konfiguracja clienta openVPN - windows 7
dev tap
proto tcp-client
remote 192.168.178.11 1194
ca ca.crt
cert client1.crt
key client1.key
ns-cert-type server
tls-client
port 1194
persist-tun
persist-key
verb 3
auth SHA1
pull
cipher AES-256-CBC
#auth-nocache
auth-user-pass userpass.txt
logi openvpn - klienta windows 7
Sat Feb 02 19:55:07 2013 OpenVPN 2.3.0 i686-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [IPv6] built on Jan 8 2013
Enter Management Password:
Sat Feb 02 19:55:07 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Sat Feb 02 19:55:07 2013 Need hold release from management interface, waiting...
Sat Feb 02 19:55:07 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Sat Feb 02 19:55:07 2013 MANAGEMENT: CMD 'state on'
Sat Feb 02 19:55:07 2013 MANAGEMENT: CMD 'log all on'
Sat Feb 02 19:55:08 2013 MANAGEMENT: CMD 'hold off'
Sat Feb 02 19:55:08 2013 MANAGEMENT: CMD 'hold release'
Sat Feb 02 19:55:08 2013 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Sat Feb 02 19:55:08 2013 Socket Buffers: R=[8192->8192] S=[8192->8192]
Sat Feb 02 19:55:08 2013 Attempting to establish TCP connection with [AF_INET]192.168.178.11:1194
Sat Feb 02 19:55:08 2013 MANAGEMENT: >STATE:1359831308,TCP_CONNECT,,,
Sat Feb 02 19:55:08 2013 TCP connection established with [AF_INET]192.168.178.11:1194
Sat Feb 02 19:55:08 2013 TCPv4_CLIENT link local: [undef]
Sat Feb 02 19:55:08 2013 TCPv4_CLIENT link remote: [AF_INET]192.168.178.11:1194
Sat Feb 02 19:55:08 2013 MANAGEMENT: >STATE:1359831308,WAIT,,,
Sat Feb 02 19:55:08 2013 MANAGEMENT: >STATE:1359831308,AUTH,,,
Sat Feb 02 19:55:08 2013 TLS: Initial packet from [AF_INET]192.168.178.11:1194, sid=c7582d22 92e6c8f2
Sat Feb 02 19:55:08 2013 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Sat Feb 02 19:55:08 2013 VERIFY OK: depth=1, C=PL, ST=CA, L=Warsaw, O=Tomi, OU=tomi, CN=tomi, name=tomi, emailAddress=admin@xxx.no-ip.org
Sat Feb 02 19:55:08 2013 VERIFY OK: nsCertType=SERVER
Sat Feb 02 19:55:08 2013 VERIFY OK: depth=0, C=PL, ST=CA, L=Warsaw, O=Tomi, OU=tomi, CN=tomi, name=tomi, emailAddress=admin@xxx.no-ip.org
Sat Feb 02 19:55:09 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Sat Feb 02 19:55:09 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Feb 02 19:55:09 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Sat Feb 02 19:55:09 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Feb 02 19:55:09 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
Sat Feb 02 19:55:09 2013 [tomi] Peer Connection Initiated with [AF_INET]192.168.178.11:1194
Sat Feb 02 19:55:10 2013 MANAGEMENT: >STATE:1359831310,GET_CONFIG,,,
Sat Feb 02 19:55:11 2013 SENT CONTROL [tomi]: 'PUSH_REQUEST' (status=1)
Sat Feb 02 19:55:17 2013 SENT CONTROL [tomi]: 'PUSH_REQUEST' (status=1)
Sat Feb 02 19:55:22 2013 SENT CONTROL [tomi]: 'PUSH_REQUEST' (status=1)
Sat Feb 02 19:55:22 2013 PUSH: Received control message: 'PUSH_REPLY,route-gateway 10.8.8.1,ifconfig 10.8.8.3 255.255.255.0'
Sat Feb 02 19:55:22 2013 OPTIONS IMPORT: --ifconfig/up options modified
Sat Feb 02 19:55:22 2013 OPTIONS IMPORT: route-related options modified
Sat Feb 02 19:55:22 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Sat Feb 02 19:55:22 2013 MANAGEMENT: >STATE:1359831322,ASSIGN_IP,,10.8.8.3,
Sat Feb 02 19:55:22 2013 open_tun, tt->ipv6=0
Sat Feb 02 19:55:22 2013 TAP-WIN32 device [Połączenie lokalne 2] opened: \\.\Global\{162431C7-A79B-41CE-B6B6-F26A855025DE}.tap
Sat Feb 02 19:55:22 2013 TAP-Windows Driver Version 9.9
Sat Feb 02 19:55:22 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.8.3/255.255.255.0 on interface {162431C7-A79B-41CE-B6B6-F26A855025DE} [DHCP-serv: 10.8.8.0, lease-time: 31536000]
Sat Feb 02 19:55:22 2013 Successful ARP Flush on interface [27] {162431C7-A79B-41CE-B6B6-F26A855025DE}
Sat Feb 02 19:55:27 2013 TEST ROUTES: 0/0 succeeded len=-1 ret=1 a=0 u/d=up
Sat Feb 02 19:55:27 2013 Initialization Sequence Completed
Sat Feb 02 19:55:27 2013 MANAGEMENT: >STATE:1359831327,CONNECTED,SUCCESS,10.8.8.3,192.168.178.11
Sat Feb 02 20:55:09 2013 TLS: soft reset sec=0 bytes=167274/0 pkts=850/0
Sat Feb 02 20:55:09 2013 VERIFY OK: depth=1, C=PL, ST=CA, L=Warsaw, O=Tomi, OU=tomi, CN=tomi, name=tomi, emailAddress=admin@xxx.no-ip.org
Sat Feb 02 20:55:09 2013 VERIFY OK: nsCertType=SERVER
Sat Feb 02 20:55:09 2013 VERIFY OK: depth=0, C=PL, ST=CA, L=Warsaw, O=Tomi, OU=tomi, CN=tomi, name=tomi, emailAddress=admin@xxxno-ip.org
Sat Feb 02 20:55:10 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Sat Feb 02 20:55:10 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Feb 02 20:55:10 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Sat Feb 02 20:55:10 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Feb 02 20:55:10 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
konfiguracja na Gargoyle
Feb 2 21:00:22 gento daemon.err openvpn(custom_config)[5598]: Connection reset, restarting [0]
Feb 2 21:00:22 gento daemon.notice openvpn(custom_config)[5598]: TCP/UDP: Closing socket
Feb 2 21:00:22 gento daemon.notice openvpn(custom_config)[5598]: SIGUSR1[soft,connection-reset] received, process restarting
Feb 2 21:00:22 gento daemon.notice openvpn(custom_config)[5598]: Restart pause, 5 second(s)
Feb 2 21:00:27 gento daemon.warn openvpn(custom_config)[5598]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Feb 2 21:00:27 gento daemon.warn openvpn(custom_config)[5598]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 2 21:00:27 gento daemon.notice openvpn(custom_config)[5598]: Re-using SSL/TLS context
Feb 2 21:00:27 gento daemon.notice openvpn(custom_config)[5598]: Control Channel MTU parms [ L:1591 D:140 EF:40 EB:0 ET:0 EL:0 ]
Feb 2 21:00:27 gento daemon.notice openvpn(custom_config)[5598]: Socket Buffers: R=[87380->131072] S=[16384->131072]
Feb 2 21:00:27 gento daemon.notice openvpn(custom_config)[5598]: Data Channel MTU parms [ L:1591 D:1450 EF:59 EB:4 ET:32 EL:0 ]
Feb 2 21:00:27 gento daemon.notice openvpn(custom_config)[5598]: Attempting to establish TCP connection with 192.168.178.11:1194 [nonblock]
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: TCP connection established with 192.168.178.11:1194
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: TCPv4_CLIENT link local: [undef]
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: TCPv4_CLIENT link remote: 192.168.178.11:1194
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: TLS: Initial packet from 192.168.178.11:1194, sid=5aeb6c15 bd90740a
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: VERIFY OK: depth=1, /C=PL/ST=CA/L=Warsaw/O=Tomi/OU=tomi/CN=tomi/name=tomi/emailAddress=admin@xxx.no-ip.org
Feb 2 21:00:28 gento daemon.notice openvpn(custom_config)[5598]: VERIFY OK: depth=0, /C=PL/ST=CA/L=Warsaw/O=Tomi/OU=tomi/CN=tomi/name=tomi/emailAddress=admin@xxx.no-ip.org
Feb 2 21:00:30 gento daemon.err openvpn(custom_config)[5598]: Connection reset, restarting [0]
Feb 2 21:00:30 gento daemon.notice openvpn(custom_config)[5598]: TCP/UDP: Closing socket
Feb 2 21:00:30 gento daemon.notice openvpn(custom_config)[5598]: SIGUSR1[soft,connection-reset] received, process restarting
Feb 2 21:00:30 gento daemon.notice openvpn(custom_config)[5598]: Restart pause, 5 second(s)
Feb 2 21:00:35 gento daemon.warn openvpn(custom_config)[5598]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Feb 2 21:00:35 gento daemon.warn openvpn(custom_config)[5598]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 2 21:00:35 gento daemon.notice openvpn(custom_config)[5598]: Re-using SSL/TLS context
Feb 2 21:00:35 gento daemon.notice openvpn(custom_config)[5598]: Control Channel MTU parms [ L:1591 D:140 EF:40 EB:0 ET:0 EL:0 ]
Feb 2 21:00:35 gento daemon.notice openvpn(custom_config)[5598]: Socket Buffers: R=[87380->131072] S=[16384->131072]
Feb 2 21:00:35 gento daemon.notice openvpn(custom_config)[5598]: Data Channel MTU parms [ L:1591 D:1450 EF:59 EB:4 ET:32 EL:0 ]
Feb 2 21:00:35 gento daemon.notice openvpn(custom_config)[5598]: Attempting to establish TCP connection with 192.168.178.11:1194 [nonblock]
Feb 2 21:00:36 gento daemon.notice openvpn(custom_config)[5598]: TCP connection established with 192.168.178.11:1194
Feb 2 21:00:36 gento daemon.notice openvpn(custom_config)[5598]: TCPv4_CLIENT link local: [undef]
Feb 2 21:00:36 gento daemon.notice openvpn(custom_config)[5598]: TCPv4_CLIENT link remote: 192.168.178.11:1194
Feb 2 21:00:36 gento daemon.notice openvpn(custom_config)[5598]: TLS: Initial packet from 192.168.178.11:1194, sid=eaf360cf 7d79626e
Feb 2 21:00:37 gento daemon.notice openvpn(custom_config)[5598]: VERIFY OK: depth=1, /C=PL/ST=CA/L=Warsaw/O=Tomi/OU=tomi/CN=tomi/name=tomi/emailAddress=admin@xxx.no-ip.org
Feb 2 21:00:37 gento daemon.notice openvpn(custom_config)[5598]: VERIFY OK: depth=0, /C=PL/ST=CA/L=Warsaw/O=Tomi/OU=tomi/CN=tomi/name=tomi/emailAddress=admin@xxx.no-ip.org
Feb 2 21:00:39 gento daemon.err openvpn(custom_config)[5598]: Connection reset, restarting [0]
Feb 2 21:00:39 gento daemon.notice openvpn(custom_config)[5598]: TCP/UDP: Closing socket
Feb 2 21:00:39 gento daemon.notice openvpn(custom_config)[5598]: SIGUSR1[soft,connection-reset] received, process restarting
Feb 2 21:00:39 gento daemon.notice openvpn(custom_config)[5598]: Restart pause, 5 second(s)
logi z Gargoyle
root@gento:/etc/openvpn# cat my-vpn.conf
dev tap
proto tcp-client
remote 192.168.178.11 1194
ca /etc/openvpn/ca.crt
cert /etc/openvpn/client2.crt
key /etc/openvpn/client2.key
#ns-cert-type server
tls-client
port 1194
persist-tun
persist-key
verb 3
auth SHA1
#cipher AES-128-CBC
#cipher AES128
cipher AES-256-CBC
pull
auth-user-pass userpass.txt
logi z MT v. 5.3
21:01:18 ovpn,info <ovpn-0>: dialing...
21:01:21 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:01:21 ovpn,info <ovpn-0>: disconnected
21:01:26 ovpn,info TCP connection established from 192.168.178.10
21:01:26 ovpn,info <ovpn-0>: dialing...
21:01:30 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:01:30 ovpn,info <ovpn-0>: disconnected
21:01:35 ovpn,info TCP connection established from 192.168.178.10
21:01:35 ovpn,info <ovpn-0>: dialing...
21:01:38 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:01:38 ovpn,info <ovpn-0>: disconnected
21:01:43 ovpn,info TCP connection established from 192.168.178.10
21:01:43 ovpn,info <ovpn-0>: dialing...
21:01:47 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:01:47 ovpn,info <ovpn-0>: disconnected
21:01:52 ovpn,info TCP connection established from 192.168.178.10
21:01:52 ovpn,info <ovpn-0>: dialing...
21:01:55 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:01:55 ovpn,info <ovpn-0>: disconnected
21:02:00 ovpn,info TCP connection established from 192.168.178.10
21:02:00 ovpn,info <ovpn-0>: dialing...
21:02:04 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:02:04 ovpn,info <ovpn-0>: disconnected
21:02:09 ovpn,info TCP connection established from 192.168.178.10
21:02:09 ovpn,info <ovpn-0>: dialing...
21:02:13 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:02:13 ovpn,info <ovpn-0>: disconnected
21:02:18 ovpn,info TCP connection established from 192.168.178.10
21:02:18 ovpn,info <ovpn-0>: dialing...
21:02:21 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:02:21 ovpn,info <ovpn-0>: disconnected
21:02:26 ovpn,info TCP connection established from 192.168.178.10
21:02:26 ovpn,info <ovpn-0>: dialing...
21:02:30 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:02:30 ovpn,info <ovpn-0>: disconnected
21:02:35 ovpn,info TCP connection established from 192.168.178.10
21:02:35 ovpn,info <ovpn-0>: dialing...
21:02:39 ovpn,info <ovpn-0>: terminating... - unkown auth alg
21:02:39 ovpn,info <ovpn-0>: disconnected
21:02:39 system,info,account user admin logged in via local
cipher próbowałem na sto różnych sposobów zmieniać ale bez rezultatów
Może ty Cezary wpadniesz na coś. Podpowiedz coś.