Temat: OpenVPN w trybie TUN, rozłącza, sieć jest niezidentyfikowana
Witam, utworzyłem połączenie VPN według poradnika"OpenWrt - konfiguracja serwera OpenVPN w trybie TUN" bez sekcji "Przekierowanie całego ruchu klientów przez tunel vpn". Mam teraz taki problem, że połączenie jest zrywane, a sieć jest niezidentyfikowana publiczna. Jak temu zaradzić?
Łączyłem się do IP lokalnego i zewnętrznego. Na obu jest ten sam problem. Konfiguracja OpenVPN wygląda następująco:
client
ca "C:\\Program Files\\OpenVPN\\config\\ca.crt"
cert "C:\\Program Files\\OpenVPN\\config\\asrock-karnas-local.crt"
dev tun
key "C:\\Program Files\\OpenVPN\\config\\asrock-karnas-local.key"
log "C:\\Program Files\\OpenVPN\\config\\openvpn.log"
proto udp
remote 192.168.1.1 1194
remote-cert-tls server
verb 3Status połączenia:
Mon Nov 07 20:30:33 2016 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.0.6/255.255.255.252 on interface {D676A980-8577-4EF1-9F3B-29AD769C07B3} [DHCP-serv: 10.8.0.5, lease-time: 31536000]
Mon Nov 07 20:30:33 2016 Successful ARP Flush on interface [24] {D676A980-8577-4EF1-9F3B-29AD769C07B3}
Mon Nov 07 20:30:38 2016 TEST ROUTES: 2/2 succeeded len=2 ret=1 a=0 u/d=up
Mon Nov 07 20:30:38 2016 MANAGEMENT: >STATE:1478547038,ADD_ROUTES,,,
Mon Nov 07 20:30:38 2016 C:\Windows\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 10.8.0.5
Mon Nov 07 20:30:38 2016 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=35 and dwForwardType=4
Mon Nov 07 20:30:38 2016 Route addition via IPAPI succeeded [adaptive]
Mon Nov 07 20:30:38 2016 C:\Windows\system32\route.exe ADD 10.8.0.1 MASK 255.255.255.255 10.8.0.5
Mon Nov 07 20:30:38 2016 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=35 and dwForwardType=4
Mon Nov 07 20:30:38 2016 Route addition via IPAPI succeeded [adaptive]
Mon Nov 07 20:30:38 2016 Initialization Sequence Completed
Mon Nov 07 20:30:38 2016 MANAGEMENT: >STATE:1478547038,CONNECTED,SUCCESS,10.8.0.6,192.168.1.1
Mon Nov 07 20:32:33 2016 [OpenWrt Server] Inactivity timeout (--ping-restart), restarting
Mon Nov 07 20:32:33 2016 C:\Windows\system32\route.exe DELETE 10.8.0.1 MASK 255.255.255.255 10.8.0.5
Mon Nov 07 20:32:33 2016 Route deletion via IPAPI succeeded [adaptive]
Mon Nov 07 20:32:33 2016 C:\Windows\system32\route.exe DELETE 192.168.1.0 MASK 255.255.255.0 10.8.0.5
Mon Nov 07 20:32:33 2016 Route deletion via IPAPI succeeded [adaptive]
Mon Nov 07 20:32:33 2016 Closing TUN/TAP interface
Mon Nov 07 20:32:33 2016 SIGUSR1[soft,ping-restart] received, process restarting
Mon Nov 07 20:32:33 2016 MANAGEMENT: >STATE:1478547153,RECONNECTING,ping-restart,,
Mon Nov 07 20:32:33 2016 Restart pause, 2 second(s)
Mon Nov 07 20:32:35 2016 Socket Buffers: R=[65536->65536] S=[65536->65536]
Mon Nov 07 20:32:35 2016 UDPv4 link local (bound): [undef]
Mon Nov 07 20:32:35 2016 UDPv4 link remote: [AF_INET]192.168.1.1:1194
Mon Nov 07 20:32:35 2016 MANAGEMENT: >STATE:1478547155,WAIT,,,
Mon Nov 07 20:32:35 2016 MANAGEMENT: >STATE:1478547155,AUTH,,,
Mon Nov 07 20:32:35 2016 TLS: Initial packet from [AF_INET]192.168.1.1:1194, sid=8bb5374b ce7151df
Mon Nov 07 20:32:36 2016 VERIFY OK: depth=1, C=PL, ST=Greater Poland, L=Rawicz, O=Home, OU=Home, CN=OpenWrt Server, name=Router, emailAddress=wojciech.karnasiewicz@outlook.com
Mon Nov 07 20:32:36 2016 Validating certificate key usage
Mon Nov 07 20:32:36 2016 ++ Certificate has key usage 00a0, expects 00a0
Mon Nov 07 20:32:36 2016 VERIFY KU OK
Mon Nov 07 20:32:36 2016 Validating certificate extended key usage
Mon Nov 07 20:32:36 2016 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Mon Nov 07 20:32:36 2016 VERIFY EKU OK
Mon Nov 07 20:32:36 2016 VERIFY OK: depth=0, C=PL, ST=Greater Poland, L=Rawicz, O=Home, OU=Home, CN=OpenWrt Server, name=Router, emailAddress=wojciech.karnasiewicz@outlook.com
Mon Nov 07 20:32:36 2016 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Nov 07 20:32:36 2016 WARNING: this cipher's block size is less than 128 bit (64 bit). Consider using a --cipher with a larger block size.
Mon Nov 07 20:32:36 2016 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 07 20:32:36 2016 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Nov 07 20:32:36 2016 WARNING: this cipher's block size is less than 128 bit (64 bit). Consider using a --cipher with a larger block size.
Mon Nov 07 20:32:36 2016 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 07 20:32:36 2016 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
Mon Nov 07 20:32:36 2016 [OpenWrt Server] Peer Connection Initiated with [AF_INET]192.168.1.1:1194
Mon Nov 07 20:32:37 2016 MANAGEMENT: >STATE:1478547157,GET_CONFIG,,,
Mon Nov 07 20:32:39 2016 SENT CONTROL [OpenWrt Server]: 'PUSH_REQUEST' (status=1)
Mon Nov 07 20:32:39 2016 PUSH: Received control message: 'PUSH_REPLY,route 192.168.1.0 255.255.255.0,route 10.8.0.1,topology net30,ifconfig 10.8.0.6 10.8.0.5'
Mon Nov 07 20:32:39 2016 OPTIONS IMPORT: --ifconfig/up options modified
Mon Nov 07 20:32:39 2016 OPTIONS IMPORT: route options modified
Mon Nov 07 20:32:39 2016 ROUTE_GATEWAY 192.168.1.1/255.255.255.0 I=17 HWADDR=d0:50:99:2e:3c:c1
Mon Nov 07 20:32:39 2016 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Mon Nov 07 20:32:39 2016 MANAGEMENT: >STATE:1478547159,ASSIGN_IP,,10.8.0.6,
Mon Nov 07 20:32:39 2016 open_tun, tt->ipv6=0
Mon Nov 07 20:32:39 2016 TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{D676A980-8577-4EF1-9F3B-29AD769C07B3}.tap
Mon Nov 07 20:32:39 2016 TAP-Windows Driver Version 9.21
Mon Nov 07 20:32:39 2016 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.0.6/255.255.255.252 on interface {D676A980-8577-4EF1-9F3B-29AD769C07B3} [DHCP-serv: 10.8.0.5, lease-time: 31536000]
Mon Nov 07 20:32:39 2016 Successful ARP Flush on interface [24] {D676A980-8577-4EF1-9F3B-29AD769C07B3}
Mon Nov 07 20:32:44 2016 TEST ROUTES: 2/2 succeeded len=2 ret=1 a=0 u/d=up
Mon Nov 07 20:32:44 2016 MANAGEMENT: >STATE:1478547164,ADD_ROUTES,,,
Mon Nov 07 20:32:44 2016 C:\Windows\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 10.8.0.5
Mon Nov 07 20:32:44 2016 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=35 and dwForwardType=4
Mon Nov 07 20:32:44 2016 Route addition via IPAPI succeeded [adaptive]
Mon Nov 07 20:32:44 2016 C:\Windows\system32\route.exe ADD 10.8.0.1 MASK 255.255.255.255 10.8.0.5
Mon Nov 07 20:32:44 2016 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=35 and dwForwardType=4
Mon Nov 07 20:32:44 2016 Route addition via IPAPI succeeded [adaptive]
Mon Nov 07 20:32:44 2016 Initialization Sequence Completed
Mon Nov 07 20:32:44 2016 MANAGEMENT: >STATE:1478547164,CONNECTED,SUCCESS,10.8.0.6,192.168.1.1