Page 1 of 1

openvpn, windows client -> linux server no connection

Posted: Wed Sep 14, 2011 8:51 am
by Kiste_Becks
following the static key howto the servers output tells me that theres a connection as does the windows client.
but i cant ping 10.8.3.1 or .2 or get a webpage from 10.8.3.1
firewall for local area connection 4 (this is the one openvpn created) is off

the lan symbol in the tray keeps looking for a ip address, also ipconfig /all does show the tap driver but 0.0.0.0 as ip?
openvpn runs as admin.

note: ive successfully setup a small network containing 3 hosts, all linux machines. just this windows box tries to annoy me.


client(openvpn 2.2.1 winxp sp3/32bit):

dev tun
ifconfig 10.8.3.2 10.8.3.1
secret static.key
remote 94.23.41.182 4455
verb 5


server(openvpn 2.1.3 debian/64bit):

dev tun
ifconfig 10.8.3.1 10.8.3.2
secret static.key
port 4455






#client log
Mon Sep 12 11:54:11 2011 us=296000 Current Parameter Settings:
Mon Sep 12 11:54:11 2011 us=312000 config = 'openvpn.ovpn'
Mon Sep 12 11:54:11 2011 us=312000 mode = 0
Mon Sep 12 11:54:11 2011 us=312000 show_ciphers = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 show_digests = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 show_engines = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 genkey = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 key_pass_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 show_tls_ciphers = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 Connection profiles [default]:
Mon Sep 12 11:54:11 2011 us=312000 proto = udp
Mon Sep 12 11:54:11 2011 us=312000 local = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 local_port = 1194
Mon Sep 12 11:54:11 2011 us=312000 remote = '94.23.41.182'
Mon Sep 12 11:54:11 2011 us=312000 remote_port = 4455
Mon Sep 12 11:54:11 2011 us=312000 remote_float = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 bind_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 bind_local = ENABLED
Mon Sep 12 11:54:11 2011 us=312000 connect_retry_seconds = 5
Mon Sep 12 11:54:11 2011 us=312000 connect_timeout = 10
Mon Sep 12 11:54:11 2011 us=312000 connect_retry_max = 0
Mon Sep 12 11:54:11 2011 us=312000 socks_proxy_server = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 socks_proxy_port = 0
Mon Sep 12 11:54:11 2011 us=312000 socks_proxy_retry = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 Connection profiles END
Mon Sep 12 11:54:11 2011 us=312000 remote_random = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 ipchange = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 dev = 'tun'
Mon Sep 12 11:54:11 2011 us=312000 dev_type = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 dev_node = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 lladdr = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 topology = 1
Mon Sep 12 11:54:11 2011 us=312000 tun_ipv6 = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 ifconfig_local = '10.8.3.2'
Mon Sep 12 11:54:11 2011 us=312000 ifconfig_remote_netmask = '10.8.3.1'
Mon Sep 12 11:54:11 2011 us=312000 ifconfig_noexec = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 ifconfig_nowarn = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 shaper = 0
Mon Sep 12 11:54:11 2011 us=312000 tun_mtu = 1500
Mon Sep 12 11:54:11 2011 us=312000 tun_mtu_defined = ENABLED
Mon Sep 12 11:54:11 2011 us=312000 link_mtu = 1500
Mon Sep 12 11:54:11 2011 us=312000 link_mtu_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 tun_mtu_extra = 0
Mon Sep 12 11:54:11 2011 us=312000 tun_mtu_extra_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 fragment = 0
Mon Sep 12 11:54:11 2011 us=312000 mtu_discover_type = -1
Mon Sep 12 11:54:11 2011 us=312000 mtu_test = 0
Mon Sep 12 11:54:11 2011 us=312000 mlock = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 keepalive_ping = 0
Mon Sep 12 11:54:11 2011 us=312000 keepalive_timeout = 0
Mon Sep 12 11:54:11 2011 us=312000 inactivity_timeout = 0
Mon Sep 12 11:54:11 2011 us=312000 ping_send_timeout = 0
Mon Sep 12 11:54:11 2011 us=312000 ping_rec_timeout = 0
Mon Sep 12 11:54:11 2011 us=312000 ping_rec_timeout_action = 0
Mon Sep 12 11:54:11 2011 us=312000 ping_timer_remote = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 remap_sigusr1 = 0
Mon Sep 12 11:54:11 2011 us=312000 explicit_exit_notification = 0
Mon Sep 12 11:54:11 2011 us=312000 persist_tun = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 persist_local_ip = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 persist_remote_ip = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 persist_key = DISABLED
Mon Sep 12 11:54:11 2011 us=312000 mssfix = 1450
Mon Sep 12 11:54:11 2011 us=312000 resolve_retry_seconds = 1000000000
Mon Sep 12 11:54:11 2011 us=312000 username = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 groupname = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 chroot_dir = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 cd_dir = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=312000 writepid = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 up_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 down_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 down_pre = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 up_restart = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 up_delay = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 daemon = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 inetd = 0
Mon Sep 12 11:54:11 2011 us=515000 log = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 suppress_timestamps = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 nice = 0
Mon Sep 12 11:54:11 2011 us=515000 verbosity = 5
Mon Sep 12 11:54:11 2011 us=515000 mute = 0
Mon Sep 12 11:54:11 2011 us=515000 gremlin = 0
Mon Sep 12 11:54:11 2011 us=515000 status_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 status_file_version = 1
Mon Sep 12 11:54:11 2011 us=515000 status_file_update_freq = 60
Mon Sep 12 11:54:11 2011 us=515000 occ = ENABLED
Mon Sep 12 11:54:11 2011 us=515000 rcvbuf = 0
Mon Sep 12 11:54:11 2011 us=515000 sndbuf = 0
Mon Sep 12 11:54:11 2011 us=515000 sockflags = 0
Mon Sep 12 11:54:11 2011 us=515000 fast_io = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 lzo = 0
Mon Sep 12 11:54:11 2011 us=515000 route_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 route_default_gateway = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 route_default_metric = 0
Mon Sep 12 11:54:11 2011 us=515000 route_noexec = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 route_delay = 5
Mon Sep 12 11:54:11 2011 us=515000 route_delay_window = 30
Mon Sep 12 11:54:11 2011 us=515000 route_delay_defined = ENABLED
Mon Sep 12 11:54:11 2011 us=515000 route_nopull = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 route_gateway_via_dhcp = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 max_routes = 100
Mon Sep 12 11:54:11 2011 us=515000 allow_pull_fqdn = DISABLED
Mon Sep 12 11:54:11 2011 us=515000 management_addr = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=515000 management_port = 0
Mon Sep 12 11:54:11 2011 us=531000 management_user_pass = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 management_log_history_cache = 250
Mon Sep 12 11:54:11 2011 us=531000 management_echo_buffer_size = 100
Mon Sep 12 11:54:11 2011 us=531000 management_write_peer_info_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 management_client_user = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 management_client_group = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 management_flags = 0
Mon Sep 12 11:54:11 2011 us=531000 shared_secret_file = 'static.key'
Mon Sep 12 11:54:11 2011 us=531000 key_direction = 0
Mon Sep 12 11:54:11 2011 us=531000 ciphername_defined = ENABLED
Mon Sep 12 11:54:11 2011 us=531000 ciphername = 'BF-CBC'
Mon Sep 12 11:54:11 2011 us=531000 authname_defined = ENABLED
Mon Sep 12 11:54:11 2011 us=531000 authname = 'SHA1'
Mon Sep 12 11:54:11 2011 us=531000 prng_hash = 'SHA1'
Mon Sep 12 11:54:11 2011 us=531000 prng_nonce_secret_len = 16
Mon Sep 12 11:54:11 2011 us=531000 keysize = 0
Mon Sep 12 11:54:11 2011 us=531000 engine = DISABLED
Mon Sep 12 11:54:11 2011 us=531000 replay = ENABLED
Mon Sep 12 11:54:11 2011 us=531000 mute_replay_warnings = DISABLED
Mon Sep 12 11:54:11 2011 us=531000 replay_window = 64
Mon Sep 12 11:54:11 2011 us=531000 replay_time = 15
Mon Sep 12 11:54:11 2011 us=531000 packet_id_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 use_iv = ENABLED
Mon Sep 12 11:54:11 2011 us=531000 test_crypto = DISABLED
Mon Sep 12 11:54:11 2011 us=531000 tls_server = DISABLED
Mon Sep 12 11:54:11 2011 us=531000 tls_client = DISABLED
Mon Sep 12 11:54:11 2011 us=531000 key_method = 2
Mon Sep 12 11:54:11 2011 us=531000 ca_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 ca_path = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 dh_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 cert_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 priv_key_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 pkcs12_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 cryptoapi_cert = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 cipher_list = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 tls_verify = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 tls_export_cert = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 tls_remote = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 crl_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=531000 ns_cert_type = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=531000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_ku[i] = 0
Mon Sep 12 11:54:11 2011 us=562000 remote_cert_eku = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=562000 tls_timeout = 2
Mon Sep 12 11:54:11 2011 us=562000 renegotiate_bytes = 0
Mon Sep 12 11:54:11 2011 us=562000 renegotiate_packets = 0
Mon Sep 12 11:54:11 2011 us=562000 renegotiate_seconds = 3600
Mon Sep 12 11:54:11 2011 us=562000 handshake_window = 60
Mon Sep 12 11:54:11 2011 us=562000 transition_window = 3600
Mon Sep 12 11:54:11 2011 us=562000 single_session = DISABLED
Mon Sep 12 11:54:11 2011 us=562000 push_peer_info = DISABLED
Mon Sep 12 11:54:11 2011 us=562000 tls_exit = DISABLED
Mon Sep 12 11:54:11 2011 us=562000 tls_auth_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=562000 server_network = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 server_netmask = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 server_bridge_ip = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 server_bridge_netmask = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 server_bridge_pool_start = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 server_bridge_pool_end = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_start = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_end = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_netmask = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_persist_filename = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=562000 ifconfig_pool_persist_refresh_freq = 600
Mon Sep 12 11:54:11 2011 us=562000 n_bcast_buf = 256
Mon Sep 12 11:54:11 2011 us=562000 tcp_queue_limit = 64
Mon Sep 12 11:54:11 2011 us=578000 real_hash_size = 256
Mon Sep 12 11:54:11 2011 us=578000 virtual_hash_size = 256
Mon Sep 12 11:54:11 2011 us=578000 client_connect_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 learn_address_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 client_disconnect_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 client_config_dir = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 ccd_exclusive = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 tmp_dir = 'C:\DOCUME~1\root\LOCALS~1\Temp\'
Mon Sep 12 11:54:11 2011 us=578000 push_ifconfig_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 push_ifconfig_local = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=578000 push_ifconfig_remote_netmask = 0.0.0.0
Mon Sep 12 11:54:11 2011 us=578000 enable_c2c = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 duplicate_cn = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 cf_max = 0
Mon Sep 12 11:54:11 2011 us=578000 cf_per = 0
Mon Sep 12 11:54:11 2011 us=578000 max_clients = 1024
Mon Sep 12 11:54:11 2011 us=578000 max_routes_per_client = 256
Mon Sep 12 11:54:11 2011 us=578000 auth_user_pass_verify_script = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 auth_user_pass_verify_script_via_file = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 ssl_flags = 0
Mon Sep 12 11:54:11 2011 us=578000 client = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 pull = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 auth_user_pass_file = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 show_net_up = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 route_method = 0
Mon Sep 12 11:54:11 2011 us=578000 ip_win32_defined = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 ip_win32_type = 3
Mon Sep 12 11:54:11 2011 us=578000 dhcp_masq_offset = 0
Mon Sep 12 11:54:11 2011 us=578000 dhcp_lease_time = 31536000
Mon Sep 12 11:54:11 2011 us=578000 tap_sleep = 0
Mon Sep 12 11:54:11 2011 us=578000 dhcp_options = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 dhcp_renew = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 dhcp_pre_release = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 dhcp_release = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 domain = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 netbios_scope = '[UNDEF]'
Mon Sep 12 11:54:11 2011 us=578000 netbios_node_type = 0
Mon Sep 12 11:54:11 2011 us=578000 disable_nbt = DISABLED
Mon Sep 12 11:54:11 2011 us=578000 OpenVPN 2.2.1 Win32-MSVC++ [SSL] [LZO2] built on Jul 1 2011
Mon Sep 12 11:54:11 2011 us=578000 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Mon Sep 12 11:54:11 2011 us=578000 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Sep 12 11:54:11 2011 us=578000 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Sep 12 11:54:11 2011 us=578000 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Sep 12 11:54:11 2011 us=593000 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Sep 12 11:54:11 2011 us=593000 Socket Buffers: R=[8192->8192] S=[8192->8192]
Mon Sep 12 11:54:11 2011 us=593000 TAP-WIN32 device [Local Area Connection 4] opened: \\.\Global\{CF076AEE-E189-45FD-8163-72D243B0442A}.tap
Mon Sep 12 11:54:11 2011 us=593000 TAP-Win32 Driver Version 9.8
Mon Sep 12 11:54:11 2011 us=593000 TAP-Win32 MTU=1500
Mon Sep 12 11:54:11 2011 us=593000 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.8.3.2/255.255.255.252 on interface {CF076AEE-E189-45FD-8163-72D243B0442A} [DHCP-serv: 10.8.3.1, lease-time: 31536000]
Mon Sep 12 11:54:11 2011 us=593000 Successful ARP Flush on interface [3] {CF076AEE-E189-45FD-8163-72D243B0442A}
Mon Sep 12 11:54:11 2011 us=609000 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:4 ET:0 EL:0 ]
Mon Sep 12 11:54:11 2011 us=609000 Local Options String: 'V4,dev-type tun,link-mtu 1544,tun-mtu 1500,proto UDPv4,ifconfig 10.8.3.1 10.8.3.2,cipher BF-CBC,auth SHA1,keysize 128,secret'
Mon Sep 12 11:54:11 2011 us=609000 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1544,tun-mtu 1500,proto UDPv4,ifconfig 10.8.3.2 10.8.3.1,cipher BF-CBC,auth SHA1,keysize 128,secret'
Mon Sep 12 11:54:11 2011 us=609000 Local Options hash (VER=V4): '6691072e'
Mon Sep 12 11:54:11 2011 us=609000 Expected Remote Options hash (VER=V4): '053d430c'
Mon Sep 12 11:54:11 2011 us=609000 UDPv4 link local (bound): [undef]:1194
Mon Sep 12 11:54:11 2011 us=609000 UDPv4 link remote: 94.23.41.182:4455
Mon Sep 12 11:54:21 2011 us=984000 Peer Connection Initiated with 94.23.41.182:4455
Mon Sep 12 11:54:28 2011 us=171000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:28 2011 us=171000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:33 2011 us=234000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:33 2011 us=234000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:34 2011 us=421000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:34 2011 us=421000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:35 2011 us=609000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:35 2011 us=609000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:36 2011 us=796000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:36 2011 us=796000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:37 2011 us=984000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:37 2011 us=984000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:39 2011 us=171000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:39 2011 us=171000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:40 2011 us=359000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:40 2011 us=359000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:41 2011 us=546000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:41 2011 us=546000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:42 2011 us=734000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:42 2011 us=734000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:43 2011 us=921000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:43 2011 us=921000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:44 2011 us=953000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:44 2011 us=953000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:45 2011 us=984000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:45 2011 us=984000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:47 2011 us=15000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:47 2011 us=15000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:48 2011 us=46000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:48 2011 us=46000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:49 2011 us=78000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:49 2011 us=78000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:50 2011 us=109000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:50 2011 us=109000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:51 2011 us=140000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:51 2011 us=140000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:52 2011 us=171000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:52 2011 us=171000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:53 2011 us=203000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:53 2011 us=203000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:54 2011 us=234000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:54 2011 us=234000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:55 2011 us=265000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:55 2011 us=265000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:56 2011 us=296000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:56 2011 us=296000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:57 2011 us=328000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
Mon Sep 12 11:54:57 2011 us=328000 Route: Waiting for TUN/TAP interface to come up...
Mon Sep 12 11:54:58 2011 us=359000 TEST ROUTES: 0/0 succeeded len=-1 ret=0 a=0 u/d=down
SYSTEM ROUTING TABLE
0.0.0.0 0.0.0.0 141.41.93.1 p=0 i=2 t=4 pr=3 a=1263 h=0 m=10/-1/-1/-1/-1
127.0.0.0 255.0.0.0 127.0.0.1 p=0 i=1 t=3 pr=2 a=1263 h=0 m=1/-1/-1/-1/-1
141.41.0.0 255.255.0.0 141.41.93.164 p=0 i=2 t=3 pr=2 a=1263 h=0 m=10/-1/-1/-1/-1
141.41.93.164 255.255.255.255 127.0.0.1 p=0 i=1 t=3 pr=2 a=1263 h=0 m=10/-1/-1/-1/-1
141.41.255.255 255.255.255.255 141.41.93.164 p=0 i=2 t=3 pr=2 a=1263 h=0 m=10/-1/-1/-1/-1
192.168.56.0 255.255.255.0 192.168.56.1 p=0 i=4 t=3 pr=2 a=1263 h=0 m=20/-1/-1/-1/-1
192.168.56.1 255.255.255.255 127.0.0.1 p=0 i=1 t=3 pr=2 a=1263 h=0 m=20/-1/-1/-1/-1
192.168.56.255 255.255.255.255 192.168.56.1 p=0 i=4 t=3 pr=2 a=1263 h=0 m=20/-1/-1/-1/-1
224.0.0.0 240.0.0.0 141.41.93.164 p=0 i=2 t=3 pr=2 a=1263 h=0 m=10/-1/-1/-1/-1
224.0.0.0 240.0.0.0 192.168.56.1 p=0 i=4 t=3 pr=2 a=1263 h=0 m=20/-1/-1/-1/-1
255.255.255.255 255.255.255.255 141.41.93.164 p=0 i=2 t=3 pr=2 a=1263 h=0 m=1/-1/-1/-1/-1
255.255.255.255 255.255.255.255 192.168.56.1 p=0 i=4 t=3 pr=2 a=1263 h=0 m=1/-1/-1/-1/-1
255.255.255.255 255.255.255.255 192.168.56.1 p=0 i=3 t=3 pr=2 a=1263 h=0 m=1/-1/-1/-1/-1
SYSTEM ADAPTER LIST
TAP-Win32 Adapter V9 - Packet Scheduler Miniport
Index = 3
GUID = {CF076AEE-E189-45FD-8163-72D243B0442A}
IP = 0.0.0.0/0.0.0.0
MAC = 00:ff:cf:07:6a:ee
GATEWAY =
DHCP SERV =
DHCP LEASE OBTAINED = Thu Jan 01 01:00:03 1970
DHCP LEASE EXPIRES = Mon May 11 16:09:08 1970
DNS SERV =
Realtek PCIe GBE Family Controller - Packet Scheduler Miniport
Index = 2
GUID = {762A28ED-25E5-459E-B287-2A459EF9060D}
IP = 141.41.93.164/255.255.0.0
MAC = 00:1d:7d:9d:22:e5
GATEWAY = 141.41.93.1/0.0.0.0
DNS SERV = 141.41.1.250
VirtualBox Host-Only Ethernet Adapter - Packet Scheduler Miniport
Index = 4
GUID = {BC47597E-B678-4279-8372-986756BEA7C2}
IP = 192.168.56.1/255.255.255.0
MAC = 08:00:27:00:7c:17
GATEWAY =
DNS SERV =
Mon Sep 12 11:54:58 2011 us=359000 Initialization Sequence Completed With Errors ( see http://openvpn.net/faq.html#dhcpclientserv )

Re: openvpn, windows client -> linux server no connection

Posted: Wed Sep 14, 2011 9:45 am
by janjust
the message
Mon Sep 12 11:54:11 2011 us=593000 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.8.3.2/255.255.255.252 on interface {CF076AEE-E189-45FD-8163-72D243B0442A} [DHCP-serv: 10.8.3.1, lease-time: 31536000]
suggests that the right info is pushed out to the tap-win32 adapter but for some reason the adapter does not pick it up; check that the tap-win32 adapter is configured to use DHCP (dynamic addressing).

You can also try adding

Code: Select all

--ip-win32 ipapi
but this was not necessary on my WinXP SP3 VM.

finalyl, check that the tap-win32 adapter is not firewalled by some third party firewalling software - that sometimes interferes as well.

Re: openvpn, windows client -> linux server no connection

Posted: Thu Sep 15, 2011 9:04 am
by Kiste_Becks
that did it:
--ip-win32 ipapi




out of curiosity:
someone from #openvpn@freenode already told me to check for dhcp,
but it looks like the tap driver is not showing below:
system, control panel, network connections


ive removed the tap driver from:
right click on "my computer", properties, hardware, device manager, network adapters

and openvpn from add/remove software.

after restart i reinstalled the software, but still theres no tap driver in system, control panel, network connections

Re: openvpn, windows client -> linux server no connection

Posted: Thu Sep 15, 2011 12:40 pm
by janjust
nice to hear it is now working

About the hidden tap-win32 adapter: it depends on how you installed openvpn and the tap-win32 driver; I've seen install packages that auto-hide the tap-win32 adapter . The adapter can be unhidden by modifying a registry key.

Re: openvpn, windows client -> linux server no connection

Posted: Fri Sep 23, 2011 10:09 am
by Kiste_Becks
which key would that be?


just one of those days where the linux solution is obvious and the windows one just sucks.
for example, to see what options are set after install you can list all files for the installed package like this:
apt-file show openvpn

and then look at what files are installed into /etc - because these are the config files.
on the windows site you get left with a blob of data called a registry where even the sanest person goes evil within a matter of minutes.

Re: openvpn, windows client -> linux server no connection

Posted: Fri Sep 23, 2011 12:49 pm
by janjust
the network adapters registered on a windows system are found in

Code: Select all

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}
this is for windows xp; for windows 7 it might be slightly different; each adapter is registered using a number, 0000, 0001, 0002 etc; on my WinXP box the tap-win32 adapter happens to be 0003, but this can vary per Windows installation.

In the 'HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0003' tree I see a key

Code: Select all

ProductName : REG_SZ = 'TAP-Win32 Adapter V9'
and a key

Code: Select all

Characteristics : REG_DWORD = 0x081
A value of 0x81 means the adapter is visible; a value of 0x089 means it is hidden.

Dontcha just love windows ;-) ?