This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

PPPOE broken after 405-5 update

Hi all,

I've just updated my UTM home to 405-5. Everything was working before but now, after the restart my external interface is down and I have no internet access. Using a Windows PC directly plugged in front of the UTM, PPPOE works perfectly so I know my account and link is working. I've also tested with a hardware modem/router. Account and ISP side is fine but the UTM fails to bring up the external PPPOE interface. All I see in the PPPOE log is this:

2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]: Plugin rp-pppoe.so loaded.
2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]: RP-PPPoE plugin version 3.8p compiled against pppd 2.4.6
2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]: pppd 2.4.6 started by root, uid 0
2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]: Send PPPOE Discovery V1T1 PADI session 0x0 length 18
2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 90:b1:1c:55:22:8d
2016:08:03-22:06:13 sjb-rtr1 pppd-pppoe[7173]:  [service-name] [host-uniq  05 1c 00 00] [PPP-max-payload  05 dc]
2016:08:03-22:06:17 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:17 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:17 sjb-rtr1 pppd-pppoe[7173]:  [service-name] [host-uniq  00 47 60 08]
2016:08:03-22:06:18 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:18 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:18 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:22 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:22 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:22 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:26 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:26 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:26 sjb-rtr1 pppd-pppoe[7173]:  [service-name] [host-uniq  00 47 60 08]
2016:08:03-22:06:27 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:27 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:27 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:30 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:30 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:30 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:34 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:34 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:34 sjb-rtr1 pppd-pppoe[7173]:  [service-name] [host-uniq  00 47 60 08]
2016:08:03-22:06:35 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:35 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:35 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:39 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:39 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:39 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]:  [service-name] [host-uniq  00 47 60 08]
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25
2016:08:03-22:06:43 sjb-rtr1 pppd-pppoe[7173]:  [host-uniq  00 47 60 08] [service-name]
2016:08:03-22:06:47 sjb-rtr1 pppd-pppoe[7173]: Recv PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:08:03-22:06:47 sjb-rtr1 pppd-pppoe[7173]:  dst ff:ff:ff:ff:ff:ff  src 4:a1:51:39:96:25

Any ideas anyone?


This thread was automatically locked due to age.
Parents
  • Hi Stef,

    Can you please verify the configuration for PPPoE in UTM before we proceed further. Please refer https://community.sophos.com/kb/en-us/119003

    The default MTU value of 1492 is required for DSL connections. It may be appropriate to change this if connecting to ISPs that require smaller MTU values. Can you also verify this from the ISP end if we require changing the MTU value as per the requirement?

    Thanks 

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • Thanks. I did check those things. Config looks like this (creds removed):

    1492 is what my ISP gave me. As I have mentioned it has been working for months with this config. 

  • Hello Stef
    Just updated to 9.405. PPOE Config. is similar to yours, only "Static PPOE IP" is checked; maybe you can try with your old IP.
    Regards, Peter
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: Plugin rp-pppoe.so loaded.
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: RP-PPPoE plugin version 3.8p compiled against pppd 2.4.6
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: pppd 2.4.6 started by root, uid 0
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: dst ff:ff:ff:ff:ff:ff src 0:1a:8c:17:c9:91
    2016:08:04-11:16:38 gate pppd-pppoe[12011]: [service-name] [host-uniq eb 2e 00 00]
    2016:08:04-11:16:43 gate pppd-pppoe[12011]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
    2016:08:04-11:16:43 gate pppd-pppoe[12011]: dst ff:ff:ff:ff:ff:ff src 0:1a:8c:17:c9:91
    2016:08:04-11:16:43 gate pppd-pppoe[12011]: [service-name] [host-uniq eb 2e 00 00]
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: dst ff:ff:ff:ff:ff:ff src 0:1a:8c:17:c9:91
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: [service-name] [host-uniq eb 2e 00 00]
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: Recv PPPOE Discovery V1T1 PADO session 0x0 length 54
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: dst 0:1a:8c:17:c9:91 src a8:d0:e5:f6:6f:c7
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: [AC-name ipd-zhb790-r-bn-23] [host-uniq eb 2e 00 00] [service-name] [AC-cookie c3 a7 ac 0a c8 32 62 10 dd f4 05 f1 ac b0 b1 1f]
    2016:08:04-11:16:53 gate pppd-pppoe[12011]: Send PPPOE Discovery V1T1 PADR session 0x0 length 32
    .
    .
    2016:08:04-11:16:54 gate pppd-pppoe[12011]: Script /etc/ppp/ip-up finished (pid 12222), status = 0x0
  • Thanks Peter,

    Yeah not sure what is going on. At the moment I have a semi working solution. I've placed an old hardware router in front of UTM and it just does the PPPOE. All ports are forwarded to the WAN ip of my UTM. This in essence means I'm now double natting which isn't great but since I'm not doing PPPOE with UTM its working. I cant really try the static IP thing you suggested since my ISP doesnt give me a static IP. I have to get it via DHCP. I am starting to think I should build myself a test XG firewall this weekend and see if that can do PPPOE. If it does work I may just be forced to make the switch. I have heard mixed reviews about XG but I may be forced into it.

      

Reply
  • Thanks Peter,

    Yeah not sure what is going on. At the moment I have a semi working solution. I've placed an old hardware router in front of UTM and it just does the PPPOE. All ports are forwarded to the WAN ip of my UTM. This in essence means I'm now double natting which isn't great but since I'm not doing PPPOE with UTM its working. I cant really try the static IP thing you suggested since my ISP doesnt give me a static IP. I have to get it via DHCP. I am starting to think I should build myself a test XG firewall this weekend and see if that can do PPPOE. If it does work I may just be forced to make the switch. I have heard mixed reviews about XG but I may be forced into it.

      

Children
No Data