It is currently Sun Jun 25, 2017 3:30 am

All times are UTC




Post new topic Reply to topic  [ 2 posts ] 
Author Message
PostPosted: Fri Apr 01, 2016 5:19 am 

Joined: Mon Mar 28, 2016 4:04 am
Posts: 1
A拠点とB拠点で仮想L3スイッチを利用して拠点間VPNを張っています。
B拠点からA拠点へ、ftp,samba,sshなどの一部通信ができません。
どのような対応策が考えられますか?

最下部にVPN Serverの環境を記載しています。
またネットワーク論理図を添付しています。


――――――――――――――――――――
出来る事
――――――――――――――――――――
A拠点のPC[192.168.0.101]およびスマホ[192.168.0.151]からB拠点の・・・
├ホームゲートウェイ[192.168.82.254]へping,tracert,web接続
└サーバ[192.168.82.21]へping,tracert,web,ftp,samba,ssh接続

B拠点のPC[192.168.82.101]およびスマホ[192.168.82.151]からA拠点の・・・
├ホームゲートウェイ[192.168.0.1]へping,tracertの疎通
├NAS[192.168.0.11]へping,tracertの疎通
├PC[192.168.0.101]へping,tracertの疎通
├ルータ[192.168.0.254,192.168.181.254]へping,tracertの疎通
├サーバ[192.168.181.21]へping,tracertの疎通
└仮想HUB[192.168.181.232,192.168.82.232]へping,tracertの疎通
B拠点のサーバ[192.168.82.21]で、A拠点のサーバ[192.168.181.21]のsambaをマウント
B拠点のサーバ[192.168.82.21]からA拠点のサーバ[192.168.181.21]へftp接続


――――――――――――――――――――
出来ない事
――――――――――――――――――――
B拠点のPC[192.168.82.101]およびスマホ[192.168.82.151]から
A拠点の・・・
├ホームゲートウェイ[192.168.0.1]へweb接続
├NAS[192.168.0.11]へweb,ftp,samba,ssh接続
├ルータ[192.168.0.254,192.168.181.254]へweb接続
└サーバ[192.168.181.21]へweb,ftp,samba,ssh接続

但し、A拠点のサーバ[192.168.181.232]へL2TP/IPsecで接続した場合
これらの接続は行えます。


――――――――――――――――――――
ルーティングテーブル
――――――――――――――――――――
A拠点[192.168.0.1]
192.168.82.0/24 192.168.0.254
192.168.181.0/24 192.168.0.254

A拠点[192.168.0.254,192.168.181.254]
192.168.82.0/24 192.168.181.232

A拠点[仮想L3スイッチ]
192.168.0.0/24 192.168.181.254

B拠点[192.168.82.254]
192.168.0.0/24 192.168.82.232
192.168.181.0/24 192.168.82.232


――――――――――――――――――――
ポート解放
――――――――――――――――――――
A拠点[192.168.0.1]
192.168.181.21宛て、80/tcp,443/tcp,500/udp,4500/udp,ssh/tcp

A拠点[192.168.0.254,192.168.181.254]
アドレス変換は無効

B拠点[192.168.82.254]
192.168.82.21宛て、500/udp,4500/udp,ssh/tcp


――――――――――――――――――――
試した事
――――――――――――――――――――
A拠点のサーバ[192.168.181.21]にVPN over ICMP / DNSの設定および53/udpの解放
A拠点[192.168.0.1]の設定で992/tcp,1194/tcp,5555/tcpの解放


――――――――――――――――――――
不可解な現象
――――――――――――――――――――
A拠点のサーバ[192.168.181.21]で、デフォルトゲートウェイが次の様に登録されている時
(default via 192.168.181.254 dev br0 proto static metric 425)
次のコマンドを実行すると、しばらくの間だけは出来なかった接続が行える
($ sudo ip route add default via 192.168.181.254)




====================
以下、A拠点の環境
====================

――――――――――――――――――――
1. オペレーティングシステムの名前および CPU ビット
――――――――――――――――――――
CentOS 7.2.1511 x64

――――――――――――――――――――
2. "ifconfig -a" (UNIX) または "ipconfig /all" (Windows) の結果
――――――――――――――――――――
br0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet 192.168.181.21 netmask 255.255.255.0 broadcast 192.168.181.255
inet6 fe80::82ee:73ff:fe59:9b14 prefixlen 64 scopeid 0x20<link>
ether 00:ac:bb:eb:1b:6e txqueuelen 0 (Ethernet)
RX packets 6999124 bytes 2220165007 (2.0 GiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 6620486 bytes 1851219961 (1.7 GiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

ens1f2: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
ether 80:ee:73:59:9b:14 txqueuelen 1000 (Ethernet)
RX packets 6945777 bytes 2443433392 (2.2 GiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 6678452 bytes 1791693126 (1.6 GiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

lo: flags=73<UP,LOOPBACK,RUNNING> mtu 65536
inet 127.0.0.1 netmask 255.0.0.0
inet6 ::1 prefixlen 128 scopeid 0x10<host>
loop txqueuelen 0 (Local Loopback)
RX packets 45180 bytes 304565614 (290.4 MiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 45180 bytes 304565614 (290.4 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

tap_vpn: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet6 fe80::2ac:bbff:feeb:1b6e prefixlen 64 scopeid 0x20<link>
ether 00:ac:bb:eb:1b:6e txqueuelen 500 (Ethernet)
RX packets 456132 bytes 33191603 (31.6 MiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 420225 bytes 81455120 (77.6 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

wlp3s0: flags=4098<BROADCAST,MULTICAST> mtu 1500
ether 74:e5:43:ed:15:59 txqueuelen 1000 (Ethernet)
RX packets 0 bytes 0 (0.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 0 bytes 0 (0.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

――――――――――――――――――――
3. "uname -a" (UNIX) または "systeminfo" (Windows) の結果
――――――――――――――――――――
Linux localhost.localdomain 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16 17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

――――――――――――――――――――
4. SoftEther VPN のビルド番号
――――――――――――――――――――
Compiled 2015/10/19 20:28:20 by yagi at pc30

――――――――――――――――――――
5. どの SoftEther VPN のコンポーネントを使用していますか?
――――――――――――――――――――
SoftEther VPN Server

――――――――――――――――――――
6. VPN サーバーとインターネットとの間に NAT やファイアウォールデバイスはありますか?
――――――――――――――――――――
ホームゲートウェイ(PR-S300SE)
ポート解放:443,500,4500

――――――――――――――――――――
7. SecureNAT 機能を使用していますか?
――――――――――――――――――――
使用していない

――――――――――――――――――――
8. 現在の vpn_server.config または vpn_bridge.config ファイルの内容を投稿に添付してください。
――――――――――――――――――――
byte Key と IPsec_Secret にマスクをかけています

# Software Configuration File
# ---------------------------
#
# You may edit this file when the VPN Server / Client / Bridge program is not running.
#
# In prior to edit this file manually by your text editor,
# shutdown the VPN Server / Client / Bridge background service.
# Otherwise, all changes will be lost.
#
declare root
{
uint ConfigRevision 81
bool IPsecMessageDisplayed true
string Region JP
bool VgsMessageDisplayed false

declare DDnsClient
{
bool Disabled false
byte Key XXXXXXXXXXXXXXXXXXXXXXXXXXXX
string LocalHostname center
string ProxyHostName $
uint ProxyPort 0
uint ProxyType 0
string ProxyUsername $
}
declare IPsec
{
bool EtherIP_IPsec false
string IPsec_Secret XXXXXXXXXXXXXXXXXXXX
string L2TP_DefaultHub tachyon
bool L2TP_IPsec true
bool L2TP_Raw false

declare EtherIP_IDSettingsList
{
}
}
declare ListenerList
{
declare Listener0
{
bool DisableDos false
bool Enabled true
uint Port 443
}
declare Listener1
{
bool DisableDos false
bool Enabled true
uint Port 992
}
declare Listener2
{
bool DisableDos false
bool Enabled true
uint Port 1194
}
declare Listener3
{
bool DisableDos false
bool Enabled true
uint Port 5555
}
}
declare LocalBridgeList
{
bool DoNotDisableOffloading false

declare LocalBridge0
{
string DeviceName tac
string HubName tachyon
bool LimitBroadcast false
bool MonitorMode false
bool NoPromiscuousMode false
string TapMacAddress 00-AC-BB-EB-1B-6E
bool TapMode true
}
}
declare ServerConfiguration
{
bool AcceptOnlyTls false
uint64 AutoDeleteCheckDiskFreeSpaceMin 104857600
uint AutoDeleteCheckIntervalSecs 300
uint AutoSaveConfigSpan 300
bool BackupConfigOnlyWhenModified true
string CipherName RC4-MD5
uint CurrentBuild 9599
bool DisableCoreDumpOnUnix false
bool DisableDeadLockCheck false
bool DisableDosProction false
bool DisableGetHostNameWhenAcceptTcp false
bool DisableIntelAesAcceleration false
bool DisableIPv6Listener false
bool DisableNatTraversal false
bool DisableOpenVPNServer true
bool DisableSessionReconnect false
bool DisableSSTPServer false
bool DontBackupConfig false
bool EnableVpnAzure false
bool EnableVpnOverDns false
bool EnableVpnOverIcmp false
byte HashedPassword hWu4uLfD4nGrdmzWrH+U6LLhSuI=
string KeepConnectHost keepalive.softether.org
uint KeepConnectInterval 50
uint KeepConnectPort 80
uint KeepConnectProtocol 1
uint64 LoggerMaxLogSize 1073741823
uint MaxConcurrentDnsClientThreads 512
uint MaxConnectionsPerIP 256
uint MaxUnestablishedConnections 1000
bool NoHighPriorityProcess false
bool NoLinuxArpFilter false
bool NoSendSignature false
string OpenVPNDefaultClientOption dev-type$20tun,link-mtu$201500,tun-mtu$201500,cipher$20AES-128-CBC,auth$20SHA1,keysize$20128,key-method$202,tls-client
string OpenVPN_UdpPortList 1194
bool SaveDebugLog false
byte ServerCert MIIDsjCCApqgAwIBAgIBADANBgkqhkiG9w0BAQsFADBYMRcwFQYDVQQDDA5jZW50ZXIudGFjaHlvbjEXMBUGA1UECgwOY2VudGVyLnRhY2h5b24xFzAVBgNVBAsMDmNlbnRlci50YWNoeW9uMQswCQYDVQQGEwJVUzAeFw0xNjAzMjQxMDIwMzNaFw0zNjEyMzExMDIwMzNaMFgxFzAVBgNVBAMMDmNlbnRlci50YWNoeW9uMRcwFQYDVQQKDA5jZW50ZXIudGFjaHlvbjEXMBUGA1UECwwOY2VudGVyLnRhY2h5b24xCzAJBgNVBAYTAlVTMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA08QF98B72MwOtMnbtxtvP5urcBU3Hz46cdSUN5fa6ovHoHQPQ0rcFrFxBsnpfYz/kno1NZiXdQxgfwNGbYWUuiUEQoitvygpfPq8Jxci6uc/ripKL9hvpJpIT4PbcVvCX3j7awNIb6Puro/DTkhizsdUfiXJd6h8b2qufpyHGrpBrSthvvQsKulln7qjb10fkxUB26skhWBCBVgGhiXw0XWhjOkBHEn8qEo3tX86jfiWn2ha3dBQFu5XNoHL3cs4bWyQzje2DLsqW7f4OZmTnJbCXXrLxWxQkYgBUVtXJNgqQ6se/EryECfEFaN6kqVuLB7oZK5E1KUD1QVjzvFmwwIDAQABo4GGMIGDMA8GA1UdEwEB/wQFMAMBAf8wCwYDVR0PBAQDAgH2MGMGA1UdJQRcMFoGCCsGAQUFBwMBBggrBgEFBQcDAgYIKwYBBQUHAwMGCCsGAQUFBwMEBggrBgEFBQcDBQYIKwYBBQUHAwYGCCsGAQUFBwMHBggrBgEFBQcDCAYIKwYBBQUHAwkwDQYJKoZIhvcNAQELBQADggEBAMW7GmR5OC2O+0ziiAMAlz4WBrFZWgMOkGbAIunsHsbnVLnA0LxsomDG6kDB+D/8MCeTcllDgrKNeeHZvaq/y4LAKfk/IdL/rVv7GYpPvCreDb+nAkRP1U7LmCny+d+xfsfgU7yT7lB++Jf41O6ozGoEJpDjGgA9ojKINR+3s6cdcFIsdvyx6LXWHKHp3zJ2EqhPikiVdGDuz2UHbkSGtoTQsJ7k/xM6lyJtz/tEuP1/nyDE+5r4YWKR0hgdbknR9/4JpZqBcNhKkreyV7/W+mi/wW+ClBRlgXV6Q3/Ou5b25hnWzJK8B0cpvNglwQ4MNnA9WXqfWFIpm8sp7BmcnX0=
byte ServerKey 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
uint ServerLogSwitchType 4
uint ServerType 0
bool UseKeepConnect false
bool UseWebTimePage false
bool UseWebUI false

declare GlobalParams
{
uint FIFO_BUDGET 10240000
uint HUB_ARP_SEND_INTERVAL 5000
uint IP_TABLE_EXPIRE_TIME 60000
uint IP_TABLE_EXPIRE_TIME_DHCP 300000
uint MAC_TABLE_EXPIRE_TIME 600000
uint MAX_BUFFERING_PACKET_SIZE 2560000
uint MAX_HUB_LINKS 1024
uint MAX_IP_TABLES 65536
uint MAX_MAC_TABLES 65536
uint MAX_SEND_SOCKET_QUEUE_NUM 128
uint MAX_SEND_SOCKET_QUEUE_SIZE 2560000
uint MAX_STORED_QUEUE_NUM 1024
uint MEM_FIFO_REALLOC_MEM_SIZE 655360
uint MIN_SEND_SOCKET_QUEUE_SIZE 320000
uint QUEUE_BUDGET 2048
uint SELECT_TIME 256
uint SELECT_TIME_FOR_NAT 30
uint STORM_CHECK_SPAN 500
uint STORM_DISCARD_VALUE_END 1024
uint STORM_DISCARD_VALUE_START 3
}
declare ServerTraffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 66262485
uint64 BroadcastCount 913091
uint64 UnicastBytes 1742352326
uint64 UnicastCount 5103472
}
declare SendTraffic
{
uint64 BroadcastBytes 89637122
uint64 BroadcastCount 1271625
uint64 UnicastBytes 1731185849
uint64 UnicastCount 5140991
}
}
declare SyslogSettings
{
string HostName $
uint Port 514
uint SaveType 0
}
}
declare VirtualHUB
{
declare tachyon
{
uint64 CreatedTime 1458783107431
byte HashedPassword QM16/ZZPKIQjF0zAXUqxZJMQUFE=
uint64 LastCommTime 1459105061475
uint64 LastLoginTime 1458964351951
uint NumLogin 5
bool Online true
bool RadiusConvertAllMsChapv2AuthRequestToEap false
uint RadiusRetryInterval 0
uint RadiusServerPort 1812
string RadiusSuffixFilter $
bool RadiusUsePeapInsteadOfEap false
byte SecurePassword 1OAQzAmL8HRYk+B+DfbHqCdfH60=
uint Type 0

declare AccessList
{
}
declare AdminOption
{
uint allow_hub_admin_change_option 0
uint deny_bridge 0
uint deny_change_user_password 0
uint deny_empty_password 0
uint deny_hub_admin_change_ext_option 0
uint deny_qos 0
uint deny_routing 0
uint max_accesslists 0
uint max_bitrates_download 0
uint max_bitrates_upload 0
uint max_groups 0
uint max_multilogins_per_user 0
uint max_sessions 0
uint max_sessions_bridge 0
uint max_sessions_client 0
uint max_sessions_client_bridge_apply 0
uint max_users 0
uint no_access_list_include_file 0
uint no_cascade 0
uint no_change_access_control_list 0
uint no_change_access_list 0
uint no_change_admin_password 0
uint no_change_cert_list 0
uint no_change_crl_list 0
uint no_change_groups 0
uint no_change_log_config 0
uint no_change_log_switch_type 0
uint no_change_msg 0
uint no_change_users 0
uint no_delay_jitter_packet_loss 0
uint no_delete_iptable 0
uint no_delete_mactable 0
uint no_disconnect_session 0
uint no_enum_session 0
uint no_offline 0
uint no_online 0
uint no_query_session 0
uint no_read_log_file 0
uint no_securenat 0
uint no_securenat_enabledhcp 0
uint no_securenat_enablenat 0
}
declare CascadeList
{
declare Cascade0
{
bool CheckServerCert false
bool Online true

declare ClientAuth
{
uint AuthType 1
byte HashedPassword DU16yIVk3jFnvLTptM3+2DSBI2U=
string Username ysrock
}
declare ClientOption
{
string AccountName GMO
uint AdditionalConnectionInterval 1
uint ConnectionDisconnectSpan 0
string DeviceName _SEHUBLINKCLI_
bool DisableQoS false
bool HalfConnection false
bool HideNicInfoWindow false
bool HideStatusWindow false
string Hostname 153.122.57.131
string HubName Tachyon
uint MaxConnection 8
bool NoRoutingTracking true
bool NoTls1 false
bool NoUdpAcceleration false
uint NumRetry 4294967295
uint Port 443
uint PortUDP 0
string ProxyName $
byte ProxyPassword $
uint ProxyPort 0
uint ProxyType 0
string ProxyUsername $
bool RequireBridgeRoutingMode true
bool RequireMonitorMode false
uint RetryInterval 10
bool UseCompress false
bool UseEncrypt true
}
declare Policy
{
bool ArpDhcpOnly false
bool CheckIP false
bool CheckIPv6 false
bool CheckMac false
bool DHCPFilter false
bool DHCPForce false
bool DHCPNoServer false
bool DHCPv6Filter false
bool DHCPv6NoServer false
bool FilterIPv4 false
bool FilterIPv6 false
bool FilterNonIP false
uint MaxDownload 0
uint MaxIP 0
uint MaxIPv6 0
uint MaxMac 0
uint MaxUpload 0
bool NoBroadcastLimiter false
bool NoIPv6DefaultRouterInRA false
bool NoIPv6DefaultRouterInRAWhenIPv6 false
bool NoServer false
bool NoServerV6 false
bool RAFilter false
bool RSandRAFilter false
uint VLanId 0
}
}
}
declare LogSetting
{
uint PacketLogSwitchType 4
uint PACKET_LOG_ARP 0
uint PACKET_LOG_DHCP 1
uint PACKET_LOG_ETHERNET 0
uint PACKET_LOG_ICMP 0
uint PACKET_LOG_IP 0
uint PACKET_LOG_TCP 0
uint PACKET_LOG_TCP_CONN 1
uint PACKET_LOG_UDP 0
bool SavePacketLog true
bool SaveSecurityLog true
uint SecurityLogSwitchType 4
}
declare Message
{
}
declare Option
{
uint AccessListIncludeFileCacheLifetime 30
uint AdjustTcpMssValue 0
bool ApplyIPv4AccessListOnArpPacket false
bool AssignVLanIdByRadiusAttribute false
bool BroadcastLimiterStrictMode false
uint BroadcastStormDetectionThreshold 0
uint ClientMinimumRequiredBuild 0
bool DenyAllRadiusLoginWithNoVlanAssign false
uint DetectDormantSessionInterval 0
bool DisableAdjustTcpMss false
bool DisableCheckMacOnLocalBridge false
bool DisableCorrectIpOffloadChecksum false
bool DisableHttpParsing false
bool DisableIPParsing false
bool DisableIpRawModeSecureNAT false
bool DisableKernelModeSecureNAT false
bool DisableUdpAcceleration false
bool DisableUdpFilterForLocalBridgeNic false
bool DisableUserModeSecureNAT false
bool DoNotSaveHeavySecurityLogs false
bool DropArpInPrivacyFilterMode true
bool DropBroadcastsInPrivacyFilterMode true
bool FilterBPDU false
bool FilterIPv4 false
bool FilterIPv6 false
bool FilterNonIP false
bool FilterOSPF false
bool FilterPPPoE false
uint FloodingSendQueueBufferQuota 33554432
bool ManageOnlyLocalUnicastIPv6 true
bool ManageOnlyPrivateIP true
uint MaxLoggedPacketsPerMinute 0
uint MaxSession 0
bool NoArpPolling false
bool NoDhcpPacketLogOutsideHub true
bool NoEnum false
bool NoIpTable false
bool NoIPv4PacketLog false
bool NoIPv6AddrPolling false
bool NoIPv6DefaultRouterInRAWhenIPv6 true
bool NoIPv6PacketLog false
bool NoLookBPDUBridgeId false
bool NoMacAddressLog true
bool NoManageVlanId false
bool NoPhysicalIPOnPacketLog false
bool NoSpinLockForPacketDelay false
bool RemoveDefGwOnDhcpForLocalhost true
uint RequiredClientId 0
uint SecureNAT_MaxDnsSessionsPerIp 0
uint SecureNAT_MaxIcmpSessionsPerIp 0
uint SecureNAT_MaxTcpSessionsPerIp 0
uint SecureNAT_MaxTcpSynSentPerIp 0
uint SecureNAT_MaxUdpSessionsPerIp 0
bool SecureNAT_RandomizeAssignIp false
bool SuppressClientUpdateNotification false
string VlanTypeId 0x8100
bool YieldAfterStorePacket false
}
declare SecureNAT
{
bool Disabled true
bool SaveLog true

declare VirtualDhcpServer
{
string DhcpDnsServerAddress 192.168.30.1
string DhcpDnsServerAddress2 0.0.0.0
string DhcpDomainName $
bool DhcpEnabled true
uint DhcpExpireTimeSpan 7200
string DhcpGatewayAddress 192.168.30.1
string DhcpLeaseIPEnd 192.168.30.200
string DhcpLeaseIPStart 192.168.30.10
string DhcpPushRoutes $
string DhcpSubnetMask 255.255.255.0
}
declare VirtualHost
{
string VirtualHostIp 192.168.30.1
string VirtualHostIpSubnetMask 255.255.255.0
string VirtualHostMacAddress 00-AC-C4-7F-83-34
}
declare VirtualRouter
{
bool NatEnabled true
uint NatMtu 1500
uint NatTcpTimeout 1800
uint NatUdpTimeout 60
}
}
declare SecurityAccountDatabase
{
declare CertList
{
}
declare CrlList
{
}
declare GroupList
{
}
declare IPAccessControlList
{
}
declare UserList
{
declare letsnote
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword 8LajH+yD+qGtn3PIcJduABkrwZI=
uint AuthType 1
uint64 CreatedTime 1458783186555
uint64 ExpireTime 0
uint64 LastLoginTime 0
string Note $
uint NumLogin 0
string RealName $
uint64 UpdatedTime 1458783186555

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 0
uint64 BroadcastCount 0
uint64 UnicastBytes 0
uint64 UnicastCount 0
}
declare SendTraffic
{
uint64 BroadcastBytes 0
uint64 BroadcastCount 0
uint64 UnicastBytes 0
uint64 UnicastCount 0
}
}
}
declare xperia
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword 6GAOI6uRkHXj4AG36QPN9jf355Q=
uint AuthType 1
uint64 CreatedTime 1458783169523
uint64 ExpireTime 0
uint64 LastLoginTime 1458882979317
string Note $
uint NumLogin 2
string RealName $
uint64 UpdatedTime 1458783169523

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 7860
uint64 BroadcastCount 124
uint64 UnicastBytes 2227544
uint64 UnicastCount 2025
}
declare SendTraffic
{
uint64 BroadcastBytes 5666
uint64 BroadcastCount 19
uint64 UnicastBytes 167199
uint64 UnicastCount 1710
}
}
}
declare yshome
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword IJOeK7OJUgOZHFsU5qGpdcWPmB0=
uint AuthType 1
uint64 CreatedTime 1458783177491
uint64 ExpireTime 0
uint64 LastLoginTime 1458964351951
string Note $
uint NumLogin 3
string RealName $
uint64 UpdatedTime 1458783177491

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 20527
uint64 BroadcastCount 364
uint64 UnicastBytes 7764935
uint64 UnicastCount 7874
}
declare SendTraffic
{
uint64 BroadcastBytes 37584
uint64 BroadcastCount 339
uint64 UnicastBytes 969674
uint64 UnicastCount 6745
}
}
}
declare ysrock
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword DU16yIVk3jFnvLTptM3+2DSBI2U=
uint AuthType 1
uint64 CreatedTime 1458783160731
uint64 ExpireTime 0
uint64 LastLoginTime 0
string Note $
uint NumLogin 0
string RealName $
uint64 UpdatedTime 1458783160731

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 0
uint64 BroadcastCount 0
uint64 UnicastBytes 0
uint64 UnicastCount 0
}
declare SendTraffic
{
uint64 BroadcastBytes 0
uint64 BroadcastCount 0
uint64 UnicastBytes 0
uint64 UnicastCount 0
}
}
}
}
}
declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 23704151
uint64 BroadcastCount 363286
uint64 UnicastBytes 914701672
uint64 UnicastCount 2750373
}
declare SendTraffic
{
uint64 BroadcastBytes 47190619
uint64 BroadcastCount 723067
uint64 UnicastBytes 916001665
uint64 UnicastCount 2827056
}
}
}
declare yshome
{
uint64 CreatedTime 1458783115196
byte HashedPassword QM16/ZZPKIQjF0zAXUqxZJMQUFE=
uint64 LastCommTime 1459105061168
uint64 LastLoginTime 1458964332896
uint NumLogin 16
bool Online true
bool RadiusConvertAllMsChapv2AuthRequestToEap false
uint RadiusRetryInterval 0
uint RadiusServerPort 1812
string RadiusSuffixFilter $
bool RadiusUsePeapInsteadOfEap false
byte SecurePassword 1OAQzAmL8HRYk+B+DfbHqCdfH60=
uint Type 0

declare AccessList
{
}
declare AdminOption
{
uint allow_hub_admin_change_option 0
uint deny_bridge 0
uint deny_change_user_password 0
uint deny_empty_password 0
uint deny_hub_admin_change_ext_option 0
uint deny_qos 0
uint deny_routing 0
uint max_accesslists 0
uint max_bitrates_download 0
uint max_bitrates_upload 0
uint max_groups 0
uint max_multilogins_per_user 0
uint max_sessions 0
uint max_sessions_bridge 0
uint max_sessions_client 0
uint max_sessions_client_bridge_apply 0
uint max_users 0
uint no_access_list_include_file 0
uint no_cascade 0
uint no_change_access_control_list 0
uint no_change_access_list 0
uint no_change_admin_password 0
uint no_change_cert_list 0
uint no_change_crl_list 0
uint no_change_groups 0
uint no_change_log_config 0
uint no_change_log_switch_type 0
uint no_change_msg 0
uint no_change_users 0
uint no_delay_jitter_packet_loss 0
uint no_delete_iptable 0
uint no_delete_mactable 0
uint no_disconnect_session 0
uint no_enum_session 0
uint no_offline 0
uint no_online 0
uint no_query_session 0
uint no_read_log_file 0
uint no_securenat 0
uint no_securenat_enabledhcp 0
uint no_securenat_enablenat 0
}
declare CascadeList
{
}
declare LogSetting
{
uint PacketLogSwitchType 4
uint PACKET_LOG_ARP 0
uint PACKET_LOG_DHCP 1
uint PACKET_LOG_ETHERNET 0
uint PACKET_LOG_ICMP 0
uint PACKET_LOG_IP 0
uint PACKET_LOG_TCP 0
uint PACKET_LOG_TCP_CONN 1
uint PACKET_LOG_UDP 0
bool SavePacketLog true
bool SaveSecurityLog true
uint SecurityLogSwitchType 4
}
declare Message
{
}
declare Option
{
uint AccessListIncludeFileCacheLifetime 30
uint AdjustTcpMssValue 0
bool ApplyIPv4AccessListOnArpPacket false
bool AssignVLanIdByRadiusAttribute false
bool BroadcastLimiterStrictMode false
uint BroadcastStormDetectionThreshold 0
uint ClientMinimumRequiredBuild 0
bool DenyAllRadiusLoginWithNoVlanAssign false
uint DetectDormantSessionInterval 0
bool DisableAdjustTcpMss false
bool DisableCheckMacOnLocalBridge false
bool DisableCorrectIpOffloadChecksum false
bool DisableHttpParsing false
bool DisableIPParsing false
bool DisableIpRawModeSecureNAT false
bool DisableKernelModeSecureNAT false
bool DisableUdpAcceleration false
bool DisableUdpFilterForLocalBridgeNic false
bool DisableUserModeSecureNAT false
bool DoNotSaveHeavySecurityLogs false
bool DropArpInPrivacyFilterMode true
bool DropBroadcastsInPrivacyFilterMode true
bool FilterBPDU false
bool FilterIPv4 false
bool FilterIPv6 false
bool FilterNonIP false
bool FilterOSPF false
bool FilterPPPoE false
uint FloodingSendQueueBufferQuota 33554432
bool ManageOnlyLocalUnicastIPv6 true
bool ManageOnlyPrivateIP true
uint MaxLoggedPacketsPerMinute 0
uint MaxSession 0
bool NoArpPolling false
bool NoDhcpPacketLogOutsideHub true
bool NoEnum false
bool NoIpTable false
bool NoIPv4PacketLog false
bool NoIPv6AddrPolling false
bool NoIPv6DefaultRouterInRAWhenIPv6 true
bool NoIPv6PacketLog false
bool NoLookBPDUBridgeId false
bool NoMacAddressLog true
bool NoManageVlanId false
bool NoPhysicalIPOnPacketLog false
bool NoSpinLockForPacketDelay false
bool RemoveDefGwOnDhcpForLocalhost true
uint RequiredClientId 0
uint SecureNAT_MaxDnsSessionsPerIp 0
uint SecureNAT_MaxIcmpSessionsPerIp 0
uint SecureNAT_MaxTcpSessionsPerIp 0
uint SecureNAT_MaxTcpSynSentPerIp 0
uint SecureNAT_MaxUdpSessionsPerIp 0
bool SecureNAT_RandomizeAssignIp false
bool SuppressClientUpdateNotification false
string VlanTypeId 0x8100
bool YieldAfterStorePacket false
}
declare SecureNAT
{
bool Disabled true
bool SaveLog true

declare VirtualDhcpServer
{
string DhcpDnsServerAddress 192.168.30.1
string DhcpDnsServerAddress2 0.0.0.0
string DhcpDomainName $
bool DhcpEnabled true
uint DhcpExpireTimeSpan 7200
string DhcpGatewayAddress 192.168.30.1
string DhcpLeaseIPEnd 192.168.30.200
string DhcpLeaseIPStart 192.168.30.10
string DhcpPushRoutes $
string DhcpSubnetMask 255.255.255.0
}
declare VirtualHost
{
string VirtualHostIp 192.168.30.1
string VirtualHostIpSubnetMask 255.255.255.0
string VirtualHostMacAddress 00-AC-93-CA-73-A5
}
declare VirtualRouter
{
bool NatEnabled true
uint NatMtu 1500
uint NatTcpTimeout 1800
uint NatUdpTimeout 60
}
}
declare SecurityAccountDatabase
{
declare CertList
{
}
declare CrlList
{
}
declare GroupList
{
}
declare IPAccessControlList
{
}
declare UserList
{
declare ysrock
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword DU16yIVk3jFnvLTptM3+2DSBI2U=
uint AuthType 1
uint64 CreatedTime 1458783406751
uint64 ExpireTime 0
uint64 LastLoginTime 1458964332896
string Note $
uint NumLogin 16
string RealName $
uint64 UpdatedTime 1458783406751

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 8423839
uint64 BroadcastCount 135944
uint64 UnicastBytes 483504808
uint64 UnicastCount 1408873
}
declare SendTraffic
{
uint64 BroadcastBytes 34088980
uint64 BroadcastCount 413092
uint64 UnicastBytes 368963506
uint64 UnicastCount 1468347
}
}
}
}
}
declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 42518506
uint64 BroadcastCount 549177
uint64 UnicastBytes 827636668
uint64 UnicastCount 2352766
}
declare SendTraffic
{
uint64 BroadcastBytes 42443378
uint64 BroadcastCount 548508
uint64 UnicastBytes 815170030
uint64 UnicastCount 2313598
}
}
}
declare ysnote
{
uint64 CreatedTime 1459102570624
byte HashedPassword 7Uc3Q8bX2Qh26VQ7yJC5NIZIKKY=
uint64 LastCommTime 1459104246138
uint64 LastLoginTime 1459102839272
uint NumLogin 1
bool Online true
bool RadiusConvertAllMsChapv2AuthRequestToEap false
uint RadiusRetryInterval 0
uint RadiusServerPort 1812
string RadiusSuffixFilter $
bool RadiusUsePeapInsteadOfEap false
byte SecurePassword opcRKcSFaf7Gex2SqUnPZhDUr7w=
uint Type 0

declare AccessList
{
}
declare AdminOption
{
uint allow_hub_admin_change_option 0
uint deny_bridge 0
uint deny_change_user_password 0
uint deny_empty_password 0
uint deny_hub_admin_change_ext_option 0
uint deny_qos 0
uint deny_routing 0
uint max_accesslists 0
uint max_bitrates_download 0
uint max_bitrates_upload 0
uint max_groups 0
uint max_multilogins_per_user 0
uint max_sessions 0
uint max_sessions_bridge 0
uint max_sessions_client 0
uint max_sessions_client_bridge_apply 0
uint max_users 0
uint no_access_list_include_file 0
uint no_cascade 0
uint no_change_access_control_list 0
uint no_change_access_list 0
uint no_change_admin_password 0
uint no_change_cert_list 0
uint no_change_crl_list 0
uint no_change_groups 0
uint no_change_log_config 0
uint no_change_log_switch_type 0
uint no_change_msg 0
uint no_change_users 0
uint no_delay_jitter_packet_loss 0
uint no_delete_iptable 0
uint no_delete_mactable 0
uint no_disconnect_session 0
uint no_enum_session 0
uint no_offline 0
uint no_online 0
uint no_query_session 0
uint no_read_log_file 0
uint no_securenat 0
uint no_securenat_enabledhcp 0
uint no_securenat_enablenat 0
}
declare CascadeList
{
}
declare LogSetting
{
uint PacketLogSwitchType 4
uint PACKET_LOG_ARP 0
uint PACKET_LOG_DHCP 1
uint PACKET_LOG_ETHERNET 0
uint PACKET_LOG_ICMP 0
uint PACKET_LOG_IP 0
uint PACKET_LOG_TCP 0
uint PACKET_LOG_TCP_CONN 1
uint PACKET_LOG_UDP 0
bool SavePacketLog true
bool SaveSecurityLog true
uint SecurityLogSwitchType 4
}
declare Message
{
}
declare Option
{
uint AccessListIncludeFileCacheLifetime 30
uint AdjustTcpMssValue 0
bool ApplyIPv4AccessListOnArpPacket false
bool AssignVLanIdByRadiusAttribute false
bool BroadcastLimiterStrictMode false
uint BroadcastStormDetectionThreshold 0
uint ClientMinimumRequiredBuild 0
bool DenyAllRadiusLoginWithNoVlanAssign false
uint DetectDormantSessionInterval 0
bool DisableAdjustTcpMss false
bool DisableCheckMacOnLocalBridge false
bool DisableCorrectIpOffloadChecksum false
bool DisableHttpParsing false
bool DisableIPParsing false
bool DisableIpRawModeSecureNAT false
bool DisableKernelModeSecureNAT false
bool DisableUdpAcceleration false
bool DisableUdpFilterForLocalBridgeNic false
bool DisableUserModeSecureNAT false
bool DoNotSaveHeavySecurityLogs false
bool DropArpInPrivacyFilterMode true
bool DropBroadcastsInPrivacyFilterMode true
bool FilterBPDU false
bool FilterIPv4 false
bool FilterIPv6 false
bool FilterNonIP false
bool FilterOSPF false
bool FilterPPPoE false
uint FloodingSendQueueBufferQuota 33554432
bool ManageOnlyLocalUnicastIPv6 true
bool ManageOnlyPrivateIP true
uint MaxLoggedPacketsPerMinute 0
uint MaxSession 0
bool NoArpPolling false
bool NoDhcpPacketLogOutsideHub true
bool NoEnum false
bool NoIpTable false
bool NoIPv4PacketLog false
bool NoIPv6AddrPolling false
bool NoIPv6DefaultRouterInRAWhenIPv6 true
bool NoIPv6PacketLog false
bool NoLookBPDUBridgeId false
bool NoMacAddressLog true
bool NoManageVlanId false
bool NoPhysicalIPOnPacketLog false
bool NoSpinLockForPacketDelay false
bool RemoveDefGwOnDhcpForLocalhost true
uint RequiredClientId 0
uint SecureNAT_MaxDnsSessionsPerIp 0
uint SecureNAT_MaxIcmpSessionsPerIp 0
uint SecureNAT_MaxTcpSessionsPerIp 0
uint SecureNAT_MaxTcpSynSentPerIp 0
uint SecureNAT_MaxUdpSessionsPerIp 0
bool SecureNAT_RandomizeAssignIp false
bool SuppressClientUpdateNotification false
string VlanTypeId 0x8100
bool YieldAfterStorePacket false
}
declare SecureNAT
{
bool Disabled true
bool SaveLog true

declare VirtualDhcpServer
{
string DhcpDnsServerAddress 192.168.30.1
string DhcpDnsServerAddress2 0.0.0.0
string DhcpDomainName $
bool DhcpEnabled true
uint DhcpExpireTimeSpan 7200
string DhcpGatewayAddress 192.168.30.1
string DhcpLeaseIPEnd 192.168.30.200
string DhcpLeaseIPStart 192.168.30.10
string DhcpPushRoutes $
string DhcpSubnetMask 255.255.255.0
}
declare VirtualHost
{
string VirtualHostIp 192.168.30.1
string VirtualHostIpSubnetMask 255.255.255.0
string VirtualHostMacAddress 00-AC-88-F9-AB-B2
}
declare VirtualRouter
{
bool NatEnabled true
uint NatMtu 1500
uint NatTcpTimeout 1800
uint NatUdpTimeout 60
}
}
declare SecurityAccountDatabase
{
declare CertList
{
}
declare CrlList
{
}
declare GroupList
{
}
declare IPAccessControlList
{
}
declare UserList
{
declare ysrock
{
byte AuthNtLmSecureHash 2LPqjszHT4Guo7xoHFzR+Q==
byte AuthPassword DU16yIVk3jFnvLTptM3+2DSBI2U=
uint AuthType 1
uint64 CreatedTime 1459102583503
uint64 ExpireTime 0
uint64 LastLoginTime 1459102839272
string Note $
uint NumLogin 1
string RealName $
uint64 UpdatedTime 1459102583503

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 1905
uint64 BroadcastCount 30
uint64 UnicastBytes 966
uint64 UnicastCount 23
}
declare SendTraffic
{
uint64 BroadcastBytes 1220
uint64 BroadcastCount 20
uint64 UnicastBytes 840
uint64 UnicastCount 20
}
}
}
}
}
declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 39828
uint64 BroadcastCount 628
uint64 UnicastBytes 13986
uint64 UnicastCount 333
}
declare SendTraffic
{
uint64 BroadcastBytes 3125
uint64 BroadcastCount 50
uint64 UnicastBytes 14154
uint64 UnicastCount 337
}
}
}
}
declare VirtualLayer3SwitchList
{
declare ysgroup
{
bool Active true

declare InterfaceList
{
declare Interface0
{
string HubName tachyon
string IpAddress 192.168.181.232
string SubnetMask 255.255.255.0
}
declare Interface1
{
string HubName yshome
string IpAddress 192.168.82.232
string SubnetMask 255.255.255.0
}
}
declare RoutingTable
{
declare Entry0
{
string GatewayAddress 192.168.181.254
uint Metric 15
string NetworkAddress 192.168.0.0
string SubnetMask 255.255.255.0
}
}
}
}
}


Attachments:
File comment: ネットワーク論理図
SoftEther.png
SoftEther.png [ 16.08 KiB | Viewed 10227 times ]
Top
 Profile  
Reply with quote  
PostPosted: Tue Dec 27, 2016 8:47 am 

Joined: Tue Dec 27, 2016 8:44 am
Posts: 1
こんにちは.

かなり前のポストですが,私も現在似たような症状に悩まされています.
もし,この件について解決されてたのであれば,どの辺りの設定を見直されたのか教えて頂けないでしょうか.

宜しくお願いいたします.


Top
 Profile  
Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

All times are UTC


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group
Return to www.softether.org