I have been trying to get my raspberry pi to be an L2TP vpn server and have had no luck.
I was able to get this to work about 5 months ago but now it just wont work.
I have tried both of the tutorials below:
http://linux.tips/tutorials/how-to-setu ... #comment-2
http://willitscript.com/post/4035740864 ... vpn-server
and for some reason i cant get them to work.
i have checked the ipsec verify and all is good there, i alos checked the /var/log/auth.log and it seems to be getting a request from my iphone but just wont let it connect.
this is the /var/log/auth.log information:
Code: Select all
raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx received Vendor ID payload [RFC 3947] method set to=109
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike] method set to=110
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring unknown Vendor ID payload [8f8d83826d246b6fc7a8a6a428c11de8]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring unknown Vendor ID payload [439b59f8ba676c4c7737ae22eab8f582]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring unknown Vendor ID payload [4d1e0e136deafa34c4f3ea9f02ec7285]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring unknown Vendor ID payload [80d0bb3def54565ee84645d4c85ce3ee]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring unknown Vendor ID payload [9909b64eed937c6573de52ace952fa6b]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-03] meth=108, but already using method 110
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02] meth=107, but already using method 110
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n] meth=106, but already using method 110
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: ignoring Vendor ID payload [FRAGMENTATION 80000000]
Apr 6 02:16:06 raspberrypi pluto[3498]: packet from xx.xxx.x.xxx:xxxxx: received Vendor ID payload [Dead Peer Detection]
Apr 6 02:16:06 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: responding to Main Mode from unknown peer xx.xxx.x.xxx
Apr 6 02:16:06 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: transition from state STATE_MAIN_R0 to state STATE_MAIN_R1
Apr 6 02:16:06 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: STATE_MAIN_R1: sent MR1, expecting MI2
Apr 6 02:16:06 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:06 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to 49.196.7.220:36613
Apr 6 02:16:10 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:10 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to 49.196.7.220:36613
Apr 6 02:16:13 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:13 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to xx.xxx.x.xxx:xxxxx
Apr 6 02:16:16 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:16 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to 49.196.7.220:36613
Apr 6 02:16:16 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:16 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx#2: sending notification INVALID_PAYLOAD_TYPE to xx.xxx.x.xxx:xxxxx
Apr 6 02:16:29 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:29 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to xx.xxx.x.xxx:xxxxx
Apr 6 02:16:36 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: message ignored because it contains an unknown or unexpected payload type (ISAKMP_NEXT_SAK) at the outermost level
Apr 6 02:16:36 raspberrypi pluto[3498]: "L2TP-PSK-NAT"[2] xx.xxx.x.xxx #2: sending notification INVALID_PAYLOAD_TYPE to xx.xxx.x.xxx:xxxxx
i am running the latest rasbian wheezy from the raspberry pi website 06/04/2014.
can someone please shed some light on what my be going wrong?
thanks in advance!