DSM 7.0 After DSM 7 update VPN not working

Currently reading
DSM 7.0 After DSM 7 update VPN not working

Hello!

The same is true for me.
Domain users did not work with PPTP and L2TP.
I wrote to the support center. It was repaired remotely.
I asked: how?
Reply:
"Since the NTLMv1 is disabled by default in DSM 7.0 Official, if the service use the MSCHAP authentication to authenticate the domain user, it will fail in DSM 7.
So, I have checked the VPN Server configuration file and then added there the --allow-mschapv2 parameter."

Thanks for Syonology!
 
Hi Grasi71,

I'm having the same problem with PPTP after an upgrade to DSM 7.

Which file/line do I add --allow-mschapv2 parameter to ?

I have had a look at the VPN config files but I'm not sure where it should be entered.

Thanks.

Hello!

The same is true for me.
Domain users did not work with PPTP and L2TP.
I wrote to the support center. It was repaired remotely.
I asked: how?
Reply:
"Since the NTLMv1 is disabled by default in DSM 7.0 Official, if the service use the MSCHAP authentication to authenticate the domain user, it will fail in DSM 7.
So, I have checked the VPN Server configuration file and then added there the --allow-mschapv2 parameter."

Thanks for Syonology!
 
Fixed it now - just had to clear the SMB Cache on the NAS and add DOMAIN\ in front of the UserName in the Window 10 VPN setting.
 
Hi Grasi71,

I'm having the same problem with PPTP after an upgrade to DSM 7.

Which file/line do I add --allow-mschapv2 parameter to ?

I have had a look at the VPN config files but I'm not sure where it should be entered.

Thanks.
Hello!
I couldn't find the file either. The support bandage helped me ...
-- post merged: --

Fixed it now - just had to clear the SMB Cache on the NAS and add DOMAIN\ in front of the UserName in the Window 10 VPN setting.
Hello!
We used to have these settings. Domain \ User.
Unfortunately, it didn't work either ...
 
I've had the same issue with DSM 7 and VPN Server using L2TP with domain users. I received the following from Synology Support this morning. I will try the fix this evening.

You would need to add this to the file /var/packages/VPNCenter/target/etc/raddb/modules/mschap_ad :

You would need to add "--allow-mschapv2" between "--request-nt-key and --username=%{%{Stripped-User-Name}:-%{User-Name:-None}}"
 
I've had the same issue with DSM 7 and VPN Server using L2TP with domain users. I received the following from Synology Support this morning. I will try the fix this evening.

You would need to add this to the file /var/packages/VPNCenter/target/etc/raddb/modules/mschap_ad :

You would need to add "--allow-mschapv2" between "--request-nt-key and --username=%{%{Stripped-User-Name}:-%{User-Name:-None}}"
I can confirm the above fixed my issue. It needed to be used in combination with domain\user for the username and changing the DNS address within the L2TP settings to the NAS IP address. By default this was set to 127.0.0.1 which caused DNS resolution to fail.
 

Create an account or login to comment

You must be a member in order to leave a comment

Create account

Create an account on our community. It's easy!

Log in

Already have an account? Log in here.

Similar threads

1634214296 Just made an account to thank you for that! I was searching for god knows how long and the fix...
Replies
40
Views
22,023
  • Question
Instead of trying hostname, can you do your public IP address? Edit the openvpn config and put your...
Replies
16
Views
3,192
Hello Sorry for the long time to update. I uninstalled the VPN Server and reinstalled. Same result, I...
Replies
19
Views
2,387
  • Question
So you have two sites with identical local IP subnets and even IP assignments? If trying to connect from...
Replies
2
Views
853
  • Question
The best way to set up a VPN client on a Synology RT2600ac router is to use the VPN Plus Server feature...
Replies
2
Views
1,350

Welcome to SynoForum.com!

SynoForum.com is an unofficial Synology forum for NAS owners and enthusiasts.

Registration is free, easy and fast!

Back
Top