MaxMuster schrieb:Was sagt denn einCode:./tmp/openvpn
# load files
wget http://www.meinserver.de/openvpn
# make them executable
chmod +x /var/tmp/openvpn
MaxMuster schrieb:Dann haben wir es doch schon: das "openvpn-lzo-static.tar" im 7zip nochmal "doppelclicken" und das darin enthaltene "openvpn" ohne Endung nehmen ;-)
Jetzt frag bitte nicht, warum das nochmal im tar ist, das ist auch für mich ein Rätsel....
Jörg
tun
Destination Gateway Genmask Flags Metric Ref Use Iface
192.168.1.2 * 255.255.255.255 UH 0 0 0 tun0
192.168.180.1 * 255.255.255.255 UH 2 0 0 dsl
192.168.180.2 * 255.255.255.255 UH 2 0 0 dsl
192.168.178.0 192.168.1.2 255.255.255.0 UG 0 0 0 tun0
192.168.178.0 * 255.255.255.0 U 0 0 0 lan
192.168.2.0 * 255.255.255.0 U 0 0 0 lan
192.168.2.0 * 255.255.255.0 U 0 0 0 eth0
default * 0.0.0.0 U 2 0 0 dsl
Destination Gateway Genmask Flags Metric Ref Use Iface
192.168.1.2 * 255.255.255.255 UH 0 0 0 tun0
192.168.180.1 * 255.255.255.255 UH 2 0 0 dsl
192.168.180.2 * 255.255.255.255 UH 2 0 0 dsl
192.168.178.0 * 255.255.255.0 U 0 0 0 lan
192.168.2.0 * 255.255.255.0 U 0 0 0 lan
192.168.2.0 * 255.255.255.0 U 0 0 0 eth0
192.168.2.0 * 255.255.255.0 U 0 0 0 tap0
default * 0.0.0.0 U 2 0 0 dsl
Sat Sep 29 16:21:22 2007 us=485000 OpenVPN 2.1_rc2 mipsel-linux [SSL] [LZO2] [EPOLL] built on Jul 9 2007
Sat Sep 29 16:21:22 2007 us=495000 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:21:22 2007 us=495000 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:21:22 2007 us=495000 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:21:22 2007 us=495000 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:21:22 2007 us=535000 TUN/TAP device tap0 opened
Sat Sep 29 16:21:22 2007 us=535000 TUN/TAP TX queue length set to 100
Sat Sep 29 16:21:22 2007 us=535000 /sbin/ifconfig tap0 192.168.2.2 netmask 255.255.255.0 mtu 1500 broadcast 192.168.2.255
Sat Sep 29 16:21:22 2007 us=645000 Data Channel MTU parms [ L:1578 D:1450 EF:46 EB:4 ET:32 EL:0 ]
Sat Sep 29 16:21:22 2007 us=685000 Listening for incoming TCP connection on [undef]:1195
Sat Sep 29 16:22:05 2007 us=105000 TCP connection established with 91.10.48.62:61052
Sat Sep 29 16:22:05 2007 us=105000 Socket Buffers: R=[43689->131070] S=[16384->131070]
Sat Sep 29 16:22:05 2007 us=105000 TCPv4_SERVER link local (bound): [undef]:1195
Sat Sep 29 16:22:05 2007 us=105000 TCPv4_SERVER link remote: 91.10.48.62:61052
Sat Sep 29 16:22:10 2007 us=85000 Peer Connection Initiated with 91.10.48.62:61052
Sat Sep 29 16:22:12 2007 us=5000 Initialization Sequence Completed
Sat Sep 29 16:24:41 2007 us=755000 Connection reset, restarting [-1]
Sat Sep 29 16:24:41 2007 us=755000 TCP/UDP: Closing socket
Sat Sep 29 16:24:41 2007 us=755000 Closing TUN/TAP interface
Sat Sep 29 16:24:41 2007 us=795000 SIGUSR1[soft,connection-reset] received, process restarting
Sat Sep 29 16:24:41 2007 us=795000 Restart pause, 1 second(s)
Sat Sep 29 16:24:42 2007 us=805000 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:24:42 2007 us=805000 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:24:42 2007 us=805000 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:24:42 2007 us=805000 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:24:42 2007 us=835000 TUN/TAP device tap0 opened
Sat Sep 29 16:24:42 2007 us=835000 TUN/TAP TX queue length set to 100
Sat Sep 29 16:24:42 2007 us=835000 /sbin/ifconfig tap0 192.168.2.2 netmask 255.255.255.0 mtu 1500 broadcast 192.168.2.255
Sat Sep 29 16:24:42 2007 us=955000 Data Channel MTU parms [ L:1578 D:1450 EF:46 EB:4 ET:32 EL:0 ]
Sat Sep 29 16:24:42 2007 us=955000 Listening for incoming TCP connection on [undef]:1195
Sat Sep 29 16:25:23 2007 us=355000 TCP connection established with 91.10.48.62:61053
Sat Sep 29 16:25:23 2007 us=355000 Socket Buffers: R=[43689->131070] S=[16384->131070]
Sat Sep 29 16:25:23 2007 us=355000 TCPv4_SERVER link local (bound): [undef]:1195
Sat Sep 29 16:25:23 2007 us=355000 TCPv4_SERVER link remote: 91.10.48.62:61053
Sat Sep 29 16:25:25 2007 us=375000 Peer Connection Initiated with 91.10.48.62:61053
Sat Sep 29 16:25:25 2007 us=375000 Initialization Sequence Completed
Sat Sep 29 16:20:02 2007 us=395000 OpenVPN 2.1_rc2 mipsel-linux [SSL] [LZO2] [EPOLL] built on Jul 9 2007
Sat Sep 29 16:20:02 2007 us=405000 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:20:02 2007 us=405000 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:20:02 2007 us=405000 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Sep 29 16:20:02 2007 us=405000 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Sep 29 16:20:02 2007 us=445000 TUN/TAP device tun0 opened
Sat Sep 29 16:20:02 2007 us=455000 TUN/TAP TX queue length set to 100
Sat Sep 29 16:20:02 2007 us=455000 /sbin/ifconfig tun0 192.168.1.1 pointopoint 192.168.1.2 mtu 1500
Sat Sep 29 16:20:02 2007 us=525000 /sbin/route add -net 192.168.178.0 netmask 255.255.255.0 gw 192.168.1.2
Sat Sep 29 16:20:02 2007 us=585000 Data Channel MTU parms [ L:1546 D:1450 EF:46 EB:4 ET:0 EL:0 ]
Sat Sep 29 16:20:02 2007 us=625000 Listening for incoming TCP connection on [undef]:1194
Sat Sep 29 16:20:08 2007 us=685000 TCP connection established with 91.10.48.62:3910
Sat Sep 29 16:20:08 2007 us=685000 Socket Buffers: R=[43689->131070] S=[16384->131070]
Sat Sep 29 16:20:08 2007 us=685000 TCPv4_SERVER link local (bound): [undef]:1194
Sat Sep 29 16:20:08 2007 us=685000 TCPv4_SERVER link remote: 91.10.48.62:3910
Sat Sep 29 16:20:09 2007 us=435000 Peer Connection Initiated with 91.10.48.62:3910
Sat Sep 29 16:20:10 2007 us=395000 Initialization Sequence Completed
MaxMuster schrieb:Tja, viel fällt mir nicht mehr ein. Außer vielleicht die Frage, ob es vielleicht am Kernel liegen könnte (ich habe den 2.6-er Kernel). Könntest du das mal "andersrum" Testen, also die beiden Server auf der Box mit dem 2.6-er Kernel laufen lassen?
Als weitere Alternative (sofern das möglich ist) könntest du vielleicht die Box bei der Kasse für die TUN-Verbindung zum Client machen? Also die "Kassenbox" wäre dann einmal Client (für den Tunnel) und einmal Server (für das TAP), die andere Box dann der Server für die Tunnel-Verbindung....
Ach so, hier hat mal jemand ein 2.1_rc4-er Binary gepostet, ich weiß aber nicht, ob das komplett statisch ist, als mit beiden Boxen läuft.