Nie jesteś zalogowany.
Jeśli nie posiadasz konta, zarejestruj je już teraz! Pozwoli Ci ono w pełni korzystać z naszego serwisu. Spamerom dziękujemy!
Prosimy o pomoc dla małej Julki — przekaż 1% podatku na Fundacji Dzieciom zdazyć z Pomocą.
Więcej informacji na dug.net.pl/pomagamy/.
Strony: 1
Witam
próbuję zbudować mały serwer OVPN na potrzeby łączenia się z mikrotikiem. Niestety przy komendzie "openvpn /etc/openvpn/server.conf" wyskakuje mi następujący error:
Fri Apr 8 09:57:58 2016 OpenVPN 2.3.4 arm-unknown-linux-gnueabihf [SSL (OpenSSL)] [LZO] [EPOLL] [PKCS11] [MH] [IPv6] built on Jan 23 2016 Fri Apr 8 09:57:58 2016 library versions: OpenSSL 1.0.1k 8 Jan 2015, LZO 2.08 Fri Apr 8 09:57:58 2016 PLUGIN_INIT: POST /usr/lib/openvpn/openvpn-plugin-auth-pam.so '[/usr/lib/openvpn/openvpn-plugin-auth-pam.so] [login]' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY Fri Apr 8 09:57:58 2016 Diffie-Hellman initialized with 1024 bit key Fri Apr 8 09:57:58 2016 WARNING: POTENTIALLY DANGEROUS OPTION --client-cert-not-required may accept clients which do not present a certificate Fri Apr 8 09:57:58 2016 Socket Buffers: R=[87380->131072] S=[16384->131072] Fri Apr 8 09:57:58 2016 TCP/UDP: Socket bind failed on local address [undef]: Address already in use Fri Apr 8 09:57:58 2016 Exiting due to fatal error
W związku z tym errorem i poszukiawaniu w necie zapuściłem narzędzie "netstat -anp | grep 1194". Wynik:
tcp 0 0 0.0.0.0:1194 0.0.0.0:* LISTEN 463/openvpn
moja konfiguracja:
port 1194 proto tcp dev tun ca ca.crt cert server.crt key server.key dh dh1024.pem server 10.8.0.0 255.255.255.0 ifconfig-pool-persist ipp.txt push "dhcp-option DNS 208.67.222.222" push "dhcp-option DNS 208.67.220.220" keepalive 10 120 user nobody group nogroup persist-key persist-tun client-cert-not-required plugin /usr/lib/openvpn/openvpn-plugin-auth-pam.so login status openvpn-status.log verb 3
jeszcze "ifconfig -a":
eth0 Link encap:Ethernet HWaddr b8:27:eb:f6:ab:af inet addr:192.168.88.21 Bcast:192.168.88.255 Mask:255.255.255.0 inet6 addr: fe80::52f9:3ac4:8171:931/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:8511 errors:0 dropped:48 overruns:0 frame:0 TX packets:5430 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:1476225 (1.4 MiB) TX bytes:847730 (827.8 KiB) lo Link encap:Local Loopback inet addr:127.0.0.1 Mask:255.0.0.0 inet6 addr: ::1/128 Scope:Host UP LOOPBACK RUNNING MTU:65536 Metric:1 RX packets:0 errors:0 dropped:0 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) tun0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 inet addr:10.8.0.1 P-t-P:10.8.0.2 Mask:255.255.255.255 UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1 RX packets:0 errors:0 dropped:0 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:100 RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
Czy ktoś może mi pomóc i powiedzieć gdzie tkwi problem?
pozdrawiam
Mały update. Zmieniłem port na 1195 i po komendzie openvpn /etc/openvpn/server.conf otrzymuję:
Fri Apr 8 10:48:21 2016 OpenVPN 2.3.4 arm-unknown-linux-gnueabihf [SSL (OpenSSL)] [LZO] [EPOLL] [PKCS11] [MH] [IPv6] built on Jan 23 2016 Fri Apr 8 10:48:21 2016 library versions: OpenSSL 1.0.1k 8 Jan 2015, LZO 2.08 Fri Apr 8 10:48:21 2016 PLUGIN_INIT: POST /usr/lib/openvpn/openvpn-plugin-auth-pam.so '[/usr/lib/openvpn/openvpn-plugin-auth-pam.so] [login]' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY Fri Apr 8 10:48:21 2016 Diffie-Hellman initialized with 1024 bit key Fri Apr 8 10:48:21 2016 WARNING: POTENTIALLY DANGEROUS OPTION --client-cert-not-required may accept clients which do not present a certificate Fri Apr 8 10:48:21 2016 Socket Buffers: R=[87380->131072] S=[16384->131072] Fri Apr 8 10:48:21 2016 ROUTE_GATEWAY 192.168.88.1/255.255.255.0 IFACE=eth0 HWADDR=b8:27:eb:f6:ab:af Fri Apr 8 10:48:21 2016 TUN/TAP device tun1 opened Fri Apr 8 10:48:21 2016 TUN/TAP TX queue length set to 100 Fri Apr 8 10:48:21 2016 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0 Fri Apr 8 10:48:21 2016 /sbin/ip link set dev tun1 up mtu 1500 Fri Apr 8 10:48:21 2016 /sbin/ip addr add dev tun1 local 10.8.0.1 peer 10.8.0.2 Fri Apr 8 10:48:21 2016 /sbin/ip route add 10.8.0.0/24 via 10.8.0.2 RTNETLINK answers: File exists Fri Apr 8 10:48:21 2016 ERROR: Linux route add command failed: external program exited with error status: 2 Fri Apr 8 10:48:21 2016 GID set to nogroup Fri Apr 8 10:48:21 2016 UID set to nobody Fri Apr 8 10:48:21 2016 Listening for incoming TCP connection on [undef] Fri Apr 8 10:48:21 2016 TCPv4_SERVER link local (bound): [undef] Fri Apr 8 10:48:21 2016 TCPv4_SERVER link remote: [undef] Fri Apr 8 10:48:21 2016 MULTI: multi_init called, r=256 v=256 Fri Apr 8 10:48:21 2016 IFCONFIG POOL: base=10.8.0.4 size=62, ipv6=0 Fri Apr 8 10:48:21 2016 IFCONFIG POOL LIST Fri Apr 8 10:48:21 2016 MULTI: TCP INIT maxclients=1024 maxevents=1028 Fri Apr 8 10:48:21 2016 Initialization Sequence Completed
czy ERROR: Linux route add command failed: external program exited with error status: 2 powoduje ze zewnętrzny klient sie nie połączy?
niestety na tym porcie pojawił się ten sam error
TCP/UDP: Socket bind failed on local address [undef]: Address already in use
Offline
czyli openvpm już działa i próbujesz go odpalić jeszcze raz.
Offline
no tak:)
teraz pytanie kolejne skąd bierze plugin pam dane autoryzacyjne?
próbuje na root i jego hasło ale dostaję AUTH_FAILED
Offline
Strony: 1