Why doesn't it work?
Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech
-
- OpenVpn Newbie
- Posts: 5
- Joined: Wed Mar 25, 2015 6:28 pm
Why doesn't it work?
Hallo , i don't understand it, why doesn´t it work ?
how is my error? p.s. sorry for my bad english
Client
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\config\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\config\\MeinClient.crt"
key "E:\\Program Files\\OpenVPN\\config\\MeinClient.key"
# Client-Setup
client
dev tap
proto udp
remote 192.168.10.0 1194
remote 37.201.192.10 1194
remote arturoca.ddns.net 1194 #Hostname anpassen
resolv-retry infinite
nobind
persist-key
persist-tun
comp-lzo
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf
Server
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.crt"
key "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.key"
dh "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\dh1024.pem"
# Server und Netzwerk
local 192.168.1.101 #LAN-Adresse des Servers
port 1194
proto udp
dev tun
server 192.168.10.0 255.255.255.0 #Subnetz
ifconfig-pool-persist ipp.txt
comp-lzo
persist-key
persist-tun
keepalive 10 120
# Log
status "E:\\Program Files\\OpenVPN\\log\\openvpn-status.log"
log "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
log-append "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf
how is my error? p.s. sorry for my bad english
Client
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\config\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\config\\MeinClient.crt"
key "E:\\Program Files\\OpenVPN\\config\\MeinClient.key"
# Client-Setup
client
dev tap
proto udp
remote 192.168.10.0 1194
remote 37.201.192.10 1194
remote arturoca.ddns.net 1194 #Hostname anpassen
resolv-retry infinite
nobind
persist-key
persist-tun
comp-lzo
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf
Server
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.crt"
key "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.key"
dh "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\dh1024.pem"
# Server und Netzwerk
local 192.168.1.101 #LAN-Adresse des Servers
port 1194
proto udp
dev tun
server 192.168.10.0 255.255.255.0 #Subnetz
ifconfig-pool-persist ipp.txt
comp-lzo
persist-key
persist-tun
keepalive 10 120
# Log
status "E:\\Program Files\\OpenVPN\\log\\openvpn-status.log"
log "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
log-append "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Why doesn't it work?
in your client config this:
is totally bogus and can be removed,
also post your server/client logs...
Michael.
Code: Select all
remote 192.168.10.0 1194
also post your server/client logs...
Michael.
-
- OpenVpn Newbie
- Posts: 3
- Joined: Tue Mar 24, 2015 2:05 pm
Re: Why doesn't it work?
remote 192.168.10.0 1194 = NO


-
- OpenVpn Newbie
- Posts: 5
- Joined: Wed Mar 25, 2015 6:28 pm
Re: Why doesn't it work?
thank you
Thu Mar 26 16:25:51 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Thu Mar 26 16:25:51 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Thu Mar 26 16:25:51 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:51 2015 Need hold release from management interface, waiting...
Thu Mar 26 16:25:52 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'state on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'log all on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold off'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold release'
Thu Mar 26 16:25:52 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:25:52 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:25:52 2015 UDPv4 link local: [undef]
Thu Mar 26 16:25:52 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:25:52 2015 MANAGEMENT: >STATE:1427383552,WAIT,,,
Thu Mar 26 16:26:52 2015 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu Mar 26 16:26:52 2015 TLS Error: TLS handshake failed
Thu Mar 26 16:26:52 2015 SIGUSR1[soft,tls-error] received, process restarting
Thu Mar 26 16:26:52 2015 MANAGEMENT: >STATE:1427383612,RECONNECTING,tls-error,,
Thu Mar 26 16:26:52 2015 Restart pause, 2 second(s)
Thu Mar 26 16:26:54 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:26:54 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:26:54 2015 MANAGEMENT: >STATE:1427383614,RESOLVE,,,
Thu Mar 26 16:26:57 2015 UDPv4 link local: [undef]
Thu Mar 26 16:26:57 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:26:57 2015 MANAGEMENT: >STATE:1427383617,WAIT,,,
Thu Mar 26 16:27:07 2015 SIGTERM[hard,] received, process exiting
Thu Mar 26 16:27:07 2015 MANAGEMENT: >STATE:1427383627,EXITING,SIGTERM,,
Thu Mar 26 16:25:51 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Thu Mar 26 16:25:51 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Thu Mar 26 16:25:51 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:51 2015 Need hold release from management interface, waiting...
Thu Mar 26 16:25:52 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'state on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'log all on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold off'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold release'
Thu Mar 26 16:25:52 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:25:52 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:25:52 2015 UDPv4 link local: [undef]
Thu Mar 26 16:25:52 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:25:52 2015 MANAGEMENT: >STATE:1427383552,WAIT,,,
Thu Mar 26 16:26:52 2015 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu Mar 26 16:26:52 2015 TLS Error: TLS handshake failed
Thu Mar 26 16:26:52 2015 SIGUSR1[soft,tls-error] received, process restarting
Thu Mar 26 16:26:52 2015 MANAGEMENT: >STATE:1427383612,RECONNECTING,tls-error,,
Thu Mar 26 16:26:52 2015 Restart pause, 2 second(s)
Thu Mar 26 16:26:54 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:26:54 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:26:54 2015 MANAGEMENT: >STATE:1427383614,RESOLVE,,,
Thu Mar 26 16:26:57 2015 UDPv4 link local: [undef]
Thu Mar 26 16:26:57 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:26:57 2015 MANAGEMENT: >STATE:1427383617,WAIT,,,
Thu Mar 26 16:27:07 2015 SIGTERM[hard,] received, process exiting
Thu Mar 26 16:27:07 2015 MANAGEMENT: >STATE:1427383627,EXITING,SIGTERM,,
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Why doesn't it work?
server logs please?
Michael.
Michael.
-
- OpenVpn Newbie
- Posts: 5
- Joined: Wed Mar 25, 2015 6:28 pm
Re: Why doesn't it work?
openvpn.log
Fri Mar 27 08:09:52 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Fri Mar 27 08:09:52 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Fri Mar 27 08:09:52 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:52 2015 Need hold release from management interface, waiting...
Fri Mar 27 08:09:53 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'state on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'log all on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold off'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold release'
Fri Mar 27 08:09:53 2015 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x. Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
Fri Mar 27 08:09:53 2015 Diffie-Hellman initialized with 1024 bit key
Fri Mar 27 08:09:53 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Fri Mar 27 08:09:53 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Fri Mar 27 08:09:53 2015 MANAGEMENT: >STATE:1427440193,ASSIGN_IP,,192.168.10.1,
Fri Mar 27 08:09:53 2015 open_tun, tt->ipv6=0
Fri Mar 27 08:09:53 2015 TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{1F384474-F72F-4830-BC9F-4231E4898CD2}.tap
Fri Mar 27 08:09:53 2015 TAP-Windows Driver Version 9.21
Fri Mar 27 08:09:53 2015 Notified TAP-Windows driver to set a DHCP IP/netmask of 192.168.10.1/255.255.255.252 on interface {1F384474-F72F-4830-BC9F-4231E4898CD2} [DHCP-serv: 192.168.10.2, lease-time: 31536000]
Fri Mar 27 08:09:53 2015 Sleeping for 10 seconds...
Fri Mar 27 08:10:03 2015 Successful ARP Flush on interface [9] {1F384474-F72F-4830-BC9F-4231E4898CD2}
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,ADD_ROUTES,,,
Fri Mar 27 08:10:03 2015 C:\Windows\system32\route.exe ADD 192.168.10.0 MASK 255.255.255.0 192.168.10.2
Fri Mar 27 08:10:03 2015 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
Fri Mar 27 08:10:03 2015 Route addition via IPAPI succeeded [adaptive]
Fri Mar 27 08:10:03 2015 UDPv4 link local (bound): [AF_INET]192.168.1.101:1194
Fri Mar 27 08:10:03 2015 UDPv4 link remote: [undef]
Fri Mar 27 08:10:03 2015 MULTI: multi_init called, r=256 v=256
Fri Mar 27 08:10:03 2015 IFCONFIG POOL: base=192.168.10.4 size=62, ipv6=0
Fri Mar 27 08:10:03 2015 IFCONFIG POOL LIST
Fri Mar 27 08:10:03 2015 Initialization Sequence Completed
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,CONNECTED,SUCCESS,192.168.10.1,
openvpn-status.log
OpenVPN CLIENT LIST
Updated,Fri Mar 27 08:41:56 2015
Common Name,Real Address,Bytes Received,Bytes Sent,Connected Since
ROUTING TABLE
Virtual Address,Common Name,Real Address,Last Ref
GLOBAL STATS
Max bcast/mcast queue length,0
END
Fri Mar 27 08:09:52 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Fri Mar 27 08:09:52 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Fri Mar 27 08:09:52 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:52 2015 Need hold release from management interface, waiting...
Fri Mar 27 08:09:53 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'state on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'log all on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold off'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold release'
Fri Mar 27 08:09:53 2015 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x. Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
Fri Mar 27 08:09:53 2015 Diffie-Hellman initialized with 1024 bit key
Fri Mar 27 08:09:53 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Fri Mar 27 08:09:53 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Fri Mar 27 08:09:53 2015 MANAGEMENT: >STATE:1427440193,ASSIGN_IP,,192.168.10.1,
Fri Mar 27 08:09:53 2015 open_tun, tt->ipv6=0
Fri Mar 27 08:09:53 2015 TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{1F384474-F72F-4830-BC9F-4231E4898CD2}.tap
Fri Mar 27 08:09:53 2015 TAP-Windows Driver Version 9.21
Fri Mar 27 08:09:53 2015 Notified TAP-Windows driver to set a DHCP IP/netmask of 192.168.10.1/255.255.255.252 on interface {1F384474-F72F-4830-BC9F-4231E4898CD2} [DHCP-serv: 192.168.10.2, lease-time: 31536000]
Fri Mar 27 08:09:53 2015 Sleeping for 10 seconds...
Fri Mar 27 08:10:03 2015 Successful ARP Flush on interface [9] {1F384474-F72F-4830-BC9F-4231E4898CD2}
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,ADD_ROUTES,,,
Fri Mar 27 08:10:03 2015 C:\Windows\system32\route.exe ADD 192.168.10.0 MASK 255.255.255.0 192.168.10.2
Fri Mar 27 08:10:03 2015 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
Fri Mar 27 08:10:03 2015 Route addition via IPAPI succeeded [adaptive]
Fri Mar 27 08:10:03 2015 UDPv4 link local (bound): [AF_INET]192.168.1.101:1194
Fri Mar 27 08:10:03 2015 UDPv4 link remote: [undef]
Fri Mar 27 08:10:03 2015 MULTI: multi_init called, r=256 v=256
Fri Mar 27 08:10:03 2015 IFCONFIG POOL: base=192.168.10.4 size=62, ipv6=0
Fri Mar 27 08:10:03 2015 IFCONFIG POOL LIST
Fri Mar 27 08:10:03 2015 Initialization Sequence Completed
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,CONNECTED,SUCCESS,192.168.10.1,
openvpn-status.log
OpenVPN CLIENT LIST
Updated,Fri Mar 27 08:41:56 2015
Common Name,Real Address,Bytes Received,Bytes Sent,Connected Since
ROUTING TABLE
Virtual Address,Common Name,Real Address,Last Ref
GLOBAL STATS
Max bcast/mcast queue length,0
END
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Why doesn't it work?
your log is totally clean...
this is the server log you have while trying to connect?
Michael.
this is the server log you have while trying to connect?
Michael.
-
- OpenVpn Newbie
- Posts: 5
- Joined: Wed Mar 25, 2015 6:28 pm
Re: Why doesn't it work?
yes it is .Thank you for your help ^^ hm is the client ok ? i have test different of DNs hoster , because i would go Shure that the DNs hoster are the problem.
p.s. sorry again for my bad English
p.s. sorry again for my bad English
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Why doesn't it work?
your client config looks ok,
but the TLS errors in your clients log usually also show on server itself...
TLS erros usually come from firewalls filtering out traffic.
Michael.
but the TLS errors in your clients log usually also show on server itself...
TLS erros usually come from firewalls filtering out traffic.
Michael.
-
- OpenVpn Newbie
- Posts: 5
- Joined: Wed Mar 25, 2015 6:28 pm
Re: Why doesn't it work?
hm firewall is off and all settings are open auf the fritzbox . p.s. i cannot chance the server ip why? when i chance it se server doesn’t start