IOS Openvpnt: Transport Error: PolarSSL: SSL read error

Official client software for OpenVPN Access Server and OpenVPN Cloud.
Post Reply
janhoedt
OpenVPN Power User
Posts: 56
Joined: Wed Sep 21, 2011 3:10 pm

IOS Openvpnt: Transport Error: PolarSSL: SSL read error

Post by janhoedt » Tue May 21, 2013 4:25 pm

Hi,

I have setup a connection to my openvpn server but got this error:

2013-05-21 17:39:24 Transport Error: PolarSSL: SSL read error : X509 - Certificate verification failed, e.g. CRL, CA or signature check failed
2013-05-21 17:39:24 EVENT: CERT_VERIFY_FAIL PolarSSL: SSL read error : X509 - Certificate verification failed, e.g. CRL, CA or signature check failed [ERR]
2013-05-21 17:39:24 EVENT: DISCONNECTED
2013-05-21 17:39:24 Raw stats on disconnect:
BYTES_IN : 2384
BYTES_OUT : 520
PACKETS_IN : 11
PACKETS_OUT : 20
SSL_ERROR : 1
CERT_VERIFY_FAIL : 1
2013-05-21 17:39:24 Performance stats on disconnect:
CPU usage (microseconds): 25795
Network bytes per CPU second: 112579
Tunnel bytes per CPU second: 0
2013-05-21 17:39:24 ----- OpenVPN Stop -----
2013-05-21 17:39:24 EVENT: DISCONNECT_PENDING



What I did is copy paste (via vi on my Synology Disktation) ca, cert and key:

dh /var/packages/VPNCenter/target/etc/openvpn/keys/dh1024.pem
ca /var/packages/VPNCenter/target/etc/openvpn/keys/ca.crt
cert /var/packages/VPNCenter/target/etc/openvpn/keys/server.crt
key /var/packages/VPNCenter/target/etc/openvpn/keys/server.key




This is my config:

client
dev tun
proto tcp
remote mysite 80
comp-lzo
auth-user-pass
<ca>
-----BEGIN CERTIFICATE-----
MIID...
-----END CERTIFICATE-----

</ca>

<cert>
-----BEGIN CERTIFICATE-----
MIIDPTCCAqagAwIBA...
-----END CERTIFICATE-----
</cert>

<key>
-----BEGIN PRIVATE KEY-----
MIICeAIBADANBgkqhkiG9w0BA
-----END PRIVATE KEY-----
</key>
nobind
persist-key
persist-tun
user nobody
group nogroup
mute-replay-warnings
resolv-retry infinite

Please advise.

Note: could download ca etc from Synology/Linux but not sure how.
J.

Post Reply