Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PPTP/L2TP on interfaces

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    150 Posts 16 Posters 90.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      gnhb
      last edited by

      Ozzik,
      See this thread about DHCP client issues: http://forum.pfsense.org/index.php/topic,34791.0.html

      Once that is worked out you might not have any problem with the PPTP/L2TP link.

      GB

      1 Reply Last reply Reply Quote 0
      • R
        roi
        last edited by

        After two days this is what I came up with:

        Intel P4 2.6Ghz
        Asus P4P800-ES Mainboard
        3Gb DDR 400 Ram
        Nvidia FX5200
        Nic's:
        1. On board: Marvell Yukon 8001
        2. 3Com Etherlink XL 3c905b
        3. Compaq NC3120 (Intel 82557 chipset)
        4. Realtek 8139D
        5. Davicom 9102
        Running : pfSense-2.0-RC1-i386-20110325-1028

        At the moment the Marvel is set to be WAN and is connected to a ADSL router feeding from another ISP.
        One of the Nic's will be connected directly to the Cable modem.
        Third will be LAN to a control desktop.

        Let the games begine…

        CIMG0001.JPG
        CIMG0001.JPG_thumb
        CIMG0002.JPG
        CIMG0002.JPG_thumb

        Version 2.0-BETA4 (i386)
        AMD Athlon™ XP 2000+

        1 Reply Last reply Reply Quote 0
        • O
          Ozzik
          last edited by

          Hi,
          sorry I couldn't do this earlier. But now I have some testing pc, so I can do this more comfortably.
          Regarding the dhcp. When I set the WAN to just DHCP - it works. No problem, I get the right IP (172.x.x.x).
          Only when I set it to "DHCP+" it starts to get flaky.
          this is the first part of the log, it's right after the reboot (after I reassigned the interfaces through the console, WAN is on DHCP now):

          Jan 1 00:28:50 apinger: Starting Alarm Pinger, apinger(39261)
          Jan 1 00:28:49 check_reload_status: reloading filter
          Jan 1 00:28:48 apinger: Exiting on signal 15.
          Jan 1 00:28:48 php: : ROUTING: change default route to 172.29.32.1
          Jan 1 00:28:48 php: /interfaces.php: ROUTING: change default route to 172.29.32.1
          Jan 1 00:28:48 php: : rc.newwanip: on (IP address: 172.29.32.147) (interface: wan) (real interface: fxp0).
          Jan 1 00:28:48 php: : rc.newwanip: Informational is starting fxp0.
          Jan 1 00:28:48 dhclient[28705]: bound to 172.29.32.147 – renewal in 1073741823 seconds.
          Jan 1 00:28:48 check_reload_status: rc.newwanip starting fxp0
          Jan 1 00:28:48 dhclient: Creating resolv.conf
          Jan 1 00:28:48 dhclient: /sbin/route add default 172.29.32.1
          Jan 1 00:28:48 dhclient: Adding new routes to interface: fxp0
          Jan 1 00:28:48 dhclient: New Routers (fxp0): 172.29.32.1
          Jan 1 00:28:48 dhclient: New Broadcast Address (fxp0): 255.255.255.255
          Jan 1 00:28:48 dhclient: New Subnet Mask (fxp0): 255.255.255.0
          Jan 1 00:28:48 dhclient: New IP Address (fxp0): 172.29.32.147
          Jan 1 00:28:48 dhclient: ifconfig fxp0 inet 172.29.32.147 netmask 255.255.255.0 broadcast 255.255.255.255
          Jan 1 00:28:48 dhclient: Starting add_new_address()
          Jan 1 00:28:48 dhclient: REBOOT
          Jan 1 00:28:48 dhclient[28705]: DHCPACK from 10.18.124.1
          Jan 1 00:28:48 dhclient[28705]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
          Jan 1 00:28:47 dhclient: PREINIT
          Jan 1 00:28:47 php: /interfaces.php: interfaces: bringing down interfaces dependent on: wan
          Jan 1 00:28:46 dhclient[8508]: exiting.
          Jan 1 00:28:46 dhclient[8508]: exiting.
          Jan 1 00:28:46 dhclient[8508]: connection closed
          Jan 1 00:28:46 dhclient[8508]: connection closed
          Jan 1 00:28:46 dhclient: FAIL
          Jan 1 00:28:44 check_reload_status: syncing firewall
          Jan 1 00:28:26 apinger: Error while feeding rrdtool: Broken pipe
          Jan 1 00:27:46 check_reload_status: reloading filter
          Jan 1 00:27:36 check_reload_status: reloading filter
          Jan 1 00:27:36 apinger: ALARM: WAN(172.29.32.1) *** down ***
          Jan 1 00:27:35 sshlockout[21056]: sshlockout/webConfigurator v3.0 starting up
          Jan 1 00:27:35 login: login on ttyv0 as root

          as you can see - the DHCP worked.
          now I check the DHCP+ option, apply, go to PPPs and create new pptp config(attach it to WAN, not physical interface). Then I assign the whole thing to WAN on the main "assign interfaces" menu, instead of the physical one.
          this is the log so far:

          Jan 1 00:30:54 apinger: /usr/local/bin/rrdtool respawning too fast, waiting 300s.
          Jan 1 00:29:54 apinger: Error while feeding rrdtool: Broken pipe
          Jan 1 00:29:38 php: /interfaces_assign.php: Creating rrd update script
          Jan 1 00:29:38 check_reload_status: syncing firewall
          Jan 1 00:29:38 dnsmasq[51042]: read /etc/hosts - 2 addresses
          Jan 1 00:29:38 check_reload_status: updating dyndns wan
          Jan 1 00:29:38 dnsmasq[51042]: using nameserver 192.168.101.101#53
          Jan 1 00:29:38 dnsmasq[51042]: using nameserver 192.168.101.102#53
          Jan 1 00:29:38 dnsmasq[51042]: reading /etc/resolv.conf
          Jan 1 00:29:38 dnsmasq[51042]: compile time options: IPv6 GNU-getopt no-DBus I18N DHCP TFTP
          Jan 1 00:29:38 dnsmasq[51042]: started, version 2.55 cachesize 10000
          Jan 1 00:29:37 dnsmasq[46762]: exiting on receipt of SIGTERM
          Jan 1 00:29:34 php: /interfaces_assign.php: wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
          Jan 1 00:29:34 php: /interfaces_assign.php: wan: pptp link configuration warning. No ip address configured on pptp0. Using 0.0.0.0 ip!
          Jan 1 00:29:34 php: /interfaces_assign.php: interfaces: bringing down interfaces dependent on: wan
          Jan 1 00:29:33 dhclient[29026]: exiting.
          Jan 1 00:29:33 dhclient[29026]: exiting.
          Jan 1 00:29:33 dhclient[29026]: connection closed
          Jan 1 00:29:33 dhclient[29026]: connection closed
          Jan 1 00:29:18 check_reload_status: syncing firewall
          Jan 1 00:29:14 check_reload_status: reloading filter
          Jan 1 00:29:04 apinger: ALARM: WAN(172.29.32.1) *** down ***
          Jan 1 00:28:54 php: /interfaces.php: Creating rrd update script
          Jan 1 00:28:54 apinger: Starting Alarm Pinger, apinger(48772)
          Jan 1 00:28:54 check_reload_status: reloading filter
          Jan 1 00:28:53 apinger: Exiting on signal 15.
          Jan 1 00:28:51 dnsmasq[46762]: read /etc/hosts - 2 addresses
          Jan 1 00:28:51 check_reload_status: updating dyndns wan
          Jan 1 00:28:51 dnsmasq[46762]: using nameserver 192.168.101.101#53
          Jan 1 00:28:51 dnsmasq[46762]: using nameserver 192.168.101.102#53
          Jan 1 00:28:51 dnsmasq[46762]: reading /etc/resolv.conf
          Jan 1 00:28:51 dnsmasq[46762]: compile time options: IPv6 GNU-getopt no-DBus I18N DHCP TFTP
          Jan 1 00:28:51 dnsmasq[46762]: started, version 2.55 cachesize 10000
          Jan 1 00:28:50 dnsmasq[45557]: exiting on receipt of SIGTERM
          Jan 1 00:28:50 dnsmasq[45557]: using nameserver 192.168.101.101#53
          Jan 1 00:28:50 dnsmasq[45557]: using nameserver 192.168.101.102#53
          Jan 1 00:28:50 dnsmasq[45557]: reading /etc/resolv.conf
          Jan 1 00:28:50 php: : interfaces: reloading interfaces dependent on: wan

          In addition, this is the error I get (overlayed by the main menu):
          warning: invalid argument supplied for foreach() in /etc/inc/interfaces.inc on line 3089

          Now I press "connect" button on the "interfaces_status" page:

          php: /status_interfaces.php: wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
          Jan 1 00:37:03 php: /status_interfaces.php: wan: pptp link configuration warning. No ip address configured on pptp0. Using 0.0.0.0 ip!
          Jan 1 00:37:03 php: /status_interfaces.php: wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
          Jan 1 00:37:03 php: /status_interfaces.php: wan: pptp link configuration warning. No ip address configured on pptp0. Using 0.0.0.0 ip!
          Jan 1 00:30:54

          that's that, nothing happens.
          this is my config - pretty much all defaults. I opened the firewall rules wide open just for the sake of the test.

          
           <pfsense><version>7.7</version>
          	 <lastchange><theme>pfsense_ng</theme>
          	 <sysctl><tunable>debug.pfftpproxy</tunable>
          			<value>default</value> 
          		 <tunable>vfs.read_max</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.ip.portrange.first</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.blackhole</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.udp.blackhole</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.ip.random_id</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.drop_synfin</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.ip.redirect</tunable>
          			<value>default</value> 
          		 <tunable>net.inet6.ip6.redirect</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.syncookies</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.recvspace</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.sendspace</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.ip.fastforwarding</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.delayed_ack</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.udp.maxdgram</tunable>
          			<value>default</value> 
          		 <tunable>net.link.bridge.pfil_onlyip</tunable>
          			<value>default</value> 
          		 <tunable>net.link.bridge.pfil_member</tunable>
          			<value>default</value> 
          		 <tunable>net.link.bridge.pfil_bridge</tunable>
          			<value>default</value> 
          		 <tunable>net.link.tap.user_open</tunable>
          			<value>default</value> 
          		 <tunable>kern.rndtest.verbose</tunable>
          			<value>default</value> 
          		 <tunable>kern.randompid</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.ip.intr_queue_maxlen</tunable>
          			<value>default</value> 
          		 <tunable>hw.syscons.kbd_reboot</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.inflight.enable</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.log_debug</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.icmp.icmplim</tunable>
          			<value>default</value> 
          		 <tunable>net.inet.tcp.tso</tunable>
          			<value>default</value> 
          		 <tunable>kern.ipc.maxsockbuf</tunable>
          			<value>default</value></sysctl> 
          	 <system><optimization>normal</optimization>
          		<hostname>pfsense</hostname>
          		<domain>localdomain</domain>
          		 <group><name>all</name>
          
          			<scope>system</scope>
          			<gid>1998</gid>
          			<member>0</member></group> 
          		 <group><name>admins</name>
          
          			<scope>system</scope>
          			<gid>1999</gid>
          			<member>0</member>
          			<priv>page-all</priv></group> 
          		 <user><name>admin</name>
          
          			<scope>system</scope>
          			<groupname>admins</groupname>
          			<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
          			<uid>0</uid>
          			<priv>user-shell-access</priv></user> 
          		<nextuid>2000</nextuid>
          		<nextgid>2000</nextgid>
          		<timezone>Etc/UTC</timezone>
          		 <time-update-interval><timeservers>0.pfsense.pool.ntp.org</timeservers>
          		 <webgui><protocol>https</protocol>
          			<ssl-certref>4d89fa96059f9</ssl-certref></webgui> 
          		<disablenatreflection>yes</disablenatreflection>
          		 <disablesegmentationoffloading><disablelargereceiveoffloading><dns1gwint>wan</dns1gwint>
          		<dns2gwint>none</dns2gwint>
          		<dns3gwint>none</dns3gwint>
          		<dns4gwint>none</dns4gwint>
          		 <dnsallowoverride></dnsallowoverride></disablelargereceiveoffloading></disablesegmentationoffloading></time-update-interval></system> 
          	 <interfaces><wan><enable><if>pptp0</if>
          			 <blockbogons><media><mediaopt><alias-address><alias-subnet>32</alias-subnet>
          			 <spoofmac><ipaddr>pptp</ipaddr>
          			 <dhcphostname></dhcphostname></spoofmac></alias-address></mediaopt></media></blockbogons></enable></wan> 
          		 <lan><if>re0</if>
          			<ipaddr>192.168.0.238</ipaddr>
          			<subnet>24</subnet>
          			 <enable></enable></lan></interfaces> 
          	 <staticroutes><dhcpd><pptpd><mode><redir><localip></localip></redir></mode></pptpd> 
          	 <dnsmasq><enable></enable></dnsmasq> 
          	 <snmpd><syslocation><syscontact><rocommunity>public</rocommunity></syscontact></syslocation></snmpd> 
          	 <diag><ipv6nat><ipaddr></ipaddr></ipv6nat></diag> 
          	 <bridge><syslog><reverse><nentries>200</nentries></reverse></syslog> 
          	 <filter><rule><id><type>pass</type>
          			<interface>wan</interface>
          			 <tag><tagged><max><max-src-nodes><max-src-conn><max-src-states><statetimeout><statetype>keep state</statetype>
          
          			<source>
          				 <any><destination><any></any></destination></any></statetimeout></max-src-states></max-src-conn></max-src-nodes></max></tagged></tag></id></rule> 
          		 <rule><type>pass</type>
          
          			<interface>lan</interface>
          			<source>
          				<network>lan</network>
          
          			 <destination><any></any></destination></rule></filter> 
          	 <ipsec><preferoldsa></preferoldsa></ipsec> 
          	 <aliases><proxyarp><cron><minute>0</minute>
          			<hour>*</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 newsyslog 
          		 <minute>1,31</minute>
          			<hour>0-5</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 adjkerntz -a 
          		 <minute>1</minute>
          			<hour>3</hour>
          			<mday>1</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh 
          		 <minute>*/60</minute>
          			<hour>*</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout 
          		 <minute>1</minute>
          			<hour>1</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 /etc/rc.dyndns.update 
          		 <minute>*/60</minute>
          			<hour>*</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot 
          		 <minute>30</minute>
          			<hour>12</hour>
          			<mday>*</mday>
          			<month>*</month>
          			<wday>*</wday>
          			<who>root</who>
          			<command></command>/usr/bin/nice -n20 /etc/rc.update_urltables</cron> 
          	 <wol><rrd><enable></enable></rrd> 
          	 <load_balancer><monitor_type><name>ICMP</name>
          			<type>icmp</type></monitor_type> 
          		 <monitor_type><name>TCP</name>
          			<type>tcp</type></monitor_type> 
          		 <monitor_type><name>HTTP</name>
          			<type>http</type>
          
          			 <options><path>/</path>
          				 <host>`200`</host></options></monitor_type> 
          		 <monitor_type><name>HTTPS</name>
          			<type>https</type>
          
          			 <options><path>/</path>
          				 <host>`200`</host></options></monitor_type> 
          		 <monitor_type><name>SMTP</name>
          			<type>send</type>
          
          			 <options><send>EHLO nosuchhost</send>
          				<expect>250-</expect></options></monitor_type></load_balancer> 
          	 <widgets><sequence>system_information-container:col1:show,captive_portal_status-container:col1:close,carp_status-container:col1:close,cpu_graphs-container:col1:close,gateways-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,interface_statistics-container:col1:close,interfaces-container:col2:show,ipsec-container:col2:close,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,services_status-container:col2:close,traffic_graphs-container:col2:close</sequence></widgets> 
          	 <revision><time>1300973107</time>
          
          		<username>admin</username></revision> 
          	 <openvpn><l7shaper><container></container></l7shaper> 
          	 <shaper><dnshaper><cert><refid>4d89fa96059f9</refid>
          
          		<crt>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</crt>
          		<prv>R2VuZXJhdGluZyBSU0EgcHJpdmF0ZSBrZXksIDEwMjQgYml0IGxvbmcgbW9kdWx1cwouLi4uLi4uLi4rKysrKysKLi4uLi4uLi4uLi4uLi4uLi4uLi4uLi4uLi4uLisrKysrKwplIGlzIDY1NTM3ICgweDEwMDAxKQotLS0tLUJFR0lOIFJTQSBQUklWQVRFIEtFWS0tLS0tCk1JSUNYZ0lCQUFLQmdRRERZQyswWk0xQU8xUy9vT2J1RlB5RGI4a2tkcGRKTmVIME5nTlFhVm5PUi9wWDIwTTIKMHA5NFZhaElLY2J1M0ZxY1RmZm04S0FxbGlVaEtWaGc0MjZtNG5uTUtpejJSZks1Ylc3MWh6T3VzQ0lNWmd2bQpZMlNvNXBXUVVVcnlaYzljL0VQRURxcmU4TFBZUk9naytBald6RHhCMFVlOTlSZnBaMXJUZysrS3h3SURBUUFCCkFvR0JBSzEwaitYUU9JbDJJMStlTW1mZEtmSm5KR1REQkwxeW9SQjNnNm00WG9yTlRHMER0VURPN2RXZjlxOWEKcDhzWXh6bE4zM0dnNEJIdkN6Zk54VEQvdWhQU2lVNzdHUkwzeUJycC96alhEdUxCZm5qT3ZMZmlBK3BnbGNobAp1UVM5dEdnUXEzV1lNRmQxTmViZGdsK2ZNT1p1QUhJNW5Gc0dsSnhIYkY3R0FRMkJBa0VBNHAwSnducURnQTVaCnFQL2Z4eWNObEJZbzdoTVRBVlFBRUNJRDhBUXc1MTlHVitpR0k1UEtSMVUrWmc5NTVYSzFZZlZ6ckZ4NjlLQlQKSllTeGpFc0hxUUpCQU55Mkk4ZktDanFxOUFQUlBkbGJ2M3YrSGFFUFNkNE5wZmVBa1VyWlBlMUdBQ20xYmJPNwpVYjM0N2VqeFkrM2ZOcVVRTmdxcXdlRlJZa0EvNmFPV3hPOENRQVZoWFIzMDhySlRwT1ZTVGVuWWo0WDRrTGcyClU3a3dXV0FJcnJkQUlqa2NGZnQ0VmRiNlowOFNRdzBCU1ErZGpaanB6dmxFcU5hdUI4dFlQeTdwaVNFQ1FRQ2sKKzIzaG9YQm1ESFlkQ0dNZ1FFbnh5TEdqUEVkdU9tdU9pRWVUV0xMRzA2VzVoOG82S05MZ205eFRYV1hpWVJGNgo3NVJHQXdDc2llWlV1ckhPUEJ4M0FrRUFsVWVZY3ZZQnB4RUphRlBOYjFMN3JVV0NLRkovOTgwSUdieVB5SXYwCjE2TzJuS2orU3JjekwzeDl4a3dOdEFBT1RtUDgvaWhrRjVjRFFzU0RxL081Z3c9PQotLS0tLUVORCBSU0EgUFJJVkFURSBLRVktLS0tLQo=</prv></cert> 
          	 <ppps><ppp><ptpid>0</ptpid>
          			<type>pptp</type>
          			<if>pptp0</if>
          			<ports>wan</ports>
          			<username>blahblah</username>
          			<password>blah</password>
          			 <localip><subnet>31</subnet>
          			<gateway>gch.bezeqint.net</gateway>
          			 <bandwidth></bandwidth></localip></ppp></ppps> 
          	 <gateways></gateways></dnshaper></shaper></openvpn></wol></proxyarp></aliases></bridge></dhcpd></staticroutes></lastchange></pfsense> 
          
          
          1 Reply Last reply Reply Quote 0
          • L
            Loke
            last edited by

            ermal, thank you! now it works without local ip.

            roi, how all this related to the topic???

            You need to be a master of tough voodoo to be a guru.

            1 Reply Last reply Reply Quote 0
            • L
              Loke
              last edited by

              @gnhb:

              I just merged Ermal's changes into my repository and added some minor changes to bringing L2TP/PPTP interfaces up and down manually from Status=>Interfaces page.

              Is anyone testing ???
              Post feedback!

              Thanks,
              GB

              Don't get it… Isn't Connnect/Disconnect button was there before? And this is a rhetoric question. ;D

              You need to be a master of tough voodoo to be a guru.

              1 Reply Last reply Reply Quote 0
              • M
                Micky
                last edited by

                @Ozzik

                I didn't find the opt1 interface in your config, as far as i remember you should assign the physical interface to optx (and set it to DHCP), then create a ppp interface (l2tp) and use the opt1 as its link and only then assign the ppp to wan.
                So there should be an additional OPTx interface.

                @Loke

                No, there was no connect/disconnect button at the interface status page for l2tp.

                1 Reply Last reply Reply Quote 0
                • O
                  Ozzik
                  last edited by

                  @Micky:
                  OK, I'll try that. Did you get it working with the new snapshots?

                  1 Reply Last reply Reply Quote 0
                  • O
                    Ozzik
                    last edited by

                    ok, time for an update.
                    so, of course, Mickey was right and I should've read the instructions more carefully.
                    What happens now is that PPTP connects for less than a minute (I can access the web and everything's fine), but then it disconnects. Tried it several times.

                    L2TP wouldn't connect at all.
                    Another weird thing is that after several connects/disconnects I have to actually reset the modem if I want to renew the dhcp - otherwise it wouldn't give me an IP.

                    Here is the system log: (real IP changed to 62.x.x.x)
                    Mar 29 11:53:52 php: : Could not find gateway for interface(wan).
                    Mar 29 11:53:52 check_reload_status: reloading filter
                    Mar 29 11:53:42 apinger: ALARM: WAN(212.25.68.21) *** down ***
                    Mar 29 11:53:32 check_reload_status: Rewriting resolv.conf
                    Mar 29 11:52:56 check_reload_status: reloading filter
                    Mar 29 11:52:46 apinger: ALARM: OPT1(172.29.32.1) *** down ***
                    Mar 29 11:52:41 php: : Resyncing OpenVPN instances for interface WAN.
                    Mar 29 11:52:35 apinger: Starting Alarm Pinger, apinger(2883)
                    Mar 29 11:52:35 check_reload_status: reloading filter
                    Mar 29 11:52:34 apinger: Exiting on signal 15.
                    Mar 29 11:52:34 php: : ROUTING: change default route to 212.25.68.21
                    Mar 29 11:52:34 php: : rc.newwanip: on (IP address: 62.x.x.x) (interface: wan) (real interface: pptp0).
                    Mar 29 11:52:34 php: : rc.newwanip: Informational is starting pptp0.
                    Mar 29 11:52:34 check_reload_status: rc.newwanip starting pptp0
                    Mar 29 11:52:32 check_reload_status: Rewriting resolv.conf
                    Mar 29 11:52:32 kernel: ng0: changing name to 'pptp0'
                    Mar 29 11:52:29 check_reload_status: Rewriting resolv.conf
                    Mar 29 11:52:29 check_reload_status: configuring interface wan
                    Mar 29 11:52:29 php: : rc.newwanip: Failed to update wan IP, restarting…
                    Mar 29 11:52:29 php: : rc.newwanip: on (IP address: ) (interface: wan) (real interface: pptp0).
                    Mar 29 11:52:29 php: : rc.newwanip: Informational is starting pptp0.
                    Mar 29 11:52:29 check_reload_status: rc.newwanip starting pptp0
                    Mar 29 11:52:28 php: /status_interfaces.php: wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
                    Mar 29 11:52:28 check_reload_status: Rewriting resolv.conf
                    Mar 29 11:52:27 kernel: ng0: changing name to 'pptp0'
                    Mar 29 11:52:27 php: : The command 'route -q delete -host 212.25.127.2' returned exit code '1', the output was 'route: writing to routing socket: No such process'
                    Mar 29 11:52:27 check_reload_status: configuring interface wan
                    Mar 29 11:52:27 apinger: Starting Alarm Pinger, apinger(19883)
                    Mar 29 11:52:27 php: : interfaces: reloading interfaces dependent on: opt1
                    Mar 29 11:52:26 check_reload_status: reloading filter
                    Mar 29 11:52:25 apinger: Exiting on signal 15.
                    Mar 29 11:52:25 php: : rc.newwanip: on (IP address: 172.29.32.147) (interface: opt1) (real interface: fxp0).
                    Mar 29 11:52:25 php: : rc.newwanip: Informational is starting fxp0.
                    Mar 29 11:52:25 dhclient[3751]: bound to 172.29.32.147 – renewal in 846084102 seconds.
                    Mar 29 11:52:25 check_reload_status: rc.newwanip starting fxp0
                    Mar 29 11:52:25 dhclient: Creating resolv.conf
                    Mar 29 11:52:25 dhclient: Adding new routes to interface: fxp0
                    Mar 29 11:52:25 dhclient: New Routers (fxp0): 172.29.32.1
                    Mar 29 11:52:25 dhclient: New Broadcast Address (fxp0): 255.255.255.255
                    Mar 29 11:52:25 dhclient: New Subnet Mask (fxp0): 255.255.255.0
                    Mar 29 11:52:25 dhclient: New IP Address (fxp0): 172.29.32.147
                    Mar 29 11:52:25 dhclient: ifconfig fxp0 inet 172.29.32.147 netmask 255.255.255.0 broadcast 255.255.255.255
                    Mar 29 11:52:25 dhclient: Starting add_new_address()
                    Mar 29 11:52:25 dhclient: REBOOT
                    Mar 29 11:52:25 dhclient[3751]: DHCPACK from 10.18.124.1
                    Mar 29 11:52:25 dhclient[3751]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:52:25 dhclient: PREINIT
                    Mar 29 11:52:25 php: /status_interfaces.php: interfaces: bringing down interfaces dependent on: opt1
                    Mar 29 11:52:24 php: : wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
                    Mar 29 11:52:24 php: : Resyncing OpenVPN instances for interface OPT1.
                    Mar 29 11:52:22 php: /status_interfaces.php: interfaces: bringing down interfaces dependent on: opt1
                    Mar 29 11:52:21 dhclient[46225]: exiting.
                    Mar 29 11:52:21 dhclient[46225]: exiting.
                    Mar 29 11:52:21 dhclient[46225]: connection closed
                    Mar 29 11:52:21 dhclient[46225]: connection closed
                    Mar 29 11:52:18 check_reload_status: configuring interface wan
                    Mar 29 11:52:18 php: : interfaces: reloading interfaces dependent on: opt1
                    Mar 29 11:52:18 apinger: Starting Alarm Pinger, apinger(44328)
                    Mar 29 11:52:18 check_reload_status: reloading filter
                    Mar 29 11:52:17 apinger: Exiting on signal 15.
                    Mar 29 11:52:17 php: : rc.newwanip: on (IP address: 172.29.32.147) (interface: opt1) (real interface: fxp0).
                    Mar 29 11:52:17 php: : rc.newwanip: Informational is starting fxp0.
                    Mar 29 11:52:17 dhclient[50560]: bound to 172.29.32.147 – renewal in 846084111 seconds.
                    Mar 29 11:52:17 check_reload_status: rc.newwanip starting fxp0
                    Mar 29 11:52:17 dhclient: Creating resolv.conf
                    Mar 29 11:52:16 dhclient: Adding new routes to interface: fxp0
                    Mar 29 11:52:16 dhclient: New Routers (fxp0): 172.29.32.1
                    Mar 29 11:52:16 dhclient: New Broadcast Address (fxp0): 255.255.255.255
                    Mar 29 11:52:16 dhclient: New Subnet Mask (fxp0): 255.255.255.0
                    Mar 29 11:52:16 dhclient: New IP Address (fxp0): 172.29.32.147
                    Mar 29 11:52:16 dhclient: ifconfig fxp0 inet 172.29.32.147 netmask 255.255.255.0 broadcast 255.255.255.255
                    Mar 29 11:52:16 dhclient: Starting add_new_address()
                    Mar 29 11:52:16 dhclient: Deleting old routes
                    Mar 29 11:52:16 dhclient: BOUND
                    Mar 29 11:52:16 dhclient[50560]: DHCPACK from 10.18.124.1
                    Mar 29 11:52:16 dhclient[50560]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:52:16 dhclient: ARPCHECK
                    Mar 29 11:52:14 login: login on ttyv0 as root
                    Mar 29 11:52:14 dhclient: ARPSEND
                    Mar 29 11:52:14 dhclient[50560]: DHCPOFFER from 10.18.124.1
                    Mar 29 11:52:14 dhclient[50560]: DHCPDISCOVER on fxp0 to 255.255.255.255 port 67 interval 1
                    Mar 29 11:52:14 dhclient: PREINIT
                    Mar 29 11:52:14 dhclient: Deleting old routes
                    Mar 29 11:52:14 dhclient: EXPIRE
                    Mar 29 11:52:00 dhclient[50560]: DHCPREQUEST on fxp0 to 192.168.100.1 port 67
                    Mar 29 11:51:49 dhclient[50560]: DHCPREQUEST on fxp0 to 192.168.100.1 port 67
                    Mar 29 11:51:45 dhclient[50560]: DHCPREQUEST on fxp0 to 192.168.100.1 port 67
                    Mar 29 11:51:43 dhclient[50560]: DHCPREQUEST on fxp0 to 192.168.100.1 port 67
                    Mar 29 11:51:20 php: : Resyncing OpenVPN instances for interface OPT1.
                    Mar 29 11:51:15 php: : wan: pptp link configuration failed. No ip address found for gch.bezeqint.net.
                    Mar 29 11:51:15 check_reload_status: configuring interface wan
                    Mar 29 11:51:14 php: : interfaces: reloading interfaces dependent on: opt1
                    Mar 29 11:51:14 apinger: Starting Alarm Pinger, apinger(54645)
                    Mar 29 11:51:14 check_reload_status: reloading filter
                    Mar 29 11:51:13 php: : rc.newwanip: on (IP address: 192.168.100.10) (interface: opt1) (real interface: fxp0).
                    Mar 29 11:51:13 php: : rc.newwanip: Informational is starting fxp0.
                    Mar 29 11:51:13 dhclient[46021]: bound to 192.168.100.10 – renewal in 30 seconds.
                    Mar 29 11:51:13 check_reload_status: rc.newwanip starting fxp0
                    Mar 29 11:51:13 dhclient: Creating resolv.conf
                    Mar 29 11:51:13 dhclient: Adding new routes to interface: fxp0
                    Mar 29 11:51:13 dhclient: New Routers (fxp0): 192.168.100.1
                    Mar 29 11:51:13 dhclient: New Broadcast Address (fxp0): 192.168.100.255
                    Mar 29 11:51:13 dhclient: New Subnet Mask (fxp0): 255.255.255.0
                    Mar 29 11:51:13 dhclient: New IP Address (fxp0): 192.168.100.10
                    Mar 29 11:51:13 dhclient: ifconfig fxp0 inet 192.168.100.10 netmask 255.255.255.0 broadcast 192.168.100.255
                    Mar 29 11:51:13 dhclient: Starting add_new_address()
                    Mar 29 11:51:13 dhclient: BOUND
                    Mar 29 11:51:13 dhclient[46021]: DHCPACK from 192.168.100.1
                    Mar 29 11:51:12 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:12 dhclient: ARPCHECK
                    Mar 29 11:51:10 dhclient: ARPSEND
                    Mar 29 11:51:10 dhclient[46021]: DHCPOFFER from 192.168.100.1
                    Mar 29 11:51:10 dhclient[46021]: DHCPDISCOVER on fxp0 to 255.255.255.255 port 67 interval 1
                    Mar 29 11:51:10 dhclient[46021]: DHCPNAK from 192.168.100.1
                    Mar 29 11:51:09 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:07 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:06 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:05 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:04 dhclient[46021]: DHCPREQUEST on fxp0 to 255.255.255.255 port 67
                    Mar 29 11:51:04 dhclient: PREINIT
                    Mar 29 11:51:04 php: : interfaces: bringing down interfaces dependent on: opt1
                    Mar 29 11:51:02 php: : HOTPLUG: Configuring interface opt1
                    Mar 29 11:51:02 php: : DEVD Ethernet attached event for opt1
                    Mar 29 11:51:02 kernel: fxp0: link state changed to UP
                    Mar 29 11:51:02 check_reload_status: Linkup starting fxp0
                    Mar 29 11:50:35 php: : interfaces: bringing down interfaces dependent on: opt1
                    Mar 29 11:50:33 dhclient[39444]: exiting.
                    Mar 29 11:50:33 dhclient[39444]: exiting.
                    Mar 29 11:50:33 dhclient[39444]: connection closed
                    Mar 29 11:50:33 dhclient[39444]: connection closed
                    Mar 29 11:50:33 php: : DEVD Ethernet detached event for opt1
                    Mar 29 11:50:33 kernel: fxp0: link state changed to DOWN
                    Mar 29 11:50:33 check_reload_status: Linkup starting fxp0

                    and this is the PPP tab log:
                    Mar 29 12:00:27 ppp: [wan] IFACE: Up event
                    Mar 29 12:00:25 ppp: [wan] 62.x.x.x -> 212.25.68.21
                    Mar 29 12:00:25 ppp: [wan] IPCP: LayerUp
                    Mar 29 12:00:25 ppp: [wan] IPCP: state change Ack-Sent –> Opened
                    Mar 29 12:00:25 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 12:00:25 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 12:00:25 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 12:00:25 ppp: [wan] IPCP: rec'd Configure Ack #23 (Ack-Sent)
                    Mar 29 12:00:25 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 12:00:25 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 12:00:25 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 12:00:25 ppp: [wan] IPCP: SendConfigReq #23
                    Mar 29 12:00:25 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 12:00:25 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 12:00:25 ppp: [wan] 62.x.x.x is OK
                    Mar 29 12:00:25 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 12:00:25 ppp: [wan] IPCP: rec'd Configure Nak #22 (Ack-Sent)
                    Mar 29 12:00:25 ppp: [wan] SECDNS 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] PRIDNS 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] IPADDR 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] IPCP: SendConfigReq #22
                    Mar 29 12:00:25 ppp: [wan] COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
                    Mar 29 12:00:25 ppp: [wan] IPCP: rec'd Configure Reject #21 (Ack-Sent)
                    Mar 29 12:00:25 ppp: [wan] IPCP: state change Req-Sent –> Ack-Sent
                    Mar 29 12:00:25 ppp: [wan] IPADDR 212.25.68.21
                    Mar 29 12:00:25 ppp: [wan] IPCP: SendConfigAck #1
                    Mar 29 12:00:25 ppp: [wan] 212.25.68.21 is OK
                    Mar 29 12:00:25 ppp: [wan] IPADDR 212.25.68.21
                    Mar 29 12:00:25 ppp: [wan] IPCP: rec'd Configure Request #1 (Req-Sent)
                    Mar 29 12:00:25 ppp: [wan] SECDNS 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] PRIDNS 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
                    Mar 29 12:00:25 ppp: [wan] IPADDR 0.0.0.0
                    Mar 29 12:00:25 ppp: [wan] IPCP: SendConfigReq #21
                    Mar 29 12:00:25 ppp: [wan] IPCP: state change Starting –> Req-Sent
                    Mar 29 12:00:25 ppp: [wan] IPCP: Up event
                    Mar 29 12:00:25 ppp: [wan] IPCP: LayerStart
                    Mar 29 12:00:25 ppp: [wan] IPCP: state change Initial –> Starting
                    Mar 29 12:00:25 ppp: [wan] IPCP: Open event
                    Mar 29 12:00:25 ppp: [wan] Bundle: Status update: up 1 link, total bandwidth 64000 bps
                    Mar 29 12:00:25 ppp: [wan_link0] Link: Join bundle "wan"
                    Mar 29 12:00:25 ppp: [wan_link0] Link: Matched action 'bundle "wan" ""'
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: authorization successful
                    Mar 29 12:00:25 ppp: [wan_link0] PAP: rec'd ACK #1 len: 5
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: LayerUp
                    Mar 29 12:00:25 ppp: [wan_link0] PAP: sending REQUEST #1 len: 22
                    Mar 29 12:00:25 ppp: [wan_link0] PAP: using authname "citynet2"
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: auth: peer wants PAP, I want nothing
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: state change Ack-Sent –> Opened
                    Mar 29 12:00:25 ppp: [wan_link0] MAGICNUM 2e3e1d30
                    Mar 29 12:00:25 ppp: [wan_link0] MRU 1500
                    Mar 29 12:00:25 ppp: [wan_link0] ACCMAP 0x000a0000
                    Mar 29 12:00:25 ppp: [wan_link0] PROTOCOMP
                    Mar 29 12:00:25 ppp: [wan_link0] ACFCOMP
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: rec'd Configure Ack #9 (Ack-Sent)
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: state change Req-Sent –> Ack-Sent
                    Mar 29 12:00:25 ppp: [wan_link0] MAGICNUM 63ec68af
                    Mar 29 12:00:25 ppp: [wan_link0] AUTHPROTO PAP
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: SendConfigAck #1
                    Mar 29 12:00:25 ppp: [wan_link0] MAGICNUM 63ec68af
                    Mar 29 12:00:25 ppp: [wan_link0] AUTHPROTO PAP
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: rec'd Configure Request #1 (Req-Sent)
                    Mar 29 12:00:25 ppp: [wan_link0] MAGICNUM 2e3e1d30
                    Mar 29 12:00:25 ppp: [wan_link0] MRU 1500
                    Mar 29 12:00:25 ppp: [wan_link0] ACCMAP 0x000a0000
                    Mar 29 12:00:25 ppp: [wan_link0] PROTOCOMP
                    Mar 29 12:00:25 ppp: [wan_link0] ACFCOMP
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: SendConfigReq #9
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: state change Starting –> Req-Sent
                    Mar 29 12:00:25 ppp: [wan_link0] LCP: Up event
                    Mar 29 12:00:25 ppp: [wan_link0] Link: UP event
                    Mar 29 12:00:25 ppp: [wan_link0] PPTP call successful
                    Mar 29 12:00:25 ppp: [wan_link0] Link: reconnection attempt 2
                    Mar 29 12:00:24 ppp: [wan_link0] Link: reconnection attempt 2 in 1 seconds
                    Mar 29 12:00:24 ppp: [wan_link0] LCP: Down event
                    Mar 29 12:00:24 ppp: [wan_link0] Link: DOWN event
                    Mar 29 12:00:24 ppp: [wan_link0] PPTP call failed
                    Mar 29 11:59:24 ppp: [wan_link0] Link: reconnection attempt 1
                    Mar 29 11:59:20 ppp: [wan_link0] Link: reconnection attempt 1 in 4 seconds
                    Mar 29 11:59:20 ppp: [wan_link0] LCP: LayerDown
                    Mar 29 11:59:20 ppp: [wan] IPCP: state change Closing –> Initial
                    Mar 29 11:59:20 ppp: [wan] Bundle: No NCPs left. Closing links…
                    Mar 29 11:59:20 ppp: [wan] IPCP: LayerFinish
                    Mar 29 11:59:20 ppp: [wan] IPCP: Down event
                    Mar 29 11:59:20 ppp: [wan] IFACE: Down event
                    Mar 29 11:59:20 ppp: [wan] IPCP: LayerDown
                    Mar 29 11:59:20 ppp: [wan] IPCP: SendTerminateReq #20
                    Mar 29 11:59:20 ppp: [wan] IPCP: state change Opened –> Closing
                    Mar 29 11:59:20 ppp: [wan] IPCP: Close event
                    Mar 29 11:59:20 ppp: [wan] Bundle: Status update: up 0 links, total bandwidth 9600 bps
                    Mar 29 11:59:20 ppp: [wan_link0] Link: Leave bundle "wan"
                    Mar 29 11:59:20 ppp: [wan_link0] LCP: state change Opened –> Starting
                    Mar 29 11:59:20 ppp: [wan_link0] LCP: Down event
                    Mar 29 11:59:20 ppp: [wan_link0] Link: DOWN event
                    Mar 29 11:59:20 ppp: [wan_link0] PPTP call terminated
                    Mar 29 11:58:22 ppp: [wan] IFACE: Up event
                    Mar 29 11:58:20 ppp: [wan] 62.x.x.x -> 212.25.68.21
                    Mar 29 11:58:20 ppp: [wan] IPCP: LayerUp
                    Mar 29 11:58:20 ppp: [wan] IPCP: state change Ack-Sent –> Opened
                    Mar 29 11:58:20 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 11:58:20 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 11:58:20 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 11:58:20 ppp: [wan] IPCP: rec'd Configure Ack #19 (Ack-Sent)
                    Mar 29 11:58:20 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 11:58:20 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 11:58:20 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 11:58:20 ppp: [wan] IPCP: SendConfigReq #19
                    Mar 29 11:58:20 ppp: [wan] SECDNS 192.115.106.35
                    Mar 29 11:58:20 ppp: [wan] PRIDNS 62.219.186.7
                    Mar 29 11:58:20 ppp: [wan] 62.x.x.x is OK
                    Mar 29 11:58:20 ppp: [wan] IPADDR 62.x.x.x
                    Mar 29 11:58:20 ppp: [wan] IPCP: rec'd Configure Nak #18 (Ack-Sent)
                    Mar 29 11:58:20 ppp: [wan] SECDNS 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] PRIDNS 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] IPADDR 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] IPCP: SendConfigReq #18
                    Mar 29 11:58:20 ppp: [wan] COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
                    Mar 29 11:58:20 ppp: [wan] IPCP: rec'd Configure Reject #17 (Ack-Sent)
                    Mar 29 11:58:20 ppp: [wan] IPCP: state change Req-Sent –> Ack-Sent
                    Mar 29 11:58:20 ppp: [wan] IPADDR 212.25.68.21
                    Mar 29 11:58:20 ppp: [wan] IPCP: SendConfigAck #1
                    Mar 29 11:58:20 ppp: [wan] 212.25.68.21 is OK
                    Mar 29 11:58:20 ppp: [wan] IPADDR 212.25.68.21
                    Mar 29 11:58:20 ppp: [wan] IPCP: rec'd Configure Request #1 (Req-Sent)
                    Mar 29 11:58:20 ppp: [wan] SECDNS 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] PRIDNS 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] COMPPROTO VJCOMP, 16 comp. channels, no comp-cid
                    Mar 29 11:58:20 ppp: [wan] IPADDR 0.0.0.0
                    Mar 29 11:58:20 ppp: [wan] IPCP: SendConfigReq #17
                    Mar 29 11:58:20 ppp: [wan] IPCP: state change Starting –> Req-Sent
                    Mar 29 11:58:20 ppp: [wan] IPCP: Up event
                    Mar 29 11:58:20 ppp: [wan] IPCP: LayerStart
                    Mar 29 11:58:20 ppp: [wan] IPCP: state change Initial –> Starting
                    Mar 29 11:58:20 ppp: [wan] IPCP: Open event
                    Mar 29 11:58:20 ppp: [wan] Bundle: Status update: up 1 link, total bandwidth 64000 bps
                    Mar 29 11:58:20 ppp: [wan_link0] Link: Join bundle "wan"
                    Mar 29 11:58:20 ppp: [wan_link0] Link: Matched action 'bundle "wan" ""'
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: authorization successful
                    Mar 29 11:58:20 ppp: [wan_link0] PAP: rec'd ACK #1 len: 5
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: LayerUp
                    Mar 29 11:58:20 ppp: [wan_link0] PAP: sending REQUEST #1 len: 22
                    Mar 29 11:58:20 ppp: [wan_link0] PAP: using authname "citynet2"
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: auth: peer wants PAP, I want nothing
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: state change Ack-Sent –> Opened
                    Mar 29 11:58:20 ppp: [wan_link0] MAGICNUM 458ad0c2
                    Mar 29 11:58:20 ppp: [wan_link0] MRU 1500
                    Mar 29 11:58:20 ppp: [wan_link0] ACCMAP 0x000a0000
                    Mar 29 11:58:20 ppp: [wan_link0] PROTOCOMP
                    Mar 29 11:58:20 ppp: [wan_link0] ACFCOMP
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: rec'd Configure Ack #8 (Ack-Sent)
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: state change Req-Sent –> Ack-Sent
                    Mar 29 11:58:20 ppp: [wan_link0] MAGICNUM 63ea7ff9
                    Mar 29 11:58:20 ppp: [wan_link0] AUTHPROTO PAP
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: SendConfigAck #1
                    Mar 29 11:58:20 ppp: [wan_link0] MAGICNUM 63ea7ff9
                    Mar 29 11:58:20 ppp: [wan_link0] AUTHPROTO PAP
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: rec'd Configure Request #1 (Req-Sent)
                    Mar 29 11:58:20 ppp: [wan_link0] MAGICNUM 458ad0c2
                    Mar 29 11:58:20 ppp: [wan_link0] MRU 1500
                    Mar 29 11:58:20 ppp: [wan_link0] ACCMAP 0x000a0000
                    Mar 29 11:58:20 ppp: [wan_link0] PROTOCOMP
                    Mar 29 11:58:20 ppp: [wan_link0] ACFCOMP
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: SendConfigReq #8
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: state change Starting –> Req-Sent
                    Mar 29 11:58:20 ppp: [wan_link0] LCP: Up event
                    Mar 29 11:58:20 ppp: [wan_link0] Link: UP event
                    Mar 29 11:58:20 ppp: [wan_link0] PPTP call successful
                    Mar 29 11:58:20 ppp: [wan_link0] Link: reconnection attempt 2
                    Mar 29 11:58:16 ppp: [wan_link0] Link: reconnection attempt 2 in 4 seconds
                    Mar 29 11:58:16 ppp: [wan_link0] LCP: Down event
                    Mar 29 11:58:16 ppp: [wan_link0] Link: DOWN event
                    Mar 29 11:58:16 ppp: [wan_link0] PPTP call failed
                    Mar 29 11:56:46 ppp: [wan_link0] Link: reconnection attempt 1
                    Mar 29 11:56:45 ppp: [wan_link0] Link: reconnection attempt 1 in 1 seconds
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: state change Stopping –> Starting
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: Down event
                    Mar 29 11:56:45 ppp: [wan_link0] Link: DOWN event
                    Mar 29 11:56:45 ppp: [wan_link0] PPTP call terminated
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: LayerDown
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: SendTerminateReq #7
                    Mar 29 11:56:45 ppp: [wan] IPCP: state change Closing –> Initial
                    Mar 29 11:56:45 ppp: [wan] Bundle: No NCPs left. Closing links…
                    Mar 29 11:56:45 ppp: [wan] IPCP: LayerFinish
                    Mar 29 11:56:45 ppp: [wan] IPCP: Down event
                    Mar 29 11:56:45 ppp: [wan] IFACE: Down event
                    Mar 29 11:56:45 ppp: [wan] IPCP: LayerDown
                    Mar 29 11:56:45 ppp: [wan] IPCP: SendTerminateReq #16
                    Mar 29 11:56:45 ppp: [wan] IPCP: state change Opened –> Closing
                    Mar 29 11:56:45 ppp: [wan] IPCP: Close event
                    Mar 29 11:56:45 ppp: [wan] Bundle: Status update: up 0 links, total bandwidth 9600 bps
                    Mar 29 11:56:45 ppp: [wan_link0] Link: Leave bundle "wan"
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: state change Opened –> Stopping
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: received an invalid magic number
                    Mar 29 11:56:45 ppp: [wan_link0] LCP: magic number is wrong: 0x63e724a8 != 0x63e820b3
                    Mar 29 11:56:36 ppp: [wan_link0] LCP: no reply to 2 echo request(s)
                    Mar 29 11:56:26 ppp: [wan_link0] LCP: no reply to 1 echo request(s)
                    Mar 29 11:55:46 ppp: [wan] IFACE: Up event
                    Mar 29 11:55:45 ppp: [wan] 62.x.x.x -> 212.25.68.21
                    Mar 29 11:55:45 ppp: [wan] IPCP: LayerUp
                    Mar 29 11:55:45 ppp: [wan] IPCP: state change Ack-Sent –> Opened

                    any ideas?

                    1 Reply Last reply Reply Quote 0
                    • M
                      Micky
                      last edited by

                      Ozzik, when trying l2tp have you tried hot.bezeqint.net.il, or 212.25.127.15 as the host address?
                      (i dont think it's gch.bezeqint.net.il)

                      And i didn't tested it yet, i no longer have the atom board i used, and I'm having trouble to set the host-only interface in vmware, so I'll try
                      to test it when i resolve it.

                      1 Reply Last reply Reply Quote 0
                      • O
                        Ozzik
                        last edited by

                        @Micky, you're right as always:)
                        Thank you!
                        only the hostname is hot.bezeqint.net (without the .il)
                        with this hostname (or the IP) l2tp is up and running.
                        But I believe this ISP server is l2tp only. You have to use the gch.bezeqint.net if you want PPTP.
                        And that continues to disconnect.

                        Anyway, like Loke mentioned earlier - the interface doesn't connect after reboot, you have to press the button for that. So I thought that maybe it's because the WAN interface comes up before the OPT1, which has to get the DHCP.
                        So I changed the order, i.e. WAN was assigned to physical interface but disconnected, OPT1 was connected with DHCP+ as before, and OPT2 became the new WAN(l2tp).
                        In this situation the l2tp was up after reboot, but the default route didn't change for some reason and was still 172.x.x.x, so I could ping the ISP server, but no more than that.

                        Anyway to fix this?

                        And guys, thanks a lot! Great job!

                        1 Reply Last reply Reply Quote 0
                        • L
                          Loke
                          last edited by

                          @Micky:

                          @Ozzik

                          I didn't find the opt1 interface in your config, as far as i remember you should assign the physical interface to optx (and set it to DHCP), then create a ppp interface (l2tp) and use the opt1 as its link and only then assign the ppp to wan.
                          So there should be an additional OPTx interface.

                          @Loke

                          No, there was no connect/disconnect button at the interface status page for l2tp.

                          Yes, it was.

                          You need to be a master of tough voodoo to be a guru.

                          1 Reply Last reply Reply Quote 0
                          • E
                            eri--
                            last edited by

                            Ozzik just go to system->Routing and select the OPTx interface as default gw.

                            1 Reply Last reply Reply Quote 0
                            • O
                              Ozzik
                              last edited by

                              gnhb, ermal, sevet, Micky, Loke - you're the best!

                              It works great now. The only two questions I have left are:
                              1. Will these changes make it into 2.0 release? or will we have to manually make the changes?
                              2. It seems that from our ISP's point of view - there's no need for PPTP if you can do L2TP. But I can't speak for others. I think that in Russia they still need that option. Maybe it would be a good idea to try and find out why it keeps on disconnecting every few seconds?

                              Thanks a lot!

                              1 Reply Last reply Reply Quote 0
                              • R
                                roi
                                last edited by

                                Using the hardware above I triad to connect today.

                                2.0-RC1 (i386) built on Fri Apr 1 12:38:39 EDT 2011
                                First I set WAN to DHCP, assighen to interface sk0.
                                Got IP: 172.19.180.19, Gateway 172.19.176.1, Subnet mask 255.255.248.0
                                Got DNS server(s) : 192.168.101.101 & 192.168.101.102
                                Triad Ping : hot.bezeqint.net
                                PING l2tp.i014.net (212.25.127.14) from 172.19.180.19: 56 data bytes
                                3 packets transmitted, 3 packets received, 0.0% packet loss
                                round-trip min/avg/max/stddev = 10.448/13.610/17.584/2.969 ms

                                Until here it's OK.

                                Interfaces >> assign >> PPPs >>
                                Created a new L2TP link.
                                Interface is set to sk0 (wan) and gageway "hot.bezeqint.com

                                Interfaces >> assign >>
                                create a new interface (opt1) with l2tp0 as the Network port.

                                chenged l2tp0's interface to opt1.

                                swaped opt1 & wan.

                                Nothing. it will not connect.
                                Am I doing something wrong ?

                                Version 2.0-BETA4 (i386)
                                AMD Athlon™ XP 2000+

                                1 Reply Last reply Reply Quote 0
                                • O
                                  Ozzik
                                  last edited by

                                  @roi: yes.
                                  Here's how you do it:

                                  1. After installing pfSense connect by SSH or from the console choose 12) pfSense Developer Shell.
                                  Type: playback gitsync. After it finishes installing all the needed packages type http://gitweb.pfsense.org/pfsense/gnhb-clone.git and answer yes to all questions or just press enter. Reboot.
                                  After that you may also want to go to System->Firmware and add this link permanently (this section will be shown only after the first gitsync and reboot). This way it will sync after every upgrade.

                                  2. Assuming you only have WAN and LAN and WAN is connected directly to the modem, go to Interfaces->WAN and set it to DHCP. In a lower section you'll see another checkbox "Enable DHCP+L2TP or DHCP+PPTP." You'll only see it after the gitsync. Check it. Save. Apply.

                                  3. Go to Interfaces->(assign). Choose PPPs tab and add new. Choose L2TP, then in "Link interface(s)" choose WAN, not your physical WAN, but just WAN. Type in your username/password and the ISP's VPN server (in this case hot.bezeqint.net). Leave the "Local IP" empty. Save.

                                  4. Go to Interfaces->(assign) again and add a new interface (OPT1). Assign the newly created L2TP to it and save.
                                  Go to Interfaces->OPT1 and enable it. Save.

                                  Time to check.

                                  5. If you want the L2TP to connect automatically after reboot you have to make sure that the DHCP interface (WAN in this case) is initiated before the L2TP interface (OPT1 in this case), i.e WAN->LAN->OPT1->OPT2 and so on. It usually takes 10-30 sec for the L2TP to connect after the reboot, but it does so automatically.

                                  6. If for some reason you see L2TP connected, but the only thing you can ping is your ISP's VPN server - you have the default route wrong. Go to System->Routes and set the right route (public IP, not the 172.x.x.x) to default.

                                  Hope it helps.

                                  1 Reply Last reply Reply Quote 0
                                  • X
                                    xbipin
                                    last edited by

                                    is the below possible

                                    vr1 - WAN (connects using pppoe for internet)

                                    is it possible to use pppoe on vr1 and then use pptp to connect to remote pptp server using the internet after the pppoe is connected?

                                    1 Reply Last reply Reply Quote 0
                                    • E
                                      eri--
                                      last edited by

                                      xbipin,

                                      if you create the pptp as an OPTx interface it will try connecting until it can. But really it cannot be supported on 2.0.
                                      I have plans for such things on 2.1 but will see.

                                      1 Reply Last reply Reply Quote 0
                                      • O
                                        Ozzik
                                        last edited by

                                        ermal, so will it be too much asking to include this in the release?

                                        1 Reply Last reply Reply Quote 0
                                        • rcfaR
                                          rcfa
                                          last edited by

                                          @Ozzik:

                                          @roi: yes.
                                          Here's how you do it:

                                          1. After installing pfSense connect by SSH or from the console choose 12) pfSense Developer Shell.
                                          Type: playback gitsync. After it finishes installing all the needed packages type http://gitweb.pfsense.org/pfsense/gnhb-clone.git and answer yes to all questions or just press enter. Reboot.
                                          After that you may also want to go to System->Firmware and add this link permanently (this section will be shown only after the first gitsync and reboot). This way it will sync after every upgrade.

                                          How does this interfere with regular updates, e.g. the nightly builds, etc.?
                                          If I follow these instructions, will I end up on a forked path, or remain on the regular releases just with some extra stuff installed, akin to installing an optional package?

                                          Thanks!

                                          1 Reply Last reply Reply Quote 0
                                          • O
                                            Ozzik
                                            last edited by

                                            Good question.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.