RalfFriedl
IPPF-Urgestein
- Mitglied seit
- 22 Apr 2007
- Beiträge
- 12,343
- Punkte für Reaktionen
- 1
- Punkte
- 0
Das könnte man sicher machen. Die Frage ist, wer sowohl motiviert als auch in der Lage ist, das zu tun.
Nov 7 14:13:12 fritz daemon.notice openvpn[1148]: OpenVPN 2.2.1 mipsel-linux [SSL] [LZO2] [MH] [IPv6 payload 20110424-2 (2.2RC2)] built on Nov 7 2011
Nov 7 14:13:12 fritz daemon.warn openvpn[1148]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: Diffie-Hellman initialized with 1024 bit key
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: TLS-Auth MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ]
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Nov 7 14:13:13 fritz daemon.warn openvpn[1148]: OpenVPN ROUTE: OpenVPN needs a gateway parameter for a --route option and no default was specified by either --route-gateway or --ifconfig options
Nov 7 14:13:13 fritz daemon.warn openvpn[1148]: OpenVPN ROUTE: failed to parse/resolve route for host/network: 10.0.0.0
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: TUN/TAP device tap0 opened
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: TUN/TAP TX queue length set to 100
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: /sbin/ifconfig tap0 10.0.0.1 netmask 255.255.255.0 mtu 1500 broadcast 10.0.0.255
Nov 7 14:13:13 fritz daemon.notice openvpn[1148]: Data Channel MTU parms [ L:1574 D:1450 EF:42 EB:135 ET:32 EL:0 AF:3/1 ]
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: chroot to '/tmp/openvpn' and cd to '/' succeeded
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: GID set to openvpn
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: UID set to openvpn
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: UDPv4 link local (bound): [undef]
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: UDPv4 link remote: [undef]
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: MULTI: multi_init called, r=256 v=256
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: IFCONFIG POOL: base=10.0.0.2 size=10, ipv6=0
Nov 7 14:13:13 fritz daemon.notice openvpn[1152]: Initialization Sequence Completed
OpenVPN ROUTE: OpenVPN needs a gateway parameter for a --route option and no default was specified by either --route-gateway or --ifconfig options
# OpenVPN 2.1 Config, Mon Nov 7 14:13:11 CET 2011
proto udp
dev tap0
ca /tmp/flash/openvpn/ca.crt
cert /tmp/flash/openvpn/box.crt
key /tmp/flash/openvpn/box.key
dh /tmp/flash/openvpn/dh.pem
crl-verify /etc/crl.pem
tls-server
port 1194
ifconfig 10.0.0.1 255.255.255.0
push "route-gateway 10.0.0.1"
push "route 192.168.39.0 255.255.255.0"
max-clients 10
mode server
ifconfig-pool 10.0.0.2 10.0.0.11
push "route 10.0.0.0 255.255.255.0"
route 10.0.0.0 255.255.255.0
client-config-dir /clients_openvpn
client-to-client
push "dhcp-option DNS 192.168.39.2"
push "dhcp-option WINS 192.168.39.2"
tun-mtu 1500
mssfix
verb 3
daemon
cipher BF-CBC
comp-lzo
keepalive 10 120
status /var/log/openvpn.log
chroot /tmp/openvpn
user openvpn
group openvpn
persist-tun
persist-key
if [ "$AUTH_TYPE" = "certs" ]; then
if [ "$DHCP_RANGE" ]; then
echo "mode server" >> $CONFFILE
echo "ifconfig-pool $DHCP_RANGE" >> $CONFFILE
if [ "$CLIENT2CLIENT" = "yes" ]; then
echo "push \"route ${DHCP_RANGE%.* *}.0 255.255.255.0\"" >> $CONFFILE
else
echo "push \"route $BOX_IP\"" >> $CONFFILE
fi
[B][U][ "$TYPE" = "tun" ] && [ ! $TUNSUBNET ] && [/U][/B]echo "route ${DHCP_RANGE%.* *}.0 255.255.255.0" >> $CONFFILE
fi
Nov 7 22:39:20 fritz daemon.err openvpn[3216]: event_wait : Interrupted system call (code=4)
Nov 7 22:39:20 fritz daemon.notice openvpn[3216]: TCP/UDP: Closing socket
Nov 7 22:39:20 fritz daemon.notice openvpn[3216]: Closing TUN/TAP interface
Nov 7 22:39:20 fritz daemon.notice openvpn[3216]: /sbin/ifconfig tap0 0.0.0.0
Nov 7 22:39:20 fritz daemon.warn openvpn[3216]: Linux ip addr del failed: could not execute external program
Nov 7 22:39:20 fritz daemon.notice openvpn[3216]: SIGTERM[hard,] received, process exiting
Nov 7 22:39:22 fritz daemon.notice openvpn[3545]: OpenVPN 2.2.1 mipsel-linux [SSL] [LZO2] [MH] [IPv6 payload 20110424-2 (2.2RC2)] built on Nov 7 2011
Nov 7 22:39:22 fritz daemon.warn openvpn[3545]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Nov 7 22:39:22 fritz daemon.notice openvpn[3545]: Diffie-Hellman initialized with 1024 bit key
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: TLS-Auth MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ]
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: TUN/TAP device tap0 opened
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: TUN/TAP TX queue length set to 100
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: /sbin/ifconfig tap0 10.0.0.1 netmask 255.255.255.0 mtu 1500 broadcast 10.0.0.255
Nov 7 22:39:23 fritz daemon.notice openvpn[3545]: Data Channel MTU parms [ L:1574 D:1450 EF:42 EB:135 ET:32 EL:0 AF:3/1 ]
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: chroot to '/tmp/openvpn' and cd to '/' succeeded
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: GID set to openvpn
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: UID set to openvpn
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: UDPv4 link local (bound): [undef]
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: UDPv4 link remote: [undef]
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: MULTI: multi_init called, r=256 v=256
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: IFCONFIG POOL: base=10.0.0.2 size=10, ipv6=0
Nov 7 22:39:23 fritz daemon.notice openvpn[3571]: Initialization Sequence Completed
Wed Nov 16 20:07:12 2011 OpenVPN 2.2.1 mipsel-linux [SSL] [LZO2] [MH] [IPv6 payload 20110424-2 (2.2RC2)] built on Nov 16 2011
Wed Nov 16 20:07:12 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Wed Nov 16 20:07:12 2011 Diffie-Hellman initialized with 1024 bit key
Wed Nov 16 20:07:12 2011 LZO compression initialized
Wed Nov 16 20:07:12 2011 Control Channel MTU parms [ L:1558 D:138 EF:38 EB:0 ET:0 EL:0 ]
Wed Nov 16 20:07:12 2011 Socket Buffers: R=[110592->131072] S=[110592->131072]
Wed Nov 16 20:07:12 2011 TUN/TAP device tun0 opened
Wed Nov 16 20:07:12 2011 TUN/TAP TX queue length set to 100
Wed Nov 16 20:07:12 2011 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Wed Nov 16 20:07:12 2011 /sbin/ifconfig tun0 192.168.200.1 pointopoint 192.168.200.2 mtu 1500
Wed Nov 16 20:07:12 2011 Data Channel MTU parms [ L:1558 D:1450 EF:58 EB:135 ET:0 EL:0 AF:3/1 ]
Wed Nov 16 20:07:12 2011 chroot to '/tmp/openvpn' and cd to '/' succeeded
Wed Nov 16 20:07:12 2011 GID set to openvpn
Wed Nov 16 20:07:12 2011 UID set to openvpn
Wed Nov 16 20:07:12 2011 UDPv4 link local (bound): [undef]
Wed Nov 16 20:07:12 2011 UDPv4 link remote: [undef]
"permit udp any any range 1194 1194",
"permit udp any any range 1194 1194",
"udp 0.0.0.0:1194 0.0.0.0:1194 0 # openvpn";