look at a recent post. For this , I had to go to the second page of the list. In both, the lis t of Top Participants looked its normal: I opnened the wrong message on page 2, and tried to go back to the

  • File Categorization in JDev 10g

    what ever happended to all the wonderfull categories, like ejb, deployment etc. all this stuff has been placed under resources. Plus how about a directory view in the database category, once we manage to put it back inside the IDE. One more thing WYS

  • Impplementation of Materialized view

    Hi, Does anybody has a complete steps to create a materialized view? 1. I have created a MV with some columns, and dann???? Regards Mehdi

  • What does "no associated application can be found" mean?

    what does "no associated application can be found" mean? I get this message when i click on a link in my email. Thanks RB