TLS State Error: No TLS state for Client

Need help configuring your VPN? Just post here and you'll get that help.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Forum rules
Please use the [oconf] BB tag for openvpn Configurations. See viewtopic.php?f=30&t=21589 for an example.
Post Reply
cmatos
OpenVpn Newbie
Posts: 1
Joined: Wed Nov 16, 2022 4:32 pm

TLS State Error: No TLS state for Client

Post by cmatos » Wed Nov 16, 2022 5:10 pm

Hi,

When clts try to connect they receive the error that TLS Handshake has failed.

In the server side the log says "TLS State Error: No TLS state for Client".

All the certificates are up-to-date (they were i renewed them just to be sure). Also created a new user, with fresh certificates and the same error.

Client:

2022-11-16 16:49:53 Note: Treating option '--ncp-ciphers' as '--data-ciphers' (renamed in OpenVPN 2.5).
2022-11-16 16:49:53 OpenVPN 2.5.2 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Apr 21 2021
2022-11-16 16:49:53 Windows version 10.0 (Windows 10 or greater) 64bit
2022-11-16 16:49:53 library versions: OpenSSL 1.1.1k 25 Mar 2021, LZO 2.10
Enter Management Password:
2022-11-16 16:49:55 TCP/UDP: Preserving recently used remote address: [AF_INET]5.x.x.x:1194
2022-11-16 16:49:55 UDP link local (bound): [AF_INET][undef]:0
2022-11-16 16:49:55 UDP link remote: [AF_INET]5.x.x.x:1194
2022-11-16 16:50:55 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2022-11-16 16:50:55 TLS Error: TLS handshake failed
2022-11-16 16:50:55 SIGUSR1[soft,tls-error] received, process restarting
2022-11-16 16:51:00 TCP/UDP: Preserving recently used remote address: [AF_INET]5.x.x.x:1194
2022-11-16 16:51:00 UDP link local (bound): [AF_INET][undef]:0
2022-11-16 16:51:00 UDP link remote: [AF_INET]5.x.x.x:1194
2022-11-16 16:51:46 SIGTERM received, sending exit notification to peer
2022-11-16 16:51:47 SIGTERM[soft,exit-with-notification] received, process exiting

Server:

Nov 16 17:06:30 openvpn 76901 Initialization Sequence Completed
Nov 16 17:06:30 openvpn 76901 IFCONFIG POOL IPv4: base=10.0.30.2 size=60
Nov 16 17:06:30 openvpn 76901 MULTI: multi_init called, r=256 v=256
Nov 16 17:06:30 openvpn 76901 UDPv4 link remote: [AF_UNSPEC]
Nov 16 17:06:30 openvpn 76901 UDPv4 link local (bound): [AF_INET]192.168.1.100:1194
Nov 16 17:06:30 openvpn 76901 Socket Buffers: R=[42080->524288] S=[57344->524288]
Nov 16 17:06:30 openvpn 76901 Data Channel MTU parms [ L:1621 D:1450 EF:121 EB:406 ET:0 EL:3 ]
Nov 16 17:06:30 openvpn 76901 /usr/local/sbin/ovpn-linkup ovpns1 1500 1621 10.0.30.1 255.255.255.192 init
Nov 16 17:06:30 openvpn 76901 /sbin/route add -net 10.0.30.0 10.0.30.2 255.255.255.192
Nov 16 17:06:30 openvpn 76901 /sbin/ifconfig ovpns1 10.0.30.1 10.0.30.2 mtu 1500 netmask 255.255.255.192 up
Nov 16 17:06:30 openvpn 76901 do_ifconfig, ipv4=1, ipv6=0
Nov 16 17:06:30 openvpn 76901 TUN/TAP device /dev/tun1 opened
Nov 16 17:06:30 openvpn 76901 TUN/TAP device ovpns1 exists previously, keep at program end
Nov 16 17:06:30 openvpn 76901 TLS-Auth MTU parms [ L:1621 D:1212 EF:38 EB:0 ET:0 EL:3 ]
Nov 16 17:06:30 openvpn 76901 WARNING: experimental option --capath /var/etc/openvpn/server1/ca
Nov 16 17:06:30 openvpn 76901 Diffie-Hellman initialized with 4096 bit key
Nov 16 17:06:30 openvpn 76901 PLUGIN_INIT: POST /usr/local/lib/openvpn/plugins/openvpn-plugin-auth-script.so '[/usr/local/lib/openvpn/plugins/openvpn-plugin-auth-script.so] [/usr/local/sbin/ovpn_auth_verify_async] [user] [TG9jYWwgRGF0YWJhc2U=] [true] [server1] [1194]' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY
Nov 16 17:06:30 openvpn 76901 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Nov 16 17:06:30 openvpn 76901 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x. Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
Nov 16 17:06:30 openvpn 76901 WARNING: using --duplicate-cn and --client-config-dir together is probably not what you want
Nov 16 17:06:30 openvpn 76901 MANAGEMENT: unix domain socket listening on /var/etc/openvpn/server1/sock
Nov 16 17:06:30 openvpn 76670 library versions: OpenSSL 1.1.1l-freebsd 24 Aug 2021, LZO 2.10
Nov 16 17:06:30 openvpn 76670 OpenVPN 2.5.4 amd64-portbld-freebsd12.3 [SSL (OpenSSL)] [LZO] [LZ4] [MH/RECVDA] [AEAD] built on Jan 12 2022
Nov 16 17:06:30 openvpn 76670 auth_user_pass_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 pull = DISABLED
Nov 16 17:06:30 openvpn 76670 client = DISABLED
Nov 16 17:06:30 openvpn 76670 vlan_pvid = 1
Nov 16 17:06:30 openvpn 76670 vlan_accept = all
Nov 16 17:06:30 openvpn 76670 vlan_tagging = DISABLED
Nov 16 17:06:30 openvpn 76670 port_share_port = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 port_share_host = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 auth_token_secret_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 auth_token_lifetime = 0
Nov 16 17:06:30 openvpn 76670 auth_token_generate = DISABLED
Nov 16 17:06:30 openvpn 76670 auth_user_pass_verify_script_via_file = DISABLED
Nov 16 17:06:30 openvpn 76670 auth_user_pass_verify_script = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 max_routes_per_client = 256
Nov 16 17:06:30 openvpn 76670 max_clients = 10
Nov 16 17:06:30 openvpn 76670 cf_per = 0
Nov 16 17:06:30 openvpn 76670 cf_max = 0
Nov 16 17:06:30 openvpn 76670 duplicate_cn = ENABLED
Nov 16 17:06:30 openvpn 76670 enable_c2c = ENABLED
Nov 16 17:06:30 openvpn 76670 push_ifconfig_ipv6_remote = ::
Nov 16 17:06:30 openvpn 76670 push_ifconfig_ipv6_local = ::/0
Nov 16 17:06:30 openvpn 76670 push_ifconfig_ipv6_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 push_ifconfig_remote_netmask = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 push_ifconfig_local = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 push_ifconfig_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 tmp_dir = '/tmp'
Nov 16 17:06:30 openvpn 76670 ccd_exclusive = DISABLED
Nov 16 17:06:30 openvpn 76670 client_config_dir = '/var/etc/openvpn/server1/csc'
Nov 16 17:06:30 openvpn 76670 client_disconnect_script = '/usr/local/sbin/openvpn.attributes.sh'
Nov 16 17:06:30 openvpn 76670 learn_address_script = '/usr/local/sbin/openvpn.learn-address.sh descontel.intra'
Nov 16 17:06:30 openvpn 76670 client_connect_script = '/usr/local/sbin/openvpn.attributes.sh'
Nov 16 17:06:30 openvpn 76670 virtual_hash_size = 256
Nov 16 17:06:30 openvpn 76670 real_hash_size = 256
Nov 16 17:06:30 openvpn 76670 tcp_queue_limit = 64
Nov 16 17:06:30 openvpn 76670 n_bcast_buf = 256
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_pool_netbits = 0
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_pool_base = ::
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_pool_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_persist_refresh_freq = 600
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_persist_filename = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_netmask = 255.255.255.192
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_end = 10.0.30.61
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_start = 10.0.30.2
Nov 16 17:06:30 openvpn 76670 ifconfig_pool_defined = ENABLED
Nov 16 17:06:30 openvpn 76670 push_entry = 'ping-restart 60'
Nov 16 17:06:30 openvpn 76670 push_entry = 'ping 10'
Nov 16 17:06:30 openvpn 76670 push_entry = 'topology subnet'
Nov 16 17:06:30 openvpn 76670 push_entry = 'route-gateway 10.0.30.1'
Nov 16 17:06:30 openvpn 76670 push_entry = 'dhcp-option DNS 8.8.8.8'
Nov 16 17:06:30 openvpn 76670 push_entry = 'dhcp-option DNS 10.0.2.10'
Nov 16 17:06:30 openvpn 76670 push_entry = 'dhcp-option DOMAIN descontel.intra'
Nov 16 17:06:30 openvpn 76670 push_entry = 'route 10.0.7.0 255.255.255.128'
Nov 16 17:06:30 openvpn 76670 push_entry = 'route 10.0.5.0 255.255.255.128'
Nov 16 17:06:30 openvpn 76670 push_entry = 'route 10.0.6.0 255.255.255.192'
Nov 16 17:06:30 openvpn 76670 push_entry = 'route 10.0.2.0 255.255.255.128'
Nov 16 17:06:30 openvpn 76670 server_bridge_pool_end = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 server_bridge_pool_start = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 server_bridge_netmask = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 server_bridge_ip = 0.0.0.0
Nov 16 17:06:30 openvpn 76670 server_netbits_ipv6 = 0
Nov 16 17:06:30 openvpn 76670 server_network_ipv6 = ::
Nov 16 17:06:30 openvpn 76670 server_netmask = 255.255.255.192
Nov 16 17:06:30 openvpn 76670 server_network = 10.0.30.0
Nov 16 17:06:30 openvpn 76670 tls_crypt_v2_metadata = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 tls_exit = DISABLED
Nov 16 17:06:30 openvpn 76670 push_peer_info = DISABLED
Nov 16 17:06:30 openvpn 76670 single_session = DISABLED
Nov 16 17:06:30 openvpn 76670 transition_window = 3600
Nov 16 17:06:30 openvpn 76670 handshake_window = 60
Nov 16 17:06:30 openvpn 76670 renegotiate_seconds = 3600
Nov 16 17:06:30 openvpn 76670 renegotiate_packets = 0
Nov 16 17:06:30 openvpn 76670 renegotiate_bytes = -1
Nov 16 17:06:30 openvpn 76670 tls_timeout = 2
Nov 16 17:06:30 openvpn 76670 ssl_flags = 4
Nov 16 17:06:30 openvpn 76670 remote_cert_eku = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 remote_cert_ku[i] = 0
Nov 16 17:06:30 openvpn 76670 ns_cert_type = 0
Nov 16 17:06:30 openvpn 76670 crl_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 verify_x509_name = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 verify_x509_type = 0
Nov 16 17:06:30 openvpn 76670 tls_export_cert = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 tls_verify = '/usr/local/sbin/ovpn_auth_verify tls 'OpnVPN_2021' 3'
Nov 16 17:06:30 openvpn 76670 tls_cert_profile = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 cipher_list_tls13 = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 cipher_list = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 pkcs12_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 priv_key_file = '/var/etc/openvpn/server1/key'
Nov 16 17:06:30 openvpn 76670 extra_certs_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 cert_file = '/var/etc/openvpn/server1/cert'
Nov 16 17:06:30 openvpn 76670 dh_file = '/etc/dh-parameters.4096'
Nov 16 17:06:30 openvpn 76670 ca_path = '/var/etc/openvpn/server1/ca'
Nov 16 17:06:30 openvpn 76670 ca_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 tls_client = DISABLED
Nov 16 17:06:30 openvpn 76670 tls_server = ENABLED
Nov 16 17:06:30 openvpn 76670 test_crypto = DISABLED
Nov 16 17:06:30 openvpn 76670 packet_id_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 replay_time = 15
Nov 16 17:06:30 openvpn 76670 replay_window = 64
Nov 16 17:06:30 openvpn 76670 mute_replay_warnings = DISABLED
Nov 16 17:06:30 openvpn 76670 replay = ENABLED
Nov 16 17:06:30 openvpn 76670 engine = DISABLED
Nov 16 17:06:30 openvpn 76670 keysize = 0
Nov 16 17:06:30 openvpn 76670 prng_nonce_secret_len = 16
Nov 16 17:06:30 openvpn 76670 prng_hash = 'SHA1'
Nov 16 17:06:30 openvpn 76670 authname = 'SHA256'
Nov 16 17:06:30 openvpn 76670 ncp_ciphers = 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305:AES-256-CBC'
Nov 16 17:06:30 openvpn 76670 ncp_enabled = ENABLED
Nov 16 17:06:30 openvpn 76670 ciphername = 'AES-256-CBC'
Nov 16 17:06:30 openvpn 76670 key_direction = not set
Nov 16 17:06:30 openvpn 76670 shared_secret_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 plugin[0] /usr/local/lib/openvpn/plugins/openvpn-plugin-auth-script.so '[/usr/local/lib/openvpn/plugins/openvpn-plugin-auth-script.so] [/usr/local/sbin/ovpn_auth_verify_async] [user] [TG9jYWwgRGF0YWJhc2U=] [true] [server1] [1194]'
Nov 16 17:06:30 openvpn 76670 management_flags = 256
Nov 16 17:06:30 openvpn 76670 management_client_group = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 management_client_user = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 management_write_peer_info_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 management_echo_buffer_size = 100
Nov 16 17:06:30 openvpn 76670 management_log_history_cache = 250
Nov 16 17:06:30 openvpn 76670 management_user_pass = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 management_port = 'unix'
Nov 16 17:06:30 openvpn 76670 management_addr = '/var/etc/openvpn/server1/sock'
Nov 16 17:06:30 openvpn 76670 allow_pull_fqdn = DISABLED
Nov 16 17:06:30 openvpn 76670 route_gateway_via_dhcp = DISABLED
Nov 16 17:06:30 openvpn 76670 route_nopull = DISABLED
Nov 16 17:06:30 openvpn 76670 route_delay_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 route_delay_window = 30
Nov 16 17:06:30 openvpn 76670 route_delay = 0
Nov 16 17:06:30 openvpn 76670 route_noexec = DISABLED
Nov 16 17:06:30 openvpn 76670 route_default_metric = 0
Nov 16 17:06:30 openvpn 76670 route_default_gateway = '10.0.30.2'
Nov 16 17:06:30 openvpn 76670 route_script = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 comp.flags = 24
Nov 16 17:06:30 openvpn 76670 comp.alg = 0
Nov 16 17:06:30 openvpn 76670 fast_io = ENABLED
Nov 16 17:06:30 openvpn 76670 sockflags = 0
Nov 16 17:06:30 openvpn 76670 sndbuf = 524288
Nov 16 17:06:30 openvpn 76670 rcvbuf = 524288
Nov 16 17:06:30 openvpn 76670 occ = ENABLED
Nov 16 17:06:30 openvpn 76670 status_file_update_freq = 60
Nov 16 17:06:30 openvpn 76670 status_file_version = 1
Nov 16 17:06:30 openvpn 76670 status_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 gremlin = 0
Nov 16 17:06:30 openvpn 76670 mute = 0
Nov 16 17:06:30 openvpn 76670 verbosity = 4
Nov 16 17:06:30 openvpn 76670 nice = 0
Nov 16 17:06:30 openvpn 76670 machine_readable_output = DISABLED
Nov 16 17:06:30 openvpn 76670 suppress_timestamps = DISABLED
Nov 16 17:06:30 openvpn 76670 log = DISABLED
Nov 16 17:06:30 openvpn 76670 inetd = 0
Nov 16 17:06:30 openvpn 76670 daemon = ENABLED
Nov 16 17:06:30 openvpn 76670 up_delay = DISABLED
Nov 16 17:06:30 openvpn 76670 up_restart = DISABLED
Nov 16 17:06:30 openvpn 76670 down_pre = DISABLED
Nov 16 17:06:30 openvpn 76670 down_script = '/usr/local/sbin/ovpn-linkdown'
Nov 16 17:06:30 openvpn 76670 up_script = '/usr/local/sbin/ovpn-linkup'
Nov 16 17:06:30 openvpn 76670 writepid = '/var/run/openvpn_server1.pid'
Nov 16 17:06:30 openvpn 76670 cd_dir = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 chroot_dir = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 groupname = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 username = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 resolve_in_advance = DISABLED
Nov 16 17:06:30 openvpn 76670 resolve_retry_seconds = 1000000000
Nov 16 17:06:30 openvpn 76670 passtos = DISABLED
Nov 16 17:06:30 openvpn 76670 persist_key = ENABLED
Nov 16 17:06:30 openvpn 76670 persist_remote_ip = ENABLED
Nov 16 17:06:30 openvpn 76670 persist_local_ip = DISABLED
Nov 16 17:06:30 openvpn 76670 persist_tun = ENABLED
Nov 16 17:06:30 openvpn 76670 remap_sigusr1 = 0
Nov 16 17:06:30 openvpn 76670 ping_timer_remote = ENABLED
Nov 16 17:06:30 openvpn 76670 ping_rec_timeout_action = 2
Nov 16 17:06:30 openvpn 76670 ping_rec_timeout = 120
Nov 16 17:06:30 openvpn 76670 ping_send_timeout = 10
Nov 16 17:06:30 openvpn 76670 inactivity_timeout = 300
Nov 16 17:06:30 openvpn 76670 keepalive_timeout = 60
Nov 16 17:06:30 openvpn 76670 keepalive_ping = 10
Nov 16 17:06:30 openvpn 76670 mlock = DISABLED
Nov 16 17:06:30 openvpn 76670 mtu_test = 0
Nov 16 17:06:30 openvpn 76670 shaper = 0
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_remote = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_netbits = 0
Nov 16 17:06:30 openvpn 76670 ifconfig_ipv6_local = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 ifconfig_nowarn = DISABLED
Nov 16 17:06:30 openvpn 76670 ifconfig_noexec = DISABLED
Nov 16 17:06:30 openvpn 76670 ifconfig_remote_netmask = '255.255.255.192'
Nov 16 17:06:30 openvpn 76670 ifconfig_local = '10.0.30.1'
Nov 16 17:06:30 openvpn 76670 topology = 3
Nov 16 17:06:30 openvpn 76670 lladdr = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 dev_node = '/dev/tun1'
Nov 16 17:06:30 openvpn 76670 dev_type = 'tun'
Nov 16 17:06:30 openvpn 76670 dev = 'ovpns1'
Nov 16 17:06:30 openvpn 76670 ipchange = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 remote_random = DISABLED
Nov 16 17:06:30 openvpn 76670 Connection profiles END
Nov 16 17:06:30 openvpn 76670 tls_crypt_v2_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 tls_crypt_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 key_direction = not set
Nov 16 17:06:30 openvpn 76670 tls_auth_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 explicit_exit_notification = 1
Nov 16 17:06:30 openvpn 76670 mssfix = 1450
Nov 16 17:06:30 openvpn 76670 fragment = 0
Nov 16 17:06:30 openvpn 76670 mtu_discover_type = -1
Nov 16 17:06:30 openvpn 76670 tun_mtu_extra_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 tun_mtu_extra = 0
Nov 16 17:06:30 openvpn 76670 link_mtu_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 link_mtu = 1500
Nov 16 17:06:30 openvpn 76670 tun_mtu_defined = ENABLED
Nov 16 17:06:30 openvpn 76670 tun_mtu = 1500
Nov 16 17:06:30 openvpn 76670 socks_proxy_port = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 socks_proxy_server = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 connect_timeout = 120
Nov 16 17:06:30 openvpn 76670 connect_retry_seconds = 5
Nov 16 17:06:30 openvpn 76670 bind_ipv6_only = DISABLED
Nov 16 17:06:30 openvpn 76670 bind_local = ENABLED
Nov 16 17:06:30 openvpn 76670 bind_defined = DISABLED
Nov 16 17:06:30 openvpn 76670 remote_float = ENABLED
Nov 16 17:06:30 openvpn 76670 remote_port = '1194'
Nov 16 17:06:30 openvpn 76670 remote = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 local_port = '1194'
Nov 16 17:06:30 openvpn 76670 local = '192.168.1.100'
Nov 16 17:06:30 openvpn 76670 proto = udp4
Nov 16 17:06:30 openvpn 76670 Connection profiles [0]:
Nov 16 17:06:30 openvpn 76670 connect_retry_max = 0
Nov 16 17:06:30 openvpn 76670 show_tls_ciphers = DISABLED
Nov 16 17:06:30 openvpn 76670 key_pass_file = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 genkey_filename = '[UNDEF]'
Nov 16 17:06:30 openvpn 76670 genkey = DISABLED
Nov 16 17:06:30 openvpn 76670 show_engines = DISABLED
Nov 16 17:06:30 openvpn 76670 show_digests = DISABLED
Nov 16 17:06:30 openvpn 76670 show_ciphers = DISABLED
Nov 16 17:06:30 openvpn 76670 mode = 1
Nov 16 17:06:30 openvpn 76670 config = '/var/etc/openvpn/server1/config.ovpn'
Nov 16 17:06:30 openvpn 76670 Current Parameter Settings:
Nov 16 17:06:30 openvpn 45866 SIGTERM[hard,] received, process exiting

I already checked in PFSense, and the user certificate is up to date.

Any ideas for what is causing the problem?

Tks

User avatar
ordex
OpenVPN Inc.
Posts: 444
Joined: Wed Dec 28, 2016 2:32 am
Location: IRC #openvpn-devel @ libera.chat

Re: TLS State Error: No TLS state for Client

Post by ordex » Fri Nov 18, 2022 9:28 am

can you share the server log around the time the client tries to connect? In the server log you shared all I can see if the server starting (?) twice in a row within 1 second: log starts at "Nov 16 17:06:30" and stops at "Nov 16 17:06:30"

Post Reply