Ip weiterleitung auf beiden Seiten aktivieren, dazu Winscp nutzen. Unter /etc/sysctl.conf die Zeile
"#net.ipv4.ip_forward = 1" ändern zu "net.ipv4.ip_forward = 1"
Iptables anpassen(Putty am VPS)
#iptables -A FORWARD -i §ändern -o tun0 -m state --state ESTABLISHED,RELATED -j ACCEPT
#iptables -A FORWARD -s 10.9.8.0/24 -o §ändern -j ACCEPT #falls IP angepasst, muss diese auch hier geändert werden
#iptables -t nat -A POSTROUTING -s 10.9.8.0/24 -o §ändern -j MASQUERADE #und auch hier
§ändern = #ifconfig wirft die Interfaces aus, da wird etwas stehen wie "venet0" o.ä. stehen, sowie die/das tunnelinterface/s
# iptables-save > /etc/iptables.up.rules
Openvpn auf beiden seiten per Putty starten
# /etc/init.d/openvpn start
Nun sollte es möglich sein, vom Client(ifconfig am Client zeigt dessen IP) zum Server(10.9.8.1) und andersrum zu pingen.
Fri May 9 09:36:18 2014 us=7746 occ = ENABLED
Fri May 9 09:36:18 2014 us=8136 rcvbuf = 65536
Fri May 9 09:36:18 2014 us=11563 sndbuf = 65536
Fri May 9 09:36:18 2014 us=12766 sockflags = 0
Fri May 9 09:36:18 2014 us=13960 fast_io = DISABLED
Fri May 9 09:36:18 2014 us=14333 lzo = 0
Fri May 9 09:36:18 2014 us=16326 route_script = '[UNDEF]'
Fri May 9 09:36:18 2014 us=19095 route_default_gateway = '[UNDEF]'
Fri May 9 09:36:18 2014 us=19589 route_default_metric = 0
Fri May 9 09:36:18 2014 us=20748 route_noexec = DISABLED
Fri May 9 09:36:18 2014 us=22540 route_delay = 0
Fri May 9 09:36:18 2014 us=24525 route_delay_window = 30
Fri May 9 09:36:18 2014 us=24924 route_delay_defined = DISABLED
Fri May 9 09:36:18 2014 us=27813 route_nopull = DISABLED
Fri May 9 09:36:18 2014 us=28243 route_gateway_via_dhcp = DISABLED
Fri May 9 09:36:18 2014 us=28715 max_routes = 100
Fri May 9 09:36:18 2014 us=29770 allow_pull_fqdn = DISABLED
Fri May 9 09:36:18 2014 us=32387 management_addr = '[UNDEF]'
Fri May 9 09:36:18 2014 us=34136 management_port = 0
Fri May 9 09:36:18 2014 us=34694 management_user_pass = '[UNDEF]'
Fri May 9 09:36:18 2014 us=35834 management_log_history_cache = 250
Fri May 9 09:36:18 2014 us=38390 management_echo_buffer_size = 100
Fri May 9 09:36:18 2014 us=38892 management_write_peer_info_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=41366 management_client_user = '[UNDEF]'
Fri May 9 09:36:18 2014 us=43049 management_client_group = '[UNDEF]'
Fri May 9 09:36:18 2014 us=46013 management_flags = 0
Fri May 9 09:36:18 2014 us=47395 shared_secret_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=49853 key_direction = 0
Fri May 9 09:36:18 2014 us=50986 ciphername_defined = ENABLED
Fri May 9 09:36:18 2014 us=51352 ciphername = 'AES-256-CBC'
Fri May 9 09:36:18 2014 us=54228 authname_defined = ENABLED
Fri May 9 09:36:18 2014 us=55599 authname = 'SHA1'
Fri May 9 09:36:18 2014 us=58140 prng_hash = 'SHA1'
Fri May 9 09:36:18 2014 us=58648 prng_nonce_secret_len = 16
Fri May 9 09:36:18 2014 us=59798 keysize = 0
Fri May 9 09:36:18 2014 us=60802 engine = DISABLED
Fri May 9 09:36:18 2014 us=64013 replay = ENABLED
Fri May 9 09:36:18 2014 us=65200 mute_replay_warnings = DISABLED
Fri May 9 09:36:18 2014 us=66350 replay_window = 64
Fri May 9 09:36:18 2014 us=68087 replay_time = 15
Fri May 9 09:36:18 2014 us=72360 packet_id_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=73593 use_iv = ENABLED
Fri May 9 09:36:18 2014 us=76829 test_crypto = DISABLED
Fri May 9 09:36:18 2014 us=78102 tls_server = DISABLED
Fri May 9 09:36:18 2014 us=79318 tls_client = ENABLED
Fri May 9 09:36:18 2014 us=81550 key_method = 2
Fri May 9 09:36:18 2014 us=83800 ca_file = '/etc/openvpn/ca.crt'
Fri May 9 09:36:18 2014 us=85746 ca_path = '[UNDEF]'
Fri May 9 09:36:18 2014 us=87828 dh_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=88224 cert_file = '/etc/openvpn/raspi.crt'
Fri May 9 09:36:18 2014 us=89336 priv_key_file = '/etc/openvpn/raspi.key'
Fri May 9 09:36:18 2014 us=89858 pkcs12_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=91080 cipher_list = '[UNDEF]'
Fri May 9 09:36:18 2014 us=91587 tls_verify = '[UNDEF]'
Fri May 9 09:36:18 2014 us=92717 tls_export_cert = '[UNDEF]'
Fri May 9 09:36:18 2014 us=94246 tls_remote = '[UNDEF]'
Fri May 9 09:36:18 2014 us=95393 crl_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=97314 ns_cert_type = 0
Fri May 9 09:36:18 2014 us=101541 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=102940 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=103271 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=104547 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=105630 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=108116 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=108614 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=110252 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=111651 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=113402 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=115071 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=115802 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=117808 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=118194 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=120074 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=120583 remote_cert_ku[i] = 0
Fri May 9 09:36:18 2014 us=121862 remote_cert_eku = '[UNDEF]'
Fri May 9 09:36:18 2014 us=122222 tls_timeout = 2
Fri May 9 09:36:18 2014 us=123335 renegotiate_bytes = 0
Fri May 9 09:36:18 2014 us=124537 renegotiate_packets = 0
Fri May 9 09:36:18 2014 us=126074 renegotiate_seconds = 3600
Fri May 9 09:36:18 2014 us=126570 handshake_window = 60
Fri May 9 09:36:18 2014 us=128763 transition_window = 3600
Fri May 9 09:36:18 2014 us=129105 single_session = DISABLED
Fri May 9 09:36:18 2014 us=131349 push_peer_info = DISABLED
Fri May 9 09:36:18 2014 us=132603 tls_exit = DISABLED
Fri May 9 09:36:18 2014 us=134751 tls_auth_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=135973 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=136335 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=137743 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=138097 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=139263 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=139754 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=140910 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=141772 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=143637 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=144857 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=150140 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=150766 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=151833 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=153355 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=155545 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=156773 pkcs11_protected_authentication = DISABLED
Fri May 9 09:36:18 2014 us=157982 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=158352 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=159636 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=160848 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=161248 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=161970 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=163744 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=164096 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=166357 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=167813 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=168155 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=169382 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=170565 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=171750 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=173632 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=173994 pkcs11_private_mode = 00000000
Fri May 9 09:36:18 2014 us=174334 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=175719 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=176091 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=177559 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=178942 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=179310 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=180902 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=181278 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=182386 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=183999 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=184363 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=184832 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=186234 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=186726 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=187867 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=188235 pkcs11_cert_private = DISABLED
Fri May 9 09:36:18 2014 us=189617 pkcs11_pin_cache_period = -1
Fri May 9 09:36:18 2014 us=190011 pkcs11_id = '[UNDEF]'
Fri May 9 09:36:18 2014 us=190348 pkcs11_id_management = DISABLED
Fri May 9 09:36:18 2014 us=193254 server_network = 0.0.0.0
Fri May 9 09:36:18 2014 us=195831 server_netmask = 0.0.0.0
Fri May 9 09:36:18 2014 us=196276 server_network_ipv6 = ::
Fri May 9 09:36:18 2014 us=196754 server_netbits_ipv6 = 0
Fri May 9 09:36:18 2014 us=197239 server_bridge_ip = 0.0.0.0
Fri May 9 09:36:18 2014 us=199093 server_bridge_netmask = 0.0.0.0
Fri May 9 09:36:18 2014 us=200667 server_bridge_pool_start = 0.0.0.0
Fri May 9 09:36:18 2014 us=201870 server_bridge_pool_end = 0.0.0.0
Fri May 9 09:36:18 2014 us=204052 ifconfig_pool_defined = DISABLED
Fri May 9 09:36:18 2014 us=204649 ifconfig_pool_start = 0.0.0.0
Fri May 9 09:36:18 2014 us=205840 ifconfig_pool_end = 0.0.0.0
Fri May 9 09:36:18 2014 us=207050 ifconfig_pool_netmask = 0.0.0.0
Fri May 9 09:36:18 2014 us=208619 ifconfig_pool_persist_filename = '[UNDEF]'
Fri May 9 09:36:18 2014 us=209257 ifconfig_pool_persist_refresh_freq = 600
Fri May 9 09:36:18 2014 us=210402 ifconfig_ipv6_pool_defined = DISABLED
Fri May 9 09:36:18 2014 us=211622 ifconfig_ipv6_pool_base = ::
Fri May 9 09:36:18 2014 us=213116 ifconfig_ipv6_pool_netbits = 0
Fri May 9 09:36:18 2014 us=214659 n_bcast_buf = 256
Fri May 9 09:36:18 2014 us=215081 tcp_queue_limit = 64
Fri May 9 09:36:18 2014 us=217222 real_hash_size = 256
Fri May 9 09:36:18 2014 us=217738 virtual_hash_size = 256
Fri May 9 09:36:18 2014 us=218033 client_connect_script = '[UNDEF]'
Fri May 9 09:36:18 2014 us=218362 learn_address_script = '[UNDEF]'
Fri May 9 09:36:18 2014 us=221569 client_disconnect_script = '[UNDEF]'
Fri May 9 09:36:18 2014 us=221991 client_config_dir = '[UNDEF]'
Fri May 9 09:36:18 2014 us=222332 ccd_exclusive = DISABLED
Fri May 9 09:36:18 2014 us=223284 tmp_dir = '/tmp'
Fri May 9 09:36:18 2014 us=224785 push_ifconfig_defined = DISABLED
Fri May 9 09:36:18 2014 us=225913 push_ifconfig_local = 0.0.0.0
Fri May 9 09:36:18 2014 us=226322 push_ifconfig_remote_netmask = 0.0.0.0
Fri May 9 09:36:18 2014 us=228120 push_ifconfig_ipv6_defined = DISABLED
Fri May 9 09:36:18 2014 us=230420 push_ifconfig_ipv6_local = ::/0
Fri May 9 09:36:18 2014 us=231789 push_ifconfig_ipv6_remote = ::
Fri May 9 09:36:18 2014 us=232911 enable_c2c = DISABLED
Fri May 9 09:36:18 2014 us=234911 duplicate_cn = DISABLED
Fri May 9 09:36:18 2014 us=235325 cf_max = 0
Fri May 9 09:36:18 2014 us=236565 cf_per = 0
Fri May 9 09:36:18 2014 us=236957 max_clients = 1024
Fri May 9 09:36:18 2014 us=238233 max_routes_per_client = 256
Fri May 9 09:36:18 2014 us=238749 auth_user_pass_verify_script = '[UNDEF]'
Fri May 9 09:36:18 2014 us=239902 auth_user_pass_verify_script_via_file = DIS ABLED
Fri May 9 09:36:18 2014 us=240267 ssl_flags = 0
Fri May 9 09:36:18 2014 us=241381 port_share_host = '[UNDEF]'
Fri May 9 09:36:18 2014 us=242592 port_share_port = 0
Fri May 9 09:36:18 2014 us=243814 client = ENABLED
Fri May 9 09:36:18 2014 us=244143 pull = ENABLED
Fri May 9 09:36:18 2014 us=245271 auth_user_pass_file = '[UNDEF]'
Fri May 9 09:36:18 2014 us=246235 OpenVPN 2.2.1 arm-linux-gnueabihf [SSL] [LZO2 ] [EPOLL] [PKCS11] [eurephia] [MH] [PF_INET6] [IPv6 payload 20110424-2 (2.2RC2)] built on Oct 12 2013
Fri May 9 09:36:18 2014 us=248766 WARNING: No server certificate verification m ethod has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Fri May 9 09:36:18 2014 us=250162 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Fri May 9 09:36:18 2014 us=305886 WARNING: file '/etc/openvpn/raspi.key' is gro up or others accessible
Fri May 9 09:36:18 2014 us=333233 Control Channel MTU parms [ L:1557 D:138 EF:3 8 EB:0 ET:0 EL:0 ]
Fri May 9 09:36:18 2014 us=335422 Socket Buffers: R=[163840->131072] S=[163840- >131072]
Fri May 9 09:36:18 2014 us=337905 Data Channel MTU parms [ L:1557 D:1450 EF:57 EB:4 ET:0 EL:0 ]
Fri May 9 09:36:18 2014 us=340400 Local Options String: 'V4,dev-type tun,link-m tu 1557,tun-mtu 1500,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-me thod 2,tls-client'
Fri May 9 09:36:18 2014 us=342979 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1557,tun-mtu 1500,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-server'
Fri May 9 09:36:18 2014 us=345111 Local Options hash (VER=V4): '2dd3fcaf'
Fri May 9 09:36:18 2014 us=348038 Expected Remote Options hash (VER=V4): '8114d 01c'
Fri May 9 09:36:18 2014 us=348639 UDPv4 link local: [undef]
Fri May 9 09:36:18 2014 us=350298 UDPv4 link remote: [AF_INET]79.141.173.43:119 4
Fri May 9 09:36:18 2014 us=358955 UDPv4 WRITE [14] to [AF_INET]79.141.173.43:11 94: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Fri May 9 09:36:18 2014 us=394350 read UDPv4 [ECONNREFUSED]: Connection refused (code=111)
Fri May 9 09:36:18 2014 us=396156 UDPv4 READ [0] from [undef]: DATA UNDEF len=- 1
Fri May 9 09:36:20 2014 us=699279 UDPv4 WRITE [14] to [AF_INET]79.141.173.43:11 94: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Fri May 9 09:36:20 2014 us=743159 read UDPv4 [ECONNREFUSED]: Connection refused (code=111)
Fri May 9 09:36:20 2014 us=745638 UDPv4 READ [0] from [undef]: DATA UNDEF len=- 1
Fri May 9 09:36:24 2014 us=197573 UDPv4 WRITE [14] to [AF_INET]79.141.173.43:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Fri May 9 09:36:24 2014 us=230499 read UDPv4 [ECONNREFUSED]: Connection refused (code=111)
Fri May 9 09:36:24 2014 us=230853 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
Fri May 9 09:36:32 2014 us=325472 UDPv4 WRITE [14] to [AF_INET]79.141.173.43:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
Fri May 9 09:36:32 2014 us=359732 read UDPv4 [ECONNREFUSED]: Connection refused (code=111)
Fri May 9 09:36:32 2014 us=360137 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
^CFri May 9 09:36:36 2014 us=4953 event_wait : Interrupted system call (code=4)
Fri May 9 09:36:36 2014 us=8551 TCP/UDP: Closing socket
Fri May 9 09:36:36 2014 us=10646 SIGINT[hard,] received, process exiting
Wir verwenden Cookies und ähnliche Technologien für folgende Zwecke:
Akzeptieren Sie Cookies und diese Technologien?
Wir verwenden Cookies und ähnliche Technologien für folgende Zwecke:
Akzeptieren Sie Cookies und diese Technologien?