I'm getting the same problem, can connect to the server over the local network, not from remote. Have spent a few days trying to figure this out. Have a lot of experience with Linux and FreeBSD admin back in the day, as well as OS-X desktop use and debugging. This is a complete stumper!
There are zero firewall issues, I've counted packets with tcpdump on both sides and everything is getting through. The router on the Lion server side is set to forward everything, on the client side, it's set as the "DMZ host" (forwarding everything).
Can anyone see anything in my configuration?
bash-3.2# serveradmin fullstatus vpn
vpn:servicePortsAreRestricted = "NO"
vpn:readWriteSettingsVersion = 1
vpn:servers:com.apple.ppp.pptp:AuthenticationProtocol = "MSCHAP2"
vpn:servers:com.apple.ppp.pptp:CurrentConnections = 0
vpn:servers:com.apple.ppp.pptp:enabled = no
vpn:servers:com.apple.ppp.pptp:MPPEKeySize = "MPPEKeySize128"
vpn:servers:com.apple.ppp.pptp:Type = "PPP"
vpn:servers:com.apple.ppp.pptp:SubType = "PPTP"
vpn:servers:com.apple.ppp.pptp:AuthenticatorPlugins = "DSAuth"
vpn:servers:com.apple.ppp.l2tp:AuthenticationProtocol = "MSCHAP2"
vpn:servers:com.apple.ppp.l2tp:CurrentConnections = 0
vpn:servers:com.apple.ppp.l2tp:enabled = yes
vpn:servers:com.apple.ppp.l2tp:startedTime = "2011-08-08 08:09:30 +0000"
vpn:servers:com.apple.ppp.l2tp:Type = "PPP"
vpn:servers:com.apple.ppp.l2tp:SubType = "L2TP"
vpn:servers:com.apple.ppp.l2tp:AuthenticatorPlugins = "DSAuth"
vpn:servers:com.apple.ppp.l2tp:pid = 4059
vpn:servicePortsRestrictionInfo = _empty_array
vpn:health = _empty_dictionary
vpn:logPaths:com.apple.ppp.pptp_ServerLog = "/var/log/ppp/vpnd.log"
vpn:logPaths:com.apple.ppp.pptp_PPPLog = "/var/log/ppp/vpnd.log"
vpn:logPaths:vpnLog = "/var/log/ppp/vpnd.log"
vpn:configured = yes
vpn:state = "RUNNING"
vpn:setStateVersion = 1
Logs are here:
2011-08-08 04:21:58 EDT Incoming call... Address given to client = 204.152.97.199
Mon Aug 8 04:21:58 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:21:58 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:21:58 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:21:58 2011 : L2TP received SCCRQ
Mon Aug 8 04:21:58 2011 : L2TP sent SCCRP
2011-08-08 04:21:59 EDT Incoming call... Address given to client = 204.152.97.200
Mon Aug 8 04:21:59 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:21:59 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:21:59 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:21:59 2011 : L2TP received SCCRQ
Mon Aug 8 04:21:59 2011 : L2TP sent SCCRP
2011-08-08 04:22:01 EDT Incoming call... Address given to client = 204.152.97.201
Mon Aug 8 04:22:01 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:22:01 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:22:01 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:22:01 2011 : L2TP received SCCRQ
Mon Aug 8 04:22:01 2011 : L2TP sent SCCRP
2011-08-08 04:22:05 EDT Incoming call... Address given to client = 204.152.97.202
Mon Aug 8 04:22:05 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:22:05 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:22:05 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:22:05 2011 : L2TP received SCCRQ
Mon Aug 8 04:22:05 2011 : L2TP sent SCCRP
2011-08-08 04:22:09 EDT Incoming call... Address given to client = 204.152.97.203
Mon Aug 8 04:22:09 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:22:09 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:22:09 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:22:09 2011 : L2TP received SCCRQ
Mon Aug 8 04:22:09 2011 : L2TP sent SCCRP
2011-08-08 04:22:13 EDT Incoming call... Address given to client = 204.152.97.204
Mon Aug 8 04:22:13 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:22:13 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:22:13 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:22:13 2011 : L2TP received SCCRQ
Mon Aug 8 04:22:13 2011 : L2TP sent SCCRP
2011-08-08 04:22:17 EDT Incoming call... Address given to client = 204.152.97.205
Mon Aug 8 04:22:17 2011 : Directory Services Authentication plugin initialized
Mon Aug 8 04:22:17 2011 : Directory Services Authorization plugin initialized
Mon Aug 8 04:22:17 2011 : L2TP incoming call in progress from '108.46.128.137'...
Mon Aug 8 04:22:17 2011 : L2TP received SCCRQ
Mon Aug 8 04:22:17 2011 : L2TP sent SCCRP
2011-08-08 04:22:18 EDT --> Client with address = 204.152.97.199 has hungup
2011-08-08 04:22:19 EDT --> Client with address = 204.152.97.200 has hungup
2011-08-08 04:22:21 EDT --> Client with address = 204.152.97.201 has hungup
2011-08-08 04:22:25 EDT --> Client with address = 204.152.97.202 has hungup
2011-08-08 04:22:29 EDT --> Client with address = 204.152.97.203 has hungup
2011-08-08 04:22:33 EDT --> Client with address = 204.152.97.204 has hungup
2011-08-08 04:22:37 EDT --> Client with address = 204.152.97.205 has hungup