This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

PPPoE failure - Timeout waiting for PADO packets... [This H/W works as hand crafted firewall]


I have an xubuntu based firewall with an onboard GigE NIC as the LAN interface, a 3Com 10/100 interface for the wan and a quad 10/100 card for a couple of other networks (I've not gone near those on UTM yet - so I think they can be ignored). [H/W is a P4 with 3GB RAM, 160GB HDD]

The ubuntu system runs PPPoE - and has done for over a year now - through a BT OpenReach 'modem', and a hand crafted iptables firewall and vpn connection to a VPS.

I've downloaded UTM today (ISO is 9.401-11.1) and replaced the HDD in the firewall to install UTM Home without splatting my existing firewall.

It installed happily, detecting and offering all of the network interfaces - so I set up the GigE NIC as the internal network and gave it an address - logged in over the WebUI and configured the PPPoE (VDSL, VLAN ID 101 as prescribed by my ISP - though not needed on the ubuntu AFAICT)
I get the following repeated in the logs:

2016:05:01-23:06:28 bragi pppd-pppoe[7438]: Plugin rp-pppoe.so loaded.
2016:05:01-23:06:28 bragi pppd-pppoe[7438]: RP-PPPoE plugin version 3.8p compiled against pppd 2.4.6
2016:05:01-23:06:28 bragi pppd-pppoe[7438]: pppd 2.4.6 started by root, uid 0
2016:05:01-23:06:28 bragi pppd-pppoe[7438]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:05:01-23:06:28 bragi pppd-pppoe[7438]: dst ff:ff:ff:ff:ff:ff src 0:50:4:43:cd:c1
2016:05:01-23:06:28 bragi pppd-pppoe[7438]: [service-name] [host-uniq 0e 1d 00 00]
2016:05:01-23:06:33 bragi pppd-pppoe[7438]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:05:01-23:06:33 bragi pppd-pppoe[7438]: dst ff:ff:ff:ff:ff:ff src 0:50:4:43:cd:c1
2016:05:01-23:06:33 bragi pppd-pppoe[7438]: [service-name] [host-uniq 0e 1d 00 00]
2016:05:01-23:06:43 bragi pppd-pppoe[7438]: Send PPPOE Discovery V1T1 PADI session 0x0 length 12
2016:05:01-23:06:43 bragi pppd-pppoe[7438]: dst ff:ff:ff:ff:ff:ff src 0:50:4:43:cd:c1
2016:05:01-23:06:43 bragi pppd-pppoe[7438]: [service-name] [host-uniq 0e 1d 00 00]
2016:05:01-23:07:03 bragi pppd-pppoe[7438]: Timeout waiting for PADO packets
2016:05:01-23:07:03 bragi pppd-pppoe[7438]: Unable to complete PPPoE Discovery
2016:05:01-23:07:03 bragi pppd-pppoe[7438]: Exit.
2016:05:01-23:07:03 bragi pppoe-sh: DSL connection time shorter than 60 seconds (35 sec): Error? - wait 5 seconds

Web searches haven't got me very far - either my google fu is weak or there are lots of subtle ways in which ISPs break things...

Clearly I'm an idiot - if I put the old HDD back in it fires up just fine and connects instantly. I just can't see what it is I'm meant to have done differently.

I'd really appreciate a pointer to help me figure out what on earth is going on in this system...



This thread was automatically locked due to age.
Parents
  • Hi John,

    You need to establish a connection using a modem/router. This is because Sophos UTM lacks the feature to define 'Service Name' for PPPoE connections.

    Please cast a vote on this requirement here: http://feature.astaro.com/forums/17359-utm-formerly-asg-feature-requests/suggestions/3837974-pppoe-service-name

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • Hmm - that would be very irritating - Although I suppose I could run UTM as a VM on the host - a bit clunky though.

    I can't see any reference to a service name in my ubuntu configuration:

    john@bragi:/etc/ppp$ grep -v ^# options | grep -v ^$

    asyncmap 0

    noauth

    crtscts

    lock

    hide-password

    modem

    proxyarp

    lcp-echo-interval 30

    lcp-echo-failure 4

    noipx

    root@bragi:/etc/ppp/peers# cat dsl-provider 

    noipdefault

    defaultroute

    replacedefaultroute

    hide-password

    noauth

    persist

    plugin rp-pppoe.so eth1

    user "<ISP username>"

    And neither can I find anything referenced in the ISP documentation - is this something that the UK BT OpenReach modem would normally do by default?

    There is a VLAN ID specified in the documentation, and I have set that appropriately on the UTM (don't seem to need that at all on the ubuntu box though either).

    I wonder if I am trying to be more complicated about this than I need to be in some way?

  • Hi John,

    Cannot comment how the ISP modem works, may be the providers can answer that. Which document did you refer, please post a link to it.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • Page 10 of www.utilitywarehouse.co.uk/.../01717_BBPremRouterServiceGuide_0615_WEB.pdf Although I don't run their router - I have an openreach modem, which afaik just does DSL < - > ethernet...

    To be clear - I have their VDSL router, but since I wanted to use my own firewall and knew that they put in the OpenReach modem at the slightest hint of trouble I got the BT OpenReach modem installed ;)

    There is no accessible config on the modem.

    I've always run the connection manually through the ubuntu system:

    VDSL -> OpenReach ECI modem -> Ethernet -> Ubuntu.

  • I *was* making it more complicated than it needed to be...

    Thank you ...

    Just taken a few minutes and swapped the disks back over.

    Uncheck the VDSL option and it connected before I could get to cycle the interface.

    For users in the UK - this might be a required "don't check" even on VDSL2.

    Just about to run a speed test: 79.8Mb/s and 18.3Mb/s

    That's basically line speed here, even slightly higher than I used to get...  So I think that connection is good ;)

Reply
  • I *was* making it more complicated than it needed to be...

    Thank you ...

    Just taken a few minutes and swapped the disks back over.

    Uncheck the VDSL option and it connected before I could get to cycle the interface.

    For users in the UK - this might be a required "don't check" even on VDSL2.

    Just about to run a speed test: 79.8Mb/s and 18.3Mb/s

    That's basically line speed here, even slightly higher than I used to get...  So I think that connection is good ;)

Children