Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Official client software for OpenVPN Access Server and OpenVPN Cloud.
dynax60
OpenVpn Newbie
Posts: 1
Joined: Mon Jan 15, 2018 10:02 am

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by dynax60 » Mon Jan 15, 2018 10:16 am

ordex wrote:
Fri Jan 12, 2018 3:32 pm
tos42 wrote:
Fri Jan 12, 2018 2:59 pm
Hi,

same problem here. The workaround with redirect-gateway works, although it can't be a permanent solution as all internet traffic from the device goes through VPN connection...

It seems to be related to the Apple Network Extensions migration, do you have any clues on how to permanently resolve this behaviour ?

--
Hi there,
this answer was given some posts above.
We already have a solution and it has been confirmed to be working by our beta testers.

The next release will be unaffected ;)
Our users already stayed 5 days without access to the corporate network. We have not possible to redirect all client's traffic through our router due to lack of such resources. I understand, you need time to collect a lot of bug fixes to build and release the next revision of the OpenVPN client. But... Is it possible to release critical updates immediately after a successful test? Idle of VPN service is strongly affects on Service Level Agreement in my company. Discontent growing among VPN users. We look forward to the update. Thank you!

martux
OpenVpn Newbie
Posts: 4
Joined: Fri Jan 12, 2018 7:07 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by martux » Mon Jan 15, 2018 11:41 am

Hello, I have the same problem in my Pfsense 2.4.1 box. I could not configure manual DNS with the command push "route $DNS_SERVER_IP 255.255.255.255", neither on the server or in the client.
I already set a DNS Default Domain and DNS Server manually in the configuration of openvpn on pfsense but not work.
The problem is just with IOS because I have clients with android and there is no problem.
Do you know approximatively how much time will it take to release this unaffected new version? Or some temporary solution?
Thanks and sorry for my spanglish!!!

lpo
OpenVpn Newbie
Posts: 1
Joined: Mon Jan 15, 2018 6:05 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by lpo » Mon Jan 15, 2018 6:07 pm

martux wrote:
Mon Jan 15, 2018 11:41 am
Or some temporary solution?
the solution is in the first post!
just add
redirect-gateway def1
to your ovpn profile file.

jk_ens

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by jk_ens » Tue Jan 16, 2018 8:22 am

With regards to the expected time of the bugfix release, I came across this in another thread:
ordex wrote:
Tue Jan 16, 2018 12:20 am
we are currently going through the final Apple review, therefore we expect a new release anytime this week.
Truly hope this is the case!

martux
OpenVpn Newbie
Posts: 4
Joined: Fri Jan 12, 2018 7:07 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by martux » Tue Jan 16, 2018 11:24 am

lpo wrote:
Mon Jan 15, 2018 6:07 pm
martux wrote:
Mon Jan 15, 2018 11:41 am
Or some temporary solution?
the solution is in the first post!
just add
redirect-gateway def1
to your ovpn profile file.
Thanks, I trie to put this into a client file and test the conection!

martux
OpenVpn Newbie
Posts: 4
Joined: Fri Jan 12, 2018 7:07 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by martux » Tue Jan 16, 2018 3:04 pm

lpo wrote:
Mon Jan 15, 2018 6:07 pm
martux wrote:
Mon Jan 15, 2018 11:41 am
Or some temporary solution?
the solution is in the first post!
just add
redirect-gateway def1
to your ovpn profile file.
This is an example of a ovpn client file, I put in the last line the command but not work. Could you give me an example!! I can configure some user to alleviate the situation, but I must wait for the update, because it is impractical to configure this for my 60 users.

Thanks you very much.

persist-tun
persist-key
cipher AES-128-CBC
ncp-ciphers AES-256-GCM:AES-128-GCM
auth SHA1
tls-client
client
remote 111.111.111.111 1194 udp
verify-x509-name "openvpn-server" name
auth-user-pass
remote-cert-tls server
comp-lzo adaptive
redirect-gateway def1

<ca>
-----BEGIN CERTIFICATE-----
MIIEWzCCA0OgAwIBAgIBADANBgkqhkiG9w0BAQsFADB8MQswCQYDVQQGEwJVWTEN
MAsGA1UECBMETWRlbzETMBEGA1UEBxMKTW9udGV2aWRlbzEOMAwGA1UEChMFUHVs
p+rESSF7Wb8E8XTlJ7AstaR3vlT1CfaIX4WD4000leDGdrpJOU6+3kAQMyxsCsBU
-----END CERTIFICATE-----
</ca>
<cert>
-----BEGIN CERTIFICATE-----
MIIEtDCCA5ygAwIBAgIBJzANBgkqhkiG9w0BAQsFADB8MQswCQYDVQQGEwJVWTEN
MAsGA1UECBMETWRlbzETMBEGA1UEBxMKTW9udGV2aWRlbzEOMAwGA1UEChMFUHVs
wR0ccz9QIxtvTn94eBc2XkdkS8BZADWP3eOphYLhOFVuKnODM06gXiWy6kEjj6pT
xmOZc9WHUIw=
-----END CERTIFICATE-----
</cert>
<key>
-----BEGIN PRIVATE KEY-----
MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDEjrFTQdlEfFlD
o5wZScviqwGb8GmC0ju08agn8wb6dE5CjEQ6X6Ibc2I6xGp573sYWdRVgK8mkg+J
zWaAPUjz18TzSUYel6PVjy8gKBhcvuIJeQqDBADoHrnWJ0y4e2ovzOxvvRy37UiY
LGqLQKGoJCIiOw+ZA+Ao0d4w
-----END PRIVATE KEY-----
</key>
<tls-auth>
#
# 2048 bit OpenVPN static key
#
-----BEGIN OpenVPN Static key V1-----
1478642e1dcea7d98bbc7a014e8ec70f
b498d6d3347d533eadd474a542cfb59d
-----END OpenVPN Static key V1-----
</tls-auth>
key-direction 1

jmpita
OpenVpn Newbie
Posts: 2
Joined: Tue Jan 16, 2018 10:58 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by jmpita » Tue Jan 16, 2018 10:59 pm

We have the same problem. We try to include the redirect-gateway def1 in the ovpn file of an user, but dosen't work.

jmpita
OpenVpn Newbie
Posts: 2
Joined: Tue Jan 16, 2018 10:58 pm

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by jmpita » Tue Jan 16, 2018 10:59 pm

We have the same problem. We try to include the redirect-gateway def1 in the ovpn file of an user, but dosen't work.

User avatar
ordex
OpenVPN Inc.
Posts: 444
Joined: Wed Dec 28, 2016 2:32 am
Location: IRC #openvpn-devel @ libera.chat

Re: Upgrade to OpenVPN 1.2.5 (iOS): DNS settings not applied

Post by ordex » Wed Jan 17, 2018 6:02 am

OpenVPN Connect for iOS 1.2.6 is out!

Please refer to this post if you want to submit bugs of feature requests: viewtopic.php?f=36&t=25650

Thanks!

Locked