51

Odp: tl-wr842nd najnowszy Gargoyle

Co jest twoim interfejsem wan?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

52

Odp: tl-wr842nd najnowszy Gargoyle

Mój WAN:

eth0.2    Link encap:Ethernet  HWaddr 00:30:4F:17:59:B6
          inet addr:213.108.225.xx  Bcast:213.108.225.255  Mask:255.255.255.0
          UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
          RX packets:843 errors:0 dropped:8 overruns:0 frame:0
          TX packets:440 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:0
          RX bytes:185722 (181.3 KiB)  TX bytes:74363 (72.6 KiB)

53

Odp: tl-wr842nd najnowszy Gargoyle

Szczerze mówiąc nie wiem już jak ugryźć ten openvpn, żeby zaczął działać hmm

54

Odp: tl-wr842nd najnowszy Gargoyle

Najgłupsze rozwiązanie to dodaj sobie start openvpn na starcie z opóźnieniem.

Choć szukaj dlaczego przy starcie nie chce Ci tuna uruchamiać.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

55

Odp: tl-wr842nd najnowszy Gargoyle

z tego co zauważyłem odpala tak jakby niepotrzebnie skrypt z dopiskiem down i dlatego (wydaje mi się), że znika tun, bo gdy go normalnie odpale to działa. Problem jest tylko z tym autostartem przy boocie routera.

Feb 17 22:55:49 Gargoyle daemon.notice openvpn(custom_config)[2543]: OpenVPN 2.2.2 mips-openwrt-linux [SSL] [LZO2] [EPOLL] built on Dec 12 2012
Feb 17 22:55:49 Gargoyle daemon.warn openvpn(custom_config)[2543]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Diffie-Hellman initialized with 1024 bit key
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Control Channel Authentication: using '/etc/openvpn/ta.key' as a OpenVPN static key file
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TLS-Auth MTU parms [ L:1558 D:166 EF:66 EB:0 ET:0 EL:0 ]
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Socket Buffers: R=[163840->131072] S=[163840->131072]
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TUN/TAP device tun0 opened
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TUN/TAP TX queue length set to 100
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: /sbin/ifconfig tun0 10.8.0.1 netmask 255.255.255.0 mtu 1500 broadcast 10.8.0.255
Feb 17 22:55:50 Gargoyle daemon.notice netifd: Interface 'vpn' is now up
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 17 22:55:50 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: /etc/openvpn.up tun0 1500 1558 10.8.0.1 255.255.255.0 init
Feb 17 22:55:50 Gargoyle user.notice root: openvpn up script called
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: Data Channel MTU parms [ L:1558 D:1450 EF:58 EB:135 ET:0 EL:0 AF:3/1 ]
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: UDPv4 link local (bound): [undef]:1194
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: UDPv4 link remote: [undef]
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: TCP/UDP: Closing socket
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: Closing TUN/TAP interface
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: /sbin/ifconfig tun0 0.0.0.0
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: /etc/openvpn.down tun0 1500 1558 10.8.0.1 255.255.255.0 init
Feb 17 22:55:58 Gargoyle daemon.notice netifd: Interface 'vpn' is now down
Feb 17 22:55:58 Gargoyle user.notice root: openvpn down script called
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: OpenVPN 2.2.2 mips-openwrt-linux [SSL] [LZO2] [EPOLL] built on Dec 12 2012
Feb 17 22:56:00 Gargoyle daemon.warn openvpn(custom_config)[3056]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Diffie-Hellman initialized with 1024 bit key
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Control Channel Authentication: using '/etc/openvpn/ta.key' as a OpenVPN static key file
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: TLS-Auth MTU parms [ L:1558 D:166 EF:66 EB:0 ET:0 EL:0 ]
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Socket Buffers: R=[163840->131072] S=[163840->131072]
Feb 17 22:56:00 Gargoyle daemon.err openvpn(custom_config)[3056]: TCP/UDP: Socket bind failed on local address [undef]:1194: Address already in use
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Exiting
Feb 17 22:56:03 Gargoyle user.notice ifup: Enabling Router Solicitations on loopback (lo)
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 17 22:57:17 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 10:55:43 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 20:44:12 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03 xs5eghrsa6th
Feb 18 20:45:48 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPINFORM(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:45:48 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03 xs5eghrsa6th
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.201 00:26:18:46:b0:9f h5zsgxfhsr5
Success

Nie wiem jak odpalić router w sposób selektywny, czy jest w ogóle taka możliwość?

56

Odp: tl-wr842nd najnowszy Gargoyle

Pytanie kontrolne: czy openvpn jak włączyłeś to miałeś już aktywne połączenie na wanie?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

57

Odp: tl-wr842nd najnowszy Gargoyle

rozumiem, że mam sprawdzić czy z wanu pobiera ip przed startem openvpn ? Wiec wklejam całość loga:

Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.560000] usbcore: registered new interface driver ums-sddr09
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.590000] usbcore: registered new interface driver ums-sddr55
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.610000] usbcore: registered new interface driver ums-usbat
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.710000] usbcore: registered new interface driver cdc_ether
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.760000] usbcore: registered new interface driver cdc_ncm
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.870000] USB Serial support registered for GSM modem (1-port)
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.870000] usbcore: registered new interface driver option
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.880000] option: v0.7.2:USB Driver for GSM modems
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.980000] USB Serial support registered for Sierra USB modem
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.980000] usbcore: registered new interface driver sierra
Jan  1 01:00:19 Gargoyle kern.info kernel: [   17.990000] sierra: v.1.7.16:USB Driver for Sierra Wireless USB modems
Jan  1 01:00:19 Gargoyle kern.info kernel: [   18.130000] fuse init (API version 7.18)
Jan  1 01:00:23 Gargoyle kern.debug kernel: [   23.470000] ar71xx: pll_reg 0xb8050014: 0x1a000000
Jan  1 01:00:23 Gargoyle daemon.notice netifd: Interface 'lan' is now up
Jan  1 01:00:23 Gargoyle daemon.notice netifd: Interface 'loopback' is now up
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): udhcpc (v1.19.4) started
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Sending discover...
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Sending select for 213.108.225.xx...
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.770000] eth0: link up (1000Mbps/Full duplex)
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.770000] device eth0.1 entered promiscuous mode
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.780000] device eth0 entered promiscuous mode
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.780000] br-lan: port 1(eth0.1) entered forwarding state
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.790000] br-lan: port 1(eth0.1) entered forwarding state
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Jan  1 01:00:24 Gargoyle daemon.notice netifd: Interface 'wan' is now up
Jan  1 01:00:25 Gargoyle user.notice ifup: Enabling Router Solicitations on lan (br-lan)
Jan  1 01:00:25 Gargoyle kern.info kernel: [   25.790000] br-lan: port 1(eth0.1) entered forwarding state
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.550000] cfg80211: Calling CRDA for country: PL
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.560000] cfg80211: Regulatory domain changed to country: PL
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.560000] cfg80211:   (start_freq - end_freq @ bandwidth), (max_antenna_gain, max_eirp)
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.570000] cfg80211:   (2402000 KHz - 2482000 KHz @ 40000 KHz), (N/A, 2000 mBm)
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.580000] cfg80211:   (5170000 KHz - 5250000 KHz @ 40000 KHz), (N/A, 2000 mBm)
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.590000] cfg80211:   (5250000 KHz - 5330000 KHz @ 40000 KHz), (N/A, 2000 mBm)
Jan  1 01:00:27 Gargoyle kern.info kernel: [   27.590000] cfg80211:   (5490000 KHz - 5710000 KHz @ 40000 KHz), (N/A, 2700 mBm)
Jan  1 01:00:28 Gargoyle user.notice usb-modeswitch: 1-0:1.0: Manufacturer=Linux_3.3.8_ehci_hcd Product=Generic_Platform_EHCI_Controller Serial=ehci-platform
Feb 17 22:54:23 Gargoyle user.info sysinit: Loading defaults
Feb 17 22:54:24 Gargoyle user.info sysinit: Loading synflood protection
Feb 17 22:54:24 Gargoyle user.info sysinit: Adding custom chains
Feb 17 22:54:25 Gargoyle user.info sysinit: Loading zones
Feb 17 22:54:27 Gargoyle user.info sysinit: Loading forwardings
Feb 17 22:54:27 Gargoyle user.info sysinit: Loading rules
Feb 17 22:54:28 Gargoyle user.info sysinit: Loading redirects
Feb 17 22:54:28 Gargoyle user.info sysinit: Loading includes
Feb 17 22:54:30 Gargoyle user.info sysinit: Optimizing conntrack
Feb 17 22:54:31 Gargoyle user.info sysinit: Loading interfaces
Feb 17 22:54:31 Gargoyle user.info firewall: adding lan (br-lan) to zone lan
Feb 17 22:54:34 Gargoyle authpriv.info dropbear[1570]: Running in background
Feb 17 22:54:35 Gargoyle daemon.warn httpd_gargoyle[1619]: started as root without requesting chroot(), warning only
Feb 17 22:54:35 Gargoyle daemon.notice httpd_gargoyle[1619]: httpd_gargoyle/1.0 14mar2008 starting on Gargoyle, port 80
Feb 17 22:55:16 Gargoyle user.notice dnsmasq: DNS rebinding protection is active, will discard upstream RFC1918 responses!
Feb 17 22:55:16 Gargoyle user.notice dnsmasq: Allowing 127.0.0.0/8 responses
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: started, version 2.62 cachesize 150
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: compile time options: IPv6 GNU-getopt no-DBus no-i18n no-IDN DHCP no-DHCPv6 no-Lua TFTP no-conntrack
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCP, IP range 192.168.1.100 -- 192.168.1.249, lease time 12h
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 17 22:55:19 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq[1740]: read /etc/hosts - 2 addresses
Feb 17 22:55:19 Gargoyle daemon.info dnsmasq-dhcp[1740]: read /etc/ethers - 0 addresses
Feb 17 22:55:20 Gargoyle user.err syslog: error starting threads: errno 89 (Function not implemented)
Feb 17 22:55:20 Gargoyle user.info sysinit: exportfs: could not open /var/lib/nfs/.etab.lock for locking: errno 2 (No such file or directory)
Feb 17 22:55:20 Gargoyle user.info sysinit: exportfs: can't lock /var/lib/nfs/etab for writing
Feb 17 22:55:20 Gargoyle user.info sysinit: exportfs: could not open /var/lib/nfs/.xtab.lock for locking: errno 2 (No such file or directory)
Feb 17 22:55:20 Gargoyle user.info sysinit: exportfs: can't lock /var/lib/nfs/xtab for writing
Feb 17 22:55:22 Gargoyle user.info sysinit: ERROR: No valid dynamic DNS service configurations defined
Feb 17 22:55:22 Gargoyle user.info sysinit: (Did you specify correct configuration file path?)
Feb 17 22:55:29 Gargoyle user.notice ifup: Allowing Router Advertisements on wan (eth0.2)
Feb 17 22:55:30 Gargoyle user.info firewall: adding wan (eth0.2) to zone wan
Feb 17 22:55:33 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 17 22:55:33 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 17 22:55:33 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 17 22:55:33 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03 xs5eghrsa6th
Feb 17 22:55:36 Gargoyle kern.warn kernel: [   64.910000] ipt_bandwidth: timezone shift of 60 minutes detected, adjusting
Feb 17 22:55:36 Gargoyle kern.warn kernel: [   64.910000]                old minutes west=0, new minutes west=-60
Feb 17 22:55:47 Gargoyle user.notice root: vsftpd init: mounted = 0
Feb 17 22:55:47 Gargoyle user.info sysinit: ERROR: No drives attached, no directories to share!
Feb 17 22:55:48 Gargoyle user.info sysinit: setting up led USB
Feb 17 22:55:48 Gargoyle user.info sysinit: setting up led WLAN
Feb 17 22:55:49 Gargoyle daemon.notice openvpn(custom_config)[2543]: OpenVPN 2.2.2 mips-openwrt-linux [SSL] [LZO2] [EPOLL] built on Dec 12 2012
Feb 17 22:55:49 Gargoyle daemon.warn openvpn(custom_config)[2543]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Diffie-Hellman initialized with 1024 bit key
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Control Channel Authentication: using '/etc/openvpn/ta.key' as a OpenVPN static key file
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TLS-Auth MTU parms [ L:1558 D:166 EF:66 EB:0 ET:0 EL:0 ]
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: Socket Buffers: R=[163840->131072] S=[163840->131072]
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TUN/TAP device tun0 opened
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: TUN/TAP TX queue length set to 100
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: /sbin/ifconfig tun0 10.8.0.1 netmask 255.255.255.0 mtu 1500 broadcast 10.8.0.255
Feb 17 22:55:50 Gargoyle daemon.notice netifd: Interface 'vpn' is now up
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 17 22:55:50 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 17 22:55:50 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 17 22:55:50 Gargoyle daemon.notice openvpn(custom_config)[2543]: /etc/openvpn.up tun0 1500 1558 10.8.0.1 255.255.255.0 init
Feb 17 22:55:50 Gargoyle user.notice root: openvpn up script called
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: Data Channel MTU parms [ L:1558 D:1450 EF:58 EB:135 ET:0 EL:0 AF:3/1 ]
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: UDPv4 link local (bound): [undef]:1194
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: UDPv4 link remote: [undef]
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: TCP/UDP: Closing socket
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: Closing TUN/TAP interface
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: /sbin/ifconfig tun0 0.0.0.0
Feb 17 22:55:58 Gargoyle daemon.notice openvpn(custom_config)[2543]: /etc/openvpn.down tun0 1500 1558 10.8.0.1 255.255.255.0 init
Feb 17 22:55:58 Gargoyle daemon.notice netifd: Interface 'vpn' is now down
Feb 17 22:55:58 Gargoyle user.notice root: openvpn down script called
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: OpenVPN 2.2.2 mips-openwrt-linux [SSL] [LZO2] [EPOLL] built on Dec 12 2012
Feb 17 22:56:00 Gargoyle daemon.warn openvpn(custom_config)[3056]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Diffie-Hellman initialized with 1024 bit key
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Control Channel Authentication: using '/etc/openvpn/ta.key' as a OpenVPN static key file
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: TLS-Auth MTU parms [ L:1558 D:166 EF:66 EB:0 ET:0 EL:0 ]
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Socket Buffers: R=[163840->131072] S=[163840->131072]
Feb 17 22:56:00 Gargoyle daemon.err openvpn(custom_config)[3056]: TCP/UDP: Socket bind failed on local address [undef]:1194: Address already in use
Feb 17 22:56:00 Gargoyle daemon.notice openvpn(custom_config)[3056]: Exiting
Feb 17 22:56:03 Gargoyle user.notice ifup: Enabling Router Solicitations on loopback (lo)
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 17 22:57:17 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 10:55:43 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 20:44:12 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03 xs5eghrsa6th
Feb 18 20:45:48 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPINFORM(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03
Feb 18 20:45:48 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.207 00:1d:7d:d4:4b:03 xs5eghrsa6th
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:46:11 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.113 00:0e:2e:4d:bb:f7
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPDISCOVER(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPOFFER(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPREQUEST(br-lan) 192.168.1.201 00:26:18:46:b0:9f
Feb 18 20:47:07 Gargoyle daemon.info dnsmasq-dhcp[1740]: DHCPACK(br-lan) 192.168.1.201 00:26:18:46:b0:9f h5zsgxfhsr5
Success


Z tego co widze, to pobiera adres wczesniej

Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): udhcpc (v1.19.4) started
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Sending discover...
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Sending select for 213.108.225.xx...
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.770000] eth0: link up (1000Mbps/Full duplex)
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.770000] device eth0.1 entered promiscuous mode
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.780000] device eth0 entered promiscuous mode
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.780000] br-lan: port 1(eth0.1) entered forwarding state
Jan  1 01:00:24 Gargoyle kern.info kernel: [   23.790000] br-lan: port 1(eth0.1) entered forwarding state
Jan  1 01:00:24 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Jan  1 01:00:24 Gargoyle daemon.notice netifd: Interface 'wan' is now up

ale jest później drugi raz po openvpn

Feb 17 22:57:17 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 03:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 08:54:56 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 10:55:43 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 10:55:43 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 13:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Sending renew...
Feb 18 18:54:57 Gargoyle daemon.notice netifd: wan (776): Lease of 213.108.225.xx obtained, lease time 36000
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: reading /tmp/resolv.conf.auto
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 213.108.225.1#53
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using nameserver 195.222.112.2#53
Feb 18 20:44:12 Gargoyle daemon.warn dnsmasq[1740]: ignoring nameserver 192.168.1.1 - local interface
Feb 18 20:44:12 Gargoyle daemon.info dnsmasq[1740]: using local addresses only for domain lan


Dlaczego robi renew i pobiera 2gi raz ? czy nie odpalanie openvpn jest z tym związane ?

58

Odp: tl-wr842nd najnowszy Gargoyle

>131072]
Feb 17 22:56:00 Gargoyle daemon.err openvpn(custom_config)[3056]: TCP/UDP: Socket bind failed on local address [undef]:1194: Address already in use

Tu jest problem. Normalnie w tym momencie podnosi się tun i jest nadawany adres. U ciebie wyleciał że jest już uruchomiony z rezygnował z podniesienia interfejsu.

Na firewallu, na podniesieniu interfejsu wan jest robiony restart openvpn, stąd to drugie uruchomienie.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

59

Odp: tl-wr842nd najnowszy Gargoyle

Dodaj sobie do /etc/hotplug.d/iface/27-openvpn po sleep 5 a przed restartem openvpn coś takiego:

/sbin/ifconfig tun0 0.0.0.0 down > /dev/null 2>&1

Zrestartuj i zobacz.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

60

Odp: tl-wr842nd najnowszy Gargoyle

ok wypróbuję jutro, nie mogę teraz restarta zrobić. Dzięki i pozdrawiam, napewno dam znać czy pomogło

61

Odp: tl-wr842nd najnowszy Gargoyle

Lub po prostu zwiększ ten sleep np. do 15s.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

62

Odp: tl-wr842nd najnowszy Gargoyle

Do 15s zwiększ. Na wolniejszych sprzętach jeżeli masz wan przez kabel zachodzi problem pomiędzy uruchomieniem systemu /  openvpn a podniesieniem wanu i restartem openvpn. Nie zdąży wszystkiego wykonać do końca.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

63

Odp: tl-wr842nd najnowszy Gargoyle

Zwiększenie sleep do 15s pomogło. Dzięki Cezary, zawsze można liczyć na Ciebie. Ten sam problem występował w 842nd, więc tam także tak zrobię. Pozdrawiam.