asi uz vim nac narazis :-) zas jsem asi pouzil verejnou :D ok ok .. dam na pocatek 10 v ramci lokalni site.. coz by dle http://cs.wikipedia.org/wiki/IP_adresa melo byt OK :D
Printable View
asi uz vim nac narazis :-) zas jsem asi pouzil verejnou :D ok ok .. dam na pocatek 10 v ramci lokalni site.. coz by dle http://cs.wikipedia.org/wiki/IP_adresa melo byt OK :D
ale stejne si myslim ze by to nemelo vadit.. nebo snad ano ?.. vzdyt se pripojuju na 84.... proc vadize pouzivam pro lokalni nejakou ktera se pouziva jako verejna ?
kdo mi to vysvetli ?? :-)
Kdyz pominu, ze je to prasecina, tak je dobre mozny, ze to neprojde pres router. BTW port forwardnutej na routeru mas?
A k pouziti ciziho verejnyho rozsahu v LAN te vedla nejaka konkretni myslenka, nebo jsi jen chtel bejt hustej a mit tam neco jinyho nez 10.x/192.168.x ? ;D (ptam se, protoze jsem to taky jednou udelal, kdyz jsem byl malej :) )
jinak odlisnost se mi take libila.. :D ale husty asi moc nejsem .. kdyz to kritizuji :D
Ok, takze si LAN predelej na privatni rozsah, port forwardnutej mas, takze vpn server pak bude poslouchat na 10.neco:1194 a klient zvenci se bude pripojovat na tu verejnou na forwardnutej port. Bacha na to, ze s beznou konfiguraci ti nebude fungovat pripojeni na verejnou IP z vnitrni site.
coze? :D
cece prvni cast chapu...
local sit predelam na 10. neco
presmerovani na routeru nastavim na PC kde je server spusten s portem dle konfigu
client se pripoji na verejnou 84.neco s portem dle nastaveni konfigu serveru a presmerovani
vysvetli mi tvou posledni vetu :D ctu ji dokola ale nepobiram text :D
Kdyz v LAN budes lezt na verejnou:1194, tak ti to pravdepodobne nebude fungovat, tak abys to nezkousel z LAN na verejnou a nedivil se
Proste klienta pripojis na privatni IP toho serveru ;)
aha.. takze to muzu testnou tak.. ze config nastavim na IP PC, kde server bezi... a tim si ho otestuju ?
a pokud vse pujde.. tak by to melo fachcit i pres verejnou IP?
chci pak vyzkouset sdileni pres VPN a prenos dat.. to budu muset testnout ze site nekde jinde nez doma na lokalce ze?.. abych mel jistotu ze je to opravdu testovane pres VPN a ne local sit
Presne tak. Da se to udelat i jinak, ale to bys musel docela dost reconfit NAT.
hlasim uspech :D
server OK .. snad
vypsalo mi to
napiste zda je vse OK.. ale myslim si ze ne.. pac mi tam pry neco nekde chybi :-)Citace:
Thu May 26 18:00:15 2011 OpenVPN 2.1.4 i686-pc-mingw32 [SSL] [LZO2] [PKCS11] built on Nov 8 2010
Thu May 26 18:00:15 2011 NOTE: when bridging your LAN adapter with the TAP adapter, note that the new bridge adapter will often take on its own IP address that is different from what the LAN adapter was previously set to
Thu May 26 18:00:15 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu May 26 18:00:15 2011 Diffie-Hellman initialized with 1024 bit key
Thu May 26 18:00:15 2011 TLS-Auth MTU parms [ L:1590 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 26 18:00:15 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu May 26 18:00:15 2011 TAP-WIN32 device [OpevVPN] opened: \\.\Global\{57901368-4409-4CAB-B541-F212EA6EAF44}.tap
Thu May 26 18:00:15 2011 TAP-Win32 Driver Version 9.7
Thu May 26 18:00:15 2011 TAP-Win32 MTU=1500
Thu May 26 18:00:15 2011 Sleeping for 10 seconds...
Thu May 26 18:00:25 2011 NOTE: FlushIpNetTable failed on interface [19] {57901368-4409-4CAB-B541-F212EA6EAF44} (status=1168) : Prvek nebyl nalezen.
Thu May 26 18:00:25 2011 Data Channel MTU parms [ L:1590 D:1450 EF:58 EB:135 ET:32 EL:0 AF:3/1 ]
Thu May 26 18:00:25 2011 UDPv4 link local (bound): 10.16.9.193:1194
Thu May 26 18:00:25 2011 UDPv4 link remote: [undef]
Thu May 26 18:00:25 2011 MULTI: multi_init called, r=256 v=256
Thu May 26 18:00:25 2011 IFCONFIG POOL: base=10.8.0.50 size=51
Thu May 26 18:00:25 2011 IFCONFIG POOL LIST
Thu May 26 18:00:25 2011 Initialization Sequence Completed
pri pokusu pripojeni klienta mi to na strane serveru napsalo
a to se mi moc nelibi.. uz jen proto jak to je dlouhe..Citace:
Thu May 26 18:14:07 2011 MULTI: multi_create_instance called
Thu May 26 18:14:07 2011 10.16.9.196:1205 Re-using SSL/TLS context
Thu May 26 18:14:07 2011 10.16.9.196:1205 LZO compression initialized
Thu May 26 18:14:07 2011 10.16.9.196:1205 Control Channel MTU parms [ L:1590 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 26 18:14:07 2011 10.16.9.196:1205 Data Channel MTU parms [ L:1590 D:1450 EF:58 EB:135 ET:32 EL:0 AF:3/1 ]
Thu May 26 18:14:07 2011 10.16.9.196:1205 Local Options hash (VER=V4): '26e19fc0'
Thu May 26 18:14:07 2011 10.16.9.196:1205 Expected Remote Options hash (VER=V4): 'b498be7c'
Thu May 26 18:14:07 2011 10.16.9.196:1205 TLS: Initial packet from 10.16.9.196:1205, sid=0ee8b033 e9900e55
Thu May 26 18:14:07 2011 10.16.9.196:1205 VERIFY OK: depth=1, /C=CR/ST=Czech_Republic/L=Jirkov/O=OpenVPN/OU=Black_Reider/CN=OpenVPN-CA/emailAddress=pohnljiri@gmail.com
Thu May 26 18:14:07 2011 10.16.9.196:1205 VERIFY OK: depth=0, /C=CR/ST=Czech_Republic/O=OpenVPN/OU=Black_Reider_client/CN=client/emailAddress=pohnljiri@gmail.com
Thu May 26 18:14:07 2011 10.16.9.196:1205 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Thu May 26 18:14:07 2011 10.16.9.196:1205 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu May 26 18:14:07 2011 10.16.9.196:1205 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Thu May 26 18:14:07 2011 10.16.9.196:1205 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu May 26 18:14:07 2011 10.16.9.196:1205 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu May 26 18:14:07 2011 10.16.9.196:1205 [client] Peer Connection Initiated with 10.16.9.196:1205
Thu May 26 18:14:09 2011 client/10.16.9.196:1205 PUSH: Received control message: 'PUSH_REQUEST'
Thu May 26 18:14:09 2011 client/10.16.9.196:1205 SENT CONTROL [client]: 'PUSH_REPLY,route 10.16.9.158,route 10.16.9.159,route 10.16.9.193,route 10.16.9.196,route 10.16.9.199,route 10.16.9.198,route-gateway 10.8.0.4,ping 10,ping-restart 120,ifconfig 10.8.0.50 255.255.255.0' (status=1)
Thu May 26 18:14:09 2011 client/10.16.9.196:1205 MULTI: Learn: 00:ff:3d:0d:a2:e1 -> client/10.16.9.196:1205
Thu May 26 18:14:19 2011 client/10.16.9.196:1205 MULTI: Learn: 76:f0:6d:22:37:c1 -> client/10.16.9.196:1205
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [6]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [12]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [20]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [22]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [24]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [29]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [31]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [33]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [36]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [38]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [40]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [42]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [44]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [46]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [50]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [56]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [58]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [65]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25831 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25832 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [69]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25827 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25829 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25828 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25830 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [71]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25825 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [75]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25821 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25823 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25822 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25826 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [77]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25819 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25820 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25824 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [79]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25817 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [85]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25811 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25815 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [107]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25816 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25818 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [110]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25813 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25814 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [111]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25812 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [118]
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25805 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:07 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25809 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25810 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25806 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25807 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25808 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [120]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25803 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25804 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [122]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25801 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [124]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25799 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25802 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25800 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [127]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25797 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [129]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25795 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25798 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25796 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [131]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25793 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [133]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25791 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25794 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25792 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [140]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25784 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25788 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25789 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25786 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25787 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [144]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25780 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25781 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25782 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25785 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [146]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25778 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25783 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25779 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [148]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25776 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25777 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [150]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25774 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25775 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [156]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25768 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25772 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25769 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25773 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25770 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25771 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [160]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25764 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25766 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25767 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25765 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [162]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25762 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [168]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25756 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25763 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25757 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25758 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [170]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25754 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [174]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25750 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25759 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25752 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25753 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25755 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25751 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [176]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25748 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25749 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [196]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25728 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25739 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25747 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25738 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [198]
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25726 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25727 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25734 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25746 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25743 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25741 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25790 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25732 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25744 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25833 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25736 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25731 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25760 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25761 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25742 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25737 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:08 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25730 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:09 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #27973 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:09 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #27974 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:09 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #27975 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:15:09 2011 client/10.16.9.196:1205 NOTE: --mute triggered...
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 224 variation(s) on previous 20 message(s) suppressed by --mute
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [199]
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45965 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46000 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [206]
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45961 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46015 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46053 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46021 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45989 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45972 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46011 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45977 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45980 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46056 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Replay-window backtrack occurred [209]
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45969 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46094 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #46004 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45997 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Thu May 26 18:19:20 2011 client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #45993 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
co je spatne?
zasilam configy serveru a klienta
server
klientCitace:
local 10.16.9.193
port 1194
proto udp
dev tap
ca ca.crt
cert server.crt
key server.key
dh dh1024.pem
ifconfig-pool-persist ipp.txt
server-bridge 10.8.0.4 255.255.255.0 10.8.0.50 10.8.0.100
server-bridge
push "route 10.16.9.158"
push "route 10.16.9.159"
push "route 10.16.9.193"
push "route 10.16.9.196"
push "route 10.16.9.199"
push "route 10.16.9.198"
client-to-client
keepalive 10 120
cipher AES-128-CBC
comp-lzo
max-clients 100
persist-key
persist-tun
status openvpn-status.log
verb 3
mute 20
na strane klienta to pri pokusu o spojeni napsaloCitace:
client
dev tap
proto udp
;remote 84.242.111.122:1194
remote 10.16.9.193:1194
resolv-retry infinite
nobind
persist-key
persist-tun
mute-replay-warnings
ca ca.crt
cert client.crt
key client.key
ns-cert-type server
cipher AES-128-CBC
comp-lzo
verb 3
mute 20
Citace:
Thu May 26 18:13:07 2011 OpenVPN 2.2.0 Win32-MSVC++ [SSL] [LZO2] built on Apr 26 2011
Thu May 26 18:13:07 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu May 26 18:13:07 2011 LZO compression initialized
Thu May 26 18:13:07 2011 Control Channel MTU parms [ L:1590 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 26 18:13:07 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu May 26 18:13:07 2011 Data Channel MTU parms [ L:1590 D:1450 EF:58 EB:135 ET:32 EL:0 AF:3/1 ]
Thu May 26 18:13:07 2011 Local Options hash (VER=V4): 'b498be7c'
Thu May 26 18:13:07 2011 Expected Remote Options hash (VER=V4): '26e19fc0'
Thu May 26 18:13:07 2011 UDPv4 link local: [undef]
Thu May 26 18:13:07 2011 UDPv4 link remote: 10.16.9.193:1194
Thu May 26 18:13:07 2011 TLS: Initial packet from 10.16.9.193:1194, sid=d0270614 5d836d45
Thu May 26 18:13:07 2011 VERIFY OK: depth=1, /C=CR/ST=Czech_Republic/L=Jirkov/O=OpenVPN/OU=Black_Reider/CN=OpenVPN-CA/emailAddress=pohnljiri@gmail.com
Thu May 26 18:13:07 2011 VERIFY OK: nsCertType=SERVER
Thu May 26 18:13:07 2011 VERIFY OK: depth=0, /C=CR/ST=Czech_Republic/O=OpenVPN/OU=Black_Reider_server/CN=server/emailAddress=pohnljiri@gmail.com
Thu May 26 18:13:07 2011 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Thu May 26 18:13:07 2011 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu May 26 18:13:07 2011 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Thu May 26 18:13:07 2011 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Thu May 26 18:13:07 2011 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu May 26 18:13:07 2011 [server] Peer Connection Initiated with 10.16.9.193:1194
Thu May 26 18:13:09 2011 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Thu May 26 18:13:09 2011 PUSH: Received control message: 'PUSH_REPLY,route 10.16.9.158,route 10.16.9.159,route 10.16.9.193,route 10.16.9.196,route 10.16.9.199,route 10.16.9.198,route-gateway 10.8.0.4,ping 10,ping-restart 120,ifconfig 10.8.0.50 255.255.255.0'
Thu May 26 18:13:09 2011 OPTIONS IMPORT: timers and/or timeouts modified
Thu May 26 18:13:09 2011 OPTIONS IMPORT: --ifconfig/up options modified
Thu May 26 18:13:09 2011 OPTIONS IMPORT: route options modified
Thu May 26 18:13:09 2011 OPTIONS IMPORT: route-related options modified
Thu May 26 18:13:09 2011 ROUTE default_gateway=10.16.9.1
Thu May 26 18:13:09 2011 TAP-WIN32 device [OpenVPN] opened: \\.\Global\{3D0DA2E1-FF18-4F0C-ABAD-D0BF1ED69472}.tap
Thu May 26 18:13:09 2011 NOTE: could not get adapter index for {3D0DA2E1-FF18-4F0C-ABAD-D0BF1ED69472}
Thu May 26 18:13:09 2011 TAP-Win32 Driver Version 9.8
Thu May 26 18:13:09 2011 TAP-Win32 MTU=1500
Thu May 26 18:13:09 2011 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.8.0.50/255.255.255.0 on interface {3D0DA2E1-FF18-4F0C-ABAD-D0BF1ED69472} [DHCP-serv: 10.8.0.0, lease-time: 31536000]
Thu May 26 18:13:14 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:14 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:19 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:19 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:20 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:20 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:21 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:21 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:22 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:22 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:23 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:23 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:24 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:24 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:25 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:25 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:26 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:26 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:27 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:27 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:28 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:28 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:29 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:29 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:30 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:30 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:31 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:31 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:32 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:32 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:33 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:33 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:34 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:34 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:35 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:35 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:36 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:36 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:37 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:37 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:38 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:38 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:39 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:39 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:40 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:40 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:41 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:41 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:42 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:42 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:43 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:43 2011 Route: Waiting for TUN/TAP interface to come up...
Thu May 26 18:13:44 2011 TEST ROUTES: 0/6 succeeded len=6 ret=0 a=0 u/d=up
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.158/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.158 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.159/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.159 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.193/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.193 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.196/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.196 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.199/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.199 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
Thu May 26 18:13:44 2011 WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.198/255.255.255.255]
Thu May 26 18:13:44 2011 C:\WINDOWS\system32\route.exe ADD 10.16.9.198 MASK 255.255.255.255 10.8.0.4
Thu May 26 18:13:44 2011 Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Thu May 26 18:13:44 2011 Route addition via IPAPI failed [adaptive]
Thu May 26 18:13:44 2011 Route addition fallback to route.exe
Pýid nˇ trasy se nezdaýilo: BuÔ je index rozhranˇ chybně, nebo br na nenˇ ve stejn‚ sˇti jako rozhranˇ. Zkontrolujte u tohoto poźˇtaźe tabulku adres IP.
SYSTEM ROUTING TABLE
0.0.0.0 0.0.0.0 10.16.9.1 p=0 i=327683 t=4 pr=3 a=223 h=0 m=25/-1/-1/-1/-1
10.16.9.0 255.255.255.0 10.16.9.196 p=0 i=327683 t=3 pr=2 a=226 h=0 m=25/-1/-1/-1/-1
10.16.9.196 255.255.255.255 127.0.0.1 p=0 i=1 t=3 pr=2 a=226 h=0 m=25/-1/-1/-1/-1
10.255.255.255 255.255.255.255 10.16.9.196 p=0 i=327683 t=3 pr=2 a=226 h=0 m=25/-1/-1/-1/-1
127.0.0.0 255.0.0.0 127.0.0.1 p=0 i=1 t=3 pr=2 a=1781 h=0 m=1/-1/-1/-1/-1
224.0.0.0 240.0.0.0 10.16.9.196 p=0 i=327683 t=3 pr=2 a=226 h=0 m=25/-1/-1/-1/-1
255.255.255.255 255.255.255.255 10.16.9.196 p=0 i=327683 t=3 pr=2 a=243 h=0 m=1/-1/-1/-1/-1
255.255.255.255 255.255.255.255 10.16.9.196 p=0 i=458754 t=3 pr=2 a=231 h=0 m=1/-1/-1/-1/-1
SYSTEM ADAPTER LIST
Miniport mostu MAC - Packet Scheduler Miniport
Index = 327683
GUID = {07B3DAA0-C1F7-4927-9082-2F405F21D1EA}
IP = 10.16.9.196/255.255.255.0
MAC = 76:f0:6d:22:37:c1
GATEWAY = 10.16.9.1/0.0.0.0
DHCP SERV = 10.16.9.1
DHCP LEASE OBTAINED = Thu May 26 18:09:59 2011
DHCP LEASE EXPIRES = Thu Jan 01 01:00:00 1970
DNS SERV = 10.16.9.1
Atheros AR8132 PCI-E Fast Ethernet Controller - Packet Scheduler Miniport
Index = 458754
GUID = {C43E82CD-3BC1-446E-83CF-16CEC354A92B}
IP = 0.0.0.0/0.0.0.0
MAC = 20:cf:30:42:68:96
GATEWAY =
DHCP SERV = 255.255.255.255
DHCP LEASE OBTAINED = Wed May 25 17:42:43 2011
DHCP LEASE EXPIRES = Fri Oct 14 04:21:55 2016
DNS SERV =
Thu May 26 18:13:44 2011 Initialization Sequence Completed With Errors ( see http://openvpn.net/faq.html#dhcpclientserv )
Thu May 26 18:28:08 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:09 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:09 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:10 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:11 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:12 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:12 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:13 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:13 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:14 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:14 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:14 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:14 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:14 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)
Thu May 26 18:28:15 2011 NOTE: --mute triggered...
pokus o pripojeni probehl v ramci lokalni site
nejde mi ping.. ani nic jineho.. prosim poradte kde je chyba
co mam pinknout? (jak abych vedel zda to delam spravne)
jak to ze po pripojeni me to odpoji od netu ?
mam takovou radost i z tohoto castecneho uspechu ze se vsem omlouvam ze jsem se tak rozepsal
a moc dekuji vsem za odpovedi :-)
//:reakce na jezevce
...a windows si s routovaci tabulkou delaji co chteji, takze muzes jet pres VPN a najednou zase ne :)
To je jednoduchy, prepsal sis routu na VPN server z LAN do VPN, takze celkem logicky upadlo spojeni. Fakt si nejdriv nastuduj aspon zaklady o sitich, takhle se budes tocit na blbostech jeste dlouho :)
doplnuji:
pri pokusu o pripojeni z externi site net (jine nez domaci) mi to vypsalo
a pripojeni se nezdariloCitace:
Thu May 26 21:40:40 2011 OpenVPN 2.2.0 Win32-MSVC++ [SSL] [LZO2] built on Apr 26 2011
Thu May 26 21:40:40 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu May 26 21:40:40 2011 LZO compression initialized
Thu May 26 21:40:40 2011 Control Channel MTU parms [ L:1590 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 26 21:40:40 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu May 26 21:40:40 2011 Data Channel MTU parms [ L:1590 D:1450 EF:58 EB:135 ET:32 EL:0 AF:3/1 ]
Thu May 26 21:40:40 2011 Local Options hash (VER=V4): 'b498be7c'
Thu May 26 21:40:40 2011 Expected Remote Options hash (VER=V4): '26e19fc0'
Thu May 26 21:40:40 2011 UDPv4 link local: [undef]
Thu May 26 21:40:40 2011 UDPv4 link remote: 84.242.111.122:1194
Thu May 26 21:41:40 2011 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Thu May 26 21:41:40 2011 TLS Error: TLS handshake failed
Thu May 26 21:41:40 2011 TCP/UDP: Closing socket
Thu May 26 21:41:40 2011 SIGUSR1[soft,tls-error] received, process restarting
Thu May 26 21:41:40 2011 Restart pause, 2 second(s)
Thu May 26 21:41:42 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu May 26 21:41:42 2011 Re-using SSL/TLS context
Thu May 26 21:41:42 2011 LZO compression initialized
Thu May 26 21:41:42 2011 Control Channel MTU parms [ L:1590 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 26 21:41:42 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu May 26 21:41:42 2011 Data Channel MTU parms [ L:1590 D:1450 EF:58 EB:135 ET:32 EL:0 AF:3/1 ]
Thu May 26 21:41:42 2011 Local Options hash (VER=V4): 'b498be7c'
Thu May 26 21:41:42 2011 Expected Remote Options hash (VER=V4): '26e19fc0'
Thu May 26 21:41:42 2011 UDPv4 link local: [undef]
Thu May 26 21:41:42 2011 UDPv4 link remote: 84.242.111.122:1194
prosim o vysvetleni
najde se tu nekdo kdo mi pomuze doladit ten konec ? :(
uz mam skoro vse... chci jen projet nastaveni.. nechat si to zkritizovat.. a zaroven PORADIT tipy na lepsi konfiguraci..
odladit chyby a pomoc vysvetlit :(
;)Kód:TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
:D
pekne.. to jsem tam taky videl.. a preklad ?
:D
ajina neni mou silnou str.. prekladam si to co znam nebo pomoci strycka google
pise abych prekontroloval pristup k siti.. ale ten byl OK...
kontroloval jsem presmerovani portu ktere bylo taktez OK...
server na dane IP bezel OK..
v cem by to mohlo byt?
helpnes mi jeste s predchozim textem?.. kde jsem se pripojival v lokalni siti primo na IP PC se serverem.. zde si taktez myslim ze tam bylo neco spatne...
routovani se uz drtim a odpol zkusim zapracovat zmeny.. i pres to si myslim ze po prideleni IP 10.8.0.50 clientovy by mohl client ping alespon server .. coz se mi taktez nepovedlo.. proc ?
"zkontroluj konektivitu" ... Mas urcite presmerovany udp a ne tcp? Poradil bych ti zkusit to netcatem, ale protoze windows, tak smula. Navic pokud si ted vybavuju spravne, tak na windows je problem s pridelovanim tech /30 subnetu, protoze on pak nepinga na server, kterej ma ip .1
vim ze to mozna bude na dlouho a nebo mi to nekdo neudela ale muze mi nekdo podrobnejs rozepsat.. co mi to tedminal vypsal?
jedna se mi po prispevek #65
rad bych porozumnel tomu co se tam vsude pise.. :-(
Sorry, na to nemam :)
zajimaji me hlavne tyto texty.. ostatni si tak nejak davam do kupy sam
zajimaly by me nasledujici texty
12Citace:
PUSH: Received control message: 'PUSH_REQUEST'
3Citace:
client/10.16.9.196:1205 MULTI: Learn: 00:ff:3d:0d:a2:e1 -> client/10.16.9.196:1205
4Citace:
client/10.16.9.196:1205 Replay-window backtrack occurred [6]
5Citace:
client/10.16.9.196:1205 Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #25831 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
6Citace:
WARNING: potential route subnet conflict between local LAN [10.16.9.0/255.255.255.0] and remote VPN [10.16.9.158/255.255.255.255]
7Citace:
Warning: route gateway is not reachable on any active network adapters: 10.8.0.4
Citace:
Thu May 26 18:28:08 2011 write UDPv4: No Route to Host (WSAEHOSTUNREACH) (code=10065)