[Resolved] n00b with standard problems!
Posted: Thu Sep 19, 2013 7:09 pm
Hi!
I'm a total n00b with OpenVPN. It's taken a good week or so to actually get to the stage where I have sort of started to understand it! Believe it or not there are many guides but not greatly descriptive ones.
Anyway I'm using OpenVPN with the GUI and I've got to the stage where both Client and server are connecting.
However I cannot ping from either system.
I appreciate there must be many many threads like this I just dont know where to start?
Log from Client is the only one with errors:
Thu Sep 19 19:39:56 2013 OpenVPN 2.3.2 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [IPv6] built on Aug 22 2013
Enter Management Password:
Thu Sep 19 19:39:56 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Thu Sep 19 19:39:56 2013 Need hold release from management interface, waiting...
Thu Sep 19 19:39:56 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'state on'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'log all on'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'hold off'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'hold release'
Thu Sep 19 19:39:56 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Sep 19 19:39:56 2013 UDPv4 link local: [undef]
Thu Sep 19 19:39:56 2013 UDPv4 link remote: [AF_INET]86.3.21.92:1194
Thu Sep 19 19:39:56 2013 MANAGEMENT: >STATE:1379615996,WAIT,,,
Thu Sep 19 19:39:56 2013 MANAGEMENT: >STATE:1379615996,AUTH,,,
Thu Sep 19 19:39:56 2013 TLS: Initial packet from [AF_INET]86.3.21.92:1194, sid=e0cfad21 10f7aada
Thu Sep 19 19:39:56 2013 VERIFY OK: depth=1, C=UK, ST=SU, L=IPSWICH, O=OpenVPN, OU=changeme, CN=changeme, name=changeme, emailAddress=xxxxxxx@gmail.com
Thu Sep 19 19:39:56 2013 VERIFY OK: nsCertType=SERVER
Thu Sep 19 19:39:56 2013 VERIFY OK: depth=0, C=UK, ST=SU, L=IPSWICH, O=OpenVPN, OU=changeme, CN=changeme, name=changeme, emailAddress=xxxxxxx@gmail.com
Thu Sep 19 19:39:57 2013 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Sep 19 19:39:57 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Sep 19 19:39:57 2013 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Sep 19 19:39:57 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Sep 19 19:39:57 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu Sep 19 19:39:57 2013 [changeme] Peer Connection Initiated with [AF_INET]86.3.21.92:1194
Thu Sep 19 19:39:58 2013 MANAGEMENT: >STATE:1379615998,GET_CONFIG,,,
Thu Sep 19 19:39:59 2013 SENT CONTROL [changeme]: 'PUSH_REQUEST' (status=1)
Thu Sep 19 19:39:59 2013 PUSH: Received control message: 'PUSH_REPLY,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: timers and/or timeouts modified
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: --ifconfig/up options modified
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: route options modified
Thu Sep 19 19:39:59 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Thu Sep 19 19:39:59 2013 MANAGEMENT: >STATE:1379615999,ASSIGN_IP,,10.8.0.6,
Thu Sep 19 19:39:59 2013 open_tun, tt->ipv6=0
Thu Sep 19 19:39:59 2013 TAP-WIN32 device [Local Area Connection] opened: \\.\Global\{8DC9538B-03FC-40D1-9EB6-9242100DE563}.tap
Thu Sep 19 19:39:59 2013 TAP-Windows Driver Version 9.9
Thu Sep 19 19:39:59 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.0.6/255.255.255.252 on interface {8DC9538B-03FC-40D1-9EB6-9242100DE563} [DHCP-serv: 10.8.0.5, lease-time: 31536000]
Thu Sep 19 19:39:59 2013 NOTE: FlushIpNetTable failed on interface [20] {8DC9538B-03FC-40D1-9EB6-9242100DE563} (status=5) : Access is denied.
Thu Sep 19 19:40:04 2013 TEST ROUTES: 1/1 succeeded len=1 ret=1 a=0 u/d=up
Thu Sep 19 19:40:04 2013 MANAGEMENT: >STATE:1379616004,ADD_ROUTES,,,
Thu Sep 19 19:40:04 2013 C:\windows\system32\route.exe ADD 10.8.0.1 MASK 255.255.255.255 10.8.0.5
Thu Sep 19 19:40:04 2013 ROUTE: route addition failed using CreateIpForwardEntry: Access is denied. [status=5 if_index=20]
Thu Sep 19 19:40:04 2013 Route addition via IPAPI failed [adaptive]
Thu Sep 19 19:40:04 2013 Route addition fallback to route.exe
Thu Sep 19 19:40:04 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Thu Sep 19 19:40:04 2013 ERROR: Windows route add command failed [adaptive]: returned error code 1
Thu Sep 19 19:40:04 2013 Initialization Sequence Completed
Thu Sep 19 19:40:04 2013 MANAGEMENT: >STATE:1379616004,CONNECTED,SUCCESS,10.8.0.6,86.3.21.92
Hope someone can help! Please ask for more info!
I'm a total n00b with OpenVPN. It's taken a good week or so to actually get to the stage where I have sort of started to understand it! Believe it or not there are many guides but not greatly descriptive ones.
Anyway I'm using OpenVPN with the GUI and I've got to the stage where both Client and server are connecting.
However I cannot ping from either system.
I appreciate there must be many many threads like this I just dont know where to start?
Log from Client is the only one with errors:
Thu Sep 19 19:39:56 2013 OpenVPN 2.3.2 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [IPv6] built on Aug 22 2013
Enter Management Password:
Thu Sep 19 19:39:56 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Thu Sep 19 19:39:56 2013 Need hold release from management interface, waiting...
Thu Sep 19 19:39:56 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'state on'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'log all on'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'hold off'
Thu Sep 19 19:39:56 2013 MANAGEMENT: CMD 'hold release'
Thu Sep 19 19:39:56 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Sep 19 19:39:56 2013 UDPv4 link local: [undef]
Thu Sep 19 19:39:56 2013 UDPv4 link remote: [AF_INET]86.3.21.92:1194
Thu Sep 19 19:39:56 2013 MANAGEMENT: >STATE:1379615996,WAIT,,,
Thu Sep 19 19:39:56 2013 MANAGEMENT: >STATE:1379615996,AUTH,,,
Thu Sep 19 19:39:56 2013 TLS: Initial packet from [AF_INET]86.3.21.92:1194, sid=e0cfad21 10f7aada
Thu Sep 19 19:39:56 2013 VERIFY OK: depth=1, C=UK, ST=SU, L=IPSWICH, O=OpenVPN, OU=changeme, CN=changeme, name=changeme, emailAddress=xxxxxxx@gmail.com
Thu Sep 19 19:39:56 2013 VERIFY OK: nsCertType=SERVER
Thu Sep 19 19:39:56 2013 VERIFY OK: depth=0, C=UK, ST=SU, L=IPSWICH, O=OpenVPN, OU=changeme, CN=changeme, name=changeme, emailAddress=xxxxxxx@gmail.com
Thu Sep 19 19:39:57 2013 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Sep 19 19:39:57 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Sep 19 19:39:57 2013 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Sep 19 19:39:57 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Sep 19 19:39:57 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu Sep 19 19:39:57 2013 [changeme] Peer Connection Initiated with [AF_INET]86.3.21.92:1194
Thu Sep 19 19:39:58 2013 MANAGEMENT: >STATE:1379615998,GET_CONFIG,,,
Thu Sep 19 19:39:59 2013 SENT CONTROL [changeme]: 'PUSH_REQUEST' (status=1)
Thu Sep 19 19:39:59 2013 PUSH: Received control message: 'PUSH_REPLY,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: timers and/or timeouts modified
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: --ifconfig/up options modified
Thu Sep 19 19:39:59 2013 OPTIONS IMPORT: route options modified
Thu Sep 19 19:39:59 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Thu Sep 19 19:39:59 2013 MANAGEMENT: >STATE:1379615999,ASSIGN_IP,,10.8.0.6,
Thu Sep 19 19:39:59 2013 open_tun, tt->ipv6=0
Thu Sep 19 19:39:59 2013 TAP-WIN32 device [Local Area Connection] opened: \\.\Global\{8DC9538B-03FC-40D1-9EB6-9242100DE563}.tap
Thu Sep 19 19:39:59 2013 TAP-Windows Driver Version 9.9
Thu Sep 19 19:39:59 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.0.6/255.255.255.252 on interface {8DC9538B-03FC-40D1-9EB6-9242100DE563} [DHCP-serv: 10.8.0.5, lease-time: 31536000]
Thu Sep 19 19:39:59 2013 NOTE: FlushIpNetTable failed on interface [20] {8DC9538B-03FC-40D1-9EB6-9242100DE563} (status=5) : Access is denied.
Thu Sep 19 19:40:04 2013 TEST ROUTES: 1/1 succeeded len=1 ret=1 a=0 u/d=up
Thu Sep 19 19:40:04 2013 MANAGEMENT: >STATE:1379616004,ADD_ROUTES,,,
Thu Sep 19 19:40:04 2013 C:\windows\system32\route.exe ADD 10.8.0.1 MASK 255.255.255.255 10.8.0.5
Thu Sep 19 19:40:04 2013 ROUTE: route addition failed using CreateIpForwardEntry: Access is denied. [status=5 if_index=20]
Thu Sep 19 19:40:04 2013 Route addition via IPAPI failed [adaptive]
Thu Sep 19 19:40:04 2013 Route addition fallback to route.exe
Thu Sep 19 19:40:04 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Thu Sep 19 19:40:04 2013 ERROR: Windows route add command failed [adaptive]: returned error code 1
Thu Sep 19 19:40:04 2013 Initialization Sequence Completed
Thu Sep 19 19:40:04 2013 MANAGEMENT: >STATE:1379616004,CONNECTED,SUCCESS,10.8.0.6,86.3.21.92
Hope someone can help! Please ask for more info!