Page 1 of 1

Client cant connect after update

Posted: Sat Mar 10, 2012 11:30 pm
by turmoil
Hello - I am having the same issue exactly, using OpenVPN 1.8.3 on Ubuntu Server 10.04 x64.
I downloaded the Windows client from the appliance but am getting the same error.
I have confirmed the custom TCP port I am using is accessible remotely (I can access the web interface on the same port).

This is my client's log:

Code: Select all

2012-03-11 10:23:08+1100 [-] Log opened.
2012-03-11 10:23:08+1100 [-] Network up
2012-03-11 10:23:08+1100 [-] C:\Program Files\OpenVPN Technologies\OpenVPN Client\core\library.zip\pyovpn\linux\distroname.py:1: exceptions.DeprecationWarning: The popen2 module is deprecated.  Use the subprocess module.
2012-03-11 10:23:09+1100 [-] ProfileSignatureVerify.verify: <depth=1 err=X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN: self signed certificate in certificate chain subj=<X509Name object '/CN=OpenVPN Web CA 2012.03.06 01:13:13 EST srv1.home'>>: client/profsig:14,pki/sign:228 (pyovpn.pki.sign.CertVerifyFailed)
2012-03-11 10:23:09+1100 [-] ClientSettings: extract_trust_group tg=None src='bundled' sign=None pref=False
2012-03-11 10:23:09+1100 [-] ClientSettings: preference 'allow_web_import' set from source 'bundled'
2012-03-11 10:23:09+1100 [-] ClientSettings: preference 'enable_xd_proxy' set from source 'bundled'
2012-03-11 10:23:09+1100 [-] ClientSettings: preference 'enable_connect' set from source 'bundled'
2012-03-11 10:23:09+1100 [-] Schedule swupdate monitor in 120 seconds, range=(120,None), error=False, initial=True
2012-03-11 10:23:10+1100 [-] Successfully imported dynamic localhost root CA into Windows cert store (win32)
2012-03-11 10:23:10+1100 [-] FF CA import (passive): Administrator C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles/kfw8sxek.default
2012-03-11 10:23:10+1100 [-] Successfully imported dynamic localhost root CA into Firefox cert store (win32)
2012-03-11 10:23:10+1100 [-] Updating C:\WINDOWS\system32\drivers\etc\hosts with [('client.openvpn.net', '127.94.0.1')]
2012-03-11 10:23:10+1100 [-] Starting AS Client API 1.8.3/MSI
2012-03-11 10:23:10+1100 [-] twisted.web.server.Site starting on 946
2012-03-11 10:23:10+1100 [-] twisted.web.seraver.Site starting on 944
2012-03-11 10:23:10+1100 [-] ProfileManager: importing bundled profile u'C:/DOCUME~1/ADMINI~1/LOCALS~1/Temp/ovpn.~installer/client.ovpn' {u'owner': u'Administrator', u'global': True}
2012-03-11 10:23:10+1100 [-] ProfileSignatureVerify.verify: <depth=1 err=X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN: self signed certificate in certificate chain subj=<X509Name object '/CN=OpenVPN Web CA 2012.03.06 01:13:13 EST srv1.home'>>: client/profsig:14,pki/sign:228 (pyovpn.pki.sign.CertVerifyFailed)
2012-03-11 10:23:10+1100 [-] ImportProfile: profile sanitized
2012-03-11 10:23:12+1100 [-] create_desktop_process: starting C:\Program Files\OpenVPN Technologies\OpenVPN Client\core\ovpntray.exe
2012-03-11 10:23:12+1100 [HTTPChannel,0,127.0.0.1] *** API CALL f=xmlrpc_GetPreferences args=[] kw={} ret={'proxy_auto': True, 'exec_admin_domain': '', 'update_base_url': 'http://swupdate.openvpn.net/updates', 'log_append': False, 'enable_xd_proxy': True, 'basic_client': True, 'auth_allow_cache_pw': True, 'restrict_domain': '*', 'proxy_auth_allow_basic': True, 'proto_force': '', 'allow_ssl_v2': False, 'connect_timeout': 60, 'implicit_elevation': False, 'exec_user_domain': '*', 'universal_sessions_are_global': False, 'verb': '', 'proxy_auth_allow_save_pw': True, 'user_may_trust_cert': True, 'silent_update': False, 'route_nopull': False, 'enable_connect': True, 'notify_update': True, 'user_hostspec': '*', 'allow_web_import': True}
2012-03-11 10:23:12+1100 [HTTPChannel,1,127.0.0.1] *** API CALL f=xmlrpc_TrackActiveProfiles args=[True] kw={} ret='sess_TrackActiveProfiles_3RTR8udbJd7ZfHvE_1'
2012-03-11 10:23:12+1100 [HTTPChannel,2,127.0.0.1] *** API CALL f=xmlrpc_UpdateStatus args=[] kw={} ret={}
2012-03-11 10:23:12+1100 [HTTPChannel,3,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_3RTR8udbJd7ZfHvE_1', 10] kw={} ret=[{'timestamp': 1331421792, 'state': 'add_profile', 'profile_id': '192_168_1_11_dynamic_p6970', 'type': 'PROFILE'}]
2012-03-11 10:23:12+1100 [HTTPChannel,4,127.0.0.1] *** API CALL f=xmlrpc_ProfileProperties args=['192_168_1_11_dynamic_p6970'] kw={} ret={'hash': '6b7cf94d28f6e268a3af155bab07a779a3d4a85386e6f03d678133b52a431de7', 'name': '192.168.1.11/Dynamic', 'global': True, 'host': '192.168.1.11', 'owner': u'Administrator', 'org': 'OpenVPN Technologies, Inc.', 'type': ['dynamic'], 'id': '192_168_1_11_dynamic_p6970', 'access_allowed': True}
2012-03-11 10:23:14+1100 [-] Checking for service profiles
2012-03-11 10:23:34+1100 [HTTPChannel,7,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_3RTR8udbJd7ZfHvE_1', 10] kw={} ret=[{'timestamp': 1331421814, 'state': 'connect', 'profile_id': '192_168_1_11_dynamic_p6970', 'type': 'PROFILE'}]
2012-03-11 10:23:34+1100 [HTTPChannel,7,127.0.0.1] *** API CALL f=xmlrpc_Connect args=[{'profile_id': '192_168_1_11_dynamic_p6970', 'type': 'dynamic', 'non_interactive': False}, ['STATE', 'PASSWORD', 'ACTIVE', 'CERT_APPROVAL', 'INFO', 'CONNECTED_USER', 'FATAL', 'SCRIPT', 'CHALLENGE', 'DELETE_PENDING', 'NOTIFY', 'RSA_SIGN', 'CONNECT_TIMEOUT'], {}] kw={} ret='sess_192_168_1_11_dynamic_p6970_3rgZ3jDhDEObVKc7_1'
2012-03-11 10:23:34+1100 [HTTPChannel,8,127.0.0.1] *** API CALL f=xmlrpc_ConnectActive args=['192_168_1_11_dynamic_p6970', ['STATE', 'PASSWORD', 'ACTIVE', 'CERT_APPROVAL', 'INFO', 'CONNECTED_USER', 'FATAL', 'SCRIPT', 'CHALLENGE', 'DELETE_PENDING', 'NOTIFY', 'RSA_SIGN', 'CONNECT_TIMEOUT'], 'pending'] kw={} ret='sess_192_168_1_11_dynamic_p6970_ht0k6SIarlK7hgG3_2'
2012-03-11 10:23:34+1100 [HTTPChannel,9,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_192_168_1_11_dynamic_p6970_ht0k6SIarlK7hgG3_2', 10] kw={} ret=[{'status': 'need', 'timestamp': 1331421814, 'need': ('username', 'password'), 'type': 'PASSWORD', 'auth_type': 'Dynamic'}]
2012-03-11 10:23:45+1100 [HTTPChannel,12,127.0.0.1] *** API CALL f=xmlrpc_SubmitCreds args=['sess_192_168_1_11_dynamic_p6970_3rgZ3jDhDEObVKc7_1', {'username': 'erez', 'password': '[redacted]'}, 'Dynamic', True] kw={} ret=None
2012-03-11 10:23:55+1100 [-] DynamicClientBase: Unable to obtain Session ID from 192.168.1.11, port(s)=32764: XML-RPC: TimeoutError.: client/dyncli:90,internet/defer:744,python/failure:338,client/dyncli:128,internet/defer:744,python/failure:338,client/asxmlcli:102,client/asxmlcli:95,internet/defer:744,python/failure:338,client/asxmlcli:124,internet/defer:744,python/failure:338,client/asxmlcli:190,client/asxmlcli:174 (twisted.internet.error.TimeoutError)
2012-03-11 10:23:55+1100 [HTTPChannel,14,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_192_168_1_11_dynamic_p6970_ht0k6SIarlK7hgG3_2', 10] kw={} ret=[{'timestamp': 1331421835, 'info_type': 'twisted.internet.error.TimeoutError', 'type': 'INFO', 'severity': 'error', 'value': 'Unable to obtain Session ID from 192.168.1.11, port(s)=32764: XML-RPC: TimeoutError.'}, {'timestamp': 1331421835, 'type': 'DELETE_PENDING'}]
2012-03-11 10:23:55+1100 [HTTPChannel,15,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_3RTR8udbJd7ZfHvE_1', 10] kw={} ret=[{'timestamp': 1331421835, 'state': 'disconnect', 'profile_id': '192_168_1_11_dynamic_p6970', 'type': 'PROFILE'}]
2012-03-11 10:23:55+1100 [HTTPChannel,16,127.0.0.1] *** API CALL f=xmlrpc_EnumProfiles args=[] kw={} ret=[{'hash': '6b7cf94d28f6e268a3af155bab07a779a3d4a85386e6f03d678133b52a431de7', 'access_allowed': True, 'global': True, 'host': '192.168.1.11', 'snapshot': {'info': {'timestamp': 1331421835, 'info_type': 'twisted.internet.error.TimeoutError', 'type': 'INFO', 'severity': 'error', 'value': 'Unable to obtain Session ID from 192.168.1.11, port(s)=32764: XML-RPC: TimeoutError.'}, 'delete_pending': True, 'password': {'status': 'need', 'timestamp': 1331421814, 'need': ('username', 'password'), 'type': 'PASSWORD', 'auth_type': 'Dynamic'}}, 'owner': u'Administrator', 'org': 'OpenVPN Technologies, Inc.', 'type': ['dynamic'], 'id': '192_168_1_11_dynamic_p6970', 'name': '192.168.1.11/Dynamic'}]
Any help will be greatly appreciated!

Re: Client cant connect after update

Posted: Mon Mar 12, 2012 9:34 am
by Mimiko
Please, post the content of 'C:/DOCUME~1/ADMINI~1/LOCALS~1/Temp/ovpn.~installer/client.ovpn'
It seems that new downloaded client.ovpn has inccorect remote IP, presumable of local internal IP of the server.

Re: Client cant connect after update

Posted: Mon Mar 12, 2012 1:02 pm
by turmoil
Thank you for your response!

My "C:\Documents and Settings\Administrator\Local Settings\Temp\ovpn.~installer" directory is empty.
I too noticed it was specifying the server's internal IP, but because I was prompted for credentials I thought this was normal (I know nothing about OpenVPN).

The client PC had another version of the OpenVPN client called "OpenVPN Client", but it's been uninstalled. Could that cause any issue?

Thanks.

Re: Client cant connect after update

Posted: Mon Mar 12, 2012 6:56 pm
by Mimiko
You will have to tamper with OpenVPN AS server and change external IP that is send to clients.

Re: Client cant connect after update

Posted: Tue Mar 13, 2012 6:22 am
by turmoil
Thank you, but where do I do that? I use the web interface.

Where is the server's configuration file stored? I will upload that as well so that you can see the config.

Thanks again for your help.

Re: Client cant connect after update

Posted: Tue Mar 13, 2012 9:43 am
by Mimiko
Browse to Server Network Settings and in field Hostname or IP Address input the external IP of your OpenVPN AS server. Then redownload the client.

Re: Client cant connect after update

Posted: Tue Mar 13, 2012 10:08 am
by turmoil
Another thing I would like to point out which may shed some more light into my config is the fact my server is behind a NATting router.

Here's my as.conf file:

Code: Select all

# OpenVPN AS 1.1 configuration file
#
# NOTE:  The ~ symbol used below expands to the directory that
# the configuration file is saved in

# remove for production
# DEBUG=false

# enable AS Connect functionality
AS_CONNECT=true

# temporary directory
tmp_dir=~/tmp

lic.dir=~/licenses

# run_start retries
run_start_retry.give_up=60
run_start_retry.resample=10

# enable client gateway
sa.show_c2s_routes=true

# certificates database
certs_db=sqlite:///~/db/certs.db

# user properties DB
user_prop_db=sqlite:///~/db/userprop.db

# configuration DB
config_db=sqlite:///~/db/config.db

# log DB
log_db=sqlite:///~/db/log.db

# wait this many seconds between failed retries
db_retry.interval=1

# how many retries to attempt before failing
db_retry.n_attempts=6

# On startup, wait up to n seconds for DB files to become
# available if they do not yet exist.  This is generally
# only useful on secondary nodes used for standby purposes.
# db_startup_wait=

# Node type: PRIMARY|SECONDARY.  Defaults to PRIMARY.
# node_type=

# bootstrap authentication via PAM -- allows
# admin to log into web UI before authentication
# system has been configured.  Configure PAM users
# allowed to access via the bootstrap auth mechanism.
boot_pam_service=openvpnas
boot_pam_users.0=erez
# boot_pam_users.1=
# boot_pam_users.2=
# boot_pam_users.3=
# boot_pam_users.4=

# System users that are allowed to access the server agent XML API.
# The user that the web server will run as should be in this list.
system_users_local.0=root
system_users_local.1=openvpn_as

# The user/group that the web server will run as
cs.user=openvpn_as
cs.group=openvpn_as

# socket directory
general.sock_dir=~/sock

# path to linux openvpn executable
# if undefined, find openvpn on the PATH
#general.openvpn_exe_path=

# source directory for OpenVPN Windows executable
# (Must have been built with MultiFileExtract)
sa.win_exe_dir=~/exe

# The company name will be shown in the UI
sa.company_name=OpenVPN Technologies, Inc.

# server agent socket
sa.sock=~/sock/sagent

# If enabled, automatically generate a client configuration
# when a client logs into the site and successfully authenticates
cs.auto_generate=true

# files for web server (PEM format)
cs.ca_bundle=~/web-ssl/ca.crt
cs.priv_key=~/web-ssl/server.key
cs.cert=~/web-ssl/server.crt

# web server will use three consecutive ports starting at this
# address, for use with the OpenVPN port share feature
cs.dynamic_port_base=870

# which service groups should be started during
# server agent initialization
sa.initial_run_groups.0=web_group
#sa.initial_run_groups.1=openvpn_group

# use this twisted reactor
sa.reactor=epoll

# The unit number of this particular AS configuration.
# Normally set to 0.  If you have multiple, independent AS instances
# running on the same machine, each should have a unique unit number.
sa.unit=0

# If true, open up web ports on the firewall using iptables
iptables.web=true

vpn.server.user=openvpn_as
vpn.server.group=openvpn_as


Re: Client cant connect after update

Posted: Tue Mar 13, 2012 10:42 am
by turmoil
Thank you!

I changed the IP, applied the configuration and redownloaded the client.

Now although I am still unable to connect, this time I am getting a different error:

Code: Select all

Error running jsondialog
Client log:

Code: Select all

2012-03-13 21:37:17+1100 [-] Log opened.
2012-03-13 21:37:17+1100 [-] Network up
2012-03-13 21:37:17+1100 [-] C:\Program Files\OpenVPN Technologies\OpenVPN Client\core\library.zip\pyovpn\linux\distroname.py:1: exceptions.DeprecationWarning: The popen2 module is deprecated.  Use the subprocess module.
2012-03-13 21:37:18+1100 [-] ProfileSignatureVerify.verify: <depth=1 err=X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN: self signed certificate in certificate chain subj=<X509Name object '/CN=OpenVPN Web CA 2012.03.11 01:23:00 EST vpn'>>: client/profsig:14,pki/sign:228 (pyovpn.pki.sign.CertVerifyFailed)
2012-03-13 21:37:18+1100 [-] ClientSettings: extract_trust_group tg=None src='bundled' sign=None pref=False
2012-03-13 21:37:18+1100 [-] ClientSettings: preference 'allow_web_import' set from source 'bundled'
2012-03-13 21:37:18+1100 [-] ClientSettings: preference 'enable_xd_proxy' set from source 'bundled'
2012-03-13 21:37:18+1100 [-] ClientSettings: preference 'enable_connect' set from source 'bundled'
2012-03-13 21:37:18+1100 [-] Schedule swupdate monitor in 120 seconds, range=(120,None), error=False, initial=True
2012-03-13 21:37:19+1100 [-] Successfully imported dynamic localhost root CA into Windows cert store (win32)
2012-03-13 21:37:19+1100 [-] FF CA import (passive): Administrator C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles/kfw8sxek.default
2012-03-13 21:37:19+1100 [-] Successfully imported dynamic localhost root CA into Firefox cert store (win32)
2012-03-13 21:37:19+1100 [-] Updating C:\WINDOWS\system32\drivers\etc\hosts with [('client.openvpn.net', '127.94.0.1')]
2012-03-13 21:37:19+1100 [-] Starting AS Client API 1.8.3/MSI
2012-03-13 21:37:19+1100 [-] twisted.web.server.Site starting on 946
2012-03-13 21:37:19+1100 [-] twisted.web.server.Site starting on 944
2012-03-13 21:37:19+1100 [-] ProfileManager: importing bundled profile u'C:/DOCUME~1/ADMINI~1/LOCALS~1/Temp/ovpn.~installer/client.ovpn' {u'owner': u'Administrator', u'global': True}
2012-03-13 21:37:19+1100 [-] ProfileSignatureVerify.verify: <depth=1 err=X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN: self signed certificate in certificate chain subj=<X509Name object '/CN=OpenVPN Web CA 2012.03.11 01:23:00 EST vpn'>>: client/profsig:14,pki/sign:228 (pyovpn.pki.sign.CertVerifyFailed)
2012-03-13 21:37:19+1100 [-] ImportProfile: profile sanitized
2012-03-13 21:37:21+1100 [-] create_desktop_process: starting C:\Program Files\OpenVPN Technologies\OpenVPN Client\core\ovpntray.exe
2012-03-13 21:37:21+1100 [HTTPChannel,0,127.0.0.1] *** API CALL f=xmlrpc_GetPreferences args=[] kw={} ret={'proxy_auto': True, 'exec_admin_domain': '', 'update_base_url': 'http://swupdate.openvpn.net/updates', 'log_append': False, 'enable_xd_proxy': True, 'basic_client': True, 'auth_allow_cache_pw': True, 'restrict_domain': '*', 'proxy_auth_allow_basic': True, 'proto_force': '', 'allow_ssl_v2': False, 'connect_timeout': 60, 'implicit_elevation': False, 'exec_user_domain': '*', 'universal_sessions_are_global': False, 'verb': '', 'proxy_auth_allow_save_pw': True, 'user_may_trust_cert': True, 'silent_update': False, 'route_nopull': False, 'enable_connect': True, 'notify_update': True, 'user_hostspec': '*', 'allow_web_import': True}
2012-03-13 21:37:21+1100 [HTTPChannel,1,127.0.0.1] *** API CALL f=xmlrpc_TrackActiveProfiles args=[True] kw={} ret='sess_TrackActiveProfiles_B1fIqGKRXljAJOCK_1'
2012-03-13 21:37:21+1100 [HTTPChannel,2,127.0.0.1] *** API CALL f=xmlrpc_UpdateStatus args=[] kw={} ret={}
2012-03-13 21:37:22+1100 [HTTPChannel,3,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_B1fIqGKRXljAJOCK_1', 10] kw={} ret=[{'timestamp': 1331635041, 'state': 'add_profile', 'profile_id': '27_32_193_130_dynamic_p3422', 'type': 'PROFILE'}]
2012-03-13 21:37:22+1100 [HTTPChannel,4,127.0.0.1] *** API CALL f=xmlrpc_ProfileProperties args=['27_32_193_130_dynamic_p3422'] kw={} ret={'hash': '1387a53cf095881420aeef092c7433bbc5b910a41a323624f71bfa526dbe15c2', 'name': '27.32.193.130/Dynamic', 'global': True, 'host': '27.32.193.130', 'owner': u'Administrator', 'org': 'OpenVPN Technologies, Inc.', 'type': ['dynamic'], 'id': '27_32_193_130_dynamic_p3422', 'access_allowed': True}
2012-03-13 21:37:23+1100 [-] Checking for service profiles
2012-03-13 21:37:29+1100 [HTTPChannel,6,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_B1fIqGKRXljAJOCK_1', 10] kw={} ret=[{'timestamp': 1331635049, 'state': 'connect', 'profile_id': '27_32_193_130_dynamic_p3422', 'type': 'PROFILE'}]
2012-03-13 21:37:29+1100 [HTTPChannel,6,127.0.0.1] *** API CALL f=xmlrpc_Connect args=[{'profile_id': '27_32_193_130_dynamic_p3422', 'type': 'dynamic', 'non_interactive': False}, ['STATE', 'PASSWORD', 'ACTIVE', 'CERT_APPROVAL', 'INFO', 'CONNECTED_USER', 'FATAL', 'SCRIPT', 'CHALLENGE', 'DELETE_PENDING', 'NOTIFY', 'RSA_SIGN', 'CONNECT_TIMEOUT'], {}] kw={} ret='sess_27_32_193_130_dynamic_p3422_vOgHPambgivrJWVs_1'
2012-03-13 21:37:29+1100 [HTTPChannel,7,127.0.0.1] *** API CALL f=xmlrpc_ConnectActive args=['27_32_193_130_dynamic_p3422', ['STATE', 'PASSWORD', 'ACTIVE', 'CERT_APPROVAL', 'INFO', 'CONNECTED_USER', 'FATAL', 'SCRIPT', 'CHALLENGE', 'DELETE_PENDING', 'NOTIFY', 'RSA_SIGN', 'CONNECT_TIMEOUT'], 'pending'] kw={} ret='sess_27_32_193_130_dynamic_p3422_tWN6N7kA05nSkQn5_2'
2012-03-13 21:37:30+1100 [HTTPChannel,8,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_27_32_193_130_dynamic_p3422_tWN6N7kA05nSkQn5_2', 10] kw={} ret=[{'status': 'need', 'timestamp': 1331635049, 'need': ('username', 'password'), 'type': 'PASSWORD', 'auth_type': 'Dynamic'}]
2012-03-13 21:37:36+1100 [HTTPChannel,11,127.0.0.1] *** API CALL f=xmlrpc_SubmitCreds args=['sess_27_32_193_130_dynamic_p3422_vOgHPambgivrJWVs_1', {'username': 'erez', 'password': '[redacted]'}, 'Dynamic', True] kw={} ret=None
2012-03-13 21:37:37+1100 [XMLProxyQueryProtocol,client] ProfileSignatureVerify.verify: <depth=1 err=X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN: self signed certificate in certificate chain subj=<X509Name object '/CN=OpenVPN Web CA 2012.03.11 01:23:00 EST vpn'>>: client/profsig:14,pki/sign:228 (pyovpn.pki.sign.CertVerifyFailed)
2012-03-13 21:37:37+1100 [XMLProxyQueryProtocol,client] *** API CALL f=xmlrpc_Poll args=['sess_27_32_193_130_dynamic_p3422_tWN6N7kA05nSkQn5_2', 10] kw={} ret=[{'timestamp': 1331635057, 'info_type': 'DYNAMIC_SUCCEED', 'type': 'INFO', 'severity': 'info', 'value': 'dynamic profile access succeeded'}]
2012-03-13 21:37:37+1100 [-] vpn_start: JSONDialog: Error running jsondialog, status=(1, [], []), stdout=[], stderr=[]: client/cliset:449,internet/defer:746,client/jsondialog:47,client/jsondialog:41,win32serviceutil:806,capiws:57,internet/base:1166,internet/base:1175,internet/base:779,internet/_pollingfile:79,internet/_dumbwin32proc:52,internet/_baseprocess:48,internet/_dumbwin32proc:315,internet/_baseprocess:60,svc/pp:116,svc/svcnotify:25,internet/defer:238,internet/defer:307,internet/defer:323,internet/defer:766,internet/defer:746,client/jsondialog:41,util/error:60,util/error:43 (RUN_ERROR)
2012-03-13 21:37:37+1100 [-] *** API CALL f=xmlrpc_Poll args=['sess_27_32_193_130_dynamic_p3422_tWN6N7kA05nSkQn5_2', 10] kw={} ret=[{'timestamp': 1331635057, 'info_type': 'RUN_ERROR', 'type': 'INFO', 'severity': 'error', 'value': 'JSONDialog: Error running jsondialog, status=(1, [], []), stdout=[], stderr=[]'}]
2012-03-13 21:37:37+1100 [-] *** API CALL f=xmlrpc_Poll args=['sess_TrackActiveProfiles_B1fIqGKRXljAJOCK_1', 10] kw={} ret=[{'timestamp': 1331635057, 'state': 'disconnect', 'profile_id': '27_32_193_130_dynamic_p3422', 'type': 'PROFILE'}]
2012-03-13 21:37:37+1100 [HTTPChannel,13,127.0.0.1] *** API CALL f=xmlrpc_Poll args=['sess_27_32_193_130_dynamic_p3422_tWN6N7kA05nSkQn5_2', 10] kw={} ret=[{'timestamp': 1331635057, 'type': 'DELETE_PENDING'}]
2012-03-13 21:37:37+1100 [HTTPChannel,14,127.0.0.1] *** API CALL f=xmlrpc_EnumProfiles args=[] kw={} ret=[{'hash': '157ab2f0231bf1f8ae094f85c05bc78093fa566cb61c430822be4090a5a56112', 'access_allowed': True, 'global': True, 'host': '27.32.193.130', 'snapshot': {'info': {'timestamp': 1331635057, 'info_type': 'RUN_ERROR', 'type': 'INFO', 'severity': 'error', 'value': 'JSONDialog: Error running jsondialog, status=(1, [], []), stdout=[], stderr=[]'}, 'delete_pending': True}, 'org': 'OpenVPN Technologies, Inc.', 'owner': u'Administrator', 'hosts': '27.32.193.130', 'type': ['dynamic'], 'id': '27_32_193_130_dynamic_p3422', 'name': '27.32.193.130/Dynamic'}]

Re: Client cant connect after update

Posted: Tue Mar 13, 2012 10:59 am
by Mimiko
Try a fresh reinstall of client. Uninstall it, clean the system and reinstall. Also study more for options that you can configure from OpenVPN AS web page.

Re: Client cant connect after update

Posted: Sat Mar 17, 2012 2:52 am
by turmoil
I successfully logged in using a clean install of a Win 7 x64 machine and it all worked beautifully.
I would still like to know why the XP client machine I used in the above post keeps failing with that jsondialog error - just to know how to fix it.

Thanks in advance.

Re: Client cant connect after update

Posted: Sat Mar 17, 2012 6:35 am
by Mimiko
Could you disable DEP protection? Set it only for esential windows services.

Re: Client cant connect after update

Posted: Fri Nov 08, 2013 3:48 pm
by danyilov
Hello all,

Does anyone know the solution for the jsondialog error?

I think many people would appreciate it!
THanks!