Page 1 of 1

error conection openvpn cliente windows

Posted: Thu Aug 08, 2013 7:53 pm
by albtay
Hello colleagues need assistance, install openvpn in centos 6.4 everything went well, but when I try to connect to a windows client gives me this error.


Thu Aug 08 15:30:14 2013 OpenVPN 2.0.9 Win32-MinGW [SSL] [LZO] built on Oct 1 2006
Thu Aug 08 15:30:14 2013 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Thu Aug 08 15:30:14 2013 LZO compression initialized
Thu Aug 08 15:30:14 2013 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu Aug 08 15:30:14 2013 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Aug 08 15:30:14 2013 Local Options hash (VER=V4): '41690919'
Thu Aug 08 15:30:14 2013 Expected Remote Options hash (VER=V4): '530fdded'
Thu Aug 08 15:30:14 2013 UDPv4 link local: [undef]
Thu Aug 08 15:30:14 2013 UDPv4 link remote: 192.168.1.31:1194
Thu Aug 08 15:31:14 2013 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu Aug 08 15:31:14 2013 TLS Error: TLS handshake failed
Thu Aug 08 15:31:14 2013 TCP/UDP: Closing socket
Thu Aug 08 15:31:14 2013 SIGUSR1[soft,tls-error] received, process restarting
Thu Aug 08 15:31:14 2013 Restart pause, 2 second(s)

Re: error conection openvpn cliente windows

Posted: Fri Aug 09, 2013 8:59 am
by maikcat
first try using a newer version on your client (at least 2.1.4)

then post your server logs...

Michael.

Re: error conection openvpn cliente windows

Posted: Fri Aug 09, 2013 4:04 pm
by albtay
when you tell me about the server log is the one in / var / log / message,

Re: error conection openvpn cliente windows

Posted: Fri Aug 09, 2013 4:52 pm
by albtay
change the version of the client, and still gives me the connection error,

Fri Aug 09 12:15:59 2013 OpenVPN 2.3.2 i686-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [IPv6] built on Jun 3 2013
Fri Aug 09 12:15:59 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Fri Aug 09 12:15:59 2013 Need hold release from management interface, waiting...
Fri Aug 09 12:15:59 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Fri Aug 09 12:15:59 2013 MANAGEMENT: CMD 'state on'
Fri Aug 09 12:15:59 2013 MANAGEMENT: CMD 'log all on'
Fri Aug 09 12:15:59 2013 MANAGEMENT: CMD 'hold off'
Fri Aug 09 12:15:59 2013 MANAGEMENT: CMD 'hold release'
Fri Aug 09 12:16:00 2013 Socket Buffers: R=[8192->8192] S=[8192->8192]
Fri Aug 09 12:16:00 2013 UDPv4 link local: [undef]
Fri Aug 09 12:16:00 2013 UDPv4 link remote: [AF_INET]192.168.1.4:1194
Fri Aug 09 12:16:00 2013 MANAGEMENT: >STATE:1376064960,WAIT,,,
Fri Aug 09 12:17:00 2013 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Fri Aug 09 12:17:00 2013 TLS Error: TLS handshake failed
Fri Aug 09 12:17:00 2013 SIGUSR1[soft,tls-error] received, process restarting
Fri Aug 09 12:17:00 2013 MANAGEMENT: >STATE:1376065020,RECONNECTING,tls-error,,
Fri Aug 09 12:17:00 2013 Restart pause, 2 second(s)
Fri Aug 09 12:17:02 2013 Socket Buffers: R=[8192->8192] S=[8192->8192]
Fri Aug 09 12:17:02 2013 UDPv4 link local: [undef]
Fri Aug 09 12:17:02 2013 UDPv4 link remote: [AF_INET]192.168.1.4:1194
---------------------------------
and if the server logs to / var / log / message shows me this.

Aug 9 11:53:12 server openvpn[2172]: OpenVPN 2.2.2 i686-pc-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [eurephia] built on Apr 5 2012
Aug 9 11:53:12 server openvpn[2172]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 9 11:53:13 server openvpn[2172]: Diffie-Hellman initialized with 1024 bit key
Aug 9 11:53:13 server openvpn[2172]: TLS-Auth MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 9 11:53:13 server openvpn[2172]: Socket Buffers: R=[1048567->131072] S=[262144->131072]
Aug 9 11:53:13 server openvpn[2172]: ROUTE: default_gateway=UNDEF
Aug 9 11:53:13 server kernel: tun0: Disabled Privacy Extensions
Aug 9 11:53:13 server openvpn[2172]: TUN/TAP device tun0 opened
Aug 9 11:53:13 server openvpn[2172]: TUN/TAP TX queue length set to 100
Aug 9 11:53:13 server openvpn[2172]: /sbin/ip link set dev tun0 up mtu 1500
Aug 9 11:53:13 server openvpn[2172]: /sbin/ip addr add dev tun0 local 10.8.0.1 peer 10.8.0.2
Aug 9 11:53:13 server openvpn[2172]: /sbin/ip route add 10.8.0.0/24 via 10.8.0.2
Aug 9 11:53:13 server openvpn[2172]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 9 11:53:13 server openvpn[2180]: UDPv4 link local (bound): [undef]:1194
Aug 9 11:53:13 server openvpn[2180]: UDPv4 link remote: [undef]
Aug 9 11:53:13 server openvpn[2180]: MULTI: multi_init called, r=256 v=256
Aug 9 11:53:13 server openvpn[2180]: IFCONFIG POOL: base=10.8.0.4 size=62
Aug 9 11:53:13 server openvpn[2180]: IFCONFIG POOL LIST
Aug 9 11:53:13 server openvpn[2180]: cliente20,10.8.0.4
Aug 9 11:53:13 server openvpn[2180]: Initialization Sequence Completed.
------------
and another thing, I have a virtual server on the same windows with NAT, I did a test and connect perfectly. but anything outside my network

Re: error conection openvpn cliente windows

Posted: Sat Aug 10, 2013 5:09 pm
by maikcat
your server log shows that no one reached it...

please post how exactly your network is organized...

Michael.

Re: error conection openvpn cliente windows

Posted: Sat Aug 10, 2013 7:59 pm
by albtay
my network is organized, my server is connected wireless, will I have to enable any port, if so which ports will