mpd 3.13 problem - man-in-the-middle or legit. issue?

Wed Jun 18 19:13:11 PDT 2003

I upgraded to FreeBSD 4.8-STABLE from 4.6-STABLE this weekend without
major incident (trouble with terminal left/right arrows, but that's
another matter), and my mpd-based VPN seemed unaffected... until
this morning, when it suddenly went down after functioning properly
under load for a while, then refused to come up.  I got connected
but couldn't negotiate parameters.  This evening it did come up but
began spewing protocol rejections on my side and unexpected protocol
alerts on the other side, like the data stream was being corrupted.
Last week, a Windows user in my office (the destination of my VPN)
informed me that attempts to set up a VPN link from XP to the
office's mpd-based VPN host locks up his machine now.

Is there any chance someone is trying to pull off a man-in-the-middle
attack on us, or are these more likely separate issues?  I have noted
a few such protocol rejections mentioned on this list and/or
FreeBSD-STABLE but little or no remarks on why.

I'm using mpd 3.13 at both ends, btw, as installed from ports.  The
link is usually running with 128-bit MPPE.

Much thanks for any info.

