connection problems

Need help configuring your VPN? Just post here and you'll get that help.
Forum rules
Please use the [oconf] BB tag for openvpn Configurations. See viewtopic.php?f=30&t=21589 for an example.
Locked
kontox
OpenVpn Newbie
Posts: 5
Joined: Tue Jun 28, 2011 10:17 am

connection problems

Post by kontox » Tue Jun 28, 2011 11:08 am

Hello,

I need to connect two sites using OpenVPN. I have a linux server at one site and a windows 2000 server at another site. I want the w2k server to act as a client.

Here is the server config:

port 1194
proto udp
dev tun
secret /etc/openvpn/static.key
multihome
ifconfig 10.8.0.1 10.8.0.2
route 10.8.0.0 255.255.255.0
route 192.168.1.0 255.255.255.0
keepalive 10 60
comp-lzo
status /var/log/openvpn-status.log
verb 5
log openvpn.log
daemon


Here is the client config:

remote XXXX.dyndns.info
dev tun
ifconfig 10.8.0.2 10.8.0.1
secret static.key
comp-lzo
keepalive 10 60


The connection is created but I cannot ping any of the server from the other. For me it looks like the connection is not working.

The is the client log:
Tue Jun 28 03:24:44 2011 OpenVPN 2.0.9 Win32-MinGW [SSL] [LZO] built on Oct 1 2006
Tue Jun 28 03:24:44 2011 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Tue Jun 28 03:24:44 2011 LZO compression initialized
Tue Jun 28 03:24:44 2011 TAP-WIN32 device [tun] opened: \\.\Global\{C4EEB807-1BB6-4608-9457-FD002FFD4BEC}.tap
Tue Jun 28 03:24:44 2011 Notified TAP-Win32 driver to set a DHCP IP/netmask of 192.168.0.89/255.255.255.252 on interface {C4EEB807-1BB6-4608-9457-FD002FFD4BEC} [DHCP-serv: 192.168.0.90, lease-time: 31536000]
Tue Jun 28 03:24:44 2011 Successful ARP Flush on interface [33554437] {C4EEB807-1BB6-4608-9457-FD002FFD4BEC}
Tue Jun 28 03:24:44 2011 UDPv4 link local (bound): [undef]:1194
Tue Jun 28 03:24:44 2011 UDPv4 link remote: XXX.XXX.XXX.XXX:1194
Tue Jun 28 03:25:43 2011 Inactivity timeout (--ping-restart), restarting

The server log is full of this message:

RWRRWTue Jun 28 06:56:17 2011 us=899858 read UDPv4 [CMSG=8|EHOSTUNREACH|CMSG=8|EHOSTUNREACH]: No route to host (code=113)


This is the routing table:
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
10.8.0.2 * 255.255.255.255 UH 0 0 0 tun0
192.168.0.50 * 255.255.255.255 UH 0 0 0 ppp0
192.168.1.0 10.8.0.2 255.255.255.0 UG 0 0 0 tun0
10.8.0.0 10.8.0.2 255.255.255.0 UG 0 0 0 tun0
192.168.0.0 * 255.255.255.0 U 0 0 0 eth0
192.168.0.0 * 255.255.255.0 U 1 0 0 eth1
default 192.168.0.1 0.0.0.0 UG 0 0 0 eth1


I dont understand why it's having problems to route. Can anybody help?

Thanks


Tomas

User avatar
maikcat
Forum Team
Posts: 4202
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: connection problems

Post by maikcat » Tue Jun 28, 2011 11:16 am

hi there,

first remove this from your server config
>route 10.8.0.0 255.255.255.0

also you added this into server config

>route 192.168.1.0 255.255.255.0

where 192.168.1.x subnet is located?

what linux distro are you using?

Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

kontox
OpenVpn Newbie
Posts: 5
Joined: Tue Jun 28, 2011 10:17 am

Re: connection problems

Post by kontox » Tue Jun 28, 2011 12:33 pm

site 1:
- client
- windows 2000 server
- 192.168.1.0 subnet

site 2:
- server
- debian 5.0
- 192.168.0.0 subnet

User avatar
maikcat
Forum Team
Posts: 4202
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: connection problems

Post by maikcat » Tue Jun 28, 2011 12:45 pm

add to your server config the following:

push "route 192.168.0.0 255.255.255.0"

restart openvpn and reconnect.

did you enabled ip forwading in *both* machines? (in win you must reboot...)

Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

kontox
OpenVpn Newbie
Posts: 5
Joined: Tue Jun 28, 2011 10:17 am

Re: connection problems

Post by kontox » Tue Jun 28, 2011 1:38 pm

Server config updated, restarted openvpn and reconnected. I do have enabled ip forward on both machines.

After I connect from the client and check the routing table, the 192.168.0.0 route is not there, so the push route is not working. Both server are using the same secret.key file. I've generated the file on the linux server and copied it over ftp.

For me it looks like the communication is not working just like if the key files was not the same.

I forgot to mention I'm using openvpn version 2.1.3 on both machines.

User avatar
maikcat
Forum Team
Posts: 4202
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: connection problems

Post by maikcat » Tue Jun 28, 2011 1:40 pm

can you post server logs..?

Michael
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

kontox
OpenVpn Newbie
Posts: 5
Joined: Tue Jun 28, 2011 10:17 am

Re: connection problems

Post by kontox » Tue Jun 28, 2011 2:04 pm

I've noticed that the current status on the client is always connecting. So it never connects. Here is the server log:

Tue Jun 28 09:53:26 2011 us=320765 Current Parameter Settings:
Tue Jun 28 09:53:26 2011 us=320894 config = '/etc/openvpn/server.conf'
Tue Jun 28 09:53:26 2011 us=320916 mode = 0
Tue Jun 28 09:53:26 2011 us=320934 persist_config = DISABLED
Tue Jun 28 09:53:26 2011 us=320951 persist_mode = 1
Tue Jun 28 09:53:26 2011 us=320968 show_ciphers = DISABLED
Tue Jun 28 09:53:26 2011 us=320985 show_digests = DISABLED
Tue Jun 28 09:53:26 2011 us=321002 show_engines = DISABLED
Tue Jun 28 09:53:26 2011 us=321019 genkey = DISABLED
Tue Jun 28 09:53:26 2011 us=321035 key_pass_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321052 show_tls_ciphers = DISABLED
Tue Jun 28 09:53:26 2011 us=321069 Connection profiles [default]:
Tue Jun 28 09:53:26 2011 us=321086 proto = udp
Tue Jun 28 09:53:26 2011 us=321103 local = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321120 local_port = 1194
Tue Jun 28 09:53:26 2011 us=321136 remote = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321153 remote_port = 1194
Tue Jun 28 09:53:26 2011 us=321169 remote_float = DISABLED
Tue Jun 28 09:53:26 2011 us=321186 bind_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=321202 bind_local = ENABLED
Tue Jun 28 09:53:26 2011 us=321220 connect_retry_seconds = 5
Tue Jun 28 09:53:26 2011 us=321237 connect_timeout = 10
Tue Jun 28 09:53:26 2011 us=321253 connect_retry_max = 0
Tue Jun 28 09:53:26 2011 us=321270 socks_proxy_server = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321287 socks_proxy_port = 0
Tue Jun 28 09:53:26 2011 us=321304 socks_proxy_retry = DISABLED
Tue Jun 28 09:53:26 2011 us=321323 Connection profiles END
Tue Jun 28 09:53:26 2011 us=321340 remote_random = DISABLED
Tue Jun 28 09:53:26 2011 us=321358 ipchange = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321374 dev = 'tun'
Tue Jun 28 09:53:26 2011 us=321391 dev_type = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321407 dev_node = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321423 lladdr = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=321440 topology = 1
Tue Jun 28 09:53:26 2011 us=321456 tun_ipv6 = DISABLED
Tue Jun 28 09:53:26 2011 us=321473 ifconfig_local = '10.8.0.1'
Tue Jun 28 09:53:26 2011 us=321490 ifconfig_remote_netmask = '10.8.0.2'
Tue Jun 28 09:53:26 2011 us=321506 ifconfig_noexec = DISABLED
Tue Jun 28 09:53:26 2011 us=321523 ifconfig_nowarn = DISABLED
Tue Jun 28 09:53:26 2011 us=321539 shaper = 0
Tue Jun 28 09:53:26 2011 us=321555 tun_mtu = 1500
Tue Jun 28 09:53:26 2011 us=321572 tun_mtu_defined = ENABLED
Tue Jun 28 09:53:26 2011 us=321588 link_mtu = 1500
Tue Jun 28 09:53:26 2011 us=321605 link_mtu_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=321621 tun_mtu_extra = 0
Tue Jun 28 09:53:26 2011 us=321638 tun_mtu_extra_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=321654 fragment = 0
Tue Jun 28 09:53:26 2011 us=321671 mtu_discover_type = -1
Tue Jun 28 09:53:26 2011 us=321687 mtu_test = 0
Tue Jun 28 09:53:26 2011 us=321703 mlock = DISABLED
Tue Jun 28 09:53:26 2011 us=321720 keepalive_ping = 10
Tue Jun 28 09:53:26 2011 us=321737 keepalive_timeout = 60
Tue Jun 28 09:53:26 2011 us=321754 inactivity_timeout = 0
Tue Jun 28 09:53:26 2011 us=321770 ping_send_timeout = 10
Tue Jun 28 09:53:26 2011 us=321864 ping_rec_timeout = 60
Tue Jun 28 09:53:26 2011 us=321882 ping_rec_timeout_action = 2
Tue Jun 28 09:53:26 2011 us=321899 ping_timer_remote = DISABLED
Tue Jun 28 09:53:26 2011 us=321916 remap_sigusr1 = 0
Tue Jun 28 09:53:26 2011 us=321932 explicit_exit_notification = 0
Tue Jun 28 09:53:26 2011 us=321949 persist_tun = DISABLED
Tue Jun 28 09:53:26 2011 us=321965 persist_local_ip = DISABLED
Tue Jun 28 09:53:26 2011 us=321982 persist_remote_ip = DISABLED
Tue Jun 28 09:53:26 2011 us=321999 persist_key = DISABLED
Tue Jun 28 09:53:26 2011 us=322016 mssfix = 1450
Tue Jun 28 09:53:26 2011 us=322032 passtos = DISABLED
Tue Jun 28 09:53:26 2011 us=322049 resolve_retry_seconds = 1000000000
Tue Jun 28 09:53:26 2011 us=322065 username = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322082 groupname = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322099 chroot_dir = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322132 cd_dir = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322149 writepid = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322165 up_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322182 down_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322199 down_pre = DISABLED
Tue Jun 28 09:53:26 2011 us=322215 up_restart = DISABLED
Tue Jun 28 09:53:26 2011 us=322231 up_delay = DISABLED
Tue Jun 28 09:53:26 2011 us=322247 daemon = ENABLED
Tue Jun 28 09:53:26 2011 us=322264 inetd = 0
Tue Jun 28 09:53:26 2011 us=322281 log = ENABLED
Tue Jun 28 09:53:26 2011 us=322298 suppress_timestamps = DISABLED
Tue Jun 28 09:53:26 2011 us=322314 nice = 0
Tue Jun 28 09:53:26 2011 us=322331 verbosity = 5
Tue Jun 28 09:53:26 2011 us=322347 mute = 0
Tue Jun 28 09:53:26 2011 us=322363 gremlin = 0
Tue Jun 28 09:53:26 2011 us=322380 status_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322397 status_file_version = 1
Tue Jun 28 09:53:26 2011 us=322413 status_file_update_freq = 60
Tue Jun 28 09:53:26 2011 us=322429 occ = ENABLED
Tue Jun 28 09:53:26 2011 us=322446 rcvbuf = 65536
Tue Jun 28 09:53:26 2011 us=322463 sndbuf = 65536
Tue Jun 28 09:53:26 2011 us=322479 sockflags = 1
Tue Jun 28 09:53:26 2011 us=322495 fast_io = DISABLED
Tue Jun 28 09:53:26 2011 us=322512 lzo = 7
Tue Jun 28 09:53:26 2011 us=322529 route_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322546 route_default_gateway = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322563 route_default_metric = 0
Tue Jun 28 09:53:26 2011 us=322579 route_noexec = DISABLED
Tue Jun 28 09:53:26 2011 us=322596 route_delay = 0
Tue Jun 28 09:53:26 2011 us=322613 route_delay_window = 30
Tue Jun 28 09:53:26 2011 us=322629 route_delay_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=322646 route_nopull = DISABLED
Tue Jun 28 09:53:26 2011 us=322663 route_gateway_via_dhcp = DISABLED
Tue Jun 28 09:53:26 2011 us=322680 max_routes = 100
Tue Jun 28 09:53:26 2011 us=322697 allow_pull_fqdn = DISABLED
Tue Jun 28 09:53:26 2011 us=322715 route 192.168.1.0/255.255.255.0/nil/nil
Tue Jun 28 09:53:26 2011 us=322733 management_addr = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322751 management_port = 0
Tue Jun 28 09:53:26 2011 us=322768 management_user_pass = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322785 management_log_history_cache = 250
Tue Jun 28 09:53:26 2011 us=322802 management_echo_buffer_size = 100
Tue Jun 28 09:53:26 2011 us=322820 management_write_peer_info_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322837 management_client_user = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322854 management_client_group = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=322871 management_flags = 0
Tue Jun 28 09:53:26 2011 us=322889 shared_secret_file = '/etc/openvpn/static.k
ey'
Tue Jun 28 09:53:26 2011 us=322906 key_direction = 0
Tue Jun 28 09:53:26 2011 us=322923 ciphername_defined = ENABLED
Tue Jun 28 09:53:26 2011 us=322963 ciphername = 'BF-CBC'
Tue Jun 28 09:53:26 2011 us=322981 authname_defined = ENABLED
Tue Jun 28 09:53:26 2011 us=322998 authname = 'SHA1'
Tue Jun 28 09:53:26 2011 us=323015 prng_hash = 'SHA1'
Tue Jun 28 09:53:26 2011 us=323032 prng_nonce_secret_len = 16
Tue Jun 28 09:53:26 2011 us=323049 keysize = 0
Tue Jun 28 09:53:26 2011 us=323065 engine = DISABLED
Tue Jun 28 09:53:26 2011 us=323108 replay = ENABLED
Tue Jun 28 09:53:26 2011 us=323125 mute_replay_warnings = DISABLED
Tue Jun 28 09:53:26 2011 us=323142 replay_window = 64
Tue Jun 28 09:53:26 2011 us=323159 replay_time = 15
Tue Jun 28 09:53:26 2011 us=323176 packet_id_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323193 use_iv = ENABLED
Tue Jun 28 09:53:26 2011 us=323210 test_crypto = DISABLED
Tue Jun 28 09:53:26 2011 us=323227 tls_server = DISABLED
Tue Jun 28 09:53:26 2011 us=323244 tls_client = DISABLED
Tue Jun 28 09:53:26 2011 us=323261 key_method = 2
Tue Jun 28 09:53:26 2011 us=323277 ca_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323293 ca_path = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323310 dh_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323327 cert_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323358 priv_key_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323376 pkcs12_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323393 cipher_list = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323411 tls_verify = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323427 tls_remote = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323445 crl_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323462 ns_cert_type = 0
Tue Jun 28 09:53:26 2011 us=323479 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323495 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323512 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323528 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323544 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323560 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323577 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323594 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323611 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323628 remote_cert_ku = 0
Tue Jun 28 09:53:26 2011 us=323644 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323660 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323677 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323694 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323712 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323729 remote_cert_ku[i] = 0
Tue Jun 28 09:53:26 2011 us=323746 remote_cert_eku = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323763 tls_timeout = 2
Tue Jun 28 09:53:26 2011 us=323779 renegotiate_bytes = 0
Tue Jun 28 09:53:26 2011 us=323796 renegotiate_packets = 0
Tue Jun 28 09:53:26 2011 us=323813 renegotiate_seconds = 3600
Tue Jun 28 09:53:26 2011 us=323830 handshake_window = 60
Tue Jun 28 09:53:26 2011 us=323847 transition_window = 3600
Tue Jun 28 09:53:26 2011 us=323864 single_session = DISABLED
Tue Jun 28 09:53:26 2011 us=323880 push_peer_info = DISABLED
Tue Jun 28 09:53:26 2011 us=323897 tls_exit = DISABLED
Tue Jun 28 09:53:26 2011 us=323915 tls_auth_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=323932 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=323949 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=323979 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=323996 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324013 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324031 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324048 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324065 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324082 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324100 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324117 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324134 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324151 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324168 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324185 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324202 pkcs11_protected_authentication = DISABLED
Tue Jun 28 09:53:26 2011 us=324221 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324239 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324256 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324277 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324295 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324313 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324330 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324348 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324364 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324381 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324398 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324415 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324445 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324463 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324480 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324498 pkcs11_private_mode = 00000000
Tue Jun 28 09:53:26 2011 us=324516 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324532 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324549 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324566 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324583 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324600 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324617 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324634 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324651 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324668 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324685 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324702 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324719 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324736 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324753 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324769 pkcs11_cert_private = DISABLED
Tue Jun 28 09:53:26 2011 us=324787 pkcs11_pin_cache_period = -1
Tue Jun 28 09:53:26 2011 us=324805 pkcs11_id = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=324822 pkcs11_id_management = DISABLED
Tue Jun 28 09:53:26 2011 us=324851 server_network = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324870 server_netmask = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324889 server_bridge_ip = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324908 server_bridge_netmask = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324927 server_bridge_pool_start = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324946 server_bridge_pool_end = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=324963 push_entry = 'route 192.168.0.0 255.255.255
.0'
Tue Jun 28 09:53:26 2011 us=324981 ifconfig_pool_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=324999 ifconfig_pool_start = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=325018 ifconfig_pool_end = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=325036 ifconfig_pool_netmask = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=325053 ifconfig_pool_persist_filename = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325071 ifconfig_pool_persist_refresh_freq = 600
Tue Jun 28 09:53:26 2011 us=325088 n_bcast_buf = 256
Tue Jun 28 09:53:26 2011 us=325105 tcp_queue_limit = 64
Tue Jun 28 09:53:26 2011 us=325122 real_hash_size = 256
Tue Jun 28 09:53:26 2011 us=325139 virtual_hash_size = 256
Tue Jun 28 09:53:26 2011 us=325155 client_connect_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325172 learn_address_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325188 client_disconnect_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325205 client_config_dir = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325221 ccd_exclusive = DISABLED
Tue Jun 28 09:53:26 2011 us=325238 tmp_dir = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325255 push_ifconfig_defined = DISABLED
Tue Jun 28 09:53:26 2011 us=325273 push_ifconfig_local = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=325292 push_ifconfig_remote_netmask = 0.0.0.0
Tue Jun 28 09:53:26 2011 us=325309 enable_c2c = DISABLED
Tue Jun 28 09:53:26 2011 us=325327 duplicate_cn = DISABLED
Tue Jun 28 09:53:26 2011 us=325344 cf_max = 0
Tue Jun 28 09:53:26 2011 us=325361 cf_per = 0
Tue Jun 28 09:53:26 2011 us=325377 max_clients = 1024
Tue Jun 28 09:53:26 2011 us=325394 max_routes_per_client = 256
Tue Jun 28 09:53:26 2011 us=325411 auth_user_pass_verify_script = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325428 auth_user_pass_verify_script_via_file = DIS
ABLED
Tue Jun 28 09:53:26 2011 us=325445 ssl_flags = 0
Tue Jun 28 09:53:26 2011 us=325461 port_share_host = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325478 port_share_port = 0
Tue Jun 28 09:53:26 2011 us=325494 client = DISABLED
Tue Jun 28 09:53:26 2011 us=325524 pull = DISABLED
Tue Jun 28 09:53:26 2011 us=325541 auth_user_pass_file = '[UNDEF]'
Tue Jun 28 09:53:26 2011 us=325563 OpenVPN 2.1.3 x86_64-pc-linux-gnu [SSL] [LZO2
] [EPOLL] [PKCS11] [MH] [PF_INET6] [eurephia] built on Oct 22 2010
Tue Jun 28 09:53:26 2011 us=325704 NOTE: OpenVPN 2.1 requires '--script-security
2' or higher to call user-defined scripts or executables
Tue Jun 28 09:53:26 2011 us=325757 /usr/sbin/openvpn-vulnkey -q /etc/openvpn/sta
tic.key
Tue Jun 28 09:53:26 2011 us=405054 Static Encrypt: Cipher 'BF-CBC' initialized w
ith 128 bit key
Tue Jun 28 09:53:26 2011 us=405151 Static Encrypt: Using 160 bit message hash 'S
HA1' for HMAC authentication
Tue Jun 28 09:53:26 2011 us=405212 Static Decrypt: Cipher 'BF-CBC' initialized w
ith 128 bit key
Tue Jun 28 09:53:26 2011 us=405233 Static Decrypt: Using 160 bit message hash 'S
HA1' for HMAC authentication
Tue Jun 28 09:53:26 2011 us=405274 LZO compression initialized
Tue Jun 28 09:53:26 2011 us=405341 Socket Buffers: R=[124928->131072] S=[124928-
>131072]
Tue Jun 28 09:53:26 2011 us=405572 ROUTE default_gateway=192.168.0.1
Tue Jun 28 09:53:26 2011 us=409242 TUN/TAP device tun0 opened
Tue Jun 28 09:53:26 2011 us=409336 TUN/TAP TX queue length set to 100
Tue Jun 28 09:53:26 2011 us=409396 /sbin/ifconfig tun0 10.8.0.1 pointopoint 10.8
.0.2 mtu 1500
Tue Jun 28 09:53:26 2011 us=412843 /sbin/route add -net 192.168.1.0 netmask 255.
255.255.0 gw 10.8.0.2
Tue Jun 28 09:53:26 2011 us=414550 Data Channel MTU parms [ L:1545 D:1450 EF:45
EB:135 ET:0 EL:0 AF:3/1 ]
Tue Jun 28 09:53:26 2011 us=414628 Local Options String: 'V4,dev-type tun,link-m
tu 1545,tun-mtu 1500,proto UDPv4,ifconfig 10.8.0.2 10.8.0.1,comp-lzo,cipher BF-C
BC,auth SHA1,keysize 128,secret'
Tue Jun 28 09:53:26 2011 us=414647 Expected Remote Options String: 'V4,dev-type
tun,link-mtu 1545,tun-mtu 1500,proto UDPv4,ifconfig 10.8.0.1 10.8.0.2,comp-lzo,c
ipher BF-CBC,auth SHA1,keysize 128,secret'
Tue Jun 28 09:53:26 2011 us=414703 Local Options hash (VER=V4): '4b91e501'
Tue Jun 28 09:53:26 2011 us=414728 Expected Remote Options hash (VER=V4): '48593
abd'
Tue Jun 28 09:53:26 2011 us=415350 UDPv4 link local (bound): [undef]
Tue Jun 28 09:53:26 2011 us=415429 UDPv4 link remote: [undef]
RTue Jun 28 09:53:33 2011 us=477873 Peer Connection Initiated with [AF_INET]XXX.
XXX.79.153:1194 (via [AF_INET]192.168.0.80)
Tue Jun 28 09:53:33 2011 us=477920 Initialization Sequence Completed
WWTue Jun 28 09:53:39 2011 us=996165 read UDPv4 [CMSG=8|EHOSTUNREACH|CMSG=8|EHOS
TUNREACH]: No route to host (code=113)
RRRWTue Jun 28 09:53:46 2011 us=332097 read UDPv4 [CMSG=8|EHOSTUNREACH]: No rout
e to host (code=113)
RWTue Jun 28 09:53:49 2011 us=336086 read UDPv4 [CMSG=8|EHOSTUNREACH]: No route
to host (code=113)
RRRWTue Jun 28 09:53:56 2011 us=455860 read UDPv4 [CMSG=8|EHOSTUNREACH]: No rout
e to host (code=113)
RWTue Jun 28 09:53:59 2011 us=459851 read UDPv4 [CMSG=8|EHOSTUNREACH]: No route
to host (code=113)
RWWTue Jun 28 09:54:07 2011 us=72243 event_wait : Interrupted system call (code=
4)
Tue Jun 28 09:54:07 2011 us=72439 TCP/UDP: Closing socket
Tue Jun 28 09:54:07 2011 us=72504 /sbin/route del -net 192.168.1.0 netmask 255.2
55.255.0
Tue Jun 28 09:54:07 2011 us=73877 Closing TUN/TAP interface
Tue Jun 28 09:54:07 2011 us=73963 /sbin/ifconfig tun0 0.0.0.0
Tue Jun 28 09:54:07 2011 us=112097 SIGTERM[hard,] received, process exiting

kontox
OpenVpn Newbie
Posts: 5
Joined: Tue Jun 28, 2011 10:17 am

Re: connection problems

Post by kontox » Tue Jun 28, 2011 3:51 pm

I've found the problem. It was a network problem. I have a DLink router and I used "Virtual Server" instead of "Port Forwarding".
:?

User avatar
maikcat
Forum Team
Posts: 4202
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: connection problems

Post by maikcat » Wed Jun 29, 2011 7:32 am

ok then

closing topic

Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

Locked