Apple Event: May 7th at 7 am PT

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

AirPort Extreme, firmware 7.5.2 and iVPN

Hi!

Suddenly my VPN connection to my iMac stopped working. Using iVPN and L2TP. After some tests and thinking I thought the problem must have to do with firmware update of my AirPort Extreme to 7.5.2. I don't remember what version I ran before the update. I guess 7.5.1 since I always do update if there are any. Anyway. One last desperate thing I did was to downgrade the firmware via AirPort Utility to 7.4.2. 7.4.2 is the 2nd latest version available in AirPort Utility. Now the iVPN connects again. I couldn't see anything in the logs in my AE when running 7.5.2 pointing to port forwarding issues.

-- Daniel

MacBook1,1, iPhone 4, iMac9,1, Mac OS X (10.6.1)

Posted on Dec 27, 2010 3:44 AM

Reply
40 replies

Dec 1, 2011 5:35 AM in response to Dan Pouliot

Thanks, Dan, will try this today on the Lion Server and see if it gets the VPN up for me.


Separate question here, if I may: does the generic server address ("servers-mac-pro.home") generated automatically by Lion server's VPN creation wizard usually work or should I change it to a fixed IP address for my server? Or something else?


thanks!

Charlie

Dec 20, 2011 4:02 PM in response to Knownone

Knowone's solution did the trick for me, ICYI. YIPPEE!... That is, including TCP/1701 in this list of forwarded ports (I know I know... L2TP uses UDP and not TCP... go figure).


BTW, the VPN connection triggered Racoon (on the local mac) to want to connect back out over the internet... so says LittleSnitch. I understand that this is 'normal' (Racoon is an IPSec tool that handles the SPD (Security Policy Database) in the kernel)(it establishes security associations with other hosts). Be careful if either of /usr/sbin/racoon or /usr/sbin/racoonctl files are corrupted (just restore them with TimeMachine) as that'll lobotomize L2TP IPSec for sure. Flushing with

sudo racoonctl flush-sa ipsec
won't do much... as won't rebooting and running fsk.


Also,.. make sure

1. your shared secrets have no funny characters in them

2. your mobileme is turned OFF, if you are using TC (TimeCapsule.. mine is firmware7.6)

3. (duhh) you've got a VPN service turned (I turned mine on with iVPN).

4. follow me on twitter: @DrKdev

Feb 17, 2012 7:02 AM in response to Changren Yong

7.6 didn't fix this problem for me. It's not clear to me if the problem is the AirPort Extreme's firmware or the airport utility (6.0). For me, I updated both the same day. I don't trust the utility because I lost a lot of functionality with this update:

advanced logging (like signal strength historgram),

VPN configuration screen,

and likely everything under the "advanced" area is gone. :-(


I'll start downgrading both the AE firmware AND the utility and see what happens. 😟

AirPort Extreme, firmware 7.5.2 and iVPN

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.