Can't connect from outside NAT

Need help configuring your VPN? Just post here and you'll get that help.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Forum rules
Please use the [oconf] BB tag for openvpn Configurations. See viewtopic.php?f=30&t=21589 for an example.
Post Reply
plantronics
OpenVpn Newbie
Posts: 2
Joined: Fri Mar 24, 2017 4:56 pm

Can't connect from outside NAT

Post by plantronics » Sun May 14, 2017 9:55 am

Hello,

My vpn server is a debian, it is in a NAT : 192.168.1.29 The vpn client is installed on windows.
When I am in the NAT network my client can connect to the vpn server with the address 192.168.1.29
When I want to connect from outside NAT I put the address of my router in the file client.ovpn while keeping port 443. I can not connect.

Log du client (windows)

Code: Select all

Thu Apr 13 10:51:27 2017 NOTE: --user option is not implemented on Windows
Thu Apr 13 10:51:27 2017 NOTE: --group option is not implemented on Windows
Thu Apr 13 10:51:27 2017 us=83064 Current Parameter Settings:
Thu Apr 13 10:51:27 2017 us=83064   config = 'client.ovpn'
Thu Apr 13 10:51:27 2017 us=83064   mode = 0
Thu Apr 13 10:51:27 2017 us=83064   show_ciphers = DISABLED
Thu Apr 13 10:51:27 2017 us=83064   show_digests = DISABLED
Thu Apr 13 10:51:27 2017 us=83064   show_engines = DISABLED
Thu Apr 13 10:51:27 2017 us=83064   genkey = DISABLED
Thu Apr 13 10:51:27 2017 us=83064   key_pass_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=83064   show_tls_ciphers = DISABLED
Thu Apr 13 10:51:27 2017 us=83064 Connection profiles [default]:
Thu Apr 13 10:51:27 2017 us=83064   proto = udp
Thu Apr 13 10:51:27 2017 us=83064   local = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=83064   local_port = 0
Thu Apr 13 10:51:27 2017 us=83064   remote = '@_router'
Thu Apr 13 10:51:27 2017 us=83064   remote_port = 443
Thu Apr 13 10:51:27 2017 us=83064   remote_float = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   bind_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   bind_local = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   connect_retry_seconds = 5
Thu Apr 13 10:51:27 2017 us=84041   connect_timeout = 10
Thu Apr 13 10:51:27 2017 us=84041   connect_retry_max = 0
Thu Apr 13 10:51:27 2017 us=84041   socks_proxy_server = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   socks_proxy_port = 0
Thu Apr 13 10:51:27 2017 us=84041   socks_proxy_retry = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tun_mtu = 1500
Thu Apr 13 10:51:27 2017 us=84041   tun_mtu_defined = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   link_mtu = 1500
Thu Apr 13 10:51:27 2017 us=84041   link_mtu_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tun_mtu_extra = 0
Thu Apr 13 10:51:27 2017 us=84041   tun_mtu_extra_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   mtu_discover_type = -1
Thu Apr 13 10:51:27 2017 us=84041   fragment = 0
Thu Apr 13 10:51:27 2017 us=84041   mssfix = 1450
Thu Apr 13 10:51:27 2017 us=84041   explicit_exit_notification = 0
Thu Apr 13 10:51:27 2017 us=84041 Connection profiles END
Thu Apr 13 10:51:27 2017 us=84041   remote_random = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   ipchange = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   dev = 'tun'
Thu Apr 13 10:51:27 2017 us=84041   dev_type = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   dev_node = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   lladdr = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   topology = 1
Thu Apr 13 10:51:27 2017 us=84041   tun_ipv6 = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_local = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_remote_netmask = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_noexec = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_nowarn = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_ipv6_local = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_ipv6_netbits = 0
Thu Apr 13 10:51:27 2017 us=84041   ifconfig_ipv6_remote = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   shaper = 0
Thu Apr 13 10:51:27 2017 us=84041   mtu_test = 0
Thu Apr 13 10:51:27 2017 us=84041   mlock = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   keepalive_ping = 0
Thu Apr 13 10:51:27 2017 us=84041   keepalive_timeout = 0
Thu Apr 13 10:51:27 2017 us=84041   inactivity_timeout = 0
Thu Apr 13 10:51:27 2017 us=84041   ping_send_timeout = 0
Thu Apr 13 10:51:27 2017 us=84041   ping_rec_timeout = 0
Thu Apr 13 10:51:27 2017 us=84041   ping_rec_timeout_action = 0
Thu Apr 13 10:51:27 2017 us=84041   ping_timer_remote = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   remap_sigusr1 = 0
Thu Apr 13 10:51:27 2017 us=84041   persist_tun = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   persist_local_ip = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   persist_remote_ip = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   persist_key = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   passtos = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   resolve_retry_seconds = 1000000000
Thu Apr 13 10:51:27 2017 us=84041   username = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   groupname = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   chroot_dir = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   cd_dir = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   writepid = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   up_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   down_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   down_pre = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   up_restart = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   up_delay = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   daemon = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   inetd = 0
Thu Apr 13 10:51:27 2017 us=84041   log = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   suppress_timestamps = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   nice = 0
Thu Apr 13 10:51:27 2017 us=84041   verbosity = 6
Thu Apr 13 10:51:27 2017 us=84041   mute = 0
Thu Apr 13 10:51:27 2017 us=84041   gremlin = 0
Thu Apr 13 10:51:27 2017 us=84041   status_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   status_file_version = 1
Thu Apr 13 10:51:27 2017 us=84041   status_file_update_freq = 60
Thu Apr 13 10:51:27 2017 us=84041   occ = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   rcvbuf = 0
Thu Apr 13 10:51:27 2017 us=84041   sndbuf = 0
Thu Apr 13 10:51:27 2017 us=84041   sockflags = 0
Thu Apr 13 10:51:27 2017 us=84041   fast_io = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   lzo = 7
Thu Apr 13 10:51:27 2017 us=84041   route_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   route_default_gateway = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   route_default_metric = 0
Thu Apr 13 10:51:27 2017 us=84041   route_noexec = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   route_delay = 5
Thu Apr 13 10:51:27 2017 us=84041   route_delay_window = 30
Thu Apr 13 10:51:27 2017 us=84041   route_delay_defined = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   route_nopull = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   route_gateway_via_dhcp = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   max_routes = 100
Thu Apr 13 10:51:27 2017 us=84041   allow_pull_fqdn = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   management_addr = '127.0.0.1'
Thu Apr 13 10:51:27 2017 us=84041   management_port = 25340
Thu Apr 13 10:51:27 2017 us=84041   management_user_pass = 'stdin'
Thu Apr 13 10:51:27 2017 us=84041   management_log_history_cache = 250
Thu Apr 13 10:51:27 2017 us=84041   management_echo_buffer_size = 100
Thu Apr 13 10:51:27 2017 us=84041   management_write_peer_info_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   management_client_user = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   management_client_group = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   management_flags = 6
Thu Apr 13 10:51:27 2017 us=84041   shared_secret_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   key_direction = 0
Thu Apr 13 10:51:27 2017 us=84041   ciphername_defined = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   ciphername = 'BF-CBC'
Thu Apr 13 10:51:27 2017 us=84041   authname_defined = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   authname = 'SHA1'
Thu Apr 13 10:51:27 2017 us=84041   prng_hash = 'SHA1'
Thu Apr 13 10:51:27 2017 us=84041   prng_nonce_secret_len = 16
Thu Apr 13 10:51:27 2017 us=84041   keysize = 0
Thu Apr 13 10:51:27 2017 us=84041   engine = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   replay = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   mute_replay_warnings = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   replay_window = 64
Thu Apr 13 10:51:27 2017 us=84041   replay_time = 15
Thu Apr 13 10:51:27 2017 us=84041   packet_id_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   use_iv = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   test_crypto = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tls_server = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tls_client = ENABLED
Thu Apr 13 10:51:27 2017 us=84041   key_method = 2
Thu Apr 13 10:51:27 2017 us=84041   ca_file = 'ca.crt'
Thu Apr 13 10:51:27 2017 us=84041   ca_path = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   dh_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   cert_file = 'client.crt'
Thu Apr 13 10:51:27 2017 us=84041   extra_certs_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   priv_key_file = 'client.key'
Thu Apr 13 10:51:27 2017 us=84041   pkcs12_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   cryptoapi_cert = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   cipher_list = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   tls_verify = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   tls_export_cert = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   verify_x509_type = 0
Thu Apr 13 10:51:27 2017 us=84041   verify_x509_name = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   crl_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   ns_cert_type = 1
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_ku[i] = 0
Thu Apr 13 10:51:27 2017 us=84041   remote_cert_eku = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   ssl_flags = 0
Thu Apr 13 10:51:27 2017 us=84041   tls_timeout = 2
Thu Apr 13 10:51:27 2017 us=84041   renegotiate_bytes = -1
Thu Apr 13 10:51:27 2017 us=84041   renegotiate_packets = 0
Thu Apr 13 10:51:27 2017 us=84041   renegotiate_seconds = 3600
Thu Apr 13 10:51:27 2017 us=84041   handshake_window = 60
Thu Apr 13 10:51:27 2017 us=84041   transition_window = 3600
Thu Apr 13 10:51:27 2017 us=84041   single_session = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   push_peer_info = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tls_exit = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   tls_auth_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_protected_authentication = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_private_mode = 00000000
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=84041   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_cert_private = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_pin_cache_period = -1
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_id = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=85019   pkcs11_id_management = DISABLED
Thu Apr 13 10:51:27 2017 us=85019   server_network = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=85019   server_netmask = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   server_network_ipv6 = ::
Thu Apr 13 10:51:27 2017 us=86282   server_netbits_ipv6 = 0
Thu Apr 13 10:51:27 2017 us=86282   server_bridge_ip = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   server_bridge_netmask = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   server_bridge_pool_start = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   server_bridge_pool_end = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_start = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_end = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_netmask = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_persist_filename = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_pool_persist_refresh_freq = 600
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_ipv6_pool_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_ipv6_pool_base = ::
Thu Apr 13 10:51:27 2017 us=86282   ifconfig_ipv6_pool_netbits = 0
Thu Apr 13 10:51:27 2017 us=86282   n_bcast_buf = 256
Thu Apr 13 10:51:27 2017 us=86282   tcp_queue_limit = 64
Thu Apr 13 10:51:27 2017 us=86282   real_hash_size = 256
Thu Apr 13 10:51:27 2017 us=86282   virtual_hash_size = 256
Thu Apr 13 10:51:27 2017 us=86282   client_connect_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   learn_address_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   client_disconnect_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   client_config_dir = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   ccd_exclusive = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   tmp_dir = 'C:\Users\Idriss\AppData\Local\Temp\'
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_local = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_remote_netmask = 0.0.0.0
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_ipv6_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_ipv6_local = ::/0
Thu Apr 13 10:51:27 2017 us=86282   push_ifconfig_ipv6_remote = ::
Thu Apr 13 10:51:27 2017 us=86282   enable_c2c = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   duplicate_cn = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   cf_max = 0
Thu Apr 13 10:51:27 2017 us=86282   cf_per = 0
Thu Apr 13 10:51:27 2017 us=86282   max_clients = 1024
Thu Apr 13 10:51:27 2017 us=86282   max_routes_per_client = 256
Thu Apr 13 10:51:27 2017 us=86282   auth_user_pass_verify_script = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   auth_user_pass_verify_script_via_file = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   client = ENABLED
Thu Apr 13 10:51:27 2017 us=86282   pull = ENABLED
Thu Apr 13 10:51:27 2017 us=86282   auth_user_pass_file = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   show_net_up = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   route_method = 0
Thu Apr 13 10:51:27 2017 us=86282   block_outside_dns = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   ip_win32_defined = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   ip_win32_type = 3
Thu Apr 13 10:51:27 2017 us=86282   dhcp_masq_offset = 0
Thu Apr 13 10:51:27 2017 us=86282   dhcp_lease_time = 31536000
Thu Apr 13 10:51:27 2017 us=86282   tap_sleep = 0
Thu Apr 13 10:51:27 2017 us=86282   dhcp_options = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   dhcp_renew = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   dhcp_pre_release = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   dhcp_release = DISABLED
Thu Apr 13 10:51:27 2017 us=86282   domain = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   netbios_scope = '[UNDEF]'
Thu Apr 13 10:51:27 2017 us=86282   netbios_node_type = 0
Thu Apr 13 10:51:27 2017 us=86282   disable_nbt = DISABLED
Thu Apr 13 10:51:27 2017 us=86282 OpenVPN 2.3.14 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Feb  1 2017
Thu Apr 13 10:51:27 2017 us=86282 Windows version 6.2 (Windows 8 or greater) 64bit
Thu Apr 13 10:51:27 2017 us=86282 library versions: OpenSSL 1.0.2k  26 Jan 2017, LZO 2.09
Enter Management Password:
Thu Apr 13 10:51:27 2017 us=86282 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Thu Apr 13 10:51:27 2017 us=86282 Need hold release from management interface, waiting...
Thu Apr 13 10:51:27 2017 us=562223 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Thu Apr 13 10:51:27 2017 us=663013 MANAGEMENT: CMD 'state on'
Thu Apr 13 10:51:27 2017 us=663013 MANAGEMENT: CMD 'log all on'
Thu Apr 13 10:51:27 2017 us=742557 MANAGEMENT: CMD 'hold off'
Thu Apr 13 10:51:27 2017 us=743033 MANAGEMENT: CMD 'hold release'
Thu Apr 13 10:51:27 2017 us=821662 LZO compression initialized
Thu Apr 13 10:51:27 2017 us=822640 Control Channel MTU parms [ L:1542 D:1212 EF:38 EB:0 ET:0 EL:3 ]
Thu Apr 13 10:51:27 2017 us=822640 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Apr 13 10:51:27 2017 us=822640 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:143 ET:0 EL:3 AF:3/1 ]
Thu Apr 13 10:51:27 2017 us=822640 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Thu Apr 13 10:51:27 2017 us=822640 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Thu Apr 13 10:51:27 2017 us=822640 Local Options hash (VER=V4): '41690919'
Thu Apr 13 10:51:27 2017 us=822640 Expected Remote Options hash (VER=V4): '530fdded'
Thu Apr 13 10:51:27 2017 us=822640 UDPv4 link local: [undef]
Thu Apr 13 10:51:27 2017 us=822640 UDPv4 link remote: [AF_INET]@_router:443
Thu Apr 13 10:51:27 2017 us=822640 MANAGEMENT: >STATE:1492066287,WAIT,,,
Thu Apr 13 10:51:27 2017 us=822640 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:51:27 2017 us=822640 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
Thu Apr 13 10:51:29 2017 us=937451 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:51:33 2017 us=109247 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:51:41 2017 us=99029 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:51:57 2017 us=469387 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:52:27 2017 us=693869 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu Apr 13 10:52:27 2017 us=693869 TLS Error: TLS handshake failed
Thu Apr 13 10:52:27 2017 us=693869 TCP/UDP: Closing socket
Thu Apr 13 10:52:27 2017 us=693869 SIGUSR1[soft,tls-error] received, process restarting
Thu Apr 13 10:52:27 2017 us=693869 MANAGEMENT: >STATE:1492066347,RECONNECTING,tls-error,,
Thu Apr 13 10:52:27 2017 us=693869 Restart pause, 2 second(s)
Thu Apr 13 10:52:29 2017 us=694222 Re-using SSL/TLS context
Thu Apr 13 10:52:29 2017 us=694222 LZO compression initialized
Thu Apr 13 10:52:29 2017 us=694222 Control Channel MTU parms [ L:1542 D:1212 EF:38 EB:0 ET:0 EL:3 ]
Thu Apr 13 10:52:29 2017 us=694222 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Apr 13 10:52:29 2017 us=694222 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:143 ET:0 EL:3 AF:3/1 ]
Thu Apr 13 10:52:29 2017 us=694222 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Thu Apr 13 10:52:29 2017 us=694222 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Thu Apr 13 10:52:29 2017 us=694222 Local Options hash (VER=V4): '41690919'
Thu Apr 13 10:52:29 2017 us=694222 Expected Remote Options hash (VER=V4): '530fdded'
Thu Apr 13 10:52:29 2017 us=694222 UDPv4 link local: [undef]
Thu Apr 13 10:52:29 2017 us=694222 UDPv4 link remote: [AF_INET]@_router:443
Thu Apr 13 10:52:29 2017 us=694222 MANAGEMENT: >STATE:1492066349,WAIT,,,
Thu Apr 13 10:52:29 2017 us=694222 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:52:29 2017 us=694222 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
Thu Apr 13 10:52:31 2017 us=841933 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Thu Apr 13 10:52:35 2017 us=61436 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Serveur.conf (debian)

Code: Select all

port 443
proto udp
dev tun
ca ca.crt
cert server.crt
key server.key
server 10.8.0.0 255.255.255.0
ifconfig-pool-persist ipp.txt
push "dhcp-option DNS 208.67.222.222"
push "dhcp-option DNS 208.67.220.220"
comp-lzo
user nobody
group nogroup
persist-key
persist-tun
status openvpn-status.log
verb 6
before.rules

Code: Select all

# START OPENVPN RULES
# NAT table rules
*nat
: POSTROUTING ACCEPT [0:0]
# Allow traffic from OpenVPN client to eth0
-A POSTROUTING -s 10.8.0.0/8 -o eth0 -j MASQUERADE
COMMIT
# END OPENVPN RULES

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Can't connect from outside NAT

Post by TinCanTech » Sun May 14, 2017 10:16 am

Maybe you need to use some port forwarding ..

Post Reply