Temat: OpenVPN nie do końca działa

Witam. Mam skonfigurowane OpenVPN na GG 1.6.2.2 (r42647), by obsy jak poniżej:
https://lh5.googleusercontent.com/-5yPNePvUYxk/VGITNyIhFsI/AAAAAAAAACw/wHS4dnDTLdo/w1152-h770-no/openvpn.jpg
na komputerze w kliencie windows status taki:

Tue Nov 11 13:59:30 2014 Warning: cannot open --log file: C:\Program Files\OpenVPN\log\klient1.log: Odmowa dostêpu.   (errno=5)
Tue Nov 11 13:59:30 2014 OpenVPN 2.3.5 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Nov  7 2014
Tue Nov 11 13:59:30 2014 library versions: OpenSSL 1.0.1j 15 Oct 2014, LZO 2.05
Tue Nov 11 13:59:30 2014 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Tue Nov 11 13:59:30 2014 Need hold release from management interface, waiting...
Tue Nov 11 13:59:30 2014 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Tue Nov 11 13:59:30 2014 MANAGEMENT: CMD 'state on'
Tue Nov 11 13:59:30 2014 MANAGEMENT: CMD 'log all on'
Tue Nov 11 13:59:30 2014 MANAGEMENT: CMD 'hold off'
Tue Nov 11 13:59:30 2014 MANAGEMENT: CMD 'hold release'
Tue Nov 11 13:59:30 2014 Note: cannot open current_status for WRITE
Tue Nov 11 13:59:31 2014 Control Channel Authentication: using 'ta.key' as a OpenVPN static key file
Tue Nov 11 13:59:31 2014 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Nov 11 13:59:31 2014 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Nov 11 13:59:31 2014 Socket Buffers: R=[8192->8192] S=[8192->8192]
Tue Nov 11 13:59:31 2014 UDPv4 link local: [undef]
Tue Nov 11 13:59:31 2014 UDPv4 link remote: [AF_INET]89.25.250.155:1194
Tue Nov 11 13:59:31 2014 MANAGEMENT: >STATE:1415710771,WAIT,,,
Tue Nov 11 13:59:31 2014 MANAGEMENT: >STATE:1415710771,AUTH,,,
Tue Nov 11 13:59:31 2014 TLS: Initial packet from [AF_INET]89.25.250.155:1194, sid=12e86c8d efd91d1e
Tue Nov 11 13:59:35 2014 VERIFY OK: depth=1, C=??, ST=UnknownProvince, L=UnknownCity, O=UnknownOrg, OU=UnknownOrgUnit, CN=dblplxwnzxlgles, name=dblplxwnzxlgles, 

emailAddress=dblplxwnzxlgles@hxznskguppdnfrd.com
Tue Nov 11 13:59:35 2014 VERIFY OK: nsCertType=SERVER
Tue Nov 11 13:59:35 2014 VERIFY OK: depth=0, C=??, ST=UnknownProvince, L=UnknownCity, O=UnknownOrg, OU=UnknownOrgUnit, CN=dblplxwnzxlgles, name=dblplxwnzxlgles, 

emailAddress=dblplxwnzxlgles@hxznskguppdnfrd.com
Tue Nov 11 13:59:39 2014 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Tue Nov 11 13:59:39 2014 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Nov 11 13:59:39 2014 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Tue Nov 11 13:59:39 2014 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Nov 11 13:59:39 2014 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Tue Nov 11 13:59:39 2014 [dblplxwnzxlgles] Peer Connection Initiated with [AF_INET]89.25.250.155:1194
Tue Nov 11 13:59:40 2014 MANAGEMENT: >STATE:1415710780,GET_CONFIG,,,
Tue Nov 11 13:59:41 2014 SENT CONTROL [dblplxwnzxlgles]: 'PUSH_REQUEST' (status=1)
Tue Nov 11 13:59:42 2014 PUSH: Received control message: 'PUSH_REPLY,topology subnet,route-gateway 10.8.0.1,redirect-gateway def1,ping 25,ping-restart 180,route 192.168.1.0 

255.255.255.0 10.8.0.1,ifconfig 10.8.0.2 255.255.255.0'
Tue Nov 11 13:59:42 2014 OPTIONS IMPORT: timers and/or timeouts modified
Tue Nov 11 13:59:42 2014 OPTIONS IMPORT: --ifconfig/up options modified
Tue Nov 11 13:59:42 2014 OPTIONS IMPORT: route options modified
Tue Nov 11 13:59:42 2014 OPTIONS IMPORT: route-related options modified
Tue Nov 11 13:59:42 2014 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Tue Nov 11 13:59:42 2014 MANAGEMENT: >STATE:1415710782,ASSIGN_IP,,10.8.0.2,
Tue Nov 11 13:59:42 2014 open_tun, tt->ipv6=0
Tue Nov 11 13:59:42 2014 TAP-WIN32 device [Połączenie lokalne 3] opened: \\.\Global\{6E29E320-AB09-484C-8191-2B668CD0335A}.tap
Tue Nov 11 13:59:42 2014 TAP-Windows Driver Version 9.21 
Tue Nov 11 13:59:42 2014 Set TAP-Windows TUN subnet mode network/local/netmask = 10.8.0.0/10.8.0.2/255.255.255.0 [SUCCEEDED]
Tue Nov 11 13:59:42 2014 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.8.0.2/255.255.255.0 on interface {6E29E320-AB09-484C-8191-2B668CD0335A} [DHCP-serv: 

10.8.0.254, lease-time: 31536000]
Tue Nov 11 13:59:42 2014 NOTE: FlushIpNetTable failed on interface [19] {6E29E320-AB09-484C-8191-2B668CD0335A} (status=5) : Odmowa dostêpu.  
Tue Nov 11 13:59:47 2014 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=up
Tue Nov 11 13:59:47 2014 C:\Windows\system32\route.exe ADD 89.25.250.155 MASK 255.255.255.255 110.0.0.254
Tue Nov 11 13:59:47 2014 ROUTE: route addition failed using CreateIpForwardEntry: Odmowa dostêpu.   [status=5 if_index=13]
Tue Nov 11 13:59:47 2014 Route addition via IPAPI failed [adaptive]
Tue Nov 11 13:59:47 2014 Route addition fallback to route.exe
Tue Nov 11 13:59:47 2014 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Tue Nov 11 13:59:47 2014 ERROR: Windows route add command failed [adaptive]: returned error code 1
Tue Nov 11 13:59:47 2014 C:\Windows\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.8.0.1
Tue Nov 11 13:59:47 2014 ROUTE: route addition failed using CreateIpForwardEntry: Odmowa dostêpu.   [status=5 if_index=19]
Tue Nov 11 13:59:47 2014 Route addition via IPAPI failed [adaptive]
Tue Nov 11 13:59:47 2014 Route addition fallback to route.exe
Tue Nov 11 13:59:47 2014 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Tue Nov 11 13:59:48 2014 ERROR: Windows route add command failed [adaptive]: returned error code 1
Tue Nov 11 13:59:48 2014 C:\Windows\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.8.0.1
Tue Nov 11 13:59:48 2014 ROUTE: route addition failed using CreateIpForwardEntry: Odmowa dostêpu.   [status=5 if_index=19]
Tue Nov 11 13:59:48 2014 Route addition via IPAPI failed [adaptive]
Tue Nov 11 13:59:48 2014 Route addition fallback to route.exe
Tue Nov 11 13:59:48 2014 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Tue Nov 11 13:59:48 2014 ERROR: Windows route add command failed [adaptive]: returned error code 1
Tue Nov 11 13:59:48 2014 MANAGEMENT: >STATE:1415710788,ADD_ROUTES,,,
Tue Nov 11 13:59:48 2014 C:\Windows\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 10.8.0.1
Tue Nov 11 13:59:48 2014 ROUTE: route addition failed using CreateIpForwardEntry: Odmowa dostêpu.   [status=5 if_index=19]
Tue Nov 11 13:59:48 2014 Route addition via IPAPI failed [adaptive]
Tue Nov 11 13:59:48 2014 Route addition fallback to route.exe
Tue Nov 11 13:59:48 2014 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
Tue Nov 11 13:59:48 2014 ERROR: Windows route add command failed [adaptive]: returned error code 1
Tue Nov 11 13:59:48 2014 Initialization Sequence Completed
Tue Nov 11 13:59:48 2014 MANAGEMENT: >STATE:1415710788,CONNECTED,SUCCESS,10.8.0.2,89.25.250.155

No i problem taki że w GUI gargoyle widze podłączonego klienta jednak u mnie po stronie klienta nie działa VPN, nie mogę np się połączyc z routerem po jego lokalnym IP, z innymi zasobami sieci. Nie mogę się połączyć z poblokowanymi serwisami jak gmail, youtobe, google. Sprawa jest pilna bo przebywam teraz w państwie dalekiego wschodu i będę wdzięczny za pomoc w uruchomieniu tego VPN...
Dziekuję

2

Odp: OpenVPN nie do końca działa

Nie uruchomiłeś klienta openvpn jako administrator. Masz pełno informacji o odmowie dostępu do routingu.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

3

Odp: OpenVPN nie do końca działa

no nie do końca pomaga. Uruchomiłem jako administrator i tylko znikły te błędy ale komunikacji nadal nie ma. Połączony z routerem jest bo widać klienta w gui gargoyle

4 (edytowany przez kamillo 2014-11-24 14:32:11)

Odp: OpenVPN nie do końca działa

witam. nadal mam problemy z tym vpn... aktualnie wygląda tak że jestem połączony i mogę zalogować się na router poprzez lokalne IP. Mam dostęp do serwera w sieci lokalnej. Ale nie działa mi internet tzn przeglądanie stron www jak jestem połączony po tym vpn. Co mogłem sknocić?
moja konfiguracja:
https://lh4.googleusercontent.com/-0N6TyBfm3iQ/VHMwhp96G1I/AAAAAAAAAAk/qSjUQtcXOE4/w512-h889-no/vpn.jpg
mam dwie sieci jedna lan tak w której teraz jestem a druga którą utworzył openvpn i na niej wyświetla mi brak dostępu do internetu. Moge pingować 192.168.1.1 oraz 10.8.0.2.

root@Gargoyle:~# logread
Nov 24 13:39:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:41:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:43:18 Gargoyle daemon.info hostapd: wlan0: STA 00:22:58:50:5b:86 WPA:                                                                                                                                                              group key handshake completed (RSN)
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:44:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:39 Gargoyle daemon.info hostapd: wlan0: STA 38:0b:40:56:bd:a3 IEEE                                                                                                                                                              802.11: authenticated
Nov 24 13:46:39 Gargoyle daemon.info hostapd: wlan0: STA 38:0b:40:56:bd:a3 IEEE                                                                                                                                                              802.11: associated (aid 2)
Nov 24 13:46:39 Gargoyle daemon.info hostapd: wlan0: STA 38:0b:40:56:bd:a3 WPA:                                                                                                                                                              pairwise key handshake completed (RSN)
Nov 24 13:46:40 Gargoyle daemon.info dnsmasq-dhcp[2182]: DHCPREQUEST(br-lan) 192                                                                                                                                                             .168.1.149 38:0b:40:56:bd:a3
Nov 24 13:46:40 Gargoyle daemon.info dnsmasq-dhcp[2182]: DHCPACK(br-lan) 192.168                                                                                                                                                             .1.149 38:0b:40:56:bd:a3 android-fe6a184452a97732
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:46:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:47:13 Gargoyle daemon.err openvpn(custom_config)[4275]: TLS Error: can                                                                                                                                                             not locate HMAC in incoming packet from 49.74.192.95:13268
Nov 24 13:47:13 Gargoyle daemon.err openvpn(custom_config)[4275]: TLS Error: can                                                                                                                                                             not locate HMAC in incoming packet from 123.158.61.33:43480
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:49:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:16 Gargoyle daemon.notice openvpn(custom_config)[4275]: kamil/61.16                                                                                                                                                             1.175.150:55977 Replay-window backtrack occurred [2]
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:51:44 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:53:18 Gargoyle daemon.info hostapd: wlan0: STA 00:22:58:50:5b:86 WPA:                                                                                                                                                              group key handshake completed (RSN)
Nov 24 13:53:18 Gargoyle daemon.info hostapd: wlan0: STA 38:0b:40:56:bd:a3 WPA:                                                                                                                                                              group key handshake completed (RSN)
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:54:15 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:56:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:57:46 Gargoyle daemon.err openvpn(custom_config)[4275]: TLS Error: can                                                                                                                                                             not locate HMAC in incoming packet from 111.113.160.66:9780
Nov 24 13:57:46 Gargoyle daemon.err openvpn(custom_config)[4275]: TLS Error: can                                                                                                                                                             not locate HMAC in incoming packet from 114.97.78.112:10404
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: mult                                                                                                                                                             i_create_instance called
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Re-using SSL/TLS context
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 LZO compression initialized
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Control Channel MTU parms [ L:1542 D:166 EF:66 EB:0 ET:0 EL:0 ]
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Nov 24 13:58:35 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 TLS: Initial packet from 61.161.175.150:65004, sid=f9435d52 235d2ed2
Nov 24 13:58:42 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 VERIFY OK: depth=1, /C=__/ST=UnknownProvince/L=UnknownCity/O=UnknownOr                                                                                                                                                             g/OU=UnknownOrgUnit/CN=dblplxwnzxlgles/name=dblplxwnzxlgles/emailAddress=dblplxw                                                                                                                                                             nzxlgles@hxznskguppdnfrd.com
Nov 24 13:58:42 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 VERIFY OK: depth=0, /C=__/ST=UnknownProvince/L=UnknownCity/O=UnknownOr                                                                                                                                                             g/OU=UnknownOrgUnit/CN=kamil/name=kamil/emailAddress=kamil@.com
Nov 24 13:58:50 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Nov 24 13:58:50 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authe                                                                                                                                                             ntication
Nov 24 13:58:50 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Nov 24 13:58:50 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authe                                                                                                                                                             ntication
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bi                                                                                                                                                             t RSA
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: 61.161.175.                                                                                                                                                             150:65004 [kamil] Peer Connection Initiated with 61.161.175.150:65004
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: new                                                                                                                                                              connection by client 'kamil' will cause previous active sessions by this client                                                                                                                                                              to be dropped.  Remember to use the --duplicate-cn option if you want multiple c                                                                                                                                                             lients using the same certificate
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: OPTIONS IMP                                                                                                                                                             ORT: reading client specific options from: /etc/openvpn/ccd/kamil
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: Lear                                                                                                                                                             n: 10.8.0.2 -> kamil/61.161.175.150:65004
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: prim                                                                                                                                                             ary virtual IP for kamil/61.161.175.150:65004: 10.8.0.2
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: inte                                                                                                                                                             rnal route 192.168.2.0/24 -> kamil/61.161.175.150:65004
Nov 24 13:58:53 Gargoyle daemon.notice openvpn(custom_config)[4275]: MULTI: Lear                                                                                                                                                             n: 192.168.2.0/24 -> kamil/61.161.175.150:65004
Nov 24 13:58:56 Gargoyle daemon.notice openvpn(custom_config)[4275]: kamil/61.16                                                                                                                                                             1.175.150:65004 PUSH: Received control message: 'PUSH_REQUEST'
Nov 24 13:58:56 Gargoyle daemon.notice openvpn(custom_config)[4275]: kamil/61.16                                                                                                                                                             1.175.150:65004 SENT CONTROL [kamil]: 'PUSH_REPLY,topology subnet,route-gateway                                                                                                                                                              10.8.0.1,redirect-gateway def1,ping 25,ping-restart 180,route 192.168.1.0 255.25                                                                                                                                                             5.255.0 10.8.0.1,ifconfig 10.8.0.2
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 13:59:14 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:01:45 Gargoyle daemon.warn miniupnpd[4347]: SSDP packet sender 192.168                                                                                                                                                             .3.1:2048 not from a LAN, ignoring
Nov 24 14:02:33 Gargoyle daemon.info dnsmasq-dhcp[2182]: DHCPINFORM(br-lan) 192.                                                                                                                                                             168.1.180 60:36:dd:58:22:c6
Nov 24 14:02:33 Gargoyle daemon.info dnsmasq-dhcp[2182]: DHCPACK(br-lan) 192.168                                                                                                                                                             .1.180 60:36:dd:58:22:c6 Tomasz-Komputer
Nov 24 14:02:54 Gargoyle authpriv.info dropbear[5592]: Child connection from 61.                                                                                                                                                             161.175.150:49506
Nov 24 14:03:03 Gargoyle authpriv.notice dropbear[5592]: Password auth succeeded                                                                                                                                                              for 'root' from 61.161.175.150:49506

logi openvpn

Mon Nov 24 13:55:59 2014 OpenVPN 2.1.4 i686-pc-mingw32 [SSL] [LZO2] [PKCS11] built on Nov  8 2010
Mon Nov 24 13:55:59 2014 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Mon Nov 24 13:56:00 2014 Control Channel Authentication: using 'ta.key' as a OpenVPN static key file
Mon Nov 24 13:56:00 2014 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 24 13:56:00 2014 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 24 13:56:00 2014 LZO compression initialized
Mon Nov 24 13:56:00 2014 Control Channel MTU parms [ L:1542 D:166 EF:66 EB:0 ET:0 EL:0 ]
Mon Nov 24 13:56:00 2014 Socket Buffers: R=[8192->8192] S=[8192->8192]
Mon Nov 24 13:56:00 2014 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Mon Nov 24 13:56:00 2014 Local Options hash (VER=V4): '504e774e'
Mon Nov 24 13:56:00 2014 Expected Remote Options hash (VER=V4): '14168603'
Mon Nov 24 13:56:00 2014 UDPv4 link local: [undef]
Mon Nov 24 13:56:00 2014 UDPv4 link remote: 89.25.250.35:1194
Mon Nov 24 13:56:00 2014 TLS: Initial packet from 89.25.250.35:1194, sid=1754e34d 83f09e10
Mon Nov 24 13:56:03 2014 Replay-window backtrack occurred [1]
Mon Nov 24 13:56:03 2014 VERIFY OK: depth=1, /C=__/ST=UnknownProvince/L=UnknownCity/O=UnknownOrg/OU=UnknownOrgUnit/CN=dblplxwnzxlgles/name=dblplxwnzxlgles/emailAddress=dblplxwnzxlgles@hxznskguppdnfrd.com
Mon Nov 24 13:56:03 2014 VERIFY OK: nsCertType=SERVER
Mon Nov 24 13:56:03 2014 VERIFY OK: depth=0, /C=__/ST=UnknownProvince/L=UnknownCity/O=UnknownOrg/OU=UnknownOrgUnit/CN=dblplxwnzxlgles/name=dblplxwnzxlgles/emailAddress=dblplxwnzxlgles@hxznskguppdnfrd.com
Mon Nov 24 13:56:18 2014 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Nov 24 13:56:18 2014 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 24 13:56:18 2014 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Mon Nov 24 13:56:18 2014 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Nov 24 13:56:18 2014 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Mon Nov 24 13:56:18 2014 [dblplxwnzxlgles] Peer Connection Initiated with 89.25.250.35:1194
Mon Nov 24 13:56:20 2014 SENT CONTROL [dblplxwnzxlgles]: 'PUSH_REQUEST' (status=1)
Mon Nov 24 13:56:21 2014 PUSH: Received control message: 'PUSH_REPLY,topology subnet,route-gateway 10.8.0.1,redirect-gateway def1,ping 25,ping-restart 180,route 192.168.1.0 255.255.255.0 10.8.0.1,ifconfig 10.8.0.2 255.255.255.0'
Mon Nov 24 13:56:21 2014 OPTIONS IMPORT: timers and/or timeouts modified
Mon Nov 24 13:56:21 2014 OPTIONS IMPORT: --ifconfig/up options modified
Mon Nov 24 13:56:21 2014 OPTIONS IMPORT: route options modified
Mon Nov 24 13:56:21 2014 OPTIONS IMPORT: route-related options modified
Mon Nov 24 13:56:21 2014 ROUTE default_gateway=110.0.0.254
Mon Nov 24 13:56:21 2014 TAP-WIN32 device [Połączenie lokalne 3] opened: \\.\Global\{9F6F9270-CE7F-4C08-9917-42C8B7B7A26D}.tap
Mon Nov 24 13:56:21 2014 TAP-Win32 Driver Version 9.7 
Mon Nov 24 13:56:21 2014 TAP-Win32 MTU=1500
Mon Nov 24 13:56:21 2014 Set TAP-Win32 TUN subnet mode network/local/netmask = 10.8.0.0/10.8.0.2/255.255.255.0 [SUCCEEDED]
Mon Nov 24 13:56:21 2014 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.8.0.2/255.255.255.0 on interface {9F6F9270-CE7F-4C08-9917-42C8B7B7A26D} [DHCP-serv: 10.8.0.254, lease-time: 31536000]
Mon Nov 24 13:56:21 2014 Successful ARP Flush on interface [20] {9F6F9270-CE7F-4C08-9917-42C8B7B7A26D}
Mon Nov 24 13:56:26 2014 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=up
Mon Nov 24 13:56:26 2014 C:\WINDOWS\system32\route.exe ADD 89.25.250.35 MASK 255.255.255.255 110.0.0.254
Mon Nov 24 13:56:26 2014 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
Mon Nov 24 13:56:26 2014 Route addition via IPAPI succeeded [adaptive]
Mon Nov 24 13:56:26 2014 C:\WINDOWS\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.8.0.1
Mon Nov 24 13:56:26 2014 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4
Mon Nov 24 13:56:26 2014 Route addition via IPAPI succeeded [adaptive]
Mon Nov 24 13:56:26 2014 C:\WINDOWS\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.8.0.1
Mon Nov 24 13:56:26 2014 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4
Mon Nov 24 13:56:26 2014 Route addition via IPAPI succeeded [adaptive]
Mon Nov 24 13:56:26 2014 C:\WINDOWS\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 10.8.0.1
Mon Nov 24 13:56:26 2014 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4
Mon Nov 24 13:56:26 2014 Route addition via IPAPI succeeded [adaptive]
Mon Nov 24 13:56:26 2014 Initialization Sequence Completed

ipconfig

Microsoft Windows [Wersja 6.1.7601]


Konfiguracja IP systemu Windows


Karta Ethernet Połączenie lokalne 3:

   Sufiks DNS konkretnego połączenia :
   Adres IPv6 połączenia lokalnego . : fe80::1d4:18d:bfce:d158%20
   Adres IPv4. . . . . . . . . . . . . : 10.8.0.2
   Maska podsieci. . . . . . . . . . : 255.255.255.0
   Brama domyślna. . . . . . . . . . :

Karta bezprzewodowej sieci LAN Połączenie sieci bezprzewodowej 3:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Karta bezprzewodowej sieci LAN Połączenie sieci bezprzewodowej 2:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Karta bezprzewodowej sieci LAN Połączenie sieci bezprzewodowej:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Karta Ethernet Połączenie lokalne:

   Sufiks DNS konkretnego połączenia :
   Adres IPv6 połączenia lokalnego . : fe80::451:41a:1770:2b0d%13
   Adres IPv4. . . . . . . . . . . . . : 110.0.0.38
   Maska podsieci. . . . . . . . . . : 255.255.255.0
   Brama domyślna. . . . . . . . . . : 110.0.0.254

Karta tunelowa Teredo Tunneling Pseudo-Interface:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Karta tunelowa 6TO4 Adapter:

   Sufiks DNS konkretnego połączenia :
   Adres IPv6. . . . . . . . . . . . : 2002:6e00:26::6e00:26
   Brama domyślna. . . . . . . . . . :

Karta tunelowa isatap.{9F6F9270-CE7F-4C08-9917-42C8B7B7A26D}:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Karta tunelowa isatap.{18A8E448-6EEC-4137-A464-F870C77EC379}:

   Stan nośnika . . . .  . . . . . . .: Nośnik odłączony
   Sufiks DNS konkretnego połączenia :

Bardzo prosze o pomoc. Męczę się już z tym drugi tydzień a pilnie potrzebuje tego vpn...

5

Odp: OpenVPN nie do końca działa

O ile dobrze zrozumiałem masz klienta na wingrozie, więc chyba warto 1) wkleić tu konfę openvp z windy (prawdopodobnie nie jest do końca prawidłowa) 2) szukać sposobu na prawidłowy routing pakietów w zaporce windy 3) ewentualnie uruchomić openvpn w gargoyle bez gui, które nie musi uwzględniać wszystkich niuansów, jakie może zaoferować openvp na openwrt (np. tryby tun lub tap, inne opcje, i.t.d.) 4) warto poza tym sprawdzić co z routowaniem na serwerze w odległej sieci LAN.
Pozbieraj do kupy te 4 pkt. i wydumaj co gdzie pokombinować by był routing i dostępność usług jakich oczekujesz.
Gotowca Ci nie podam bo jest to zawsze ta jedna z tych indywidualnych spraw, które trzeba po prostu przyswoić by z tego korzystać.

6

Odp: OpenVPN nie do końca działa

Pusc traceroute do np wp : 212.77.100.101 tzn pod windoza jest to tracert wink tam bedzies zmial rozwiazanie wink