openvpn on Centos 5.5

Need help configuring your VPN? Just post here and you'll get that help.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Forum rules
Please use the [oconf] BB tag for openvpn Configurations. See viewtopic.php?f=30&t=21589 for an example.
Post Reply
hohoangluan
OpenVPN User
Posts: 31
Joined: Wed Jan 26, 2011 2:34 pm

openvpn on Centos 5.5

Post by hohoangluan » Thu Jan 12, 2012 9:32 am

Hi ALL.
I've make config openvpn on centos 5.5. I have some error like this.
When i run scrip openvpn server.conf, it's inform me suceed. But when i show interface tunnel by command ifconfig, it;s not show interface tun0????

server.conf

Code: Select all

tls-server
dev tun
proto udp
port 1194

server 10.8.0.0 255.255.255.0
ca /etc/openvpn/keys/ca.crt
cert /etc/openvpn/keys/server.crt
key /etc/openvpn/keys/server.key
dh /etc/openvpn/keys/dh1024.pem

status openvpn-status.log
;log /var/log/openvpn.log
;log-append openvpn.log

persist-tun
persist-key

comp-lzo
verb 3

Openvpn.log

Code: Select all

Thu Jan 12 16:06:01 2012 OpenVPN 2.0.9 i686-pc-linux [SSL] [LZO] [EPOLL] built on Jan 12 2012
Thu Jan 12 16:06:01 2012 WARNING: --keepalive option is missing from server config
Thu Jan 12 16:06:01 2012 Diffie-Hellman initialized with 1024 bit key
Thu Jan 12 16:06:01 2012 TLS-Auth MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu Jan 12 16:06:01 2012 TUN/TAP device tun0 opened
Thu Jan 12 16:06:01 2012 /sbin/ifconfig tun0 10.8.0.1 pointopoint 10.8.0.2 mtu 1500
Thu Jan 12 16:06:01 2012 /sbin/route add -net 10.8.0.0 netmask 255.255.255.0 gw 10.8.0.2
Thu Jan 12 16:06:01 2012 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Jan 12 16:06:01 2012 UDPv4 link local (bound): [undef]:1194
Thu Jan 12 16:06:01 2012 UDPv4 link remote: [undef]
Thu Jan 12 16:06:01 2012 MULTI: multi_init called, r=256 v=256
Thu Jan 12 16:06:01 2012 IFCONFIG POOL: base=10.8.0.4 size=62
Thu Jan 12 16:06:01 2012 Initialization Sequence Completed
Thu Jan 12 16:06:02 2012 event_wait : Interrupted system call (code=4)
Thu Jan 12 16:06:02 2012 TCP/UDP: Closing socket
Thu Jan 12 16:06:02 2012 /sbin/route del -net 10.8.0.0 netmask 255.255.255.0
Thu Jan 12 16:06:02 2012 Closing TUN/TAP interface
"/var/log/openvpn.log" 18L, 1263C
client.conf

Code: Select all

tls-client
dev tun
proto udp
remote 172.22.0.17 1194

ifconfig 10.8.0.5 255.255.255.0
ca "C:\\Program Files\\OpenVPN\\keys\\ca.crt"
cert "C:\\Program Files\\OpenVPN\\keys\\client.crt"
key "C:\\Program Files\\OpenVPN\\keys\\client.key"
dh "C:\\Program Files\\OpenVPN\\keys\\dh1024.pem"

persist-tun
persist-key
comp-lzo
verb 3
Log Client

Code: Select all

Thu Jan 12 16:22:13 2012 OpenVPN 2.2.0 Win32-MSVC++ [SSL] [LZO2] built on Apr 26 2011
Thu Jan 12 16:22:13 2012 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA.  OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Thu Jan 12 16:22:13 2012 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Thu Jan 12 16:22:13 2012 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Jan 12 16:22:13 2012 LZO compression initialized
Thu Jan 12 16:22:13 2012 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu Jan 12 16:22:13 2012 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu Jan 12 16:22:13 2012 WARNING: Since you are using --dev tun with a point-to-point topology, the second argument to --ifconfig must be an IP address.  You are using something (255.255.255.0) that looks more like a netmask. (silence this warning with --ifconfig-nowarn)
Thu Jan 12 16:22:13 2012 There is a problem in your selection of --ifconfig endpoints [local=10.8.0.5, remote=255.255.255.0].  The local and remote VPN endpoints must exist within the same 255.255.255.252 subnet.  This is a limitation of --dev tun when used with the TAP-WIN32 driver.  Try 'openvpn --show-valid-subnets' option for more info.
Thu Jan 12 16:22:13 2012 Exiting
Last edited by hohoangluan on Fri Jan 13, 2012 5:11 am, edited 1 time in total.

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: openvpn on Centos 5.5

Post by maikcat » Thu Jan 12, 2012 9:44 am

Thu Jan 12 16:06:02 2012 event_wait : Interrupted system call (code=4)
it seems something stops the service..
use verb 5 and repost server logs,

also try to update your openvpn service ,2.0.9 is a little bit old...

please post the output of sestatus

Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

hohoangluan
OpenVPN User
Posts: 31
Joined: Wed Jan 26, 2011 2:34 pm

Re: openvpn on Centos 5.5

Post by hohoangluan » Fri Jan 13, 2012 5:10 am

I already change Verb 5, upgrade openvpn to Version 2.2.0 and i can see tunnel interface. But can not connect to openvpn server

Client.log

Code: Select all

Fri Jan 13 19:07:55 2012 us=546000 Current Parameter Settings:
Fri Jan 13 19:07:55 2012 us=546000   config = 'vpn.ovpn'
Fri Jan 13 19:07:55 2012 us=546000   mode = 0
Fri Jan 13 19:07:55 2012 us=546000   show_ciphers = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   show_digests = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   show_engines = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   genkey = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   key_pass_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   show_tls_ciphers = DISABLED
Fri Jan 13 19:07:55 2012 us=546000 Connection profiles [default]:
Fri Jan 13 19:07:55 2012 us=546000   proto = udp
Fri Jan 13 19:07:55 2012 us=546000   local = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   local_port = 1194
Fri Jan 13 19:07:55 2012 us=546000   remote = '172.22.0.17'
Fri Jan 13 19:07:55 2012 us=546000   remote_port = 1194
Fri Jan 13 19:07:55 2012 us=546000   remote_float = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   bind_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   bind_local = ENABLED
Fri Jan 13 19:07:55 2012 us=546000   connect_retry_seconds = 5
Fri Jan 13 19:07:55 2012 us=546000   connect_timeout = 10
Fri Jan 13 19:07:55 2012 us=546000   connect_retry_max = 0
Fri Jan 13 19:07:55 2012 us=546000   socks_proxy_server = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   socks_proxy_port = 0
Fri Jan 13 19:07:55 2012 us=546000   socks_proxy_retry = DISABLED
Fri Jan 13 19:07:55 2012 us=546000 Connection profiles END
Fri Jan 13 19:07:55 2012 us=546000   remote_random = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   ipchange = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   dev = 'tun'
Fri Jan 13 19:07:55 2012 us=546000   dev_type = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   dev_node = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   lladdr = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   topology = 1
Fri Jan 13 19:07:55 2012 us=546000   tun_ipv6 = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   ifconfig_local = '10.8.0.5'
Fri Jan 13 19:07:55 2012 us=546000   ifconfig_remote_netmask = '255.255.255.0'
Fri Jan 13 19:07:55 2012 us=546000   ifconfig_noexec = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   ifconfig_nowarn = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   shaper = 0
Fri Jan 13 19:07:55 2012 us=546000   tun_mtu = 1500
Fri Jan 13 19:07:55 2012 us=546000   tun_mtu_defined = ENABLED
Fri Jan 13 19:07:55 2012 us=546000   link_mtu = 1500
Fri Jan 13 19:07:55 2012 us=546000   link_mtu_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   tun_mtu_extra = 0
Fri Jan 13 19:07:55 2012 us=546000   tun_mtu_extra_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   fragment = 0
Fri Jan 13 19:07:55 2012 us=546000   mtu_discover_type = -1
Fri Jan 13 19:07:55 2012 us=546000   mtu_test = 0
Fri Jan 13 19:07:55 2012 us=546000   mlock = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   keepalive_ping = 0
Fri Jan 13 19:07:55 2012 us=546000   keepalive_timeout = 0
Fri Jan 13 19:07:55 2012 us=546000   inactivity_timeout = 0
Fri Jan 13 19:07:55 2012 us=546000   ping_send_timeout = 0
Fri Jan 13 19:07:55 2012 us=546000   ping_rec_timeout = 0
Fri Jan 13 19:07:55 2012 us=546000   ping_rec_timeout_action = 0
Fri Jan 13 19:07:55 2012 us=546000   ping_timer_remote = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   remap_sigusr1 = 0
Fri Jan 13 19:07:55 2012 us=546000   explicit_exit_notification = 0
Fri Jan 13 19:07:55 2012 us=546000   persist_tun = ENABLED
Fri Jan 13 19:07:55 2012 us=546000   persist_local_ip = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   persist_remote_ip = DISABLED
Fri Jan 13 19:07:55 2012 us=546000   persist_key = ENABLED
Fri Jan 13 19:07:55 2012 us=546000   mssfix = 1450
Fri Jan 13 19:07:55 2012 us=546000   resolve_retry_seconds = 1000000000
Fri Jan 13 19:07:55 2012 us=546000   username = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   groupname = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   chroot_dir = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   cd_dir = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=546000   writepid = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=765000   up_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=765000   down_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=765000   down_pre = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   up_restart = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   up_delay = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   daemon = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   inetd = 0
Fri Jan 13 19:07:55 2012 us=765000   log = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   suppress_timestamps = DISABLED
Fri Jan 13 19:07:55 2012 us=765000   nice = 0
Fri Jan 13 19:07:55 2012 us=765000   verbosity = 5
Fri Jan 13 19:07:55 2012 us=765000   mute = 0
Fri Jan 13 19:07:55 2012 us=765000   gremlin = 0
Fri Jan 13 19:07:55 2012 us=765000   status_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=765000   status_file_version = 1
Fri Jan 13 19:07:55 2012 us=765000   status_file_update_freq = 60
Fri Jan 13 19:07:55 2012 us=765000   occ = ENABLED
Fri Jan 13 19:07:55 2012 us=765000   rcvbuf = 0
Fri Jan 13 19:07:55 2012 us=765000   sndbuf = 0
Fri Jan 13 19:07:55 2012 us=781000   sockflags = 0
Fri Jan 13 19:07:55 2012 us=781000   fast_io = DISABLED
Fri Jan 13 19:07:55 2012 us=781000   lzo = 7
Fri Jan 13 19:07:55 2012 us=781000   route_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   route_default_gateway = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   route_default_metric = 0
Fri Jan 13 19:07:55 2012 us=781000   route_noexec = DISABLED
Fri Jan 13 19:07:55 2012 us=781000   route_delay = 5
Fri Jan 13 19:07:55 2012 us=781000   route_delay_window = 30
Fri Jan 13 19:07:55 2012 us=781000   route_delay_defined = ENABLED
Fri Jan 13 19:07:55 2012 us=781000   route_nopull = DISABLED
Fri Jan 13 19:07:55 2012 us=781000   route_gateway_via_dhcp = DISABLED
Fri Jan 13 19:07:55 2012 us=781000   max_routes = 100
Fri Jan 13 19:07:55 2012 us=781000   allow_pull_fqdn = DISABLED
Fri Jan 13 19:07:55 2012 us=781000   management_addr = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   management_port = 0
Fri Jan 13 19:07:55 2012 us=781000   management_user_pass = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   management_log_history_cache = 250
Fri Jan 13 19:07:55 2012 us=781000   management_echo_buffer_size = 100
Fri Jan 13 19:07:55 2012 us=781000   management_write_peer_info_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   management_client_user = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   management_client_group = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   management_flags = 0
Fri Jan 13 19:07:55 2012 us=781000   shared_secret_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=781000   key_direction = 0
Fri Jan 13 19:07:55 2012 us=781000   ciphername_defined = ENABLED
Fri Jan 13 19:07:55 2012 us=781000   ciphername = 'BF-CBC'
Fri Jan 13 19:07:55 2012 us=781000   authname_defined = ENABLED
Fri Jan 13 19:07:55 2012 us=781000   authname = 'SHA1'
Fri Jan 13 19:07:55 2012 us=781000   prng_hash = 'SHA1'
Fri Jan 13 19:07:55 2012 us=781000   prng_nonce_secret_len = 16
Fri Jan 13 19:07:55 2012 us=781000   keysize = 0
Fri Jan 13 19:07:55 2012 us=796000   engine = DISABLED
Fri Jan 13 19:07:55 2012 us=796000   replay = ENABLED
Fri Jan 13 19:07:55 2012 us=796000   mute_replay_warnings = DISABLED
Fri Jan 13 19:07:55 2012 us=796000   replay_window = 64
Fri Jan 13 19:07:55 2012 us=796000   replay_time = 15
Fri Jan 13 19:07:55 2012 us=796000   packet_id_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=796000   use_iv = ENABLED
Fri Jan 13 19:07:55 2012 us=796000   test_crypto = DISABLED
Fri Jan 13 19:07:55 2012 us=796000   tls_server = DISABLED
Fri Jan 13 19:07:55 2012 us=796000   tls_client = ENABLED
Fri Jan 13 19:07:55 2012 us=796000   key_method = 2
Fri Jan 13 19:07:55 2012 us=796000   ca_file = 'C:\Program Files\OpenVPN\keys\ca.crt'
Fri Jan 13 19:07:55 2012 us=796000   ca_path = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=796000   dh_file = 'C:\Program Files\OpenVPN\keys\dh1024.pem'
Fri Jan 13 19:07:55 2012 us=796000   cert_file = 'C:\Program Files\OpenVPN\keys\home.crt'
Fri Jan 13 19:07:55 2012 us=796000   priv_key_file = 'C:\Program Files\OpenVPN\keys\home.key'
Fri Jan 13 19:07:55 2012 us=812000   pkcs12_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   cryptoapi_cert = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   cipher_list = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   tls_verify = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   tls_export_cert = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   tls_remote = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   crl_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   ns_cert_type = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_ku[i] = 0
Fri Jan 13 19:07:55 2012 us=812000   remote_cert_eku = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=812000   tls_timeout = 2
Fri Jan 13 19:07:55 2012 us=812000   renegotiate_bytes = 0
Fri Jan 13 19:07:55 2012 us=812000   renegotiate_packets = 0
Fri Jan 13 19:07:55 2012 us=812000   renegotiate_seconds = 3600
Fri Jan 13 19:07:55 2012 us=812000   handshake_window = 60
Fri Jan 13 19:07:55 2012 us=812000   transition_window = 3600
Fri Jan 13 19:07:55 2012 us=812000   single_session = DISABLED
Fri Jan 13 19:07:55 2012 us=828000   push_peer_info = DISABLED
Fri Jan 13 19:07:55 2012 us=828000   tls_exit = DISABLED
Fri Jan 13 19:07:55 2012 us=828000   tls_auth_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=828000   server_network = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   server_netmask = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   server_bridge_ip = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   server_bridge_netmask = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   server_bridge_pool_start = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   server_bridge_pool_end = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_start = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_end = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_netmask = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_persist_filename = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=828000   ifconfig_pool_persist_refresh_freq = 600
Fri Jan 13 19:07:55 2012 us=843000   n_bcast_buf = 256
Fri Jan 13 19:07:55 2012 us=843000   tcp_queue_limit = 64
Fri Jan 13 19:07:55 2012 us=843000   real_hash_size = 256
Fri Jan 13 19:07:55 2012 us=843000   virtual_hash_size = 256
Fri Jan 13 19:07:55 2012 us=843000   client_connect_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   learn_address_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   client_disconnect_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   client_config_dir = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   ccd_exclusive = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   tmp_dir = 'C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\'
Fri Jan 13 19:07:55 2012 us=843000   push_ifconfig_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   push_ifconfig_local = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=843000   push_ifconfig_remote_netmask = 0.0.0.0
Fri Jan 13 19:07:55 2012 us=843000   enable_c2c = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   duplicate_cn = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   cf_max = 0
Fri Jan 13 19:07:55 2012 us=843000   cf_per = 0
Fri Jan 13 19:07:55 2012 us=843000   max_clients = 1024
Fri Jan 13 19:07:55 2012 us=843000   max_routes_per_client = 256
Fri Jan 13 19:07:55 2012 us=843000   auth_user_pass_verify_script = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   auth_user_pass_verify_script_via_file = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   ssl_flags = 0
Fri Jan 13 19:07:55 2012 us=843000   client = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   pull = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   auth_user_pass_file = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=843000   show_net_up = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   route_method = 0
Fri Jan 13 19:07:55 2012 us=843000   ip_win32_defined = DISABLED
Fri Jan 13 19:07:55 2012 us=843000   ip_win32_type = 3
Fri Jan 13 19:07:55 2012 us=843000   dhcp_masq_offset = 0
Fri Jan 13 19:07:55 2012 us=843000   dhcp_lease_time = 31536000
Fri Jan 13 19:07:55 2012 us=859000   tap_sleep = 0
Fri Jan 13 19:07:55 2012 us=859000   dhcp_options = DISABLED
Fri Jan 13 19:07:55 2012 us=859000   dhcp_renew = DISABLED
Fri Jan 13 19:07:55 2012 us=859000   dhcp_pre_release = DISABLED
Fri Jan 13 19:07:55 2012 us=859000   dhcp_release = DISABLED
Fri Jan 13 19:07:55 2012 us=859000   domain = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=859000   netbios_scope = '[UNDEF]'
Fri Jan 13 19:07:55 2012 us=859000   netbios_node_type = 0
Fri Jan 13 19:07:55 2012 us=859000   disable_nbt = DISABLED
Fri Jan 13 19:07:55 2012 us=859000 OpenVPN 2.2.0 Win32-MSVC++ [SSL] [LZO2] built on Apr 26 2011
Fri Jan 13 19:07:55 2012 us=859000 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA.  OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Fri Jan 13 19:07:55 2012 us=859000 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Fri Jan 13 19:07:55 2012 us=859000 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Fri Jan 13 19:07:56 2012 us=156000 LZO compression initialized
Fri Jan 13 19:07:56 2012 us=156000 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Fri Jan 13 19:07:56 2012 us=156000 Socket Buffers: R=[8192->8192] S=[8192->8192]
Fri Jan 13 19:07:56 2012 us=171000 WARNING: Since you are using --dev tun with a point-to-point topology, the second argument to --ifconfig must be an IP address.  You are using something (255.255.255.0) that looks more like a netmask. (silence this warning with --ifconfig-nowarn)
Fri Jan 13 19:07:56 2012 us=171000 There is a problem in your selection of --ifconfig endpoints [local=10.8.0.5, remote=255.255.255.0].  The local and remote VPN endpoints must exist within the same 255.255.255.252 subnet.  This is a limitation of --dev tun when used with the TAP-WIN32 driver.  Try 'openvpn --show-valid-subnets' option for more info.
Fri Jan 13 19:07:56 2012 us=171000 Exiting


User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: openvpn on Centos 5.5

Post by maikcat » Fri Jan 13, 2012 7:32 am

i have to admin that i didnt read carefully your client config...

remove this from your client:

ifconfig 10.8.0.5 255.255.255.0
dh "C:\\Program Files\\OpenVPN\\keys\\dh1024.pem"


and try again to connect

Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

hohoangluan
OpenVPN User
Posts: 31
Joined: Wed Jan 26, 2011 2:34 pm

Re: openvpn on Centos 5.5

Post by hohoangluan » Fri Jan 13, 2012 8:06 am

Hi Michael.
It's can not be earse ifconfig because when use Dev tun

if earse ifconfig xxxx xxxx

Code: Select all

options error: On Windows, --ifconfig is required when --dev tun is used
Use --help for more information.


User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: openvpn on Centos 5.5

Post by maikcat » Fri Jan 13, 2012 10:25 am

add this to your client config:

client


Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

Post Reply