iptables -F
iptables -X
iptables -t nat -F
iptables -t nat -X
iptables -t mangle -F
iptables -t mangle -X
iptables -P INPUT ACCEPT
iptables -P OUTPUT ACCEPT
iptables -P FORWARD ACCEPT
Guck mal ob die Uhrzeit auf beiden Systemen identisch ist, Zeitzone beachten falls im Ausland. Wenn alles passt ein "frisches" Zertifikat erstellen und testen ob's läuft
Gesendet von meinem HTC One mit Tapatalk
Jap habe alle iptables gesetzt, allerdings habe ich nichts so viel Netzwerk Erfahrung, da dies nicht mein Fachgebiet ist
#iptables -A FORWARD -i §ändern -o tun0 -m state --state ESTABLISHED,RELATED -j ACCEPT
#iptables -A FORWARD -s 10.9.8.0/24 -o §ändern -j ACCEPT #falls IP angepasst, muss diese auch hier geändert werden
#iptables -t nat -A POSTROUTING -s 10.9.8.0/24 -o §ändern -j MASQUERADE #und auch hier
iptables -t nat -A POSTROUTING -o venet0 -j SNAT --to 37.XX.XX.XX
natürlich passend zur ifconfig
Sent from my iPhone using Tapatalk
[FONT=Menlo]eth0 Link encap:Ethernet HWaddr [/FONT]
[FONT=Menlo] inet addr: Bcast: Mask:255.255.255.0[/FONT]
[FONT=Menlo] inet6 addr: Scope:Link[/FONT]
[FONT=Menlo] UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1[/FONT]
[FONT=Menlo] RX packets:errors:0 dropped:10 overruns:0 frame:0[/FONT]
[FONT=Menlo] TX packets:errors:0 dropped:0 overruns:0 carrier:0[/FONT]
[FONT=Menlo] collisions:0 txqueuelen:1000 [/FONT]
[FONT=Menlo] RX bytes: TX bytes[/FONT]
[FONT=Menlo]
[/FONT]
[FONT=Menlo]lo Link encap:Local Loopback [/FONT]
[FONT=Menlo] inet addr:127.0.0.1 Mask:255.0.0.0[/FONT]
[FONT=Menlo] inet6 addr: ::1/128 Scope:Host[/FONT]
[FONT=Menlo] UP LOOPBACK RUNNING MTU:16436 Metric:1[/FONT]
[FONT=Menlo] RX packets:1328333 errors:0 dropped:0 overruns:0 frame:0[/FONT]
[FONT=Menlo] TX packets:1328333 errors:0 dropped:0 overruns:0 carrier:0[/FONT]
[FONT=Menlo] collisions:0 txqueuelen:0 [/FONT]
[FONT=Menlo] RX bytes:186740520 (186.7 MB) TX bytes:186740520 (186.7 MB)[/FONT]
Fri May 30 11:56:49 2014 OpenVPN 2.2.1 x86_64-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [eurephia] [MH] [PF_INET6] [IPv6 payload 20110424-2 (2.2RC2)] built on Mar 13 2014
Fri May 30 11:56:49 2014 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Fri May 30 11:56:49 2014 Note: cannot open log/openvpn-status.log for WRITE
Fri May 30 11:56:49 2014 Diffie-Hellman initialized with 1024 bit key
Fri May 30 11:56:49 2014 TLS-Auth MTU parms [ L:1557 D:138 EF:38 EB:0 ET:0 EL:0 ]
Fri May 30 11:56:49 2014 Socket Buffers: R=[229376->131072] S=[229376->131072]
Fri May 30 11:56:49 2014 ROUTE default_gateway=37.235.55.1
Fri May 30 11:56:49 2014 TUN/TAP device tun0 opened
Fri May 30 11:56:49 2014 TUN/TAP TX queue length set to 100
Fri May 30 11:56:49 2014 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Fri May 30 11:56:49 2014 /sbin/ifconfig tun0 10.9.8.1 pointopoint 10.9.8.2 mtu 1500
Fri May 30 11:56:49 2014 /sbin/route add -net 10.9.8.0 netmask 255.255.255.0 gw 10.9.8.2
Fri May 30 11:56:49 2014 Data Channel MTU parms [ L:1557 D:1450 EF:57 EB:4 ET:0 EL:0 ]
Fri May 30 11:56:49 2014 UDPv4 link local (bound): [undef]
Fri May 30 11:56:49 2014 UDPv4 link remote: [undef]
Fri May 30 11:56:49 2014 MULTI: multi_init called, r=256 v=256
Fri May 30 11:56:49 2014 IFCONFIG POOL: base=10.9.8.4 size=62, ipv6=0
Fri May 30 11:56:49 2014 ifconfig_pool_read(), in='home,10.9.8.4', TODO: IPv6
Fri May 30 11:56:49 2014 succeeded -> ifconfig_pool_set()
Fri May 30 11:56:49 2014 IFCONFIG POOL LIST
Fri May 30 11:56:49 2014 home,10.9.8.4
Fri May 30 11:56:49 2014 Initialization Sequence Completed
Fri May 30 11:57:24 2014 MULTI: multi_create_instance called
Fri May 30 11:57:24 2014 Re-using SSL/TLS context
Fri May 30 11:57:24 2014 Control Channel MTU parms [ L:1557 D:138 EF:38 EB:0 ET:0 EL:0 ]
Fri May 30 11:57:24 2014 Data Channel MTU parms [ L:1557 D:1450 EF:57 EB:4 ET:0 EL:0 ]
Fri May 30 11:57:24 2014 Local Options hash (VER=V4): '8114d01c'
Fri May 30 11:57:24 2014 Expected Remote Options hash (VER=V4): '2dd3fcaf'
Fri May 30 11:57:24 2014 TLS: Initial packet from [AF_INET]79.195.198.233:58318, sid=eb4bc4f9 aa1a5acd
Fri May 30 11:57:24 2014 VERIFY OK: depth=1, /C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/OU=changeme/CN=changeme/name=changeme/emailAddress=mail@host.domain
Fri May 30 11:57:24 2014 VERIFY OK: depth=0, /C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/OU=changeme/CN=home/name=changeme/emailAddress=mail@host.domain
Fri May 30 11:57:25 2014 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Fri May 30 11:57:25 2014 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri May 30 11:57:25 2014 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Fri May 30 11:57:25 2014 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri May 30 11:57:25 2014 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Fri May 30 11:57:25 2014 [home] Peer Connection Initiated with [AF_INET]79.195.198.233:58318
Fri May 30 11:57:25 2014 home/79 MULTI_sva: pool returned IPv4=10.9.8.6, IPv6=1::1900:0:9d7f:0
Fri May 30 11:57:25 2014 home/ MULTI: Learn: 10.9.8.6 -> home/
Fri May 30 11:57:25 2014 home/ MULTI: primary virtual IP for home/7: 10.9.8.6
Fri May 30 11:57:27 2014 home/ PUSH: Received control message: 'PUSH_REQUEST'
Fri May 30 11:57:27 2014 home/ send_push_reply(): safe_cap=960
Fri May 30 11:57:27 2014 home/ SENT CONTROL [home]: 'PUSH_REPLY,route 10.9.8.1,topology net30,ping 10,ping-restart 120,ifconfig 10.9.8.6 10.9.8.5' (status=1)
Wir verwenden Cookies und ähnliche Technologien für folgende Zwecke:
Akzeptieren Sie Cookies und diese Technologien?
Wir verwenden Cookies und ähnliche Technologien für folgende Zwecke:
Akzeptieren Sie Cookies und diese Technologien?