Quantcast
Aktuelles
Digital Eliteboard - Das Digitale Technik Forum

Registriere dich noch heute kostenlos, um Mitglied zu werden! Sobald du angemeldet bist, kannst du auf unserer Seite aktiv teilnehmen, indem du deine eigenen Themen und Beiträge erstellst und dich über deinen eigenen Posteingang mit anderen Mitgliedern unterhalten kannst! Zudem bekommst du Zutritt zu Bereichen, welche für Gäste verwehrt bleiben

Registriere dich noch heute kostenlos, um Mitglied zu werden! Sobald du angemeldet bist, kannst du auf unserer Seite aktiv teilnehmen, indem du deine eigenen Themen und Beiträge erstellst und dich über deinen eigenen Posteingang mit anderen Mitgliedern unterhalten kannst! Zudem bekommst du Zutritt zu Bereichen, welche für Gäste verwehrt bleiben

OpenVPN - Verbindung bricht ab

UncleC

Premium
Registriert
6. Januar 2010
Beiträge
1.448
Reaktionspunkte
296
Punkte
243
Ort
Dahoam
Hallo DEBler,
Ich hab heute meinen Pogoplug neu aufgesetzt, und OpenWRT vom Diggen drauf geflasht..
OpenVPN installiert und die Karten via Tunnel in meinen VPS eingebunden, verlief eigtl alles wunderbar..
Doch immer wieder blieb das WebIF der Oscam des VPSs hängen..
Kurz in den Oscam Log geguggt und festgestellt das eigtl alles Problemlos weiterlief, nur meine Reader sich Disconnecten während das WebIf hängen blieb..
Da meine Reader wie gesagt via VPN eingebunden sind, und ich auf das WebIf ebenfalls wie VPN und Portweiterleitung zugreife kann es ja eigtl nur ein OpenVPN Problem sein..
Putty geöffnet und Dauerping von Pogo zu VPS und andersrum..
Und siehe da, wenn das WebIF hängen bleibt ist auch kein Ping vom Pogo zum VPS möglich.. Andersrum also von VPS zu Pogo wird fleißig weitergepingt..

Code:
clientdev tun
port 1194
proto udp
remote xxx.xxx.xxx.xx
nobind
ca /etc/openvpn/ca.crt
cert /etc/openvpn/key2.crt
key /etc/openvpn/key2.key
cipher AES-256-CBC
persist-key
persist-tun
verb 3

Und hier mal der Openvpn.log .. nach Start und bei ca 17:47 ist die Verbindung einmal abgebrochen

Code:
Wed Jun 17 17:47:01 2015 OpenVPN 2.3.4 arm-openwrt-linux-gnu [SSL (OpenSSL)] [EPOLL] [IPv6] built on Sep 22 2014Wed Jun 17 17:47:01 2015 library versions: OpenSSL 1.0.1i 6 Aug 2014
Wed Jun 17 17:47:01 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Jun 17 17:47:01 2015 WARNING: file '/etc/openvpn/key2.key' is group or others accessible
Wed Jun 17 17:47:02 2015 Socket Buffers: R=[163840->131072] S=[163840->131072]
Wed Jun 17 17:47:02 2015 UDPv4 link local: [undef]
Wed Jun 17 17:47:02 2015 UDPv4 link remote: [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:47:02 2015 TLS: Initial packet from [AF_INET]xxx.xxx.xxx.xxx:1194, sid=6bb12773 f4b21fb3
Wed Jun 17 17:47:02 2015 VERIFY OK: depth=1, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=changeme, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:47:02 2015 VERIFY OK: depth=0, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=server, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:47:03 2015 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:47:03 2015 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:47:03 2015 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:47:03 2015 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:47:03 2015 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Wed Jun 17 17:47:03 2015 [server] Peer Connection Initiated with [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:47:05 2015 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Wed Jun 17 17:47:05 2015 PUSH: Received control message: 'PUSH_REPLY,route 10.8.7.0 255.255.255.0,topology net30,ping 10,ping-restart 120,ifconfig 10.8.7.6 10.8.7.5'
Wed Jun 17 17:47:05 2015 OPTIONS IMPORT: timers and/or timeouts modified
Wed Jun 17 17:47:05 2015 OPTIONS IMPORT: --ifconfig/up options modified
Wed Jun 17 17:47:05 2015 OPTIONS IMPORT: route options modified
Wed Jun 17 17:47:05 2015 TUN/TAP device tun0 opened
Wed Jun 17 17:47:05 2015 TUN/TAP TX queue length set to 100
Wed Jun 17 17:47:05 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Wed Jun 17 17:47:05 2015 /sbin/ifconfig tun0 10.8.7.6 pointopoint 10.8.7.5 mtu 1500
Wed Jun 17 17:47:05 2015 /sbin/route add -net 10.8.7.0 netmask 255.255.255.0 gw 10.8.7.5
Wed Jun 17 17:47:05 2015 Initialization Sequence Completed
Wed Jun 17 17:47:14 2015 event_wait : Interrupted system call (code=4)
Wed Jun 17 17:47:14 2015 /sbin/route del -net 10.8.7.0 netmask 255.255.255.0
Wed Jun 17 17:47:14 2015 Closing TUN/TAP interface
Wed Jun 17 17:47:14 2015 /sbin/ifconfig tun0 0.0.0.0
Wed Jun 17 17:47:14 2015 SIGTERM[hard,] received, process exiting
Wed Jun 17 17:47:15 2015 OpenVPN 2.3.4 arm-openwrt-linux-gnu [SSL (OpenSSL)] [EPOLL] [IPv6] built on Sep 22 2014
Wed Jun 17 17:47:15 2015 library versions: OpenSSL 1.0.1i 6 Aug 2014
Wed Jun 17 17:47:15 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Jun 17 17:47:15 2015 WARNING: file '/etc/openvpn/key2.key' is group or others accessible
Wed Jun 17 17:47:15 2015 Socket Buffers: R=[163840->131072] S=[163840->131072]
Wed Jun 17 17:47:15 2015 UDPv4 link local: [undef]
Wed Jun 17 17:47:15 2015 UDPv4 link remote: [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:47:15 2015 TLS: Initial packet from [AF_INET]xxx.xxx.xxx.xxx:1194, sid=5606eec1 4032a87b
Wed Jun 17 17:47:15 2015 VERIFY OK: depth=1, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=changeme, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:47:15 2015 VERIFY OK: depth=0, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=server, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:47:16 2015 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:47:16 2015 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:47:16 2015 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:47:16 2015 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:47:16 2015 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Wed Jun 17 17:47:16 2015 [server] Peer Connection Initiated with [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:47:18 2015 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Wed Jun 17 17:47:18 2015 PUSH: Received control message: 'PUSH_REPLY,route 10.8.7.0 255.255.255.0,topology net30,ping 10,ping-restart 120,ifconfig 10.8.7.6 10.8.7.5'
Wed Jun 17 17:47:18 2015 OPTIONS IMPORT: timers and/or timeouts modified
Wed Jun 17 17:47:18 2015 OPTIONS IMPORT: --ifconfig/up options modified
Wed Jun 17 17:47:18 2015 OPTIONS IMPORT: route options modified
Wed Jun 17 17:47:18 2015 TUN/TAP device tun0 opened
Wed Jun 17 17:47:18 2015 TUN/TAP TX queue length set to 100
Wed Jun 17 17:47:18 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Wed Jun 17 17:47:18 2015 /sbin/ifconfig tun0 10.8.7.6 pointopoint 10.8.7.5 mtu 1500
Wed Jun 17 17:47:18 2015 /sbin/route add -net 10.8.7.0 netmask 255.255.255.0 gw 10.8.7.5
Wed Jun 17 17:47:18 2015 Initialization Sequence Completed
Wed Jun 17 17:48:01 2015 event_wait : Interrupted system call (code=4)
Wed Jun 17 17:48:01 2015 /sbin/route del -net 10.8.7.0 netmask 255.255.255.0
Wed Jun 17 17:48:01 2015 Closing TUN/TAP interface
Wed Jun 17 17:48:01 2015 /sbin/ifconfig tun0 0.0.0.0
Wed Jun 17 17:48:01 2015 SIGTERM[hard,] received, process exiting
Wed Jun 17 17:48:02 2015 OpenVPN 2.3.4 arm-openwrt-linux-gnu [SSL (OpenSSL)] [EPOLL] [IPv6] built on Sep 22 2014
Wed Jun 17 17:48:02 2015 library versions: OpenSSL 1.0.1i 6 Aug 2014
Wed Jun 17 17:48:02 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Jun 17 17:48:02 2015 WARNING: file '/etc/openvpn/key2.key' is group or others accessible
Wed Jun 17 17:48:02 2015 Socket Buffers: R=[163840->131072] S=[163840->131072]
Wed Jun 17 17:48:02 2015 UDPv4 link local: [undef]
Wed Jun 17 17:48:02 2015 UDPv4 link remote: [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:48:02 2015 TLS: Initial packet from [AF_INET]xxx.xxx.xxx.xxx:1194, sid=203d4f2f 8ef3f48a
Wed Jun 17 17:48:02 2015 VERIFY OK: depth=1, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=changeme, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:48:02 2015 VERIFY OK: depth=0, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=server, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:48:03 2015 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:48:03 2015 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:48:03 2015 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:48:03 2015 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:48:03 2015 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Wed Jun 17 17:48:03 2015 [server] Peer Connection Initiated with [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:48:05 2015 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Wed Jun 17 17:48:05 2015 PUSH: Received control message: 'PUSH_REPLY,route 10.8.7.0 255.255.255.0,topology net30,ping 10,ping-restart 120,ifconfig 10.8.7.6 10.8.7.5'
Wed Jun 17 17:48:05 2015 OPTIONS IMPORT: timers and/or timeouts modified
Wed Jun 17 17:48:05 2015 OPTIONS IMPORT: --ifconfig/up options modified
Wed Jun 17 17:48:05 2015 OPTIONS IMPORT: route options modified
Wed Jun 17 17:48:05 2015 TUN/TAP device tun0 opened
Wed Jun 17 17:48:05 2015 TUN/TAP TX queue length set to 100
Wed Jun 17 17:48:05 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Wed Jun 17 17:48:05 2015 /sbin/ifconfig tun0 10.8.7.6 pointopoint 10.8.7.5 mtu 1500
Wed Jun 17 17:48:05 2015 /sbin/route add -net 10.8.7.0 netmask 255.255.255.0 gw 10.8.7.5
Wed Jun 17 17:48:05 2015 Initialization Sequence Completed
Wed Jun 17 17:49:01 2015 event_wait : Interrupted system call (code=4)
Wed Jun 17 17:49:01 2015 /sbin/route del -net 10.8.7.0 netmask 255.255.255.0
Wed Jun 17 17:49:01 2015 Closing TUN/TAP interface
Wed Jun 17 17:49:01 2015 /sbin/ifconfig tun0 0.0.0.0
Wed Jun 17 17:49:01 2015 SIGTERM[hard,] received, process exiting
Wed Jun 17 17:49:02 2015 OpenVPN 2.3.4 arm-openwrt-linux-gnu [SSL (OpenSSL)] [EPOLL] [IPv6] built on Sep 22 2014
Wed Jun 17 17:49:02 2015 library versions: OpenSSL 1.0.1i 6 Aug 2014
Wed Jun 17 17:49:02 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Jun 17 17:49:02 2015 WARNING: file '/etc/openvpn/key2.key' is group or others accessible
Wed Jun 17 17:49:02 2015 Socket Buffers: R=[163840->131072] S=[163840->131072]
Wed Jun 17 17:49:02 2015 UDPv4 link local: [undef]
Wed Jun 17 17:49:02 2015 UDPv4 link remote: [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:49:02 2015 TLS: Initial packet from [AF_INET]xxx.xxx.xxx.xxx:1194, sid=aaee3b28 6f7ff8b5
Wed Jun 17 17:49:02 2015 VERIFY OK: depth=1, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=changeme, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:49:02 2015 VERIFY OK: depth=0, C=DE, ST=BY, L=Munich, O=Fort-Funston, OU=changeme, CN=server, name=changeme, emailAddress=schnurk@gmx.de
Wed Jun 17 17:49:02 2015 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:49:02 2015 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:49:02 2015 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Wed Jun 17 17:49:02 2015 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Jun 17 17:49:02 2015 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Wed Jun 17 17:49:02 2015 [server] Peer Connection Initiated with [AF_INET]xxx.xxx.xxx.xxx:1194
Wed Jun 17 17:49:04 2015 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Wed Jun 17 17:49:04 2015 PUSH: Received control message: 'PUSH_REPLY,route 10.8.7.0 255.255.255.0,topology net30,ping 10,ping-restart 120,ifconfig 10.8.7.6 10.8.7.5'
Wed Jun 17 17:49:04 2015 OPTIONS IMPORT: timers and/or timeouts modified
Wed Jun 17 17:49:04 2015 OPTIONS IMPORT: --ifconfig/up options modified
Wed Jun 17 17:49:04 2015 OPTIONS IMPORT: route options modified
Wed Jun 17 17:49:04 2015 TUN/TAP device tun0 opened
Wed Jun 17 17:49:04 2015 TUN/TAP TX queue length set to 100
Wed Jun 17 17:49:04 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Wed Jun 17 17:49:04 2015 /sbin/ifconfig tun0 10.8.7.6 pointopoint 10.8.7.5 mtu 1500
Wed Jun 17 17:49:04 2015 /sbin/route add -net 10.8.7.0 netmask 255.255.255.0 gw 10.8.7.5
Wed Jun 17 17:49:04 2015 Initialization Sequence Completed

Wäre wirklich sehr hilfreich wenn mir jemand helfen könnte
 
Zuletzt bearbeitet von einem Moderator:
AW: OpenVPN - Verbindung bricht ab

Da fehlt der ping-restart Parameter, google mal nach manpage openvpn.
Auf der Seite dann mal nach Ping suchen, man kanns nicht verfehlen.
 
Zurück
Oben