Re: (PM) Win95 Client Connection Problem (fwd)

MegaZone (megazone@livingston.com)
Mon, 9 Feb 1998 13:21:40 -0800 (PST)

Once upon a time Scot W. Hetzel shaped the electrons to say...
>DEFAULT Auth-Type = System, Framed-Protocol = PPP

This means they have to use PAP or CHAP to login.

> Service-Type = Framed-User,
> Framed-Protocol = PPP,
> Framed-IP-Address = 255.255.255.254,
> Framed-IPX-Network = 255.255.255.254,

Are you actually using IPX? If not I'd remove this.

> Framed-IP-Netmask = 255.255.255.192,

This is very, very bad.

1. In any old ComOS it is just ignored.
2. In 3.5 or up if you 'set user-netmask on' this would route multiple
addresses to the user. And with assigned addresses that means it will
destroy your pool.

THERE IS ONE AND ONLY ONE VALID NETMASK FOR A SINGLE IP DIALIN USER:
255.255.255.255

> Framed-Routing = Broadcast-Listen,

This is also generally bad. Why would you listen to routes from a dialin
user - this lets them stick anything they want into your route table and
and hose the entire thing. Also, why send routing to a dialin user.
very few clients use it, and with one Ip it is needless. The most
appropriate thing here is 'None'.

> Framed-MTU = 1500,
> Port-Limit = 2,
> Session-Timeout = 28812,
> Idle-Timeout = 1806

As for the connect problem, I'd advise running a PPP debug on the
attempts.

-MZ

--
Lucent Remote Access Division - Chair, Department of Interstitial Affairs
Phone: 800-458-9966 510-737-2100 FAX: 510-737-2110 megazone@livingston.com
For support requests: support@livingston.com  <http://www.livingston.com/> 
Snail mail: 4464 Willow Road, Pleasanton, CA 94588
-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.