This is the data from the server after reboot (states that a peer to peer connection was made and the ifconfig shows data moving through tun0, however the chkconfig shows the program off and when I try to start it I get a fail):
Code: Select all
[root@Ismaros openvpn]# openvpn server.conf
Sun Aug 7 23:07:36 2011 us=254451 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x. Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
Sun Aug 7 23:07:36 2011 us=254467 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Sun Aug 7 23:07:36 2011 us=257720 Diffie-Hellman initialized with 1024 bit key
Sun Aug 7 23:07:36 2011 us=259170 TLS-Auth MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sun Aug 7 23:07:36 2011 us=262959 ROUTE default_gateway=192.168.1.1
Sun Aug 7 23:07:36 2011 us=316011 TUN/TAP device tun0 opened
Sun Aug 7 23:07:36 2011 us=316455 TUN/TAP TX queue length set to 100
Sun Aug 7 23:07:36 2011 us=316493 /sbin/ip link set dev tun0 up mtu 1500
Sun Aug 7 23:07:36 2011 us=333864 /sbin/ip addr add dev tun0 local 10.8.0.1 peer 10.8.0.2
Sun Aug 7 23:07:36 2011 us=335407 /sbin/ip route add 10.8.0.0/24 via 10.8.0.2
Sun Aug 7 23:07:36 2011 us=341516 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sun Aug 7 23:07:36 2011 us=341552 Socket Buffers: R=[126976->131072] S=[126976->131072]
Sun Aug 7 23:07:36 2011 us=341566 UDPv4 link local (bound): [undef]:1194
Sun Aug 7 23:07:36 2011 us=341574 UDPv4 link remote: [undef]
Sun Aug 7 23:07:36 2011 us=341590 MULTI: multi_init called, r=256 v=256
Sun Aug 7 23:07:36 2011 us=341626 IFCONFIG POOL: base=10.8.0.4 size=62
Sun Aug 7 23:07:36 2011 us=341652 Initialization Sequence Completed
Sun Aug 7 23:07:37 2011 us=451095 MULTI: multi_create_instance called
Sun Aug 7 23:07:37 2011 us=451141 192.168.1.2:56429 Re-using SSL/TLS context
Sun Aug 7 23:07:37 2011 us=451167 192.168.1.2:56429 LZO compression initialized
Sun Aug 7 23:07:37 2011 us=451245 192.168.1.2:56429 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sun Aug 7 23:07:37 2011 us=451259 192.168.1.2:56429 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sun Aug 7 23:07:37 2011 us=451289 192.168.1.2:56429 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Sun Aug 7 23:07:37 2011 us=451302 192.168.1.2:56429 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Sun Aug 7 23:07:37 2011 us=451321 192.168.1.2:56429 Local Options hash (VER=V4): '530fdded'
Sun Aug 7 23:07:37 2011 us=451333 192.168.1.2:56429 Expected Remote Options hash (VER=V4): '41690919'
Sun Aug 7 23:07:37 2011 us=451368 192.168.1.2:56429 TLS: Initial packet from 192.168.1.2:56429, sid=5bd4c596 74eca0e8
Sun Aug 7 23:07:37 2011 us=471482 192.168.1.2:56429 VERIFY OK: depth=1, /C=US/ST=SC/L=MountPleasant/O=Uly-Group/CN=cimsdeu.org/emailAddress=alewis@theuly.com
Sun Aug 7 23:07:37 2011 us=471581 192.168.1.2:56429 VERIFY OK: depth=0, /C=US/ST=SC/L=MountPleasant/O=Uly-Group/OU=DEUClient/CN=testclient1/emailAddress=alewis@theuly.com
Sun Aug 7 23:07:37 2011 us=479346 192.168.1.2:56429 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Aug 7 23:07:37 2011 us=479375 192.168.1.2:56429 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Aug 7 23:07:37 2011 us=479421 192.168.1.2:56429 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Aug 7 23:07:37 2011 us=479431 192.168.1.2:56429 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Aug 7 23:07:37 2011 us=480456 192.168.1.2:56429 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Sun Aug 7 23:07:37 2011 us=480484 192.168.1.2:56429 [testclient1] Peer Connection Initiated with 192.168.1.2:56429
Sun Aug 7 23:07:37 2011 us=480526 testclient1/192.168.1.2:56429 MULTI: Learn: 10.8.0.6 -> testclient1/192.168.1.2:56429
Sun Aug 7 23:07:37 2011 us=480537 testclient1/192.168.1.2:56429 MULTI: primary virtual IP for testclient1/192.168.1.2:56429: 10.8.0.6
Sun Aug 7 23:07:38 2011 us=167649 MULTI: multi_create_instance called
Sun Aug 7 23:07:40 2011 us=517982 testclient1/76.23.126.76:54098 PUSH: Received control message: 'PUSH_REQUEST'
Sun Aug 7 23:07:40 2011 us=518052 testclient1/76.23.126.76:54098 SENT CONTROL [testclient1]: 'PUSH_REPLY,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5' (status=1)
Code: Select all
[root@Ismaros ~]# ifconfig
eth2 Link encap:Ethernet HWaddr 00:0C:29:3A:87:F5
inet addr:192.168.1.3 Bcast:192.168.1.255 Mask:255.255.255.0
inet6 addr: fe80::20c:29ff:fe3a:87f5/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:6614 errors:5106 dropped:0 overruns:0 frame:0
TX packets:4623 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:1145158 (1.0 MiB) TX bytes:1416509 (1.3 MiB)
Interrupt:19 Base address:0x2024
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:66 errors:0 dropped:0 overruns:0 frame:0
TX packets:66 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:180394 (176.1 KiB) TX bytes:180394 (176.1 KiB)
tun0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.8.0.1 P-t-P:10.8.0.2 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:584 errors:0 dropped:0 overruns:0 frame:0
TX packets:16913881 errors:0 dropped:16896619 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:49240 (48.0 KiB) TX bytes:25358625224 (23.6 GiB)
[root@Ismaros ~]# route -n
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
10.8.0.2 0.0.0.0 255.255.255.255 UH 0 0 0 tun0
10.8.0.0 10.8.0.2 255.255.255.0 UG 0 0 0 tun0
192.168.1.0 0.0.0.0 255.255.255.0 U 1 0 0 eth2
0.0.0.0 192.168.1.1 0.0.0.0 UG 0 0 0 eth2
Code: Select all
[root@Ismaros ~]# chkconfig --list | grep -E "openvpn|bridge"
openvpn 0:off 1:off 2:off 3:off 4:off 5:off 6:off
[root@Ismaros ~]# service openvpn start
Starting openvpn: [FAILED]
[root@Ismaros ~]#
Here is the data after the reboot (on the client machine tun3 was opened vice tun0 on the server machine - not sure if this is a problem or not):
Code: Select all
[root@lewis openvpn]# openvpn --config client.conf
Thu Aug 4 20:49:08 2011 us=907268 OpenVPN 2.1.1 i686-redhat-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] built on Jan 5 2010
Thu Aug 4 20:49:08 2011 us=907337 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Aug 4 20:49:08 2011 us=908006 WARNING: file '/etc/openvpn/keys/testclient1.key' is group or others accessible
Thu Aug 4 20:49:08 2011 us=908503 LZO compression initialized
Thu Aug 4 20:49:08 2011 us=908562 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu Aug 4 20:49:08 2011 us=977568 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Aug 4 20:49:08 2011 us=977613 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Thu Aug 4 20:49:08 2011 us=977623 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Thu Aug 4 20:49:08 2011 us=977644 Local Options hash (VER=V4): '41690919'
Thu Aug 4 20:49:08 2011 us=977658 Expected Remote Options hash (VER=V4): '530fdded'
Thu Aug 4 20:49:08 2011 us=977677 Socket Buffers: R=[114688->131072] S=[114688->131072]
Thu Aug 4 20:49:08 2011 us=977691 UDPv4 link local: [undef]
Thu Aug 4 20:49:08 2011 us=977701 UDPv4 link remote: 76.23.126.76:1194
Thu Aug 4 20:49:08 2011 us=979754 TLS: Initial packet from 76.23.126.76:1194, sid=75ac7945 0f64820c
Thu Aug 4 20:49:08 2011 us=993988 VERIFY OK: depth=1, /C=US/ST=SC/L=MountPleasant/O=Uly-Group/CN=cimsdeu.org/emailAddress=alewis@theuly.com
Thu Aug 4 20:49:08 2011 us=994178 VERIFY OK: nsCertType=SERVER
Thu Aug 4 20:49:08 2011 us=994191 VERIFY OK: depth=0, /C=US/ST=SC/L=MountPleasant/O=Uly-Group/CN=cimsdeu.org/emailAddress=alewis@theuly.com
Thu Aug 4 20:49:09 2011 us=67874 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Aug 4 20:49:09 2011 us=67908 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Aug 4 20:49:09 2011 us=67958 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Thu Aug 4 20:49:09 2011 us=67969 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu Aug 4 20:49:09 2011 us=68006 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu Aug 4 20:49:09 2011 us=68030 [cimsdeu.org] Peer Connection Initiated with 76.23.126.76:1194
Thu Aug 4 20:49:11 2011 us=765840 SENT CONTROL [cimsdeu.org]: 'PUSH_REQUEST' (status=1)
Thu Aug 4 20:49:11 2011 us=767060 PUSH: Received control message: 'PUSH_REPLY,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Thu Aug 4 20:49:11 2011 us=767108 OPTIONS IMPORT: timers and/or timeouts modified
Thu Aug 4 20:49:11 2011 us=767118 OPTIONS IMPORT: --ifconfig/up options modified
Thu Aug 4 20:49:11 2011 us=767126 OPTIONS IMPORT: route options modified
Thu Aug 4 20:49:11 2011 us=767449 ROUTE default_gateway=192.168.30.2
Thu Aug 4 20:49:11 2011 us=769313 TUN/TAP device tun3 opened
Thu Aug 4 20:49:11 2011 us=769340 TUN/TAP TX queue length set to 100
Thu Aug 4 20:49:11 2011 us=769365 /sbin/ip link set dev tun3 up mtu 1500
Thu Aug 4 20:49:11 2011 us=774448 /sbin/ip addr add dev tun3 local 10.8.0.6 peer 10.8.0.5
Thu Aug 4 20:49:11 2011 us=779683 /sbin/ip route add 10.8.0.1/32 via 10.8.0.5
RTNETLINK answers: File exists
Thu Aug 4 20:49:11 2011 us=780388 ERROR: Linux route add command failed: external program exited with error status: 2
Thu Aug 4 20:49:11 2011 us=780410 Initialization Sequence Completed
Code: Select all
[root@lewis ~]# ifconfig
eth0 Link encap:Ethernet HWaddr 00:0C:29:F6:72:26
inet addr:192.168.30.134 Bcast:192.168.30.255 Mask:255.255.255.0
inet6 addr: fe80::20c:29ff:fef6:7226/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:99624 errors:0 dropped:0 overruns:0 frame:0
TX packets:171629 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:58144318 (55.4 MiB) TX bytes:18669378 (17.8 MiB)
Interrupt:19 Base address:0x2000
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:26 errors:0 dropped:0 overruns:0 frame:0
TX packets:26 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:1540 (1.5 KiB) TX bytes:1540 (1.5 KiB)
tun0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.8.0.6 P-t-P:10.8.0.5 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:10316 errors:0 dropped:0 overruns:0 frame:0
TX packets:40552 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:1789608 (1.7 MiB) TX bytes:4276470 (4.0 MiB)
tun1 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.8.0.6 P-t-P:10.8.0.5 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:9440 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:14160000 (13.5 MiB) TX bytes:0 (0.0 b)
tun2 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.8.0.6 P-t-P:10.8.0.5 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:2129 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:3193500 (3.0 MiB) TX bytes:0 (0.0 b)
tun3 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.8.0.6 P-t-P:10.8.0.5 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:500 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:750000 (732.4 KiB) TX bytes:0 (0.0 b)
[root@lewis ~]# route -n
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
10.8.0.5 0.0.0.0 255.255.255.255 UH 0 0 0 tun0
10.8.0.5 0.0.0.0 255.255.255.255 UH 0 0 0 tun1
10.8.0.5 0.0.0.0 255.255.255.255 UH 0 0 0 tun2
10.8.0.5 0.0.0.0 255.255.255.255 UH 0 0 0 tun3
10.8.0.1 10.8.0.5 255.255.255.255 UGH 0 0 0 tun0
192.168.30.0 0.0.0.0 255.255.255.0 U 1 0 0 eth0
0.0.0.0 192.168.30.2 0.0.0.0 UG 0 0 0 eth0