Why doesn't it work?

How to customize and extend your OpenVPN installation.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
DragonItaly
OpenVpn Newbie
Posts: 5
Joined: Wed Mar 25, 2015 6:28 pm

Why doesn't it work?

Post by DragonItaly » Wed Mar 25, 2015 6:33 pm

Hallo , i don't understand it, why doesn´t it work ?
how is my error? p.s. sorry for my bad english
Client
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\config\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\config\\MeinClient.crt"
key "E:\\Program Files\\OpenVPN\\config\\MeinClient.key"

# Client-Setup
client
dev tap
proto udp
remote 192.168.10.0 1194
remote 37.201.192.10 1194
remote arturoca.ddns.net 1194 #Hostname anpassen
resolv-retry infinite
nobind
persist-key
persist-tun
comp-lzo
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf

Server
# Zertifikate
ca "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\ca.crt"
cert "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.crt"
key "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\MeinServer.key"
dh "E:\\Program Files\\OpenVPN\\easy-rsa\\keys\\dh1024.pem"

# Server und Netzwerk
local 192.168.1.101 #LAN-Adresse des Servers
port 1194
proto udp
dev tun
server 192.168.10.0 255.255.255.0 #Subnetz
ifconfig-pool-persist ipp.txt
comp-lzo
persist-key
persist-tun
keepalive 10 120

# Log
status "E:\\Program Files\\OpenVPN\\log\\openvpn-status.log"
log "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
log-append "E:\\Program Files\\OpenVPN\\log\\openvpn.log"
verb 3 - See more at: http://www.pcwelt.de/ratgeber/OpenVPN-f ... 8egmP.dpuf

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: Why doesn't it work?

Post by maikcat » Thu Mar 26, 2015 6:27 am

in your client config this:

Code: Select all

remote 192.168.10.0 1194
is totally bogus and can be removed,

also post your server/client logs...

Michael.

Danny2020
OpenVpn Newbie
Posts: 3
Joined: Tue Mar 24, 2015 2:05 pm

Re: Why doesn't it work?

Post by Danny2020 » Thu Mar 26, 2015 1:46 pm

remote 192.168.10.0 1194 = NO

:)

DragonItaly
OpenVpn Newbie
Posts: 5
Joined: Wed Mar 25, 2015 6:28 pm

Re: Why doesn't it work?

Post by DragonItaly » Thu Mar 26, 2015 3:29 pm

thank you

Thu Mar 26 16:25:51 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Thu Mar 26 16:25:51 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Thu Mar 26 16:25:51 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:51 2015 Need hold release from management interface, waiting...
Thu Mar 26 16:25:52 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25343
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'state on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'log all on'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold off'
Thu Mar 26 16:25:52 2015 MANAGEMENT: CMD 'hold release'
Thu Mar 26 16:25:52 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:25:52 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:25:52 2015 UDPv4 link local: [undef]
Thu Mar 26 16:25:52 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:25:52 2015 MANAGEMENT: >STATE:1427383552,WAIT,,,
Thu Mar 26 16:26:52 2015 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu Mar 26 16:26:52 2015 TLS Error: TLS handshake failed
Thu Mar 26 16:26:52 2015 SIGUSR1[soft,tls-error] received, process restarting
Thu Mar 26 16:26:52 2015 MANAGEMENT: >STATE:1427383612,RECONNECTING,tls-error,,
Thu Mar 26 16:26:52 2015 Restart pause, 2 second(s)
Thu Mar 26 16:26:54 2015 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Mar 26 16:26:54 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Mar 26 16:26:54 2015 MANAGEMENT: >STATE:1427383614,RESOLVE,,,
Thu Mar 26 16:26:57 2015 UDPv4 link local: [undef]
Thu Mar 26 16:26:57 2015 UDPv4 link remote: [AF_INET]37.201.192.10:1194
Thu Mar 26 16:26:57 2015 MANAGEMENT: >STATE:1427383617,WAIT,,,
Thu Mar 26 16:27:07 2015 SIGTERM[hard,] received, process exiting
Thu Mar 26 16:27:07 2015 MANAGEMENT: >STATE:1427383627,EXITING,SIGTERM,,

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: Why doesn't it work?

Post by maikcat » Fri Mar 27, 2015 6:27 am

server logs please?

Michael.

DragonItaly
OpenVpn Newbie
Posts: 5
Joined: Wed Mar 25, 2015 6:28 pm

Re: Why doesn't it work?

Post by DragonItaly » Fri Mar 27, 2015 7:43 am

openvpn.log
Fri Mar 27 08:09:52 2015 OpenVPN 2.3.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Mar 19 2015
Fri Mar 27 08:09:52 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Fri Mar 27 08:09:52 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:52 2015 Need hold release from management interface, waiting...
Fri Mar 27 08:09:53 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'state on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'log all on'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold off'
Fri Mar 27 08:09:53 2015 MANAGEMENT: CMD 'hold release'
Fri Mar 27 08:09:53 2015 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x. Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
Fri Mar 27 08:09:53 2015 Diffie-Hellman initialized with 1024 bit key
Fri Mar 27 08:09:53 2015 Socket Buffers: R=[65536->65536] S=[65536->65536]
Fri Mar 27 08:09:53 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Fri Mar 27 08:09:53 2015 MANAGEMENT: >STATE:1427440193,ASSIGN_IP,,192.168.10.1,
Fri Mar 27 08:09:53 2015 open_tun, tt->ipv6=0
Fri Mar 27 08:09:53 2015 TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{1F384474-F72F-4830-BC9F-4231E4898CD2}.tap
Fri Mar 27 08:09:53 2015 TAP-Windows Driver Version 9.21
Fri Mar 27 08:09:53 2015 Notified TAP-Windows driver to set a DHCP IP/netmask of 192.168.10.1/255.255.255.252 on interface {1F384474-F72F-4830-BC9F-4231E4898CD2} [DHCP-serv: 192.168.10.2, lease-time: 31536000]
Fri Mar 27 08:09:53 2015 Sleeping for 10 seconds...
Fri Mar 27 08:10:03 2015 Successful ARP Flush on interface [9] {1F384474-F72F-4830-BC9F-4231E4898CD2}
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,ADD_ROUTES,,,
Fri Mar 27 08:10:03 2015 C:\Windows\system32\route.exe ADD 192.168.10.0 MASK 255.255.255.0 192.168.10.2
Fri Mar 27 08:10:03 2015 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
Fri Mar 27 08:10:03 2015 Route addition via IPAPI succeeded [adaptive]
Fri Mar 27 08:10:03 2015 UDPv4 link local (bound): [AF_INET]192.168.1.101:1194
Fri Mar 27 08:10:03 2015 UDPv4 link remote: [undef]
Fri Mar 27 08:10:03 2015 MULTI: multi_init called, r=256 v=256
Fri Mar 27 08:10:03 2015 IFCONFIG POOL: base=192.168.10.4 size=62, ipv6=0
Fri Mar 27 08:10:03 2015 IFCONFIG POOL LIST
Fri Mar 27 08:10:03 2015 Initialization Sequence Completed
Fri Mar 27 08:10:03 2015 MANAGEMENT: >STATE:1427440203,CONNECTED,SUCCESS,192.168.10.1,

openvpn-status.log
OpenVPN CLIENT LIST
Updated,Fri Mar 27 08:41:56 2015
Common Name,Real Address,Bytes Received,Bytes Sent,Connected Since
ROUTING TABLE
Virtual Address,Common Name,Real Address,Last Ref
GLOBAL STATS
Max bcast/mcast queue length,0
END

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: Why doesn't it work?

Post by maikcat » Fri Mar 27, 2015 10:05 am

your log is totally clean...

this is the server log you have while trying to connect?

Michael.

DragonItaly
OpenVpn Newbie
Posts: 5
Joined: Wed Mar 25, 2015 6:28 pm

Re: Why doesn't it work?

Post by DragonItaly » Fri Mar 27, 2015 10:54 am

yes it is .Thank you for your help ^^ hm is the client ok ? i have test different of DNs hoster , because i would go Shure that the DNs hoster are the problem.
p.s. sorry again for my bad English

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: Why doesn't it work?

Post by maikcat » Fri Mar 27, 2015 11:13 am

your client config looks ok,

but the TLS errors in your clients log usually also show on server itself...

TLS erros usually come from firewalls filtering out traffic.

Michael.

DragonItaly
OpenVpn Newbie
Posts: 5
Joined: Wed Mar 25, 2015 6:28 pm

Re: Why doesn't it work?

Post by DragonItaly » Fri Mar 27, 2015 12:26 pm

hm firewall is off and all settings are open auf the fritzbox . p.s. i cannot chance the server ip why? when i chance it se server doesn’t start

Post Reply