Projekat

Općenito

Profil

Akcije

Nove funkcije #17521

Zatvoren

instalacija pppoe-server na ubuntu-u, tcpdump je zakon

Dodano od Ernad Husremović prije skoro 17 godina. Izmjenjeno prije skoro 17 godina.

Status:
Zatvoreno
Prioritet:
Normalan
Odgovorna osoba:
Kategorija:
pppoe
Početak:
06.06.2009
Završetak:
% završeno:

100%

Procjena vremena:

Opis

podesio da bih ulovio parametre pppoe konekcije na hsabina/dir-100


Fajlovi

PPPoE_Debian.pdf (283 KB) PPPoE_Debian.pdf Ernad Husremović, 06.06.2009 22:02

Povezani tiketi 1 (0 otvoreno1 zatvoren)

korelira sa router - Reference #17522: pfsense router/firewall, captiva portal, coova-chilliOdbačenoErnad Husremović06.06.2009

Akcije
Akcije #1

Izmjenjeno od Ernad Husremović prije skoro 17 godina

h2: šta wikipedia kaže

PPPoE, Point-to-Point Protocol over Ethernet, is a network protocol for encapsulating Point-to-Point Protocol (PPP) frames inside Ethernet frames. It is used mainly with ADSL services where individual users connect to the ADSL transceiver (modem) over Ethernet and in plain Metro Ethernet networks. It was developed by UUNET, Redback Networks, and RouterWare and is available as an informational RFC 2516.

Ethernet networks are packet-based and have no concept of a connection or circuit and also lack basic security features to protect against IP and MAC conflicts and rogue DHCP servers. By using PPPoE, users can virtually "dial" from one machine to another over an Ethernet network, establish a point to point connection between them and then securely transport data packets over the connection.

Although traditional PPP is a peer-to-peer protocol, PPPoE is inherently a client-server relationship since multiple hosts can connect to a service provider over a single physical connection.

The Discovery process consists of four steps between the host computer which acts as the client and the access concentrator at the internet service provider's end.

PADI stands for PPPoE Active Discovery Initiation.
PADO stands for PPPoE Active Discovery Offer.
PADR stands for PPPoE Active Discovery Request.
PADS stands for PPPoE Active Discovery Session-confirmation.
PADT stands for PPPoE Active Discovery Termination.

Since the point to point connection established has an MTU lower than that of standard Ethernet (typically 1492 vs Ethernet's 1500), it can sometimes cause problems when Path MTU discovery is defeated by poorly configured firewalls.

Akcije #3

Izmjenjeno od Ernad Husremović prije skoro 17 godina

Jutros sam kod mame odmah podesio pppoe-server sa idejom da ulovim username/pwd bihneta

povezao sam mamin notebook sa svojim i digao ppoe server, i to je odmah proradilo, podesio u /etc/ppp/pppoe-server-options parametre

debug
show-password

i mogao sam vidjeti šta mi klijent govori.

Ali, kada sam istu stvar pokušao sa dir-100 nema nikakvog habera od njega.

uveče sam onda uzeo čitati o pppoe

Akcije #4

Izmjenjeno od Ernad Husremović prije skoro 17 godina

mislio sam da je bitno da ppoe server dhcp-om podešava mrežu ali to je netačno, pppoe client radi broadcast pppoe servera i traži odgovarajući servis

i kada sam stavio

# tcpdump -i eth0 -vvvvv

na serveru dobio sam potrebni info ... inaj PPOE discovery paket je tražio "bihnet" servis a ja sam podesio da moj server bude nešto drugo "hPPPoE"

kada sam to stavio, bingo, dir-100 mi javlja šta hoće

Akcije #5

Izmjenjeno od Ernad Husremović prije skoro 17 godina

root@nmraka-2:~# cat /etc/ppp/pppoe-server-options

auth
#default-mru
debug
ms-dns 10.10.220.1
proxyarp
show-password
default-asyncmap
lcp-echo-interval 60
lcp-echo-failure 5
noipdefault
noipx
nodefaultroute
noktune
netmask 255.255.255.0

Akcije #6

Izmjenjeno od Ernad Husremović prije skoro 17 godina

root@nmraka-2:~# cat start_pppoe_server.sh

PROV=bihnet
MAX=5
BASE=10.10.220.2
PLA=10.10.220.0/8
MYIP=10.10.220.1
PPPOEOPT=/root/pppoe-server-options

echo $MYIP

echo "1" > "/proc/sys/net/ipv4/ip_forward" 
/usr/sbin/pppoe-server -F -T 60 -I eth0  -N $MAX -C $PROV -S $PROV -R $PLA   -L $MYIP

znači kada sam stavio da je "-C" provajder "bihhet" PPPoE servisa onda je klijent nastavio handshake sa serverom ...

Akcije #7

Izmjenjeno od Ernad Husremović prije skoro 17 godina

bringout@nmraka-2:~$ sudo vi /etc/ppp/pap-secrets

...
#    *    password
"hsabina"  *  "test" * 10.10.220.2      
"hernad"   *  "kvak" * 10.10.220.3     

i tu sam došao do potrebnog info - uopšte se ne radio o hsabina bihnet accountu nego hsabina01

Akcije #8

Izmjenjeno od Ernad Husremović prije skoro 17 godina

  • Naslov promijenjeno iz instalacija pppoe-server na ubuntu-u u instalacija pppoe-server na ubuntu-u, tcpdump je zakon
  • Kategorija postavljeno na pppoe
  • Status promijenjeno iz Dodijeljeno u Zatvoreno
  • % završeno promijenjeno iz 0 u 100

još sam pokušavao sa radim packet sniffing sa ngrep ali to nisam skontao. tcpdump je zakon

Akcije

Također dostupno kao Atom PDF