Nie jesteś zalogowany.
Jeśli nie posiadasz konta, zarejestruj je już teraz! Pozwoli Ci ono w pełni korzystać z naszego serwisu. Spamerom dziękujemy!
Prosimy o pomoc dla małej Julki — przekaż 1% podatku na Fundacji Dzieciom zdazyć z Pomocą.
Więcej informacji na dug.net.pl/pomagamy/.
witam mam problem probuje zainstalowac openvpn i probuje na 2 wersjach debiana jednoczesnie stable i testing lecz ani na jednej ani na drugiej nie chce ona dzialac najpierw mialem problem z generowaniem kluczy w openssl lecz uporalem sie z problemem lecz teraz gdy odpalam demona i nic wyskakuje blad i nic prosze o pomoc albo o bardzo dokladny opis instalacji
Offline
Tue May 13 22:55:26 2008 us=963671 config = '/etc/openvpn/config-router' Tue May 13 22:55:26 2008 us=963799 mode = 0 Tue May 13 22:55:26 2008 us=963911 persist_config = DISABLED Tue May 13 22:55:26 2008 us=964025 persist_mode = 1 Tue May 13 22:55:26 2008 us=964136 show_ciphers = DISABLED Tue May 13 22:55:26 2008 us=964247 show_digests = DISABLED Tue May 13 22:55:26 2008 us=964356 show_engines = DISABLED Tue May 13 22:55:26 2008 us=964465 genkey = DISABLED Tue May 13 22:55:26 2008 us=964575 key_pass_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=964687 show_tls_ciphers = DISABLED Tue May 13 22:55:26 2008 us=964799 proto = 0 Tue May 13 22:55:26 2008 us=964909 local = '[UNDEF]' Tue May 13 22:55:26 2008 us=965020 remote_list = NULL Tue May 13 22:55:26 2008 us=965138 remote_random = DISABLED Tue May 13 22:55:26 2008 us=965252 local_port = 1194 Tue May 13 22:55:26 2008 us=965363 remote_port = 1194 Tue May 13 22:55:26 2008 us=965522 remote_float = DISABLED Tue May 13 22:55:26 2008 us=965638 ipchange = '[UNDEF]' Tue May 13 22:55:26 2008 us=965748 bind_local = ENABLED Tue May 13 22:55:26 2008 us=965857 dev = 'tun' Tue May 13 22:55:26 2008 us=965967 dev_type = '[UNDEF]' Tue May 13 22:55:26 2008 us=966077 dev_node = '[UNDEF]' Tue May 13 22:55:26 2008 us=966187 tun_ipv6 = DISABLED Tue May 13 22:55:26 2008 us=966296 ifconfig_local = '10.3.0.1' Tue May 13 22:55:26 2008 us=966414 ifconfig_remote_netmask = '10.3.0.2' Tue May 13 22:55:26 2008 us=966527 ifconfig_noexec = DISABLED Tue May 13 22:55:26 2008 us=966639 ifconfig_nowarn = DISABLED Tue May 13 22:55:26 2008 us=966753 shaper = 0 Tue May 13 22:55:26 2008 us=966864 tun_mtu = 1500 Tue May 13 22:55:26 2008 us=966973 tun_mtu_defined = ENABLED Tue May 13 22:55:26 2008 us=967086 link_mtu = 1500 Tue May 13 22:55:26 2008 us=967196 link_mtu_defined = DISABLED Tue May 13 22:55:26 2008 us=967308 tun_mtu_extra = 0 Tue May 13 22:55:26 2008 us=967417 tun_mtu_extra_defined = DISABLED Tue May 13 22:55:26 2008 us=967529 fragment = 0 Tue May 13 22:55:26 2008 us=967638 mtu_discover_type = -1 Tue May 13 22:55:26 2008 us=967747 mtu_test = 0 Tue May 13 22:55:26 2008 us=967857 mlock = DISABLED Tue May 13 22:55:26 2008 us=967966 keepalive_ping = 0 Tue May 13 22:55:26 2008 us=968076 keepalive_timeout = 0 Tue May 13 22:55:26 2008 us=968187 inactivity_timeout = 0 Tue May 13 22:55:26 2008 us=968299 ping_send_timeout = 0 Tue May 13 22:55:26 2008 us=968409 ping_rec_timeout = 0 Tue May 13 22:55:26 2008 us=968519 ping_rec_timeout_action = 0 Tue May 13 22:55:26 2008 us=968629 ping_timer_remote = DISABLED Tue May 13 22:55:26 2008 us=968742 remap_sigusr1 = 0 Tue May 13 22:55:26 2008 us=968852 explicit_exit_notification = 0 Tue May 13 22:55:26 2008 us=968963 persist_tun = DISABLED Tue May 13 22:55:26 2008 us=969073 persist_local_ip = DISABLED Tue May 13 22:55:26 2008 us=969184 persist_remote_ip = DISABLED Tue May 13 22:55:26 2008 us=969295 persist_key = DISABLED Tue May 13 22:55:26 2008 us=969405 mssfix = 1450 Tue May 13 22:55:26 2008 us=969547 passtos = DISABLED Tue May 13 22:55:26 2008 us=969659 resolve_retry_seconds = 1000000000 Tue May 13 22:55:26 2008 us=969771 connect_retry_seconds = 5 Tue May 13 22:55:26 2008 us=969890 username = 'nobody' Tue May 13 22:55:26 2008 us=970002 groupname = 'nobody' Tue May 13 22:55:26 2008 us=970112 chroot_dir = '[UNDEF]' Tue May 13 22:55:26 2008 us=970220 cd_dir = '[UNDEF]' Tue May 13 22:55:26 2008 us=970329 writepid = '[UNDEF]' Tue May 13 22:55:26 2008 us=970440 up_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=970549 down_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=970658 down_pre = DISABLED Tue May 13 22:55:26 2008 us=970767 up_restart = DISABLED Tue May 13 22:55:26 2008 us=970877 up_delay = DISABLED Tue May 13 22:55:26 2008 us=970986 daemon = DISABLED Tue May 13 22:55:26 2008 us=971097 inetd = 0 Tue May 13 22:55:26 2008 us=971205 log = DISABLED Tue May 13 22:55:26 2008 us=971315 suppress_timestamps = DISABLED Tue May 13 22:55:26 2008 us=971429 nice = 0 Tue May 13 22:55:26 2008 us=971541 verbosity = 4 Tue May 13 22:55:26 2008 us=971650 mute = 0 Tue May 13 22:55:26 2008 us=971760 gremlin = 0 Tue May 13 22:55:26 2008 us=971870 status_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=971981 status_file_version = 1 Tue May 13 22:55:26 2008 us=972091 status_file_update_freq = 60 Tue May 13 22:55:26 2008 us=972201 occ = ENABLED Tue May 13 22:55:26 2008 us=972311 rcvbuf = 65536 Tue May 13 22:55:26 2008 us=972420 sndbuf = 65536 Tue May 13 22:55:26 2008 us=972530 socks_proxy_server = '[UNDEF]' Tue May 13 22:55:26 2008 us=972642 socks_proxy_port = 0 Tue May 13 22:55:26 2008 us=972752 socks_proxy_retry = DISABLED Tue May 13 22:55:26 2008 us=972863 fast_io = DISABLED Tue May 13 22:55:26 2008 us=972986 comp_lzo = ENABLED Tue May 13 22:55:26 2008 us=973097 comp_lzo_adaptive = ENABLED Tue May 13 22:55:26 2008 us=973209 route_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=973321 route_default_gateway = '[UNDEF]' Tue May 13 22:55:26 2008 us=973432 route_noexec = DISABLED Tue May 13 22:55:26 2008 us=973576 route_delay = 0 Tue May 13 22:55:26 2008 us=973687 route_delay_window = 30 Tue May 13 22:55:26 2008 us=973796 route_delay_defined = DISABLED Tue May 13 22:55:26 2008 us=973910 management_addr = '[UNDEF]' Tue May 13 22:55:26 2008 us=974022 management_port = 0 Tue May 13 22:55:26 2008 us=974132 management_user_pass = '[UNDEF]' Tue May 13 22:55:26 2008 us=974245 management_log_history_cache = 250 Tue May 13 22:55:26 2008 us=974358 management_echo_buffer_size = 100 Tue May 13 22:55:26 2008 us=974471 management_query_passwords = DISABLED Tue May 13 22:55:26 2008 us=974585 management_hold = DISABLED Tue May 13 22:55:26 2008 us=974698 shared_secret_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=974810 key_direction = 0 Tue May 13 22:55:26 2008 us=974921 ciphername_defined = ENABLED Tue May 13 22:55:26 2008 us=975033 ciphername = 'BF-CBC' Tue May 13 22:55:26 2008 us=975144 authname_defined = ENABLED Tue May 13 22:55:26 2008 us=975256 authname = 'SHA1' Tue May 13 22:55:26 2008 us=975366 keysize = 0 Tue May 13 22:55:26 2008 us=975478 engine = DISABLED Tue May 13 22:55:26 2008 us=975590 replay = ENABLED Tue May 13 22:55:26 2008 us=975701 mute_replay_warnings = DISABLED Tue May 13 22:55:26 2008 us=975813 replay_window = 64 Tue May 13 22:55:26 2008 us=975924 replay_time = 15 Tue May 13 22:55:26 2008 us=976041 packet_id_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=976154 use_iv = ENABLED Tue May 13 22:55:26 2008 us=976265 test_crypto = DISABLED Tue May 13 22:55:26 2008 us=976375 tls_server = ENABLED Tue May 13 22:55:26 2008 us=976485 tls_client = DISABLED Tue May 13 22:55:26 2008 us=976596 key_method = 2 Tue May 13 22:55:26 2008 us=976706 ca_file = '/etc/openvpn/certs/cacert.pem' Tue May 13 22:55:26 2008 us=976822 dh_file = '/etc/openvpn/certs/dh1024.pem' Tue May 13 22:55:26 2008 us=976936 cert_file = '/etc/openvpn/certs/gwcert.pem' Tue May 13 22:55:26 2008 us=977052 priv_key_file = '/etc/openvpn/certs/gwkey.pem_bezhasla' Tue May 13 22:55:26 2008 us=977166 pkcs12_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=977277 cipher_list = '[UNDEF]' Tue May 13 22:55:26 2008 us=977387 tls_verify = '[UNDEF]' Tue May 13 22:55:26 2008 us=977531 tls_remote = '[UNDEF]' Tue May 13 22:55:26 2008 us=977645 crl_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=977757 ns_cert_type = 0 Tue May 13 22:55:26 2008 us=977868 tls_timeout = 2 Tue May 13 22:55:26 2008 us=977979 renegotiate_bytes = 0 Tue May 13 22:55:26 2008 us=978090 renegotiate_packets = 0 Tue May 13 22:55:26 2008 us=978201 renegotiate_seconds = 3600 Tue May 13 22:55:26 2008 us=978314 handshake_window = 60 Tue May 13 22:55:26 2008 us=978424 transition_window = 3600 Tue May 13 22:55:26 2008 us=978537 single_session = DISABLED Tue May 13 22:55:26 2008 us=978648 tls_exit = DISABLED Tue May 13 22:55:26 2008 us=978758 tls_auth_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=978919 server_network = 0.0.0.0 Tue May 13 22:55:26 2008 us=979041 server_netmask = 0.0.0.0 Tue May 13 22:55:26 2008 us=979170 server_bridge_ip = 0.0.0.0 Tue May 13 22:55:26 2008 us=979289 server_bridge_netmask = 0.0.0.0 Tue May 13 22:55:26 2008 us=979397 server_bridge_pool_start = 0.0.0.0 Tue May 13 22:55:26 2008 us=979502 server_bridge_pool_end = 0.0.0.0 Tue May 13 22:55:26 2008 us=979602 ifconfig_pool_defined = DISABLED Tue May 13 22:55:26 2008 us=979707 ifconfig_pool_start = 0.0.0.0 Tue May 13 22:55:26 2008 us=979811 ifconfig_pool_end = 0.0.0.0 Tue May 13 22:55:26 2008 us=979915 ifconfig_pool_netmask = 0.0.0.0 Tue May 13 22:55:26 2008 us=980015 ifconfig_pool_persist_filename = '[UNDEF]' Tue May 13 22:55:26 2008 us=980118 ifconfig_pool_persist_refresh_freq = 600 Tue May 13 22:55:26 2008 us=980218 ifconfig_pool_linear = DISABLED Tue May 13 22:55:26 2008 us=980318 n_bcast_buf = 256 Tue May 13 22:55:26 2008 us=980415 tcp_queue_limit = 64 Tue May 13 22:55:26 2008 us=980511 real_hash_size = 256 Tue May 13 22:55:26 2008 us=980609 virtual_hash_size = 256 Tue May 13 22:55:26 2008 us=980705 client_connect_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=980805 learn_address_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=980903 client_disconnect_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=981003 client_config_dir = '[UNDEF]' Tue May 13 22:55:26 2008 us=981101 ccd_exclusive = DISABLED Tue May 13 22:55:26 2008 us=981199 tmp_dir = '[UNDEF]' Tue May 13 22:55:26 2008 us=981296 push_ifconfig_defined = DISABLED Tue May 13 22:55:26 2008 us=981400 push_ifconfig_local = 0.0.0.0 Tue May 13 22:55:26 2008 us=981534 push_ifconfig_remote_netmask = 0.0.0.0 Tue May 13 22:55:26 2008 us=981635 enable_c2c = DISABLED Tue May 13 22:55:26 2008 us=981732 duplicate_cn = DISABLED Tue May 13 22:55:26 2008 us=981828 cf_max = 0 Tue May 13 22:55:26 2008 us=981924 cf_per = 0 Tue May 13 22:55:26 2008 us=982020 max_clients = 1024 Tue May 13 22:55:26 2008 us=982118 max_routes_per_client = 256 Tue May 13 22:55:26 2008 us=982217 client_cert_not_required = DISABLED Tue May 13 22:55:26 2008 us=982309 username_as_common_name = DISABLED Tue May 13 22:55:26 2008 us=982358 auth_user_pass_verify_script = '[UNDEF]' Tue May 13 22:55:26 2008 us=982402 auth_user_pass_verify_script_via_file = DISABLED Tue May 13 22:55:26 2008 us=982446 client = DISABLED Tue May 13 22:55:26 2008 us=982489 pull = DISABLED Tue May 13 22:55:26 2008 us=982531 auth_user_pass_file = '[UNDEF]' Tue May 13 22:55:26 2008 us=982584 OpenVPN 2.0.9 i686-pc-linux [SSL] [LZO] [EPOLL] built on May 12 2008 Tue May 13 22:55:26 2008 us=982758 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port. Tue May 13 22:55:26 2008 us=982804 WARNING: you are using user/group/chroot without persist-key/persist-tun -- this may cause restarts to fail Tue May 13 22:55:27 2008 us=16705 Diffie-Hellman initialized with 1024 bit key Tue May 13 22:55:27 2008 us=17837 WARNING: file '/etc/openvpn/certs/gwkey.pem_bezhasla' is group or others accessible Tue May 13 22:55:27 2008 us=19542 LZO compression initialized Tue May 13 22:55:27 2008 us=20011 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Tue May 13 22:55:27 2008 us=21869 TUN/TAP device tun0 opened Tue May 13 22:55:27 2008 us=21996 TUN/TAP TX queue length set to 100 Tue May 13 22:55:27 2008 us=22091 /sbin/ifconfig tun0 10.3.0.1 pointopoint 10.3.0.2 mtu 1500 Tue May 13 22:55:27 2008 us=29761 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Tue May 13 22:55:27 2008 us=29949 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,ifconfig 10.3.0.2 10.3.0.1,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server' Tue May 13 22:55:27 2008 us=29995 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,ifconfig 10.3.0.1 10.3.0.2,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client' Tue May 13 22:55:27 2008 us=30110 Local Options hash (VER=V4): 'b867f5d5' Tue May 13 22:55:27 2008 us=30178 Expected Remote Options hash (VER=V4): '191c1715' Tue May 13 22:55:27 2008 us=31603 failed to find GID for group nobody Tue May 13 22:55:27 2008 us=31688 Exiting
Ostatnio edytowany przez dominator5 (2008-05-13 22:58:28)
Offline
dobra uporalem sie jakos z instalacja lecz teraz mam nastepujacy ptoblem
Tue May 13 23:42:54 2008 us=199922 OpenVPN 2.0.9 Win32-MinGW [SSL] [LZO] built on Oct 1 2006 Tue May 13 23:42:54 2008 us=200106 WARNING: --ping should normally be used with --ping-restart or --ping-exit Tue May 13 23:42:54 2008 us=200122 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Tue May 13 23:42:59 2008 us=63744 LZO compression initialized Tue May 13 23:42:59 2008 us=63946 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Tue May 13 23:42:59 2008 us=86837 TAP-WIN32 device [NULL] opened: \\.\Global\{0227F0BF-E47D-4A35-AFF4-EDE2FC2D44D5}.tap Tue May 13 23:42:59 2008 us=88431 TAP-Win32 Driver Version 8.4 Tue May 13 23:42:59 2008 us=89741 TAP-Win32 MTU=1500 Tue May 13 23:42:59 2008 us=90914 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.3.0.2/255.255.255.252 on interface {0227F0BF-E47D-4A35-AFF4-EDE2FC2D44D5} [DHCP-serv: 10.3.0.1, lease-time: 31536000] Tue May 13 23:42:59 2008 us=117502 Successful ARP Flush on interface [4] {0227F0BF-E47D-4A35-AFF4-EDE2FC2D44D5} Tue May 13 23:42:59 2008 us=123410 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Tue May 13 23:42:59 2008 us=123533 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,ifconfig 10.3.0.1 10.3.0.2,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client' Tue May 13 23:42:59 2008 us=123550 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,ifconfig 10.3.0.2 10.3.0.1,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server' Tue May 13 23:42:59 2008 us=123664 Local Options hash (VER=V4): '191c1715' Tue May 13 23:42:59 2008 us=123685 Expected Remote Options hash (VER=V4): 'b867f5d5' Tue May 13 23:42:59 2008 us=123795 Socket Buffers: R=[8192->8192] S=[8192->8192] Tue May 13 23:42:59 2008 us=131588 UDPv4 link local (bound): [undef]:5000 Tue May 13 23:42:59 2008 us=131632 UDPv4 link remote: 83.17.72.125:5000 Tue May 13 23:42:59 2008 us=185344 read UDPv4: Connection reset by peer (WSAECONNRESET) (code=10054) Tue May 13 23:43:00 2008 us=367441 read UDPv4: Connection reset by peer (WSAECONNRESET) (code=10054) Tue May 13 23:43:02 2008 us=608725 read UDPv4: Connection reset by peer (WSAECONNRESET) (code=10054) Tue May 13 23:43:04 2008 us=861471 read UDPv4: Connection reset by peer (WSAECONNRESET) (code=10054) Tue May 13 23:43:07 2008 us=74148 read UDPv4: Connection reset by peer (WSAECONNRESET) (code=10054)
nie wiem jak sobie z tym poradzic prosze o szybka pomoc
Offline
dominator5 napisał(-a):
temat do zamkniecia
Jak już zacząłeś taki wątek i znalazłeś rozwiązanie to je podaj, będzie na przyszłość.
Offline
to tak korzystalem z poradnika na stronie http://marek.helion.pl/install/vpn-howto.html to poprawne konfigi powinny wygladac tak:
server-linux:
# przyk�adowa konfiguracja przy u�yciu certyfikat�w. Zwr�c uwag� # odr��nienie klienta i serwera. # plik konfiguracyjny serwera (bramy VPN) dev tun tun-mtu 1500 ifconfig 10.3.0.1 10.3.0.2 port 5000 user nobody group nobody comp-lzo ; ping 15 ; ping 15 ; ping-restart 45 ; ping-timer-rem ; persist-tun ; persist-key verb 4 tls-server dh /etc/openvpn/certs/dh1024.pem # certyfikat wystawcy (CA) ca /etc/openvpn/certs/cacert.pem # certyfikat bramy cert /etc/openvpn/certs/gwcert.pem # klucz prywatny bramy #key /etc/openvpn/certs/gwkey.pem key /etc/openvpn/certs/gwkey.pem_bezhasla ;eof
client-windowsxp:
remote xx.xx.xx.xxx # faktyczne "zewnętrzne" IP Internetowe Bramy VPN port 5000 dev tun tun-mtu 1500 ifconfig 10.3.0.2 10.3.0.1 tls-client # Certificate Authority file ca c:\\progra~1\\openvpn\\config\\cacert.pem # Our certificate/public key cert c:\\progra~1\\openvpn\\config\\usercert.pem # Our private key key c:\\progra~1\\openvpn\\config\\userkey.pem ; ping-restart 60 ; ping-timer-rem ; persist-tun ; persist-key ; resolv-retry 86400 # # keep-alive ping ping 10 # # enable LZO compression comp-lzo verb 4 ; eof
Offline