openvpn

OpenVPN hands-on

Trying to configure openvpn server and client via my home network thru internet

openvpn server is put in dynamic public ip, via router, in DMZ..

openvpn client is set up in another host and try to connect to openvpn server.

seems to have some misconfiguration, tls handshake failed.. need to look for this.. but not right now.. its 3 a.m. n need to go for work tomorrow..

*kepala dah mengantok ;p

Server

————————————————————————————————-

Jan 8 03:08:36 zulfiqar ovpn-server[8984]: MULTI: multi_create_instance called
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Re-using SSL/TLS context
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 LZO compression initialized
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Control Channel MTU parms [ L:1574 D:166 EF:66 EB:0 ET:0 EL:0 ]
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Data Channel MTU parms [ L:1574 D:1450 EF:42 EB:135 ET:32 EL:0 AF:3/1 ]
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Local Options hash (VER=V4): ‘360696c5′
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Expected Remote Options hash (VER=V4): ‘13a273ba’
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 TLS: Initial packet from 60.48.182.229:55803, sid=2f7af594 d7dd6de1
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:55803 Replay-window backtrack occurred [1]
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:56525 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:56525 TLS Error: TLS handshake failed
Jan 8 03:08:36 zulfiqar ovpn-server[8984]: 60.48.182.229:56525 SIGUSR1[soft,tls-error] received, client-instance restarting
Jan 8 03:08:38 zulfiqar ovpn-server[8984]: 60.48.182.229:60028 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Jan 8 03:08:38 zulfiqar ovpn-server[8984]: 60.48.182.229:60028 TLS Error: TLS handshake failed
Jan 8 03:08:38 zulfiqar ovpn-server[8984]: 60.48.182.229:60028 SIGUSR1[soft,tls-error] received, client-instance restarting

————————————————

Client

Fri Jan  8 03:10:48 2010 VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: /C=MS/ST=CA/L=KL/O=Salax/CN=Salax_CA/emailAddress=salasm86[at]gmail.com
Fri Jan  8 03:10:48 2010 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Fri Jan  8 03:10:48 2010 TLS Error: TLS object -> incoming plaintext read error
Fri Jan  8 03:10:48 2010 TLS Error: TLS handshake failed
Fri Jan  8 03:10:48 2010 TCP/UDP: Closing socket
Fri Jan  8 03:10:48 2010 SIGUSR1[soft,tls-error] received, process restarting
Fri Jan  8 03:10:48 2010 Restart pause, 2 second(s)
Fri Jan  8 03:10:50 2010 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Fri Jan  8 03:10:50 2010 Re-using SSL/TLS context
Fri Jan  8 03:10:50 2010 LZO compression initialized
Fri Jan  8 03:10:50 2010 Control Channel MTU parms [ L:1574 D:166 EF:66 EB:0 ET:0 EL:0 ]
Fri Jan  8 03:10:50 2010 Data Channel MTU parms [ L:1574 D:1450 EF:42 EB:135 ET:32 EL:0 AF:3/1 ]
Fri Jan  8 03:10:50 2010 Local Options hash (VER=V4): ‘13a273ba’
Fri Jan  8 03:10:50 2010 Expected Remote Options hash (VER=V4): ‘360696c5′
Fri Jan  8 03:10:50 2010 Socket Buffers: R=[112640->131072] S=[112640->131072]
Fri Jan  8 03:10:50 2010 UDPv4 link local: [undef]
Fri Jan  8 03:10:50 2010 UDPv4 link remote: 60.48.182.229:1194
Fri Jan  8 03:10:50 2010 TLS: Initial packet from 60.48.182.229:1194, sid=5a38586b cca57bee
Fri Jan  8 03:10:50 2010 VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: /C=MS/ST=CA/L=KL/O=Salax/CN=Salax_CA/emailAddress=salasm86[at]gmail.com
Fri Jan  8 03:10:50 2010 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Fri Jan  8 03:10:50 2010 TLS Error: TLS object -> incoming plaintext read error
Fri Jan  8 03:10:50 2010 TLS Error: TLS handshake failed
Fri Jan  8 03:10:50 2010 TCP/UDP: Closing socket
Fri Jan  8 03:10:50 2010 SIGUSR1[soft,tls-error] received, process restarting
Fri Jan  8 03:10:50 2010 Restart pause, 2 second(s)

By salawank on January 8, 2010 | Uncategorized | A comment?
Tags:

9 visitors online now
9 guests, 0 members
Max visitors today: 10 at 11:17 am GMT-8
This month: 10 at 09-09-2010 11:17 am GMT-8
This year: 21 at 03-24-2010 06:49 pm GMT-8
All time: 43 at 10-20-2009 08:17 am GMT-8

salawank is Digg proof thanks to caching by WP Super Cache