mnsaint

Q: VPN not working after upgrading to Mavericks

Anyone else having issues? It worked fine with Mountain Lion on my iMac but, after updating to Mavericks today, it won't connect. It says to verify the server's IP number but it's correct.

 

Thanks,

- s

iMac, OS X Mavericks (10.9)

Posted on Oct 22, 2013 4:28 PM

Close

Q: VPN not working after upgrading to Mavericks

  • All replies
  • Helpful answers

first Previous Page 11 of 12 last Next
  • by sfgate,

    sfgate sfgate Dec 19, 2013 3:35 PM in response to mnsaint
    Level 1 (0 points)
    Dec 19, 2013 3:35 PM in response to mnsaint

    Update is working for me.  Now I'm ready for the equivalent iOS update

  • by essandess,

    essandess essandess Dec 19, 2013 7:49 PM in response to sfgate
    Level 1 (28 points)
    Applications
    Dec 19, 2013 7:49 PM in response to sfgate

    The VPN update works ... except if you run a pf firewall. I can't turn off the firewall just to get VPN through.

     

    Here are the pf.conf rules I'm using, at the top of the pf.conf file. These break OS X Server's L2TP, but I don't see why.

     

    vpn_udp_services = "{ 500, 1701, 4500 }"

    vpn_tcp_services = "{ 1723 }"  # PPTP port, which should be disabled

    pass log quick proto udp from any to any port $vpn_udp_services

    pass log quick proto tcp from any to any port $vpn_tcp_services

     

    I see the incoming connects with tcpdump, so this should work, but does not. VPN doesn't connect through the server's pf firewall.

     

    $ sudo ifconfig pflog0 create

    $ sudo tcpdump -n -e -ttt -i pflog0

    00:00:11.571839 rule 2/0(match): pass in on en0: 193.28.195.240.37857 > 10.0.1.3.500: isakmp: phase 1 I ident

    00:00:01.279990 rule 4/0(match): pass in on en0: 193.208.95.240.49286 > 10.0.1.3.4500: NONESP-encap: isakmp: phase 1 I ident[E]

     

    Does anyone have OS X Server's VPN service working with a pf firewall? What are your pf.conf rules?

     

    It appears that OS X Server's VPN technology continues to be problematic compared to TLS-based VPN.

  • by nameCantBeBl_nk,

    nameCantBeBl_nk nameCantBeBl_nk Dec 19, 2013 9:25 PM in response to essandess
    Level 1 (0 points)
    Dec 19, 2013 9:25 PM in response to essandess

    I have it running with IceFloor.  Rules are a basic setup- only ports forwarded at the router are the ones for VPN and the only thing allowed into the server are the same ports. I can pull the actual rules later today if you want/it would be helpful.

  • by essandess,

    essandess essandess Dec 20, 2013 7:42 PM in response to nameCantBeBl_nk
    Level 1 (28 points)
    Applications
    Dec 20, 2013 7:42 PM in response to nameCantBeBl_nk

    Thanks -- I had a look at my test IceFloor setup and learned that my nat rules cause the problem, Changing the nat command to this directive allows both L2TP and OpenVPN connections:

     

    int_if = "en0"

    nat on $int_if inet from 10.8.0/24 to any -> ($int_if)

  • by hvail,

    hvail hvail Dec 20, 2013 8:13 PM in response to sfgate
    Level 1 (20 points)
    Dec 20, 2013 8:13 PM in response to sfgate

    Is there an IOS equivalent?

  • by Lime Mojito,

    Lime Mojito Lime Mojito Dec 20, 2013 8:17 PM in response to mnsaint
    Level 1 (0 points)
    Dec 20, 2013 8:17 PM in response to mnsaint

    FYI the new update seems to work only if Universal plug and play (UPNP) is disabled on your router.

  • by nexus667,

    nexus667 nexus667 Dec 23, 2013 7:49 AM in response to davedavedave.h
    Level 1 (0 points)
    Dec 23, 2013 7:49 AM in response to davedavedave.h

    Hello davedavedave.h,

     

     

    Could you repost that mavericks-vpn-fix.tar,gz? I've been struggling with VPN issues since upgrading to 10.9, both the native VPN and the Cisco VPN client being broken on my macbook pro. 

  • by Tsirakis,

    Tsirakis Tsirakis Jan 4, 2014 6:53 AM in response to mnsaint
    Level 1 (0 points)
    Jan 4, 2014 6:53 AM in response to mnsaint

    Hello I have answered to this problem here: https://discussions.apple.com/message/24376499#24376499

  • by erugalatha,

    erugalatha erugalatha Jan 5, 2014 3:09 AM in response to Tsirakis
    Level 1 (30 points)
    Mac OS X
    Jan 5, 2014 3:09 AM in response to Tsirakis

    I have Mavericks 10.9.1 installed and the issue is still not fixed for PPTP VPN type.  The "fix" by Tsirakis does not work.

  • by Tsirakis,

    Tsirakis Tsirakis Jan 5, 2014 3:12 AM in response to erugalatha
    Level 1 (0 points)
    Jan 5, 2014 3:12 AM in response to erugalatha

    Hello, my solution works for sure for Cisco IPSEC VPN with OSX 10.9.1. In the configuration file I have used:

     

    IKE Authmode psk

  • by alexandr.rei,

    alexandr.rei alexandr.rei Jan 19, 2014 3:55 PM in response to mnsaint
    Level 1 (0 points)
    Jan 19, 2014 3:55 PM in response to mnsaint

    Just thought I'd put my two cents in. I've had this issue since first installing Mavericks and finally after trying a few of the fixes people have put forward in this thread, this is the one that finally worked for me:

     

    Running in Terminal: sudo sysctl -w kern.ipc.maxsockbuf=6291456

    Create the file /etc/ppp/options (it didn't exist on my disk) and enter this one line: refuse-chap

  • by Likeabuss,

    Likeabuss Likeabuss Jan 28, 2014 12:34 PM in response to mnsaint
    Level 1 (0 points)
    Jan 28, 2014 12:34 PM in response to mnsaint

    So the VPN works for me but I lose my connection very often. During the day I have to connect and disconnect like 10 times to get one connection that would last more than 10 minutes. I have used a fix where you go to Open Network Preferences, create a new location and clean all the connections like ethernet, firewire and etc, leaving only Wi-fi. It worked in the first moment and sometimes it works if I keep changing between automatic and a configured new location.

     

    My problem is that it is still not perfect as it was before the update. I still 'get kicked' from internet access. Sometimes I even lose the connection once I disconnect from the VPN. Then I have to restart the PC. Please if anyone know if there's a fix for this kind of problem let me know.

  • by bobgeo,

    bobgeo bobgeo Jan 28, 2014 12:37 PM in response to Likeabuss
    Level 1 (25 points)
    Jan 28, 2014 12:37 PM in response to Likeabuss

    Just to weigh-in, and I realize you are not having success, but we are running the vpn (in Mavericks clients and Mavericks server) for full business days (like 8-10 hours) without issue. Here and there something might happen, but it is likely from the internet provider on either end. It really has been pretty good for us since the fix came out.

  • by ipadsogique,

    ipadsogique ipadsogique Jan 31, 2014 8:26 AM in response to mnsaint
    Level 1 (0 points)
    Jan 31, 2014 8:26 AM in response to mnsaint

    Finally I found the solution to this problem. At leat it's a workaround that has proven to be working for my customers.

     

    The problem :

     

    Once the customer connects via Network Connect (SSL VPN), and launches a citrix session or a remote amin or a remote desktop session, he is disconnected after seconds or at most after 2 minutes.

     

     

    Solution/Workaround:  using the Junos Pulse version 4.0R6 has solved the problem for all customers with this problem.

     

     

    N.B.  Junos Pulse version 4.0R6 is downloadable from Juniper support download page - you have to have an account linked to ans SA series

     

    I hope it does the same for you guys.

  • by joeyjohnson,

    joeyjohnson joeyjohnson Feb 7, 2014 12:31 PM in response to ipadsogique
    Level 1 (4 points)
    Photos for Mac
    Feb 7, 2014 12:31 PM in response to ipadsogique

    I have a huge problem with my 27" iMac and VPN, since Mavericks.


    I always used it and it worked perfectly for years. Since Mavs, when I am connected to VPN, I will get a little snitch message come up asking if any one of many apple processes (icloud helper, assistand just examples). No matter what I click, allow or deny, the machine instantly crashes and power recycles. It comes up with the white screen "your computer restarted because of a problem" and then boots up.


    It is losing me a lot of data each time, and is very worrying to see the machine just die in an heartbeat like that.

     

    Anyone know if this is the same issue you are speaking about on this thread? I need a fix, basically VPN is off limits to me now as i can't risk data loss and corruptions. It happens every time i get the LS message pop up. any advice greatly appreciated.

first Previous Page 11 of 12 last Next