Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

PPTP VPN keeps going up and down

I am trying to set up a 2811 to connect to a VPN service from PrivateInternetAccess - one of those pay-for Internet privacy VPN services. I have had some success, but only intermittently. I'm only just learning this stuff and would appreciate any help. What is my config missing?

The VPN connects, and can last long enough for me to run a tracert from an attached local PC, and even load whatismyip.com and do some google searches. "Show VPDN" shows the PPTP tunnel established. For a minute or so it seems to work perfectly, but then I lose connection. The console output from the 2811 is:

*Jul 21 11:12:31.315: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to down

*Jul 21 11:12:31.315: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to down

*Jul 21 11:12:33.555: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to up

*Jul 21 11:12:33.767: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to up

*Jul 21 11:13:33.843: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to down

*Jul 21 11:13:33.843: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to down

*Jul 21 11:13:36.039: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state to up

*Jul 21 11:13:36.259: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Access1, changed state to up

... and so on, every minute or so. A constant ping to the Internet from a PC shows the connection coming and going. When it's up, I can browse the web on a PC just as quickly as a normal connection. But not for long. Sometimes, trying to load a page in Explorer seems to trigger the connection to drop, as shown by the ping instantly failing.

This is my config, with some public IP addresses masked. It is very basic at the moment - just trying to get the VPN working:

int fa0/0

ip address <MY CONNECTED PUBLIC IP ADDRESS> 255.255.255.248

no shut

int fa0/1

ip address 192.168.1.222 255.255.255.0

ip nat inside

no shut

service internal

no ip gratuitous-arps

ip multicast-routing

vpdn enable

vpdn-group 1

request-dialin

protocol pptp

rotary-group 0

initiate-to ip <MY VPN SERVICE IP ADDRESS>

interface Dialer0

mtu 1450

ip address negotiate

ip pim dense-mode

encapsulation ppp

dialer in-band

dialer idle-timeout 0

dialer string 123

dialer vpdn

dialer-group 1

no cdp enable

ppp pfc local request

ppp pfc remote apply

ppp encrypt mppe auto

ppp chap hostname <MY VPN USERNAME>

ppp chap password 0 <MY VPN PASSWORD>

ip nat outside

dialer-list 1 protocol ip permit

access-list 1 permit 192.168.1.0 0.0.0.255

ip nat inside source list 1 interface dialer0 overload

ip classless

ip route 0.0.0.0 0.0.0.0 dialer0

ip route <MY VPN SERVICE IP ADDRESS> 255.255.255.255 <MY MODEM/ROUTER>

Any ideas folks?

Rick.

417
Views
0
Helpful
0
Replies
CreatePlease to create content