VPN-Server in Box integrieren

Wenn, dann ist nicht Java gesperrt, sondern höchstwahrscheinlich der direkte Zugriff der Java-Applikationen über bestimmte Ports nach draußen auf das Internet. Es kann auch in sehr gemeinen Fällen passieren, daß ein Proxy auf die User-Agent Header von HTTP-Requests achtet und nur bestimmte, von der Corporate Security Policy erlaubte Komponenten nach draußen läßt.

--gandalf.
 
@gandalf94305

Ich glaube, du weißt da eindeutig mehr als meiner einer. Irgendwas mit Police-Scripten habe ich hier schon gelesen. Es gibt hier einen ISA-Server. Ich fürchte, dass dieser mich in meiner Kreativität etwas einschränkt.

Ich werde jetzt zunächst einmal zwei FB 7170 per OVPN zu verbinden suchen.
Melde mich dann später mal zur Rudishell.
 
Zwei Netzwerke mit Fritzboxen 7050 per Openvpn verbinden

Hallo versuche schon seit 14 Tagen 2 Netzwerke über zwei Fritzboxen 7050 zu koppeln.

Habe mitlerweile mit einem neuem Binary das Openvpn zum starten bekommen, (wird jetzt in der Prozessliste angezeigt).

Bin ansonsten bei der Konfiguration genau nach der Anleitung von Tecchannel gegangen. Nur jetzt bin ich mit meinem Latein am ende, und habe leider, da ich dies zum ersten mal Versuche, auch keinen direckten Vergleich gefunden, den ich Vollständig Interpretieren konnte.

So weit bin ich gekommen Openvpn ist auf beiden Rechnern gestartet, die Portfreigabe auf dem Server ist erzeugt. Die Passwrd, secred.key sowie server bzw client.ovpn werden ordnungsgemäß erzeugt. Dyndns ist eingerichtet.

Ein Ping vom Client zum Server bleibt jedoch erfolglos.

Als Anhang häge ich eine Übersicht der IP Adressen sowie Debugdatei vom
Serer als auch Client als textdateien gespeichert ran.

Ich wäre sehr Dankbar wenn jemand, der davon mehr Ahnung als Ich hat einen Blick drauf wirft ob er einen Fehler findet.

Vilen Dank im voraus

Anhang anzeigen IP-Netz.bmp
 

Anhänge

  • debug-server.cfg.txt
    2.4 KB · Aufrufe: 26
  • debug-Client.cfg.txt
    3 KB · Aufrufe: 19
Starte doch mal openvpn auf dem auf beiden Boxen von Hand (also über telnet/ssh), 'daemon' jeweils auskommentiert, und beobachte die debug Meldungen. Falls Du nicht schlau daraus wirst, kannst Du die relevanten (!) Teile auch posten.

Gruß
maceis
 
Zwei Netzwerke mit Fritzboxen 7050 per Openvpn verbinden 2

Hallo Danke für die Antwort

habe die ifconfig auf der Clientseite geändert 10.0.0.1 10.0.0.2 funktioniert immer noch nicht.

Habe Daemon abgeschaltet

#Daemon

und füre folgende Befehle von Hand über telnet aus für Client

chmod +x /var/tmp/openvpn
chmod 0600 /var/tmp/client.ovpn
chmod 0600 /var/tmp/secret.key

cd /var/tmp
./openvpn --config ./client.ovpn &

und server

chmod +x /var/tmp/openvpn
chmod 0600 /var/tmp/server.ovpn
chmod 0600 /var/tmp/secret.key

cd /var/tmp
./openvpn --config ./server.ovpn &

Richtig ??

es giebt keine Fehlermeldung und OPENVPN ist in der Prozeßliste vertreten
 
Starte das ganze bitte nochmal und mache auch ein Ping "auf die andere Seite" und
poste bitte hier die Meldungen von beiden Seiten vom Start bis nach dem Ping. In [noparse]
Code:
 und
[/noparse] Tags oder als Anhang.


Jörg
 
Zwei Netzwerke mit Fritzboxen 7050 per Openvpn verbinden 3

Hallo

komme jetzt nur an den Client habe diesen Neugestartet
(Server erst wieder heute Abend, läuft aber noch der daemon)

folgende Befehle von Hand über telnet am Client ausgeführt

chmod +x /var/tmp/openvpn
chmod 0600 /var/tmp/client.ovpn
chmod 0600 /var/tmp/secret.key

cd /var/tmp
./openvpn --config ./client.ovpn &

jetzt kommen die meldungen

Code:
# chmod +x /var/tmp/openvpn
# chmod 0600 /var/tmp/client.ovpn
# chmod 0600 /var/tmp/secret.key
# cd /var/tmp

# # ./openvpn --config ./client.ovpn &
# Wed Feb 13 10:38:34 2008 us=509759 Current Parameter Settings:
Wed Feb 13 10:38:34 2008 us=511202   config = './client.ovpn'
Wed Feb 13 10:38:34 2008 us=511679   mode = 0
Wed Feb 13 10:38:34 2008 us=512439   persist_config = DISABLED
Wed Feb 13 10:38:34 2008 us=512935   persist_mode = 1
Wed Feb 13 10:38:34 2008 us=513378   show_ciphers = DISABLED
Wed Feb 13 10:38:34 2008 us=513830   show_digests = DISABLED
Wed Feb 13 10:38:34 2008 us=514460   show_engines = DISABLED
Wed Feb 13 10:38:34 2008 us=514952   genkey = DISABLED
Wed Feb 13 10:38:34 2008 us=515397   key_pass_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=515844   show_tls_ciphers = DISABLED
Wed Feb 13 10:38:34 2008 us=516292   proto = 2
Wed Feb 13 10:38:34 2008 us=516731   local = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=517207   remote_list[0] = {'mein.dyndns.de', 1194}
Wed Feb 13 10:38:34 2008 us=517664   remote_random = DISABLED
Wed Feb 13 10:38:34 2008 us=518117   local_port = 0
Wed Feb 13 10:38:34 2008 us=518559   remote_port = 1194
Wed Feb 13 10:38:34 2008 us=520459   remote_float = ENABLED
Wed Feb 13 10:38:34 2008 us=521453   ipchange = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=522417   bind_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=523371   bind_local = DISABLED
Wed Feb 13 10:38:34 2008 us=524327   dev = 'tun'
Wed Feb 13 10:38:34 2008 us=525285   dev_type = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=526242   dev_node = '/var/tmp/tun'
Wed Feb 13 10:38:34 2008 us=527201   lladdr = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=528804   topology = 1
Wed Feb 13 10:38:34 2008 us=530112   tun_ipv6 = DISABLED
Wed Feb 13 10:38:34 2008 us=532729   ifconfig_local = '10.0.0.1'
Wed Feb 13 10:38:34 2008 us=533742   ifconfig_remote_netmask = '10.0.0.2'
Wed Feb 13 10:38:34 2008 us=534713   ifconfig_noexec = DISABLED
Wed Feb 13 10:38:34 2008 us=535674   ifconfig_nowarn = DISABLED
Wed Feb 13 10:38:34 2008 us=536635   shaper = 0
Wed Feb 13 10:38:34 2008 us=537576   tun_mtu = 1500
Wed Feb 13 10:38:34 2008 us=538509   tun_mtu_defined = ENABLED
Wed Feb 13 10:38:34 2008 us=539810   link_mtu = 1500
Wed Feb 13 10:38:34 2008 us=540772   link_mtu_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=541733   tun_mtu_extra = 0
Wed Feb 13 10:38:34 2008 us=542680   tun_mtu_extra_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=543648   fragment = 0
Wed Feb 13 10:38:34 2008 us=544595   mtu_discover_type = -1
Wed Feb 13 10:38:34 2008 us=545545   mtu_test = 0
Wed Feb 13 10:38:34 2008 us=546485   mlock = DISABLED
Wed Feb 13 10:38:34 2008 us=547437   keepalive_ping = 0
Wed Feb 13 10:38:34 2008 us=548384   keepalive_timeout = 0
Wed Feb 13 10:38:34 2008 us=550786   inactivity_timeout = 0
Wed Feb 13 10:38:34 2008 us=551916   ping_send_timeout = 15
Wed Feb 13 10:38:34 2008 us=552891   ping_rec_timeout = 120
Wed Feb 13 10:38:34 2008 us=553845   ping_rec_timeout_action = 2
Wed Feb 13 10:38:34 2008 us=554794   ping_timer_remote = DISABLED
Wed Feb 13 10:38:34 2008 us=555763   remap_sigusr1 = 0
Wed Feb 13 10:38:34 2008 us=556713   explicit_exit_notification = 0
Wed Feb 13 10:38:34 2008 us=558271   persist_tun = ENABLED
Wed Feb 13 10:38:34 2008 us=560029   persist_local_ip = DISABLED
Wed Feb 13 10:38:34 2008 us=562366   persist_remote_ip = DISABLED
Wed Feb 13 10:38:34 2008 us=563372   persist_key = ENABLED
Wed Feb 13 10:38:34 2008 us=564337   mssfix = 1450
Wed Feb 13 10:38:34 2008 us=565282   passtos = DISABLED
Wed Feb 13 10:38:34 2008 us=566246   resolve_retry_seconds = 60
Wed Feb 13 10:38:34 2008 us=567210   connect_retry_seconds = 5
Wed Feb 13 10:38:34 2008 us=568161   connect_timeout = 10
Wed Feb 13 10:38:34 2008 us=569417   connect_retry_max = 0
Wed Feb 13 10:38:34 2008 us=570412   username = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=571368   groupname = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=572321   chroot_dir = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=573272   cd_dir = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=574220   writepid = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=575164   up_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=576109   down_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=577056   down_pre = DISABLED
Wed Feb 13 10:38:34 2008 us=577995   up_restart = DISABLED
Wed Feb 13 10:38:34 2008 us=579258   up_delay = DISABLED
Wed Feb 13 10:38:34 2008 us=580253   daemon = DISABLED
Wed Feb 13 10:38:34 2008 us=581194   inetd = 0
Wed Feb 13 10:38:34 2008 us=582621   log = DISABLED
Wed Feb 13 10:38:34 2008 us=583773   suppress_timestamps = DISABLED
Wed Feb 13 10:38:34 2008 us=585060   nice = 0
Wed Feb 13 10:38:34 2008 us=586002   verbosity = 4
Wed Feb 13 10:38:34 2008 us=587548   mute = 0
Wed Feb 13 10:38:34 2008 us=588510   gremlin = 0
Wed Feb 13 10:38:34 2008 us=591109   status_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=592409   status_file_version = 1
Wed Feb 13 10:38:34 2008 us=593374   status_file_update_freq = 60
Wed Feb 13 10:38:34 2008 us=594318   occ = ENABLED
Wed Feb 13 10:38:34 2008 us=595264   rcvbuf = 65536
Wed Feb 13 10:38:34 2008 us=596198   sndbuf = 65536
Wed Feb 13 10:38:34 2008 us=597131   sockflags = 0
Wed Feb 13 10:38:34 2008 us=598060   socks_proxy_server = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=599337   socks_proxy_port = 0
Wed Feb 13 10:38:34 2008 us=600326   socks_proxy_retry = DISABLED
Wed Feb 13 10:38:34 2008 us=601271   fast_io = DISABLED
Wed Feb 13 10:38:34 2008 us=602212   lzo = 0
Wed Feb 13 10:38:34 2008 us=603144   route_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=604099   route_default_gateway = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=605060   route_default_metric = 0
Wed Feb 13 10:38:34 2008 us=606000   route_noexec = DISABLED
Wed Feb 13 10:38:34 2008 us=606952   route_delay = 0
Wed Feb 13 10:38:34 2008 us=607892   route_delay_window = 30
Wed Feb 13 10:38:34 2008 us=608830   route_delay_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=610110   route_nopull = DISABLED
Wed Feb 13 10:38:34 2008 us=611103   route 192.168.0.0/255.255.255.0/nil/nil
Wed Feb 13 10:38:34 2008 us=612066   management_addr = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=613031   management_port = 0
Wed Feb 13 10:38:34 2008 us=613976   management_user_pass = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=615566   management_log_history_cache = 250
Wed Feb 13 10:38:34 2008 us=616565   management_echo_buffer_size = 100
Wed Feb 13 10:38:34 2008 us=618842   management_query_passwords = DISABLED
Wed Feb 13 10:38:34 2008 us=621692   management_hold = DISABLED
Wed Feb 13 10:38:34 2008 us=622661   management_client = DISABLED
Wed Feb 13 10:38:34 2008 us=623628   management_write_peer_info_file = '[UNDEF]
Wed Feb 13 10:38:34 2008 us=624602   shared_secret_file = '/var/tmp/secret.key'
Wed Feb 13 10:38:34 2008 us=625572   key_direction = 0
Wed Feb 13 10:38:34 2008 us=626513   ciphername_defined = ENABLED
Wed Feb 13 10:38:34 2008 us=627480   ciphername = 'BF-CBC'
Wed Feb 13 10:38:34 2008 us=628438   authname_defined = ENABLED
Wed Feb 13 10:38:34 2008 us=629703   authname = 'SHA1'
Wed Feb 13 10:38:34 2008 us=630670   keysize = 0
Wed Feb 13 10:38:34 2008 us=631606   engine = DISABLED
Wed Feb 13 10:38:34 2008 us=632548   replay = ENABLED
Wed Feb 13 10:38:34 2008 us=633489   mute_replay_warnings = DISABLED
Wed Feb 13 10:38:34 2008 us=634451   replay_window = 0
Wed Feb 13 10:38:34 2008 us=635398   replay_time = 0
Wed Feb 13 10:38:34 2008 us=636347   packet_id_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=637296   use_iv = ENABLED
Wed Feb 13 10:38:34 2008 us=638234   test_crypto = DISABLED
Wed Feb 13 10:38:34 2008 us=640378   tls_server = DISABLED
Wed Feb 13 10:38:34 2008 us=641403   tls_client = DISABLED
Wed Feb 13 10:38:34 2008 us=642362   key_method = 2
Wed Feb 13 10:38:34 2008 us=643295   ca_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=644257   ca_path = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=645828   dh_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=646815   cert_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=650429   priv_key_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=651457   pkcs12_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=652412   cipher_list = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=653365   tls_verify = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=654321   tls_remote = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=655281   crl_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=656239   ns_cert_type = 0
Wed Feb 13 10:38:34 2008 us=657176   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=658128   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=659378   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=660371   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=661319   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=662268   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=663212   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=664154   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=665097   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=666051   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=667010   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=667962   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=669238   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=670257   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=671203   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=672159   remote_cert_ku[i] = 0
Wed Feb 13 10:38:34 2008 us=673115   remote_cert_eku = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=674689   tls_timeout = 2
Wed Feb 13 10:38:34 2008 us=675653   renegotiate_bytes = 0
Wed Feb 13 10:38:34 2008 us=677878   renegotiate_packets = 0
Wed Feb 13 10:38:34 2008 us=679679   renegotiate_seconds = 3600
Wed Feb 13 10:38:34 2008 us=680671   handshake_window = 60
Wed Feb 13 10:38:34 2008 us=682047   transition_window = 3600
Wed Feb 13 10:38:34 2008 us=683078   single_session = DISABLED
Wed Feb 13 10:38:34 2008 us=684589   tls_exit = DISABLED
Wed Feb 13 10:38:34 2008 us=685558   tls_auth_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=686509   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=687480   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=688453   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=689723   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=690709   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=691684   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=692652   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=693627   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=694598   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=695570   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=696544   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=697520   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=698501   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=700433   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=701436   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=703804   pkcs11_protected_authentication = DISABLED
Wed Feb 13 10:38:34 2008 us=705124   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=706096   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=707056   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=708012   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=709276   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=710284   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=711248   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=712210   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=713168   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=714131   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=715092   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=716051   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=717011   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=717971   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=719408   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=720434   pkcs11_cert_private = DISABLED
Wed Feb 13 10:38:34 2008 us=721413   pkcs11_pin_cache_period = -1
Wed Feb 13 10:38:34 2008 us=722371   pkcs11_slot_type = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=723326   pkcs11_slot = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=724889   pkcs11_id_type = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=725881   pkcs11_id = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=728677   server_network = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=730066   server_netmask = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=731075   server_bridge_ip = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=732076   server_bridge_netmask = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=733079   server_bridge_pool_start = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=734079   server_bridge_pool_end = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=735043   ifconfig_pool_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=736047   ifconfig_pool_start = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=737034   ifconfig_pool_end = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=738022   ifconfig_pool_netmask = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=739365   ifconfig_pool_persist_filename = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=740547   ifconfig_pool_persist_refresh_freq = 600
Wed Feb 13 10:38:34 2008 us=741538   n_bcast_buf = 256
Wed Feb 13 10:38:34 2008 us=742475   tcp_queue_limit = 64
Wed Feb 13 10:38:34 2008 us=743427   real_hash_size = 256
Wed Feb 13 10:38:34 2008 us=744393   virtual_hash_size = 256
Wed Feb 13 10:38:34 2008 us=745351   client_connect_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=746308   learn_address_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=747258   client_disconnect_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=748226   client_config_dir = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=751111   ccd_exclusive = DISABLED
Wed Feb 13 10:38:34 2008 us=752777   tmp_dir = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=753765   push_ifconfig_defined = DISABLED
Wed Feb 13 10:38:34 2008 us=756255   push_ifconfig_local = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=757845   push_ifconfig_remote_netmask = 0.0.0.0
Wed Feb 13 10:38:34 2008 us=759163   enable_c2c = DISABLED
Wed Feb 13 10:38:34 2008 us=760204   duplicate_cn = DISABLED
Wed Feb 13 10:38:34 2008 us=761161   cf_max = 0
Wed Feb 13 10:38:34 2008 us=762100   cf_per = 0
Wed Feb 13 10:38:34 2008 us=763039   max_clients = 1024
Wed Feb 13 10:38:34 2008 us=763985   max_routes_per_client = 256
Wed Feb 13 10:38:34 2008 us=764940   client_cert_not_required = DISABLED
Wed Feb 13 10:38:34 2008 us=765910   username_as_common_name = DISABLED
Wed Feb 13 10:38:34 2008 us=766880   auth_user_pass_verify_script = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=767859   auth_user_pass_verify_script_via_file = DI
ABLED
Wed Feb 13 10:38:34 2008 us=768830   port_share_host = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=770203   port_share_port = 0
Wed Feb 13 10:38:34 2008 us=771152   client = DISABLED
Wed Feb 13 10:38:34 2008 us=772099   pull = DISABLED
Wed Feb 13 10:38:34 2008 us=773053   auth_user_pass_file = '[UNDEF]'
Wed Feb 13 10:38:34 2008 us=774037 OpenVPN 2.1_rc1 mipsel-linux [SSL] [LZO2] [E
OLL] built on Jan  5 2007
Wed Feb 13 10:38:34 2008 us=785836 Static Encrypt: Cipher 'BF-CBC' initialized
ith 128 bit key
Wed Feb 13 10:38:34 2008 us=787216 Static Encrypt: Using 160 bit message hash '
HA1' for HMAC authentication
Wed Feb 13 10:38:34 2008 us=792855 Static Decrypt: Cipher 'BF-CBC' initialized
ith 128 bit key
Wed Feb 13 10:38:34 2008 us=794094 Static Decrypt: Using 160 bit message hash '
HA1' for HMAC authentication
Wed Feb 13 10:38:34 2008 us=829755 TUN/TAP device tun0 opened
Wed Feb 13 10:38:34 2008 us=830950 TUN/TAP TX queue length set to 100
Wed Feb 13 10:38:34 2008 us=832135 /sbin/ifconfig tun0 10.0.0.1 pointopoint 10.
.0.2 mtu 1500
Wed Feb 13 10:38:34 2008 us=905174 /sbin/route add -net 192.168.0.0 netmask 255
255.255.0 gw 10.0.0.2
Wed Feb 13 10:38:34 2008 us=967552 Data Channel MTU parms [ L:1546 D:1450 EF:46
EB:4 ET:0 EL:0 ]
Wed Feb 13 10:38:34 2008 us=970062 Local Options String: 'V4,dev-type tun,link-
tu 1546,tun-mtu 1500,proto TCPv4_CLIENT,ifconfig 10.0.0.2 10.0.0.1,cipher BF-CB
,auth SHA1,keysize 128,secret'
Wed Feb 13 10:38:34 2008 us=971110 Expected Remote Options String: 'V4,dev-type
tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_SERVER,ifconfig 10.0.0.1 10.0.0.2,ci
her BF-CBC,auth SHA1,keysize 128,secret'
Wed Feb 13 10:38:34 2008 us=972989 Local Options hash (VER=V4): '0eca8072'
Wed Feb 13 10:38:34 2008 us=975542 Expected Remote Options hash (VER=V4): '36c7
fa1'
Wed Feb 13 10:38:34 2008 us=976792 Attempting to establish TCP connection with
17.234.222.81:1194 [nonblock]
Wed Feb 13 10:38:35 2008 us=979534 TCP: connect to 217.234.222.81:1194 failed,
ill try again in 5 seconds: No route to host
Wed Feb 13 10:38:42 2008 us=9528 TCP: connect to 217.234.222.81:1194 failed, wi
l try again in 5 seconds: No route to host
Wed Feb 13 10:38:48 2008 us=39563 TCP: connect to 217.234.222.81:1194 failed, w
ll try again in 5 seconds: No route to host
und noch das ping

Code:
C:\>ping 10.0.0.1

Ping wird ausgeführt für 10.0.0.1 mit 32 Bytes Daten:

Antwort von 10.0.0.1: Bytes=32 Zeit=2ms TTL=64
Antwort von 10.0.0.1: Bytes=32 Zeit=2ms TTL=64
Antwort von 10.0.0.1: Bytes=32 Zeit=1ms TTL=64
Antwort von 10.0.0.1: Bytes=32 Zeit=1ms TTL=64

Ping-Statistik für 10.0.0.1:
    Pakete: Gesendet = 4, Empfangen = 4, Verloren = 0 (0% Verlust),
Ca. Zeitangaben in Millisek.:
    Minimum = 1ms, Maximum = 2ms, Mittelwert = 1ms

C:\>ping 10.0.0.2

Ping wird ausgeführt für 10.0.0.2 mit 32 Bytes Daten:

Zeitüberschreitung der Anforderung.
Zeitüberschreitung der Anforderung.
Zeitüberschreitung der Anforderung.
Zeitüberschreitung der Anforderung.

Ping-Statistik für 10.0.0.2:
    Pakete: Gesendet = 4, Empfangen = 0, Verloren = 4 (100% Verlust),
 
Ohne wirklich Ahnung von openVPN und zu haben:
Code:
Wed Feb 13 10:38:34 2008 us=532729   ifconfig_local = '10.0.0.1'
Wed Feb 13 10:38:34 2008 us=533742   ifconfig_remote_netmask = '10.0.0.2'
netmask sieht merkwürdig aus, sollte das nicht eher 255.255.255.xxx sein?

Code:
Wed Feb 13 10:38:34 2008 us=976792 Attempting to establish TCP connection with
17.234.222.81:1194 [nonblock]
Wed Feb 13 10:38:35 2008 us=979534 TCP: connect to 217.234.222.81:1194 failed,
ill try again in 5 seconds: No route to host
Wed Feb 13 10:38:42 2008 us=9528 TCP: connect to 217.234.222.81:1194 failed, wi
l try again in 5 seconds: No route to host
Wed Feb 13 10:38:48 2008 us=39563 TCP: connect to 217.234.222.81:1194 failed, w
ll try again in 5 seconds: No route to host
Da geht's dann wohl in die Hose.
mein.dyndns.org wird z.Z aber zu 212.112.226.69 aufgelöst

Da keine Verbindung aufgebaut wird, geht natürlich auch der ping auf die remote IP nicht.

Tschö, Jojo
 
Zwei Netzwerke mit Fritzboxen 7050 per Openvpn verbinden 4

Hallo Jojo

Das sehe ich ein ich weiß nur nicht wo ich die Netmaske eingestellt haben könnte .
Vieleicht hier ? meiner Meinung müssen dort 2 IP stehen

wie müßte dann der coreckte Code lauten ?

Code:
dev tun
dev-node /var/tmp/tun
ifconfig 10.0.0.1 10.0.0.2               ???????
tun-mtu 1500
float
mssfix
persist-tun
persist-key
Tschö, Uwe
 
Möglicherweise ist das richtig so, wie gesagt eigentlich habe ich keine Ahnung non openVPN.

Noch was Auffälliges:
Code:
Wed Feb 13 10:38:34 2008 us=611103   route 192.168.0.0/255.255.255.0/nil/nil
...
Wed Feb 13 10:38:34 2008 us=905174 /sbin/route add -net 192.168.0.0 netmask 255
255.255.0 gw 10.0.0.2
...
Wed Feb 13 10:38:34 2008 us=976792 Attempting to establish TCP connection with
17.234.222.81:1194 [nonblock]
Wed Feb 13 10:38:35 2008 us=979534 TCP: connect to 217.234.222.81:1194 failed,
ill try again in 5 seconds: No route to host
Wed Feb 13 10:38:42 2008 us=9528 TCP: connect to 217.234.222.81:1194 failed, wi
l try again in 5 seconds: No route to host
Wed Feb 13 10:38:48 2008 us=39563 TCP: connect to 217.234.222.81:1194 failed, w
ll try again in 5 seconds: No route to host
Irgendwie sollte da aber wohl eine route ins 10er Netzwerk gesetzt werden:
Code:
route 10.0.0.0 255.255.255.0
Tschö, Jojo
 
Hi,

ja, das mit den zwei IPs ist so richtig (auch wenn es merkwürdig aussieht). Kannst du denn die Server-Fritzbox (die offizielle IP) anpingen? Wie hast du die Portweiterleitung dort gemacht?

Jörg
 
Zwei Netzwerke mit Fritzboxen 7050 per Openvpn verbinden 5

Hi Jörg

wenn Du mit Offizieller IP die eingestellte ip der Serverbox meinst läuft der Pig ins leere.

Uwe
 
Ich meine die "dyndns-IP". Kannst du die mal kurz posten (oder per PN schicken)? Ist ja spätestens Morgen wieder ne andere ;-))

Jörg
 
Ist die 217.234.222.81 dort funktioniert der Ping.

Uwe
 
Ping ja, aber der Port 1194 ist nicht offen, ich vermute ein Problem mit der Portweiterleitung? Wie ist die realisiert?

Jörg
 
Ich habe die ar7.cfg per telnet ins tmp verzeichniss kopiert, dort wie beschrieben heruntergeladen (ftp) eine Zeile hineinkopiert ( an Vorgesehene Stelle ) hochgeladen und diese per telnet wieder zurückkopiert.

Dann die Box neu gestartet.

PS muß erst mal kurz weg
 
Dann schau doch bei Gelegenheit mal, ob die Regel auch wirklich drin ist!

Z.B. mit einem
Code:
grep -C 10 1194 /var/flash/ar7.cfg


Jörg
 
Ausdrucke vom Server ovpn

Hallo habe jetzt am Server gecheckt

Code:
Ping 10.0.0.2 OK

Ping 10.0.0.1 fehler

Ping ip von FB Server 192.168.0.3 OK


Ping ip von FB Client 192.168.1.3 Fehler

grep -C 10 1194 /var/flash/ar7.cfg
Segmentation fault
habe ar7.cfg von fb heruntergeladen und nachgesehen

Code:
  }
                        forwardrules = "tcp 0.0.0.0:0 0.0.0.0:0 1 out", 
                                       "udp 0.0.0.0:0 0.0.0.0:0 1 out", 
                                       "udp 0.0.0.0:1194 0.0.0.0:1194",
                                       "udp 0.0.0.0:5060 0.0.0.0:5060", 
                                       "udp 0.0.0.0:7078 0.0.0.0:7078", 
                                       "udp 0.0.0.0:7079 0.0.0.0:7079", 
                                       "udp 0.0.0.0:7080 0.0.0.0:7080", 
                                       "udp 0.0.0.0:7081 0.0.0.0:7081", 
                                       "udp 0.0.0.0:7082 0.0.0.0:7082", 
                                       "udp 0.0.0.0:7083 0.0.0.0:7083", 
                                       "udp 0.0.0.0:7084 0.0.0.0:7084", 
                                       "udp 0.0.0.0:7085 0.0.0.0:7085", 
                                       "tcp 0.0.0.0:8089 0.0.0.0:8089", 
                                       "tcp 0.0.0.0:5631 192.168.0.5:5631 0 # pcanywhere", 
                                       "udp 0.0.0.0:5632 192.168.0.5:5632 0 # pcanywhere", 
                                       "tcp 0.0.0.0:36936 192.168.0.14:36936 0 # Patrizier", 
                                       "tcp 0.0.0.0:53 192.168.0.5:53 0 # Tobit";
                        shaper = "globalshaper";
und habe noch ein ausdruck der bStartmeldung des Servers
Code:
# ./openvpn --config ./server.ovpn &
# Thu Feb 14 14:15:10 2008 us=768782 Current Parameter Settings:
Thu Feb 14 14:15:10 2008 us=770634   config = './server.ovpn'
Thu Feb 14 14:15:10 2008 us=771570   mode = 0
Thu Feb 14 14:15:10 2008 us=772752   persist_config = DISABLED
Thu Feb 14 14:15:10 2008 us=773693   persist_mode = 1
Thu Feb 14 14:15:10 2008 us=774588   show_ciphers = DISABLED
Thu Feb 14 14:15:10 2008 us=775818   show_digests = DISABLED
Thu Feb 14 14:15:10 2008 us=776914   show_engines = DISABLED
Thu Feb 14 14:15:10 2008 us=777856   genkey = DISABLED
Thu Feb 14 14:15:10 2008 us=778779   key_pass_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=779709   show_tls_ciphers = DISABLED
Thu Feb 14 14:15:10 2008 us=780637   proto = 1
Thu Feb 14 14:15:10 2008 us=781533   local = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=782437   remote_list = NULL
Thu Feb 14 14:15:10 2008 us=783359   remote_random = DISABLED
Thu Feb 14 14:15:10 2008 us=784278   local_port = 1194
Thu Feb 14 14:15:10 2008 us=785192   remote_port = 1194
Thu Feb 14 14:15:10 2008 us=786431   remote_float = ENABLED
Thu Feb 14 14:15:10 2008 us=787357   ipchange = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=788287   bind_defined = DISABLED
Thu Feb 14 14:15:10 2008 us=789201   bind_local = ENABLED
Thu Feb 14 14:15:10 2008 us=790125   dev = 'tun0'
Thu Feb 14 14:15:10 2008 us=791047   dev_type = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=791965   dev_node = '/var/tmp/tun'
Thu Feb 14 14:15:10 2008 us=792890   lladdr = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=794799   topology = 1
Thu Feb 14 14:15:10 2008 us=796163   tun_ipv6 = DISABLED
Thu Feb 14 14:15:10 2008 us=797111   ifconfig_local = '10.0.0.2'
Thu Feb 14 14:15:10 2008 us=798045   ifconfig_remote_netmask = '10.0.0.1'
Thu Feb 14 14:15:10 2008 us=798980   ifconfig_noexec = DISABLED
Thu Feb 14 14:15:10 2008 us=799913   ifconfig_nowarn = DISABLED
Thu Feb 14 14:15:10 2008 us=801312   shaper = 0
Thu Feb 14 14:15:10 2008 us=802406   tun_mtu = 1500
Thu Feb 14 14:15:10 2008 us=803657   tun_mtu_defined = ENABLED
Thu Feb 14 14:15:10 2008 us=804590   link_mtu = 1500
Thu Feb 14 14:15:10 2008 us=806248   link_mtu_defined = DISABLED
Thu Feb 14 14:15:10 2008 us=807243   tun_mtu_extra = 0
Thu Feb 14 14:15:10 2008 us=808152   tun_mtu_extra_defined = DISABLED
Thu Feb 14 14:15:10 2008 us=809082   fragment = 0
Thu Feb 14 14:15:10 2008 us=809995   mtu_discover_type = -1
Thu Feb 14 14:15:10 2008 us=810903   mtu_test = 0
Thu Feb 14 14:15:10 2008 us=811808   mlock = DISABLED
Thu Feb 14 14:15:10 2008 us=812718   keepalive_ping = 0
Thu Feb 14 14:15:10 2008 us=813639   keepalive_timeout = 0
Thu Feb 14 14:15:10 2008 us=814554   inactivity_timeout = 0
Thu Feb 14 14:15:10 2008 us=816271   ping_send_timeout = 15
Thu Feb 14 14:15:10 2008 us=817260   ping_rec_timeout = 120
Thu Feb 14 14:15:10 2008 us=818183   ping_rec_timeout_action = 2
Thu Feb 14 14:15:10 2008 us=819103   ping_timer_remote = DISABLED
Thu Feb 14 14:15:10 2008 us=820035   remap_sigusr1 = 0
Thu Feb 14 14:15:10 2008 us=821870   explicit_exit_notification = 0
Thu Feb 14 14:15:10 2008 us=822916   persist_tun = DISABLED
Thu Feb 14 14:15:10 2008 us=823841   persist_local_ip = DISABLED
Thu Feb 14 14:15:10 2008 us=824768   persist_remote_ip = DISABLED
Thu Feb 14 14:15:10 2008 us=827119   persist_key = DISABLED
Thu Feb 14 14:15:10 2008 us=828115   mssfix = 1450
Thu Feb 14 14:15:10 2008 us=829004   passtos = DISABLED
Thu Feb 14 14:15:10 2008 us=829926   resolve_retry_seconds = 1000000000
Thu Feb 14 14:15:10 2008 us=830852   connect_retry_seconds = 5
Thu Feb 14 14:15:10 2008 us=831772   connect_timeout = 10
Thu Feb 14 14:15:10 2008 us=832691   connect_retry_max = 0
Thu Feb 14 14:15:10 2008 us=833604   username = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=834528   groupname = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=835757   chroot_dir = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=836745   cd_dir = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=837662   writepid = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=838575   up_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=839489   down_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=840396   down_pre = DISABLED
Thu Feb 14 14:15:10 2008 us=841304   up_restart = DISABLED
Thu Feb 14 14:15:10 2008 us=842207   up_delay = DISABLED
Thu Feb 14 14:15:10 2008 us=843106   daemon = DISABLED
Thu Feb 14 14:15:10 2008 us=844009   inetd = 0
Thu Feb 14 14:15:10 2008 us=844890   log = DISABLED
Thu Feb 14 14:15:10 2008 us=846189   suppress_timestamps = DISABLED
Thu Feb 14 14:15:10 2008 us=848035   nice = 0
Thu Feb 14 14:15:10 2008 us=849075   verbosity = 4
Thu Feb 14 14:15:10 2008 us=849967   mute = 0
Thu Feb 14 14:15:10 2008 us=850850   gremlin = 0
Thu Feb 14 14:15:10 2008 us=851743   status_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=852656   status_file_version = 1
Thu Feb 14 14:15:10 2008 us=853577   status_file_update_freq = 60
Thu Feb 14 14:15:10 2008 us=854478   occ = ENABLED
Thu Feb 14 14:15:10 2008 us=855377   rcvbuf = 65536
Thu Feb 14 14:15:10 2008 us=856644   sndbuf = 65536
Thu Feb 14 14:15:10 2008 us=857543   sockflags = 0
Thu Feb 14 14:15:10 2008 us=858440   socks_proxy_server = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=859369   socks_proxy_port = 0
Thu Feb 14 14:15:10 2008 us=860283   socks_proxy_retry = DISABLED
Thu Feb 14 14:15:10 2008 us=861197   fast_io = DISABLED
Thu Feb 14 14:15:10 2008 us=862105   lzo = 0
Thu Feb 14 14:15:10 2008 us=863007   route_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=863924   route_default_gateway = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=864852   route_default_metric = 0
Thu Feb 14 14:15:10 2008 us=866185   route_noexec = DISABLED
Thu Feb 14 14:15:10 2008 us=867129   route_delay = 0
Thu Feb 14 14:15:10 2008 us=868024   route_delay_window = 30
Thu Feb 14 14:15:10 2008 us=868929   route_delay_defined = DISABLED
Thu Feb 14 14:15:10 2008 us=869834   route_nopull = DISABLED
Thu Feb 14 14:15:10 2008 us=870785   route 192.168.1.0/255.255.255.0/nil/nil
Thu Feb 14 14:15:10 2008 us=872643   management_addr = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=873704   management_port = 0
Thu Feb 14 14:15:10 2008 us=874623   management_user_pass = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=875844   management_log_history_cache = 250
Thu Feb 14 14:15:10 2008 us=876808   management_echo_buffer_size = 100
Thu Feb 14 14:15:10 2008 us=877739   management_query_passwords = DISABLED
Thu Feb 14 14:15:10 2008 us=878671   management_hold = DISABLED
Thu Feb 14 14:15:10 2008 us=879600   management_client = DISABLED
Thu Feb 14 14:15:10 2008 us=880540   management_write_peer_info_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=881477   shared_secret_file = '/var/tmp/secret.key'
Thu Feb 14 14:15:10 2008 us=882422   key_direction = 0
Thu Feb 14 14:15:10 2008 us=883333   ciphername_defined = ENABLED
Thu Feb 14 14:15:10 2008 us=884258   ciphername = 'BF-CBC'
Thu Feb 14 14:15:10 2008 us=885180   authname_defined = ENABLED
Thu Feb 14 14:15:10 2008 us=886446   authname = 'SHA1'
Thu Feb 14 14:15:10 2008 us=887371   keysize = 0
Thu Feb 14 14:15:10 2008 us=888267   engine = DISABLED
Thu Feb 14 14:15:10 2008 us=889178   replay = ENABLED
Thu Feb 14 14:15:10 2008 us=890099   mute_replay_warnings = DISABLED
Thu Feb 14 14:15:10 2008 us=891034   replay_window = 0
Thu Feb 14 14:15:10 2008 us=891950   replay_time = 0
Thu Feb 14 14:15:10 2008 us=892863   packet_id_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=893782   use_iv = ENABLED
Thu Feb 14 14:15:10 2008 us=895891   test_crypto = DISABLED
Thu Feb 14 14:15:10 2008 us=896956   tls_server = DISABLED
Thu Feb 14 14:15:10 2008 us=897874   tls_client = DISABLED
Thu Feb 14 14:15:10 2008 us=898804   key_method = 2
Thu Feb 14 14:15:10 2008 us=899705   ca_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=901146   ca_path = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=902282   dh_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=903543   cert_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=904471   priv_key_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=905385   pkcs12_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=906691   cipher_list = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=907619   tls_verify = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=908541   tls_remote = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=909471   crl_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=910404   ns_cert_type = 0
Thu Feb 14 14:15:10 2008 us=911331   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=912241   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=913150   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=914070   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=914983   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=916216   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=917142   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=918047   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=918957   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=919875   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=921732   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=922790   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=923711   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=924627   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=926607   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=927610   remote_cert_ku[i] = 0
Thu Feb 14 14:15:10 2008 us=928535   remote_cert_eku = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=929455   tls_timeout = 2
Thu Feb 14 14:15:10 2008 us=930360   renegotiate_bytes = 0
Thu Feb 14 14:15:10 2008 us=931285   renegotiate_packets = 0
Thu Feb 14 14:15:10 2008 us=932215   renegotiate_seconds = 3600
Thu Feb 14 14:15:10 2008 us=933138   handshake_window = 60
Thu Feb 14 14:15:10 2008 us=934051   transition_window = 3600
Thu Feb 14 14:15:10 2008 us=934957   single_session = DISABLED
Thu Feb 14 14:15:10 2008 us=937268   tls_exit = DISABLED
Thu Feb 14 14:15:10 2008 us=938230   tls_auth_file = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=939151   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=940094   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=941036   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=941976   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=942907   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=943845   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=946487   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=947598   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=948537   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=949478   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=950427   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=951366   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=952303   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=953238   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=954178   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=955117   pkcs11_protected_authentication = DISABLED
Thu Feb 14 14:15:10 2008 us=956378   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=957327   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=958254   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=959174   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=960098   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=961032   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=961962   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=962890   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=963816   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=964747   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=966975   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=968004   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=968928   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=969853   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=970782   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=971709   pkcs11_cert_private = DISABLED
Thu Feb 14 14:15:10 2008 us=972642   pkcs11_pin_cache_period = -1
Thu Feb 14 14:15:10 2008 us=973561   pkcs11_slot_type = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=974475   pkcs11_slot = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=975393   pkcs11_id_type = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=976681   pkcs11_id = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=977781   server_network = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=978759   server_netmask = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=979717   server_bridge_ip = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=980677   server_bridge_netmask = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=981641   server_bridge_pool_start = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=982599   server_bridge_pool_end = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=983516   ifconfig_pool_defined = DISABLED
Thu Feb 14 14:15:10 2008 us=984482   ifconfig_pool_start = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=985818   ifconfig_pool_end = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=986877   ifconfig_pool_netmask = 0.0.0.0
Thu Feb 14 14:15:10 2008 us=987807   ifconfig_pool_persist_filename = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=989858   ifconfig_pool_persist_refresh_freq = 600
Thu Feb 14 14:15:10 2008 us=990882   n_bcast_buf = 256
Thu Feb 14 14:15:10 2008 us=991792   tcp_queue_limit = 64
Thu Feb 14 14:15:10 2008 us=992721   real_hash_size = 256
Thu Feb 14 14:15:10 2008 us=993645   virtual_hash_size = 256
Thu Feb 14 14:15:10 2008 us=994559   client_connect_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=996531   learn_address_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=997492   client_disconnect_script = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=998427   client_config_dir = '[UNDEF]'
Thu Feb 14 14:15:10 2008 us=999348   ccd_exclusive = DISABLED
Thu Feb 14 14:15:11 2008 us=698   tmp_dir = '[UNDEF]'
Thu Feb 14 14:15:11 2008 us=1684   push_ifconfig_defined = DISABLED
Thu Feb 14 14:15:11 2008 us=3141   push_ifconfig_local = 0.0.0.0
Thu Feb 14 14:15:11 2008 us=4139   push_ifconfig_remote_netmask = 0.0.0.0
Thu Feb 14 14:15:11 2008 us=5073   enable_c2c = DISABLED
Thu Feb 14 14:15:11 2008 us=6338   duplicate_cn = DISABLED
Thu Feb 14 14:15:11 2008 us=7268   cf_max = 0
Thu Feb 14 14:15:11 2008 us=8165   cf_per = 0
Thu Feb 14 14:15:11 2008 us=9067   max_clients = 1024
Thu Feb 14 14:15:11 2008 us=9968   max_routes_per_client = 256
Thu Feb 14 14:15:11 2008 us=10891   client_cert_not_required = DISABLED
Thu Feb 14 14:15:11 2008 us=11835   username_as_common_name = DISABLED
Thu Feb 14 14:15:11 2008 us=12767   auth_user_pass_verify_script = '[UNDEF]'
Thu Feb 14 14:15:11 2008 us=13709   auth_user_pass_verify_script_via_file = DISA
BLED
Thu Feb 14 14:15:11 2008 us=14661   port_share_host = '[UNDEF]'
Thu Feb 14 14:15:11 2008 us=15869   port_share_port = 0
Thu Feb 14 14:15:11 2008 us=16816   client = DISABLED
Thu Feb 14 14:15:11 2008 us=17732   pull = DISABLED
Thu Feb 14 14:15:11 2008 us=19580   auth_user_pass_file = '[UNDEF]'
Thu Feb 14 14:15:11 2008 us=20669 OpenVPN 2.1_rc1 mipsel-linux [SSL] [LZO2] [EPO
LL] built on Jan  5 2007
Thu Feb 14 14:15:11 2008 us=32148 Static Encrypt: Cipher 'BF-CBC' initialized wi
th 128 bit key
Thu Feb 14 14:15:11 2008 us=33481 Static Encrypt: Using 160 bit message hash 'SH
A1' for HMAC authentication
Thu Feb 14 14:15:11 2008 us=37070 Static Decrypt: Cipher 'BF-CBC' initialized wi
th 128 bit key
Thu Feb 14 14:15:11 2008 us=38230 Static Decrypt: Using 160 bit message hash 'SH
A1' for HMAC authentication
Thu Feb 14 14:15:11 2008 us=53948 TUN/TAP device tun0 opened
Thu Feb 14 14:15:11 2008 us=55113 TUN/TAP TX queue length set to 100
Thu Feb 14 14:15:11 2008 us=56621 /sbin/ifconfig tun0 10.0.0.2 pointopoint 10.0.
0.1 mtu 1500
Thu Feb 14 14:15:11 2008 us=130661 /sbin/route add -net 192.168.1.0 netmask 255.
255.255.0 gw 10.0.0.1
Thu Feb 14 14:15:11 2008 us=194140 Data Channel MTU parms [ L:1546 D:1450 EF:46
EB:4 ET:0 EL:0 ]
Thu Feb 14 14:15:11 2008 us=196516 Local Options String: 'V4,dev-type tun,link-m
tu 1546,tun-mtu 1500,proto TCPv4_SERVER,ifconfig 10.0.0.1 10.0.0.2,cipher BF-CBC
,auth SHA1,keysize 128,secret'
Thu Feb 14 14:15:11 2008 us=197527 Expected Remote Options String: 'V4,dev-type
tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_CLIENT,ifconfig 10.0.0.2 10.0.0.1,cip
her BF-CBC,auth SHA1,keysize 128,secret'
Thu Feb 14 14:15:11 2008 us=199383 Local Options hash (VER=V4): '36c79fa1'
Thu Feb 14 14:15:11 2008 us=201291 Expected Remote Options hash (VER=V4): '0eca8
072'
Thu Feb 14 14:15:11 2008 us=203063 Listening for incoming TCP connection on [und
ef]:1194
+ die Prozeßliste
Code:
# ps
  PID  Uid     VmSize Stat Command
    1 root        336 S   init
    2 root            SWN [ksoftirqd/0]
    3 root            SW< [events/0]
    4 root            SW< [khelper]
    5 root            SW< [kthread]
    6 root            SW< [kblockd/0]
   23 root            SW< [pdflush]
   24 root            SW< [pdflush]
   26 root            SW< [aio/0]
   25 root            SW  [kswapd0]
   62 root            SW  [pm_info]
   70 root            SW  [mtdblockd]
   96 root            SW  [tffsd_mtd_0]
  335 root        292 S   cat /dev/debug
  340 root            SW< [capi_oslib]
  341 root            SW< [capi_oslib]
  342 root            SW  [ubik2_tx[8]]
  343 root            SW  [capitransp]
  389 root       1832 S N ctlmgr
  411 root        456 S   wpa_authenticator
  425 root        948 S   usermand
  434 root        956 S N websrv
  439 root       1380 S   igdd
  441 root        956 S N websrv
  442 root        956 S N websrv
  443 root        956 S N websrv
  448 root       1284 S   multid
  456 root       1268 S   dsld -i -n
  470 root        872 S   telefon a127.0.0.1
  474 root        304 S   telnetd -l /sbin/ar7login
  477 root       1776 S < voipd
  486 root        192 S   /bin/run_clock -c /dev/tffs -d
  499 root       1380 S   igdd
  500 root       1380 S   igdd
  501 root       1380 S   igdd
  503 root            RWN [kdsld_token]
  511 root        292 S   /var/tmp/bftpd -d -c /var/tmp/bftpd.conf
  520 root        732 S   ./openvpn --config ./server.ovpn
  522 root        336 S   init
  528 root        432 S   -sh
  615 root        360 R   ps
#
werde es nachher gleich von Client probieren ich glaube aber nicht das es klappt, weil ich nichts geänert habe und wie gesagt es geht nicht !
 
Zuletzt bearbeitet:
Du hast in der Portweiterleitung UDP gewählt, deine Konfig nutzt aber TCP!

Jörg
 
Holen Sie sich 3CX - völlig kostenlos!
Verbinden Sie Ihr Team und Ihre Kunden Telefonie Livechat Videokonferenzen

Gehostet oder selbst-verwaltet. Für bis zu 10 Nutzer dauerhaft kostenlos. Keine Kreditkartendetails erforderlich. Ohne Risiko testen.

3CX
Für diese E-Mail-Adresse besteht bereits ein 3CX-Konto. Sie werden zum Kundenportal weitergeleitet, wo Sie sich anmelden oder Ihr Passwort zurücksetzen können, falls Sie dieses vergessen haben.