×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

PPTP VPN keeps going up and down

Unanswered Question
Jul 21st, 2013
User Badges:

I am trying to set up a 2811 to connect to a VPN service from PrivateInternetAccess - one of those pay-for Internet privacy VPN services. I have had some success, but only intermittently. I'm only just learning this stuff and would appreciate any help. What is my config missing?


The VPN connects, and can last long enough for me to run a tracert from an attached local PC, and even load whatismyip.com and do some google searches. "Show VPDN" shows the PPTP tunnel established. For a minute or so it seems to work perfectly, but then I lose connection. The console output from the 2811 is:


*Jul 21 11:12:31.315: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to down

*Jul 21 11:12:31.315: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to down

*Jul 21 11:12:33.555: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to up

*Jul 21 11:12:33.767: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to up

*Jul 21 11:13:33.843: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to down

*Jul 21 11:13:33.843: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to down

*Jul 21 11:13:36.039: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to up

*Jul 21 11:13:36.259: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to up


... and so on, every minute or so. A constant ping to the Internet from a PC shows the connection coming and going. When it's up, I can browse the web on a PC just as quickly as a normal connection. But not for long. Sometimes, trying to load a page in Explorer seems to trigger the connection to drop, as shown by the ping instantly failing.


This is my config, with some public IP addresses masked. It is very basic at the moment - just trying to get the VPN working:


int fa0/0

ip address <MY CONNECTED PUBLIC IP ADDRESS> 255.255.255.248

no shut


int fa0/1

ip address 192.168.1.222 255.255.255.0

ip nat inside

no shut


service internal

no ip gratuitous-arps

ip multicast-routing


vpdn enable

vpdn-group 1

request-dialin

protocol pptp

rotary-group 0

initiate-to ip <MY VPN SERVICE IP ADDRESS>


interface Dialer0

mtu 1450

ip address negotiate

ip pim dense-mode

encapsulation ppp

dialer in-band

dialer idle-timeout 0

dialer string 123

dialer vpdn

dialer-group 1

no cdp enable

ppp pfc local request

ppp pfc remote apply

ppp encrypt mppe auto

ppp chap hostname <MY VPN USERNAME>

ppp chap password 0 <MY VPN PASSWORD>

ip nat outside


dialer-list 1 protocol ip permit


access-list 1 permit 192.168.1.0 0.0.0.255

ip nat inside source list 1 interface dialer0 overload


ip classless

ip route 0.0.0.0 0.0.0.0 dialer0

ip route <MY VPN SERVICE IP ADDRESS> 255.255.255.255 <MY MODEM/ROUTER>



Any ideas folks?


Rick.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.

Actions

This Discussion