Francesco Pretto <ceztko@xxxxxxxxx> wrote: >> I suspect that RDP triggers it with a full-sized TCP packet. > [...] >> Do you have appropriate patches/things-enabled, so that the >> esp/l2tp/ppp packets all stay in the kernel? If not, then you might >> also get some debug from xl2tp. >> > I am not sure what esp is. PPP and MPPE are in the kernel. xl2tpd log ESP is IPsec. >> MPPE and IPsec are not related. AFAIK, MPPE provides for encryption >> within PPP. you would be double encrypting. > Yes, I knew. In fact I was more than satisfied with the reliability I > get with "nomppe". But maybe MS-CHAP v2 use MPPE for authentication > encryption? I don't know. No. >> Does other traffic continue to function? Is one end Windows? > No, other traffic stops as well. VPN traffic is Windows-Windows. > ipsec-ppp-l2tp endpoints are Windows-Linux. Do you continue to see raw packets transmitted in both directions, if you tcpdump the wire? I'm wondering if one end is broken and does not transmit, or if one is broken, and receives incorrectly. -- ] Never tell me the odds! | ipv6 mesh networks [ ] Michael Richardson, Sandelman Software Works | network architect [ ] mcr@xxxxxxxxxxxx http://www.sandelman.ca/ | ruby on rails [ -- To unsubscribe from this list: send the line "unsubscribe linux-ppp" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html