Clients on LAN cant VPN using pptp

Customer support forums for Atomic Protector (formerly Atomic Secured Linux). There is no such thing as a bad question here as long as it pertains to using Atomic Protector. Newbies feel free to get help getting started or asking questions that may be obvious. Regular users are asked to be gentle. :-)
aus-city
Forum Regular
Forum Regular
Posts: 685
Joined: Thu Oct 26, 2006 11:56 pm

Clients on LAN cant VPN using pptp

Unread post by aus-city »

Im using a centos 6 server for gateway.

Ive tried inserting

[root@primary ~]# modprobe ip_nat_pptp
WARNING: Error inserting nf_conntrack_proto_gre (/lib/modules/2.6.32-431.17.1.el6.x86_64/kernel/net/netfilter/nf_conntrack_proto_gre.ko): Operation not permitted
WARNING: Error inserting nf_conntrack_pptp (/lib/modules/2.6.32-431.17.1.el6.x86_64/kernel/net/netfilter/nf_conntrack_pptp.ko): Operation not permitted
FATAL: Error inserting nf_nat_pptp (/lib/modules/2.6.32-431.17.1.el6.x86_64/kernel/net/ipv4/netfilter/nf_nat_pptp.ko): Operation not permitted
[root@primary ~]# modprobe ip_conntrack_pptp
FATAL: Error inserting nf_conntrack_pptp (/lib/modules/2.6.32-431.17.1.el6.x86_64/kernel/net/netfilter/nf_conntrack_pptp.ko): Operation not permitted




[root@primary ~]# lsmod
Module Size Used by
mpt3sas 189439 1
mpt2sas 186880 1
scsi_transport_sas 35652 2 mpt3sas,mpt2sas
raid_class 4516 2 mpt3sas,mpt2sas
mptctl 31784 1
mptbase 93647 1 mptctl
ipmi_devintf 7729 2
dell_rbu 9990 0
autofs4 26513 3
sit 10155 0
tunnel4 2943 1 sit
ipv6 318183 106 sit
dm_crypt 12862 0
ecb 2209 0
cbc 3083 0
sha256_generic 10361 0
twofish_x86_64 5297 0
twofish_common 14633 1 twofish_x86_64
aes_x86_64 7837 0
aes_generic 27609 1 aes_x86_64
tcp_diag 1041 0
inet_diag 8735 1 tcp_diag
cifs 293665 0
fuse 73530 0
tun 17095 0
nfnetlink_log 8718 0
xt_u32 1630 0
ipt_MASQUERADE 2466 22
nfnetlink_queue 8111 0
nfnetlink 4200 2 nfnetlink_log,nfnetlink_queue
xt_NFQUEUE 2213 0
xt_comment 1034 0
ipt_LOG 5845 5
ipt_ecn 1507 0
ipt_ECN 1955 0
xt_TRACE 1060 0
xt_iprange 2312 0
xt_string 1596 0
xt_connmark 1347 0
xt_connbytes 1704 0
xt_hashlimit 9685 0
xt_connlimit 3238 0
xt_TCPMSS 3445 0
xt_tcpmss 1607 0
xt_dscp 1831 0
xt_DSCP 2279 0
xt_mark 1057 0
xt_MARK 1057 0
xt_multiport 2700 0
xt_pkttype 1194 0
xt_quota 1439 0
xt_physdev 1741 0
xt_mac 1118 0
xt_limit 2118 5
xt_length 1322 7
xt_state 1492 98
nf_conntrack_sip 19779 0
nf_nat_ftp 3507 0
nf_conntrack_sane 5716 0
nf_conntrack_ftp 12913 1 nf_nat_ftp
nf_conntrack_netbios_ns 1323 0
nf_conntrack_broadcast 1471 1 nf_conntrack_netbios_ns
xt_conntrack 2776 0
ipt_REDIRECT 1840 0
xt_recent 7932 0
ipt_REJECT 2351 0
xt_owner 1252 0
iptable_raw 2264 0
iptable_mangle 3349 0
iptable_nat 6158 1
nf_nat 22759 4 ipt_MASQUERADE,nf_nat_ftp,ipt_REDIRECT,iptable_nat
nf_conntrack_ipv4 9506 101 iptable_nat,nf_nat
nf_conntrack 79758 15 ipt_MASQUERADE,xt_connmark,xt_connbytes,xt_connlimit,xt_state,nf_conntrack_sip,nf_nat_ftp,nf_conntrack_sane,nf_conntrack_ftp,nf_conntrack_netbios_ns,nf_conntrack_broadcast,xt_conntrack,iptable_nat,nf_nat,nf_conntrack_ipv4
nf_defrag_ipv4 1483 1 nf_conntrack_ipv4
iptable_filter 2793 1
ip_tables 17831 4 iptable_raw,iptable_mangle,iptable_nat,iptable_filter
xfs 1128471 0
exportfs 4236 1 xfs
ext3 240013 0
jbd 80858 1 ext3
uinput 7992 0
iTCO_wdt 7115 0
iTCO_vendor_support 3056 1 iTCO_wdt
microcode 112685 0
dcdbas 9219 0
usblp 11830 0
bnx2 81708 0
ses 6475 0
enclosure 8438 1 ses
sg 29350 0
serio_raw 4594 0
shpchp 32778 0
lpc_ich 12803 0
mfd_core 1895 1 lpc_ich
ioatdma 58130 15
dca 7101 1 ioatdma
i5000_edac 8739 0
edac_core 46581 3 i5000_edac
i5k_amb 5009 0
ext4 374917 4
jbd2 93427 1 ext4
mbcache 8193 2 ext3,ext4
sr_mod 15177 0
cdrom 39085 1 sr_mod
sd_mod 39069 5
crc_t10dif 1541 1 sd_mod
pata_acpi 3701 0
ata_generic 3837 0
ata_piix 24601 0
megaraid_sas 87145 5
usb_storage 49068 0
nouveau 995351 2
ttm 80590 1 nouveau
drm_kms_helper 44321 1 nouveau
drm 280012 4 nouveau,ttm,drm_kms_helper
i2c_algo_bit 5935 1 nouveau
i2c_core 31084 4 nouveau,drm_kms_helper,drm,i2c_algo_bit
mxm_wmi 1967 1 nouveau
video 20674 1 nouveau
output 2409 1 video
wmi 6287 2 nouveau,mxm_wmi
dm_mirror 14384 0
dm_region_hash 12085 1 dm_mirror
dm_log 9930 2 dm_mirror,dm_region_hash
dm_mod 84337 12 dm_crypt,dm_mirror,dm_log
[root@primary ~]#
aus-city
Forum Regular
Forum Regular
Posts: 685
Joined: Thu Oct 26, 2006 11:56 pm

Re: Clients on LAN cant VPN using pptp

Unread post by aus-city »

Fixed. The correct way in later Centos (6) is to add the modules in /etc/sysconfig/modules

[root@primary ~]# ls /etc/sysconfig/modules
bluez-uinput.modules ip_nat_pptp.modules nf_nat_proto_gre.modules

[root@primary ~]# cat /etc/sysconfig/modules/ip_nat_pptp.modules
#!/bin/sh
/sbin/modprobe ip_nat_pptp >/dev/null 2>&1

[root@primary ~]# cat /etc/sysconfig/modules/nf_nat_proto_gre.modules
#!/bin/sh
/sbin/modprobe nf_nat_proto_gre >/dev/null 2>&1

MUST set them to 755
MUST be called .modules extension
MUST contain #!/bin/sh

Then reboot your modules are then loaded and pptp passes

[root@primary ~]# lsmod
Module Size Used by
mpt3sas 189439 1
mpt2sas 186880 1
scsi_transport_sas 35652 2 mpt3sas,mpt2sas
raid_class 4516 2 mpt3sas,mpt2sas
mptctl 31784 1
mptbase 93647 1 mptctl
ipmi_devintf 7729 2
dell_rbu 9990 0
autofs4 26513 3
sit 10155 0
tunnel4 2943 1 sit
ipv6 318183 109 sit
dm_crypt 12862 0
ecb 2209 0
cbc 3083 0
sha256_generic 10361 0
twofish_x86_64 5297 0
twofish_common 14633 1 twofish_x86_64
aes_x86_64 7837 0
aes_generic 27609 1 aes_x86_64
tcp_diag 1041 0
inet_diag 8735 1 tcp_diag
cifs 293665 0
fuse 73530 0
tun 17095 0
nfnetlink_log 8718 0
xt_u32 1630 0
ipt_MASQUERADE 2466 22
nfnetlink_queue 8111 0
nfnetlink 4200 2 nfnetlink_log,nfnetlink_queue
xt_NFQUEUE 2213 0
xt_comment 1034 0
ipt_LOG 5845 5
ipt_ecn 1507 0
ipt_ECN 1955 0
xt_TRACE 1060 0
xt_iprange 2312 0
xt_string 1596 0
xt_connmark 1347 0
xt_connbytes 1704 0
xt_hashlimit 9685 0
xt_connlimit 3238 0
xt_TCPMSS 3445 0
xt_tcpmss 1607 0
xt_dscp 1831 0
xt_DSCP 2279 0
xt_mark 1057 0
xt_MARK 1057 0
xt_multiport 2700 0
xt_pkttype 1194 0
xt_quota 1439 0
xt_physdev 1741 0
xt_mac 1118 0
xt_limit 2118 5
xt_length 1322 7
xt_state 1492 99
nf_conntrack_sip 19779 0
nf_nat_ftp 3507 0
nf_conntrack_sane 5716 0
nf_conntrack_ftp 12913 1 nf_nat_ftp
nf_conntrack_netbios_ns 1323 0
nf_conntrack_broadcast 1471 1 nf_conntrack_netbios_ns
xt_conntrack 2776 0
ipt_REDIRECT 1840 0
xt_recent 7932 0
ipt_REJECT 2351 0
xt_owner 1252 0
iptable_raw 2264 0
iptable_mangle 3349 0
iptable_nat 6158 1
iptable_filter 2793 1
ip_tables 17831 4 iptable_raw,iptable_mangle,iptable_nat,iptable_filter
xfs 1128471 0
exportfs 4236 1 xfs
ext3 240013 0
jbd 80858 1 ext3
nf_nat_pptp 4653 0
nf_conntrack_pptp 12166 1 nf_nat_pptp
nf_conntrack_proto_gre 7003 1 nf_conntrack_pptp
nf_nat_proto_gre 3028 1 nf_nat_pptp
nf_nat 22759 6 ipt_MASQUERADE,nf_nat_ftp,ipt_REDIRECT,iptable_nat,nf_nat_pptp,nf_nat_proto_gre
nf_conntrack_ipv4 9506 102 iptable_nat,nf_nat
nf_conntrack 79758 18 ipt_MASQUERADE,xt_connmark,xt_connbytes,xt_connlimit,xt_state,nf_conntrack_sip,nf_nat_ftp,nf_conntrack_sane,nf_conntrack_ftp,nf_conntrack_netbios_ns,nf_conntrack_broadcast,xt_conntrack,iptable_nat,nf_nat_pptp,nf_conntrack_pptp,nf_conntrack_proto_gre,nf_nat,nf_conntrack_ipv4
nf_defrag_ipv4 1483 1 nf_conntrack_ipv4
uinput 7992 0
microcode 112685 0
iTCO_wdt 7115 0
iTCO_vendor_support 3056 1 iTCO_wdt
dcdbas 9219 0
ses 6475 0
enclosure 8438 1 ses
bnx2 81708 0
usblp 11830 0
serio_raw 4594 0
sg 29350 0
shpchp 32778 0
lpc_ich 12803 0
mfd_core 1895 1 lpc_ich
i5000_edac 8739 0
edac_core 46581 3 i5000_edac
i5k_amb 5009 0
ioatdma 58130 15
dca 7101 1 ioatdma
ext4 374917 4
jbd2 93427 1 ext4
mbcache 8193 2 ext3,ext4
sr_mod 15177 0
cdrom 39085 1 sr_mod
sd_mod 39069 5
crc_t10dif 1541 1 sd_mod
pata_acpi 3701 0
ata_generic 3837 0
ata_piix 24601 0
megaraid_sas 87145 5
usb_storage 49068 0
nouveau 995351 2
ttm 80590 1 nouveau
drm_kms_helper 44321 1 nouveau
drm 280012 4 nouveau,ttm,drm_kms_helper
i2c_algo_bit 5935 1 nouveau
i2c_core 31084 4 nouveau,drm_kms_helper,drm,i2c_algo_bit
mxm_wmi 1967 1 nouveau
video 20674 1 nouveau
output 2409 1 video
wmi 6287 2 nouveau,mxm_wmi
dm_mirror 14384 0
dm_region_hash 12085 1 dm_mirror
dm_log 9930 2 dm_mirror,dm_region_hash
dm_mod 84337 12 dm_crypt,dm_mirror,dm_log
[root@primary ~]#
Post Reply