Can't connect IOS to openvpn server on port 443
Posted: Mon Oct 23, 2017 2:39 am
I'm running an openvpn server on pfsense 2.4.0. On port 443 to get around hotels blocking my connections. I tried a server with TCP but get a tcp packet size error. So I'm trying UDP instead and can't connect either. Here is my openvpn log from pfsense set to verbosity 11
the openvpn ios client shows these errors
.ovpn file
If you need more information let me know where to find it and I'll post it. Thanks for the help.
Code: Select all
Oct 22 22:28:08 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:08 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:08 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:08 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:08 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:08 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:08 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:08 openvpn 9525 MULTI: REAP range 144 -> 160
Oct 22 22:28:08 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:08 openvpn 9525 event_wait returned 1
Oct 22 22:28:08 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:07 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:07 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:07 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:07 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:07 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:07 openvpn 9525 event_wait returned 1
Oct 22 22:28:07 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:07 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:07 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:07 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:07 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:07 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:07 openvpn 9525 MULTI: REAP range 128 -> 144
Oct 22 22:28:07 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:07 openvpn 9525 event_wait returned 1
Oct 22 22:28:07 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:06 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:06 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:06 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:06 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:06 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:06 openvpn 9525 event_wait returned 1
Oct 22 22:28:06 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:06 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:06 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:06 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:06 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:06 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:06 openvpn 9525 MULTI: REAP range 112 -> 128
Oct 22 22:28:06 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:06 openvpn 9525 event_wait returned 1
Oct 22 22:28:06 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:05 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:05 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:05 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:05 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:05 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:05 openvpn 9525 event_wait returned 1
Oct 22 22:28:05 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:05 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:05 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:05 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:05 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:05 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:05 openvpn 9525 MULTI: REAP range 96 -> 112
Oct 22 22:28:05 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:05 openvpn 9525 event_wait returned 1
Oct 22 22:28:05 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:04 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:04 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:04 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:04 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:04 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:04 openvpn 9525 event_wait returned 1
Oct 22 22:28:04 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:04 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:04 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:04 openvpn 9525 SCHEDULE: schedule_find_least NULL
Oct 22 22:28:04 openvpn 9525 GET INST BY VIRT: 172.16.16.1 [failed]
Oct 22 22:28:04 openvpn 9525 read from TUN/TAP returned 28
Oct 22 22:28:04 openvpn 9525 MULTI: REAP range 80 -> 96
Oct 22 22:28:04 openvpn 9525 I/O WAIT status=0x0004
Oct 22 22:28:04 openvpn 9525 event_wait returned 1
Oct 22 22:28:04 openvpn 9525 PO_WAIT[1,0] fd=5 rev=0x00000001 rwflags=0x0001 arg=0x006a5d04
Oct 22 22:28:03 openvpn 9525 I/O WAIT TR|Tw|SR|Sw [10/0]
Oct 22 22:28:03 openvpn 9525 PO_CTL rwflags=0x0001 ev=4 arg=0x006a5d08
Oct 22 22:28:03 openvpn 9525 PO_CTL rwflags=0x0001 ev=5 arg=0x006a5d04
Oct 22 22:28:03 openvpn 9525 PO_CTL rwflags=0x0001 ev=6 arg=0x006a6ea0
Oct 22 22:28:03 openvpn 9525 SCHEDULE: schedule_find_least NULL
Code: Select all
2017-10-22 22:19:36 SetTunnelSocket returned 1
2017-10-22 22:19:36 Connecting to [xxxx.ddns.net]:443 (x.x.x.x) via UDPv4
2017-10-22 22:19:46 EVENT: CONNECTION_TIMEOUT [ERR]
2017-10-22 22:19:46 EVENT: DISCONNECTED
2017-10-22 22:19:46 Raw stats on disconnect:
BYTES_OUT : 3240
PACKETS_OUT : 60
CONNECTION_TIMEOUT : 1
N_RECONNECT : 5
2017-10-22 22:19:46 Performance stats on disconnect:
CPU usage (microseconds): 51103
Network bytes per CPU second: 63401
Tunnel bytes per CPU second: 0
2017-10-22 22:19:46 EVENT: DISCONNECT_PENDING
2017-10-22 22:19:46 ----- OpenVPN Stop -----
2017-10-22 22:20:47 ----- OpenVPN Start -----
OpenVPN core 3.1.2 ios arm64 64-bit built on Dec 5 2016 12:50:25
2017-10-22 22:20:47 Frame=512/2048/512 mssfix-ctrl=1250
2017-10-22 22:20:47 UNUSED OPTIONS
0 [persist-tun]
1 [persist-key]
3 [ncp-ciphers] [AES-256-GCM:AES-128-GCM]
5 [tls-client]
8 [lport] [0]
9 [verify-x509-name] [plex2_cert] [name]
2017-10-22 22:20:47 EVENT: RESOLVE
2017-10-22 22:20:47 Contacting x.x.x.x:443 via UDP
2017-10-22 22:20:47 EVENT: WAIT
Code: Select all
persist-tun
persist-key
cipher AES-256-CBC
ncp-ciphers AES-256-GCM:AES-128-GCM
auth SHA256
tls-client
client
remote xxxx.ddns.net 443 udp
lport 0
verify-x509-name "plex2_cert" name
remote-cert-tls server
comp-lzo adaptive
<ca>
-----BEGIN CERTIFICATE-----
-----END CERTIFICATE-----
</ca>
<cert>
-----BEGIN CERTIFICATE-----
-----END CERTIFICATE-----
</cert>
<key>
-----BEGIN PRIVATE KEY-----
-----END PRIVATE KEY-----
</key>
<tls-auth>
#
# 2048 bit OpenVPN static key
#
-----BEGIN OpenVPN Static key V1-----
-----END OpenVPN Static key V1-----
</tls-auth>
key-direction 1