VPN issues on Rooted EVO.. help! - EVO 4G Q&A, Help & Troubleshooting

I'm not certain if this is a kernel, ROM or software issue. I am running Fresh ROM 1.0.1 with the Netarchy 3.7.5 kernel, I have enabled the JIT compiler, and I have purchased the Xtralogic Remote Desktop Client version 1.14.0 and also use ES File Explorer for FTP/Samba.
I am able to authenticate and connect to our corporate VPN server. Once connected, I AM able to ping both from within the network to my device, and from adb-shell on my device to devices on the network. DNS resolution is working as expected over the VPN; search domains are setup properly.
However, upon establishing a connection (UDP or TCP) to any device on the remote network, my VPN connection dies (server side -- the android client still reads as connected). No bytes are received from the client anymore (per the corporate vpn software). I've tried this with RDP (UDP), SMB (UDP) and FTP (TCP). All three had the same result; upon initiating the socket, the VPN connection comes to a halt.
I know this worked when I was stock rooted.. and have only tried it again recently for a business trip in which RDP access to some remote servers would be a great big help. My changes are listed above: Fresh Rom 1.0.1, Netarchy 3.7.5 kernel, JIT enabled.
LogCat provides plenty of output for the VPN connection, but there is NOTHING logged when the "disconnect" occurs.
Any ideas?!

I received a response from the software vendor:
I received other reports about problem with VPN on Android. Unfortunately I don't have any solution to this problem. It is not RDP client specific, it looks like it is triggered by certain amount of network traffic. You will get the same result if you try to browse Internet on the phone when connect over VPN.
Click to expand...
Click to collapse
So, I ask if anyone can confirm or deny from their own device?

Related

VPN over WIFI

Hello All!
I have a problem:
- need to connect to VPN through WIFI.
I'm running WM5 AKU3.5 Rom, UNI \ Qtek 9000.
With the built-in VPN client I CAN connect to VPN, but the first request to internet (via browser or Messaging send-receive) - drops my VPN connection, as it described here in the forum (Networking).
I tried 3-rd party software so far:
1. BlueFire VPN - just can't connect.
2. Antha VPN - just doesn't work.
Any solution so far?
Did anybody succeed with it?
Thank you very much for your answers!
_________________________________
* crosposted and more details in: http://forum.xda-developers.com/showthread.php?p=1685027#post1685027
** Let me describe in more detail:
In my case- this is a public WIFI internet provider, which has a wifi coverage in the city: GoldenWiFi.
Wifi is open PPTP. I need to type in a login \ pass on the web page I get, to start using the internet in current wifi session.
The ALTERNATIVE way to conect to internet - is to establish a VPN connection over the wifi.
I can successfully do in on the laptop, but not with my UNI.
WM5 has some bugs in PPTP implementation and there are problems connecting to VPN servers other than Microsoft ISA. I've spend couple of hours trying to connect my universal to poptop (linux pptp server which is quite popular) and it was imposible using mschap-v2 (which is required for security reasons). WinXP stations are connecting fine to the same VPN server. Poptop is included in many linux embedded devices (access points, wireless routers) and I think that this is your problem.
What version of bluefire did u use, I tried a nwe one which didn't work, but I got an old trial version that still works (most of the time)
Bonusbartus said:
What version of bluefire did u use, I tried a nwe one which didn't work, but I got an old trial version that still works (most of the time)
Click to expand...
Click to collapse
Hello!
I used v. 2.7.2.558
Thank you for your reply.
I use anthaVPN-7.5-STD-Cisco-wm2005.exe, and in "settings/connections/advanced" selected both networks to be "work network".
Everything works fine.
I sent u a pm about bluefire

Problems with certificates & proxy

Hi,
I have been fighting with my Desire the last days to connect to my company network and e-mail without any success.
There are serious issues with Android wrt handling certificates and proxies.
For the moment I still haven't found anything which will allow me to access the internet from work via WiFi through a proxy. Did any one manage to do this with success ?
Apparently it is possible to use a proxy with Android 1.5 and 1.6 but only for browsing, not for other services, but this doesn't work with the Desire ;-)
Regarding certificates, Android doesn't support .p7b or .pcs certificates, so I was afraid I wouldn't be able to connect at all to the company WiFi. To my surprise when I tried to connect by entering MSCHAP it actually worked, so this is worth a try if you have issues with certificates to connect to WiFi.
Another problem of the certificates is that I need a certificate to connect via SSL to my e-mail server. Unfortunately Android doesn't support installation of .p7b or .pcs certificates, so I don't manage to connect. Did anyone encounter a solution for this problem ?
In global I am really surprised by the lack of support for standard functionality like certificates and proxy in Android. All my colleagues using Iphone have no issues at all with this
Kind regards

Does anyone have VPN Connection running on 2.2

Title says it all.
All of the 2.2 roms and kernels I have tried will connect to the VPN but must screw up the routes as they shut off my data.
Does anyone have this running?
the only issue i have with "VPN Connections" is that is doesn't pass DNS traffic correctly. hence, i must connect via IP Addy not DNS name. other than that it works fine for me. i'm able to establish a vpn connection then use the WYSE rdc/vnc app to connect to my windows or linux servers ... connnectbot for shell access.
I've also been unable to connect to either a PPTP or IPSec VPN over my 3G connection since upgrading to the official release of 2.2 on my EVO 4G. The connection appears to be established just fine, and the VPN server shows that my VPN client is connected, but I cannot ping to or from the device, nor access any internal resources from it. This is a serious bummer considering that things worked fine under 2.1. Will test over WiFi when I get home. Can't test it at work since we're behind a proxy (which is another gripe I have with Android right now... seriously Google, no proxy configuration options?).
i feel i should clarify the name the application i'm using to establish a vpn tunnel is not the stock android vpn application.
it is called "VPN Connection" http://www.appbrain.com/app/org.codeandroid.vpnc_frontend
amw2320 said:
Title says it all.
All of the 2.2 roms and kernels I have tried will connect to the VPN but must screw up the routes as they shut off my data.
Does anyone have this running?
Click to expand...
Click to collapse
I have some interesting info regarding VPN behavior. With 2.1, of course, it did not work. Here's what I experienced: I rooted my 2.1 with Unrevoked (not a full root) and then I installed OMJ's (8/6?) Froyo and lo and behold, my encrypted PPTP VPN to a MS 2003 server was working perfectly. I assumed that 2.2 resolved the vpn issues. Since I thought 2.2 was a fix, I didn't hesitate to install another ROM. This time, though, I also did a NAND root and installed another 2.2 rom; whose, I don't remember. My VPN was gone. What I discovered was that I COULD connect to an unencrypted MS PPTP server, but still not my encrypted VPN server at work. So, here we are today. I'm running Vael-Pak non-sense rom and after I loaded it I had no vpn, but here's the thing...a couple of days ago I was poking around inside some of the Evo's networking files, I didn't change anything, I just opened them and looked at them with Text Editor, and since then my encrypted PPTP VPN has been working great. I'm very hesitant to reboot my phone because I fear that it won't work anymore. Right now I'm happy.
I'm trying in vain to get VPN connections working too. The only ROM that I had it working with no problems was Cyanogenmod's. All the others don't seem to have it supported in the kernel. Now I'm running a ROM based on the stock 2.2 but haven't found a fix yet.
I'm in the same boat - my pptp vpn worked fine in stock 2.1, but not in stock 2.2...
Sent from my PC36100 using Tapatalk
I can't get a pptp (haven't tried l2tp) to connect from my unrooted 2.2 evo with encryption enabled. I'm trying to connect to my server at home running winxp pro with the default winxp vpn server setup.
Works fine if you disable encryption. But what's the point if it's not encrypted, right? It works fine with encryption using a laptop or my old iphone3G. Seems to be a bug with android.
I'd like to know if someone finds a workaround.
This worked in 2.1 - froyo broke it
liamaa said:
I can't get a pptp (haven't tried l2tp) to connect from my unrooted 2.2 evo with encryption enabled. I'm trying to connect to my server at home running winxp pro with the default winxp vpn server setup.
Works fine if you disable encryption. But what's the point if it's not encrypted, right? It works fine with encryption using a laptop or my old iphone3G. Seems to be a bug with android.
I'd like to know if someone finds a workaround.
Click to expand...
Click to collapse
-mark
I am in the same boat. On CM6 VPN works flawlessly, but it is missing a lot, and kept crashing on me.
On every other ROM and kernel with tun.ko, it says it is connected but no connectivity.
AVA V6 is fast, good battery life, everything works (including hulu, and blockbuster) and very stable, but the only single thing I can't get working is Cisco VPN!!
-David
I am curious, does anyone have VPN working on any Froyo ROM besides Cyanogen?
If so what Rom/kernel are you using?
Interesting observation last night - 4g was temporarily working in sf, and my pptp vpn worked over it. I turned off 4g and retested, pptp vpn didn't work over 3g...
-mark

Anyone use wifi tethering with android anyconnect?

I setup the anyconnect client on my phone which works great. I can access internal web pages, ssh to internal devices. Problem is that if I launch the anyconnect client on the phone, and then wifi tether my laptop to the phone, the phone will not forward the traffic from the tethered device to the Anyconnect VPN.
FWIW, Wifi Tethering works fine without the Anyconnect.
Running Task650's 4.2.2 rom and the Anyconnect for root users on the phone.
-J
Same problem here. Any help would be appreciated!
it's probably a routing issue on the phone, but I haven't had a chance to look into it yet.
-J
bump.
bump. I will look into this. But can't post my help until I make 10 posts and get the ability to post links
Its a setting set by your administrator
The issue:
You might already know this but your network admin configured the app to prevent sharing of the connection. This is a common measure to prevent breaches in security. Looking at the Cisco AnyConnect release notes:
Cisco has qualified the AnyConnect VPN client over a bluetooth or USB tethered Apple iPhone only. Network connectivity provided by other tethered devices should be verified with the AnyConnect VPN client before deployment.
Click to expand...
Click to collapse
The WorkAround
How AnyConnect works on the android is the same as on a computer, which is documented on SuperUser.
So what we have to do is either, export the VPN profile to another VPN app, or change the variable in memory that prevents tethering of the AnyConnect VPN session.
This can be done using (while it wasn't created for this purpose) Game Gardian

L2TP VPN Doesn't work on native MIUI 11.0.3

Hello everyone,
as noted in the title of this thread, I cannot connect to L2TP/IPSec VPN Server from my phone (Redmi Note 8 Pro, running MIUI 11.0.3 stock).
I've done extensive troubleshooting and appears that phone never even contacts the server. When i configure everything and toggle the VPN, it will try to connect but never does, and then times out.
I'm watching the logs on the server, nothing appears.
I'm watching tcpdump on the server, no packet is even received from phone.
I've connected to WiFi network from i which i know i can connect to VPN (for example from PC or my MikroTik router) and it cannot even connect from that network.
I've enabled packet sniffer on root MikroTik router to sniff the packets, filtering MAC address of my phone, and guess what... When i click on VPN, it doesn't even try to connect to VPN serever. VPN server IP address doesn't even appear on sniff.
I'm wondering why is this happening, is anyone else having issues with L2TP/IPSec VPN? How do i inform Xiaomi of this issue since I've placed couple of feedbacks back in the day, never received an answer and those issues still persists so i don't even thing they are reading the feedback that is sent to them from phone app.
Hoping to get to the bottom of this!
Any help would be greatly appreciated !
Any chance you can try the OpenVPN app? I used to have an issue with my old phone where sometimes it would say connected but it wouldn't be. With the rn8pro, OpenVPN works every time.
Edit: try posting on the Mi forums for a better chance of a response from someone at Xiaomi
https://c.mi.com/global/forum-2234-1.html
Might not just be Xiaomi....https://github.com/SoftEtherVPN/SoftEtherVPN/issues/571
I would hate having two VPN servers installed at the same time. There are times when i want to connect my root mikrotik router to VPN server i question to forward all web traffic via VPN, unfortunately, OpenVPN support is very limited on MikroTik , there are new cipher suites missing and with new OpenVPN servers in place it's impossible to connect tik to OpenVPN.
I know however that OpenVPN app works great with android, but it's weird that native L2TP doesn't seem to be working at all.
I could fall back to PPTP maybe. Both Android and MikroTik works flawlessly with PPTP. But... It's PPTP..
Thanks, i will try posting to Xiaomi forums as well.

Categories

Resources