Network change

Official client software for OpenVPN Access Server and OpenVPN Cloud.
Post Reply
zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Network change

Post by zkab » Tue Feb 18, 2020 2:24 pm

I have created an OpenVPN server and connected to it with
Linux-, Windows10 and Android clients.
In all cases the clients have been using a 4G network when the connection were made.
They have worked OK except for the Android client.

When I connect the server with my mobile and Android10 running Chrome then I get a warning
message 'A network change was detected ERR_NETWORK_CHANGED' before the website is shown.
Browsing between websites is OK (never miss) ... but always displays the annoying message for
a short second before connection is made to the website.
I have tested the connection with Android & Firefox and then I don't get the warning.
Apparently it is a Chrome issue but it also has to do with OpenVPN connection that gives some dely before it connects.
When I don't run OpenVPN on the same 4G network with Android & Chrome ... there is no warning.
Apparently OpenVPN causes a delay in connecting the server that Android & Chrome are sensitive about but
Android & Firefox don't care about the delay ... the same goes for Linux and Windows10 client.
How can I get rid of the message?

User avatar
Pippin
Forum Team
Posts: 1201
Joined: Wed Jul 01, 2015 8:03 am
Location: irc://irc.libera.chat:6697/openvpn

Re: Network change

Post by Pippin » Tue Feb 18, 2020 2:44 pm

Apparently it is a Chrome issue
Right.
I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
Halton Arp

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Network change

Post by TinCanTech » Tue Feb 18, 2020 9:14 pm


zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Wed Feb 19, 2020 12:32 pm

I don't think that only Chrome is the culprit in this case ...
If I disconnect OpenVPN but being on the same 4G network and access websites with the same Android & Chrome as before then the message don't show up.
Apparently OpenVPN (server or client) gives a network change/delay that Chrome doesn't like.
This message is drivinge me crazy ... don't know what is causing it.

*** (OpenVPN server) uname -a

Code: Select all

FreeBSD pfsense.xxxx 11.2-RELEASE-p10 FreeBSD 11.2-RELEASE-p10 #9 4a2bfdce133(RELENG_2_4_4): Wed May 15 18:54:42 EDT 2019     root@buildbot1-nyi.netgate.com:/build/ce-crossbuild-244/obj/amd64/ZfGpH5cd/build/ce-crossbuild-244/pfSense/tmp/FreeBSD-src/sys/pfSense  amd64
*** (OpenVPN server) /var/etc/openvpn: cat server1.conf
pfSense server config

dev ovpns1
dev-type tun
dev-node /dev/tun1
writepid /var/run/openvpn_server1.pid
#user nobody
#group nobody
script-security 3
daemon
keepalive 10 60
ping-timer-rem
persist-tun
persist-key
proto udp4
cipher AES-128-CBC
auth SHA256
up /usr/local/sbin/ovpn-linkup
down /usr/local/sbin/ovpn-linkdown
client-connect /usr/local/sbin/openvpn.attributes.sh
client-disconnect /usr/local/sbin/openvpn.attributes.sh
local xxx.xxx.xxx.xxx
tls-server
server 192.168.2.0 255.255.255.0
client-config-dir /var/etc/openvpn-csc/server1
username-as-common-name
plugin /usr/local/lib/openvpn/plugins/openvpn-plugin-auth-script.so /usr/local/sbin/ovpn_auth_verify_async user TG9jYWwgRGF0YWJhc2U= false server1 1194
tls-verify "/usr/local/sbin/ovpn_auth_verify tls 'my.dns.com' 1"
lport 1194
management /var/etc/openvpn/server1.sock unix
max-clients 2
push "redirect-gateway def1"
ca /var/etc/openvpn/server1.ca
cert /var/etc/openvpn/server1.cert
key /var/etc/openvpn/server1.key
dh /etc/dh-parameters.2048
tls-auth /var/etc/openvpn/server1.tls-auth 0
persist-remote-ip
float
topology subnet


*** (OpenVPN server) OpenVPN log

Code: Select all

Feb 19 13:00:28	openvpn	36767	TLS Error: cannot locate HMAC in incoming packet from [AF_INET]146.88.240.4:40961
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_VER=2.5_master
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_PLAT=android
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_PROTO=2
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_NCP=2
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_LZ4=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_LZ4v2=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_LZO=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_COMP_STUB=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_COMP_STUBv2=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_TCPNL=1
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 peer info: IV_GUI_VER=de.blinkt.openvpn_0.7.8
Feb 19 13:08:45	openvpn	36767	94.234.32.102:2635 [zkvpn] Peer Connection Initiated with [AF_INET]94.234.32.102:2635
Feb 19 13:08:45	openvpn		user 'zkvpn' authenticated
Feb 19 13:08:46	openvpn	36767	zkvpn/94.234.32.102:2635 MULTI_sva: pool returned IPv4=192.168.2.2, IPv6=(Not enabled)
*** (OpenVPN client) OpenVPN log

Code: Select all

2020-02-19 13:08:43 officiellt bygge 0.7.8 körs på google Pixel 3 XL (crosshatch), Android 10 (QQ1A.200205.002) API 29, ABI arm64-v8a, (google/crosshatch/crosshatch:10/QQ1A.200205.002/6084386:user/release-keys)
2020-02-19 13:08:43 Läs in (274) loggrader från loggens cachefil på nytt
2020-02-19 13:08:43 Bygger konfiguration…
2020-02-19 13:08:43 started Socket Thread
2020-02-19 13:08:43 Nätverksstatus: CONNECTED LTE to MOBILE services.telenor.se
2020-02-19 13:08:43 Debug state info: CONNECTED LTE to MOBILE services.telenor.se, pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED
2020-02-19 13:08:43 Debug state info: CONNECTED LTE to MOBILE services.telenor.se, pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED
2020-02-19 13:08:43 Current Parameter Settings:
2020-02-19 13:08:43   config = '/data/user/0/de.blinkt.openvpn/cache/android.conf'
2020-02-19 13:08:43   mode = 0
2020-02-19 13:08:43   show_ciphers = DISABLED
2020-02-19 13:08:43   show_digests = DISABLED
2020-02-19 13:08:43   show_engines = DISABLED
2020-02-19 13:08:43   genkey = DISABLED
2020-02-19 13:08:43   key_pass_file = '[UNDEF]'
2020-02-19 13:08:43   show_tls_ciphers = DISABLED
2020-02-19 13:08:43   connect_retry_max = 0
2020-02-19 13:08:43 Connection profiles [0]:
2020-02-19 13:08:43   proto = udp
2020-02-19 13:08:43   local = '[UNDEF]'
2020-02-19 13:08:43   local_port = '1194'
2020-02-19 13:08:43   remote = 'xxx.xxx.xxx.xxx'
2020-02-19 13:08:43   remote_port = '1194'
2020-02-19 13:08:43   remote_float = DISABLED
2020-02-19 13:08:43   bind_defined = DISABLED
2020-02-19 13:08:43   bind_local = ENABLED
2020-02-19 13:08:43   bind_ipv6_only = DISABLED
2020-02-19 13:08:43   connect_retry_seconds = 2
2020-02-19 13:08:43   connect_timeout = 120
2020-02-19 13:08:43   socks_proxy_server = '[UNDEF]'
2020-02-19 13:08:43   socks_proxy_port = '[UNDEF]'
2020-02-19 13:08:43   tun_mtu = 1500
2020-02-19 13:08:43   tun_mtu_defined = ENABLED
2020-02-19 13:08:43   link_mtu = 1500
2020-02-19 13:08:43   link_mtu_defined = DISABLED
2020-02-19 13:08:43   tun_mtu_extra = 0
2020-02-19 13:08:43   tun_mtu_extra_defined = DISABLED
2020-02-19 13:08:43   mtu_discover_type = -1
2020-02-19 13:08:43   fragment = 0
2020-02-19 13:08:43   mssfix = 1450
2020-02-19 13:08:43   explicit_exit_notification = 0
2020-02-19 13:08:43   tls_auth_file = '[[INLINE]]'
2020-02-19 13:08:43   key_direction = 1
2020-02-19 13:08:43   tls_crypt_file = '[UNDEF]'
2020-02-19 13:08:43   tls_crypt_v2_file = '[UNDEF]'
2020-02-19 13:08:43 Connection profiles END
2020-02-19 13:08:43   remote_random = DISABLED
2020-02-19 13:08:43   ipchange = '[UNDEF]'
2020-02-19 13:08:43   dev = 'tun'
2020-02-19 13:08:43   dev_type = '[UNDEF]'
2020-02-19 13:08:43   dev_node = '[UNDEF]'
2020-02-19 13:08:43   lladdr = '[UNDEF]'
2020-02-19 13:08:43   topology = 1
2020-02-19 13:08:43   ifconfig_local = '[UNDEF]'
2020-02-19 13:08:43   ifconfig_remote_netmask = '[UNDEF]'
2020-02-19 13:08:43   ifconfig_noexec = DISABLED
2020-02-19 13:08:43   ifconfig_nowarn = ENABLED
2020-02-19 13:08:43   ifconfig_ipv6_local = '[UNDEF]'
2020-02-19 13:08:43   ifconfig_ipv6_netbits = 0
2020-02-19 13:08:43   ifconfig_ipv6_remote = '[UNDEF]'
2020-02-19 13:08:43   shaper = 0
2020-02-19 13:08:43   mtu_test = 0
2020-02-19 13:08:43   mlock = DISABLED
2020-02-19 13:08:43   keepalive_ping = 0
2020-02-19 13:08:43   keepalive_timeout = 0
2020-02-19 13:08:43   inactivity_timeout = 0
2020-02-19 13:08:43   ping_send_timeout = 0
2020-02-19 13:08:43   ping_rec_timeout = 0
2020-02-19 13:08:43   ping_rec_timeout_action = 0
2020-02-19 13:08:43   ping_timer_remote = DISABLED
2020-02-19 13:08:43   remap_sigusr1 = 0
2020-02-19 13:08:43   persist_tun = ENABLED
2020-02-19 13:08:43   persist_local_ip = DISABLED
2020-02-19 13:08:43   persist_remote_ip = DISABLED
2020-02-19 13:08:43   persist_key = DISABLED
2020-02-19 13:08:43   passtos = DISABLED
2020-02-19 13:08:43   resolve_retry_seconds = 60
2020-02-19 13:08:43   resolve_in_advance = ENABLED
2020-02-19 13:08:43   username = '[UNDEF]'
2020-02-19 13:08:43   groupname = '[UNDEF]'
2020-02-19 13:08:43   chroot_dir = '[UNDEF]'
2020-02-19 13:08:43   cd_dir = '[UNDEF]'
2020-02-19 13:08:43   writepid = '[UNDEF]'
2020-02-19 13:08:43   up_script = '[UNDEF]'
2020-02-19 13:08:43   down_script = '[UNDEF]'
2020-02-19 13:08:43   down_pre = DISABLED
2020-02-19 13:08:43   up_restart = DISABLED
2020-02-19 13:08:43   up_delay = DISABLED
2020-02-19 13:08:43   daemon = DISABLED
2020-02-19 13:08:43   inetd = 0
2020-02-19 13:08:43   log = DISABLED
2020-02-19 13:08:43   suppress_timestamps = DISABLED
2020-02-19 13:08:43   machine_readable_output = ENABLED
2020-02-19 13:08:43   nice = 0
2020-02-19 13:08:43   verbosity = 4
2020-02-19 13:08:43 Vänta 0s sekunder mellan anslutningsförsök
2020-02-19 13:08:43   mute = 0
2020-02-19 13:08:43   gremlin = 0
2020-02-19 13:08:43   status_file = '[UNDEF]'
2020-02-19 13:08:43   status_file_version = 1
2020-02-19 13:08:43   status_file_update_freq = 60
2020-02-19 13:08:43   occ = ENABLED
2020-02-19 13:08:43   rcvbuf = 0
2020-02-19 13:08:43   sndbuf = 0
2020-02-19 13:08:43   sockflags = 0
2020-02-19 13:08:43   fast_io = DISABLED
2020-02-19 13:08:43   comp.alg = 0
2020-02-19 13:08:43   comp.flags = 0
2020-02-19 13:08:43   route_script = '[UNDEF]'
2020-02-19 13:08:43   route_default_gateway = '[UNDEF]'
2020-02-19 13:08:43   route_default_metric = 0
2020-02-19 13:08:43   route_noexec = DISABLED
2020-02-19 13:08:43   route_delay = 0
2020-02-19 13:08:43   route_delay_window = 30
2020-02-19 13:08:43   route_delay_defined = DISABLED
2020-02-19 13:08:43   route_nopull = DISABLED
2020-02-19 13:08:43   route_gateway_via_dhcp = DISABLED
2020-02-19 13:08:43   allow_pull_fqdn = DISABLED
2020-02-19 13:08:43   management_addr = '/data/user/0/de.blinkt.openvpn/cache/mgmtsocket'
2020-02-19 13:08:43   management_port = 'unix'
2020-02-19 13:08:43   management_user_pass = '[UNDEF]'
2020-02-19 13:08:43   management_log_history_cache = 250
2020-02-19 13:08:43   management_echo_buffer_size = 100
2020-02-19 13:08:43   management_write_peer_info_file = '[UNDEF]'
2020-02-19 13:08:43   management_client_user = '[UNDEF]'
2020-02-19 13:08:43   management_client_group = '[UNDEF]'
2020-02-19 13:08:43   management_flags = 16678
2020-02-19 13:08:43   shared_secret_file = '[UNDEF]'
2020-02-19 13:08:43   key_direction = 1
2020-02-19 13:08:43   ciphername = 'AES-128-CBC'
2020-02-19 13:08:43   ncp_enabled = ENABLED
2020-02-19 13:08:43   ncp_ciphers = 'AES-256-GCM:AES-128-GCM'
2020-02-19 13:08:43   authname = 'SHA256'
2020-02-19 13:08:43   prng_hash = 'SHA1'
2020-02-19 13:08:43   prng_nonce_secret_len = 16
2020-02-19 13:08:43   keysize = 0
2020-02-19 13:08:43   engine = DISABLED
2020-02-19 13:08:43   replay = ENABLED
2020-02-19 13:08:43   mute_replay_warnings = DISABLED
2020-02-19 13:08:43   replay_window = 64
2020-02-19 13:08:43   replay_time = 15
2020-02-19 13:08:43   packet_id_file = '[UNDEF]'
2020-02-19 13:08:43   test_crypto = DISABLED
2020-02-19 13:08:43   tls_server = DISABLED
2020-02-19 13:08:43   tls_client = ENABLED
2020-02-19 13:08:43   key_method = 2
2020-02-19 13:08:43   ca_file = '[[INLINE]]'
2020-02-19 13:08:43   ca_path = '[UNDEF]'
2020-02-19 13:08:43   dh_file = '[UNDEF]'
2020-02-19 13:08:43   cert_file = '[[INLINE]]'
2020-02-19 13:08:43   extra_certs_file = '[UNDEF]'
2020-02-19 13:08:43   priv_key_file = '[[INLINE]]'
2020-02-19 13:08:43   pkcs12_file = '[UNDEF]'
2020-02-19 13:08:43   cipher_list = '[UNDEF]'
2020-02-19 13:08:43   cipher_list_tls13 = '[UNDEF]'
2020-02-19 13:08:43   tls_cert_profile = '[UNDEF]'
2020-02-19 13:08:43   tls_verify = '[UNDEF]'
2020-02-19 13:08:43   tls_export_cert = '[UNDEF]'
2020-02-19 13:08:43   verify_x509_type = 2
2020-02-19 13:08:43   verify_x509_name = 'my.dns.com'
2020-02-19 13:08:43   crl_file = '[UNDEF]'
2020-02-19 13:08:43   ns_cert_type = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 65535
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_ku[i] = 0
2020-02-19 13:08:43   remote_cert_eku = 'TLS Web Server Authentication'
2020-02-19 13:08:43   ssl_flags = 0
2020-02-19 13:08:43   tls_timeout = 2
2020-02-19 13:08:43   renegotiate_bytes = -1
2020-02-19 13:08:43   renegotiate_packets = 0
2020-02-19 13:08:43   renegotiate_seconds = 3600
2020-02-19 13:08:43   handshake_window = 60
2020-02-19 13:08:43   transition_window = 3600
2020-02-19 13:08:43   single_session = DISABLED
2020-02-19 13:08:43   push_peer_info = DISABLED
2020-02-19 13:08:43   tls_exit = DISABLED
2020-02-19 13:08:43   tls_crypt_v2_genkey_type = '[UNDEF]'
2020-02-19 13:08:43   tls_crypt_v2_genkey_file = '[UNDEF]'
2020-02-19 13:08:43   tls_crypt_v2_metadata = '[UNDEF]'
2020-02-19 13:08:43   client = ENABLED
2020-02-19 13:08:43   pull = ENABLED
2020-02-19 13:08:43   auth_user_pass_file = 'stdin'
2020-02-19 13:08:43 OpenVPN 2.5-icsopenvpn [git:icsopenvpn/v0.7.8-0-g168367a5] arm64-v8a [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD] built on Feb 22 2019
2020-02-19 13:08:43 library versions: OpenSSL 1.1.1a  20 Nov 2018, LZO 2.10
2020-02-19 13:08:43 MANAGEMENT: Connected to management server at /data/user/0/de.blinkt.openvpn/cache/mgmtsocket
2020-02-19 13:08:43 MANAGEMENT: CMD 'version 3'
2020-02-19 13:08:43 MANAGEMENT: CMD 'hold release'
2020-02-19 13:08:43 MANAGEMENT: CMD 'username 'Auth' zkvpn'
2020-02-19 13:08:43 MANAGEMENT: CMD 'password [...]'
2020-02-19 13:08:43 MANAGEMENT: CMD 'bytecount 2'
2020-02-19 13:08:43 MANAGEMENT: CMD 'state on'
2020-02-19 13:08:43 MANAGEMENT: CMD 'proxy NONE'
2020-02-19 13:08:44 Outgoing Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
2020-02-19 13:08:44 Incoming Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
2020-02-19 13:08:44 Control Channel MTU parms [ L:1621 D:1172 EF:78 EB:0 ET:0 EL:3 ]
2020-02-19 13:08:44 Data Channel MTU parms [ L:1621 D:1450 EF:121 EB:406 ET:0 EL:3 ]
2020-02-19 13:08:44 Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,keydir 1,cipher AES-128-CBC,auth SHA256,keysize 128,tls-auth,key-method 2,tls-client'
2020-02-19 13:08:44 Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,keydir 0,cipher AES-128-CBC,auth SHA256,keysize 128,tls-auth,key-method 2,tls-server'
2020-02-19 13:08:44 TCP/UDP: Preserving recently used remote address: [AF_INET]xxx.xxx.xxx.xxx:1194
2020-02-19 13:08:44 Socket Buffers: R=[229376->229376] S=[229376->229376]
2020-02-19 13:08:44 MANAGEMENT: CMD 'needok 'PROTECTFD' ok'
2020-02-19 13:08:44 UDP link local (bound): [AF_INET][undef]:1194
2020-02-19 13:08:44 UDP link remote: [AF_INET]xxx.xxx.xxx.xxx:1194
2020-02-19 13:08:44 MANAGEMENT: >STATE:1582114124,WAIT,,,,,,
2020-02-19 13:08:44 MANAGEMENT: >STATE:1582114124,AUTH,,,,,,
2020-02-19 13:08:44 TLS: Initial packet from [AF_INET]xxx.xxx.xxx.xxx:1194, sid=2a5f38c1 93c808cb
2020-02-19 13:08:44 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2020-02-19 13:08:44 VERIFY OK: depth=1, CN=ZK-OpenVPN-CA, C=SE, ST=Sweden, L=Stockholm, O=ZKAB, OU=Head Office
2020-02-19 13:08:44 VERIFY KU OK
2020-02-19 13:08:44 Validating certificate extended key usage
2020-02-19 13:08:44 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2020-02-19 13:08:44 VERIFY EKU OK
2020-02-19 13:08:44 VERIFY X509NAME OK: CN=my.dns.com, C=SE, ST=Sweden, L=Stockholm, O=ZKAB, OU=Head Office
2020-02-19 13:08:44 VERIFY OK: depth=0, CN=my.dns.com, C=SE, ST=Sweden, L=Stockholm, O=ZKAB, OU=Head Office
2020-02-19 13:08:44 Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
2020-02-19 13:08:44 [my.dns.com] Peer Connection Initiated with [AF_INET]xxx.xxx.xxx.xxx:1194
2020-02-19 13:08:45 MANAGEMENT: >STATE:1582114125,GET_CONFIG,,,,,,
2020-02-19 13:08:45 SENT CONTROL [my.dns.com]: 'PUSH_REQUEST' (status=1)
2020-02-19 13:08:45 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route-gateway 192.168.2.1,topology subnet,ping 10,ping-restart 60,ifconfig 192.168.2.2 255.255.255.0,peer-id 0,cipher AES-256-GCM'
2020-02-19 13:08:45 OPTIONS IMPORT: timers and/or timeouts modified
2020-02-19 13:08:45 OPTIONS IMPORT: --ifconfig/up options modified
2020-02-19 13:08:45 OPTIONS IMPORT: route options modified
2020-02-19 13:08:45 OPTIONS IMPORT: route-related options modified
2020-02-19 13:08:45 OPTIONS IMPORT: peer-id set
2020-02-19 13:08:45 OPTIONS IMPORT: adjusting link_mtu to 1624
2020-02-19 13:08:45 OPTIONS IMPORT: data channel crypto options modified
2020-02-19 13:08:45 Data Channel: using negotiated cipher 'AES-256-GCM'
2020-02-19 13:08:45 Data Channel MTU parms [ L:1552 D:1450 EF:52 EB:406 ET:0 EL:3 ]
2020-02-19 13:08:45 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2020-02-19 13:08:45 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2020-02-19 13:08:45 ROUTE_GATEWAY 127.100.103.119
2020-02-19 13:08:45 do_ifconfig, ipv4=1, ipv6=0
2020-02-19 13:08:45 MANAGEMENT: >STATE:1582114125,ASSIGN_IP,,192.168.2.2,,,,
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'IFCONFIG' ok'
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'ROUTE' ok'
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'DNSSERVER' ok'
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'DNSSERVER' ok'
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'DNSDOMAIN' ok'
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'PERSIST_TUN_ACTION' OPEN_BEFORE_CLOSE'
2020-02-19 13:08:45 Öppnar tun gränssnittet:
2020-02-19 13:08:45 Lokal IPv4: 192.168.2.2/24 IPv6: (not set) MTU: 1500
2020-02-19 13:08:45 DNS-Server: 8.8.8.8, 8.8.4.4, Domän: blinkt.de
2020-02-19 13:08:45 Rutter: 0.0.0.0/0, 192.168.2.0/24
2020-02-19 13:08:45 Rutter uteslutna: 
2020-02-19 13:08:45 VpnService rutter installerade: 0.0.0.0/0
2020-02-19 13:08:45 Otillåtna VPN-applikationer:
2020-02-19 13:08:45 MANAGEMENT: CMD 'needok 'OPENTUN' ok'
2020-02-19 13:08:45 Initialization Sequence Completed
2020-02-19 13:08:45 MANAGEMENT: >STATE:1582114125,CONNECTED,SUCCESS,192.168.2.2,xxx.xxx.xxx.xxx,1194,,
2020-02-19 13:08:46 Debug state info: CONNECTED LTE to MOBILE services.telenor.se, pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED
2020-02-19 13:09:28 MANAGEMENT: CMD 'network-change'
2020-02-19 13:09:28 Nätverksstatus: CONNECTED  to WIFI
2020-02-19 13:09:28 Debug state info: CONNECTED  to WIFI , pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED
2020-02-19 13:09:28 Debug state info: CONNECTED  to WIFI , pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED
2020-02-19 13:09:28 MANAGEMENT: CMD 'signal SIGINT'
2020-02-19 13:09:28 TCP/UDP: Closing socket
2020-02-19 13:09:28 Sorry, deleting routes on Android is not possible. The VpnService API allows routes to be set on connect only.
2020-02-19 13:09:28 Sorry, deleting routes on Android is not possible. The VpnService API allows routes to be set on connect only.
2020-02-19 13:09:28 Closing TUN/TAP interface
2020-02-19 13:09:29 SIGINT[hard,] received, process exiting
2020-02-19 13:09:29 MANAGEMENT: >STATE:1582114169,EXITING,SIGINT,,,,,
2020-02-19 13:09:29 Debug state info: CONNECTED  to WIFI , pause: userPause, shouldbeconnected: true, network: SHOULDBECONNECTED 
Last edited by Pippin on Wed Feb 19, 2020 2:56 pm, edited 1 time in total.
Reason: Formatting, next time do it proper, thanks

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Network change

Post by TinCanTech » Wed Feb 19, 2020 4:22 pm

Try pushing a trusted DNS server to your client.

zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Wed Feb 19, 2020 9:08 pm

I am using Google Public DNS Servers ... aren't they trusted?

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Network change

Post by TinCanTech » Wed Feb 19, 2020 11:39 pm

Does anybody trust Google .. unless it is to cheat ... ?

zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Thu Feb 20, 2020 9:41 am

OK ... I will try Cloudflare and OpenDNS and let you know

zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Thu Feb 20, 2020 11:46 am

I changed to Cloudflare DNS for the OpenVPN server ... but still the message

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Network change

Post by TinCanTech » Thu Feb 20, 2020 2:44 pm

TinCanTech wrote:
Wed Feb 19, 2020 4:22 pm
Try pushing a trusted DNS server to your client.

zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Thu Feb 20, 2020 6:30 pm

Sorry ... I forgot to mention above that I also used Cloudflare DNS for the client as well.

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Network change

Post by TinCanTech » Thu Feb 20, 2020 10:37 pm

So, is it working ?

zkab
OpenVpn Newbie
Posts: 19
Joined: Sat Jul 20, 2013 2:39 pm

Re: Network change

Post by zkab » Sun Feb 23, 2020 3:26 pm

No ... the same error message.
I tried also the new MS Edge for Android ... same sad result.
Firefox is the only Android software that doesn't give me the error ...

Post Reply