Koozali.org: home of the SME Server

OpenVPN

Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
OpenVPN
« on: September 16, 2015, 10:10:08 PM »
Today i reconfigured my sme server. I answered all the questions as correct i believe. And once it asks for a "DNS address when no internet", I gave no IP address to that last question of the configuration steps.

After reconfiguration the internet is lost. then I changed the RJ 45 cables connected to 2 ports on the server. then internet works. And I manually add NAMESERVER 8.8.8.8 to the resolv.conf file. After all, I tried to connect from home to server via Openvpn it is not connecting. following error msg receiving through openvpn connection window;


Wed Sep 16 21:50:41 2015 OpenVPN 2.3.7 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Jun  8 2015
Wed Sep 16 21:50:41 2015 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
Enter Management Password:
Wed Sep 16 21:50:41 2015 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Wed Sep 16 21:50:41 2015 Need hold release from management interface, waiting...
Wed Sep 16 21:50:41 2015 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Wed Sep 16 21:50:41 2015 MANAGEMENT: CMD 'state on'
Wed Sep 16 21:50:41 2015 MANAGEMENT: CMD 'log all on'
Wed Sep 16 21:50:41 2015 MANAGEMENT: CMD 'hold off'
Wed Sep 16 21:50:41 2015 MANAGEMENT: CMD 'hold release'
Wed Sep 16 21:50:51 2015 MANAGEMENT: CMD 'username "Auth" "s.nirosh"'
Wed Sep 16 21:50:51 2015 MANAGEMENT: CMD 'password [...]'
Wed Sep 16 21:50:51 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Sep 16 21:50:51 2015 Socket Buffers: R=[8192->8192] S=[8192->8192]
Wed Sep 16 21:50:51 2015 UDPv4 link local (bound): [undef]
Wed Sep 16 21:50:51 2015 UDPv4 link remote: [AF_INET]89.2.7.225:1194
Wed Sep 16 21:50:51 2015 MANAGEMENT: >STATE:1442433051,WAIT,,,
Wed Sep 16 21:51:51 2015 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Wed Sep 16 21:51:51 2015 TLS Error: TLS handshake failed
Wed Sep 16 21:51:51 2015 SIGUSR1[soft,tls-error] received, process restarting
Wed Sep 16 21:51:51 2015 MANAGEMENT: >STATE:1442433111,RECONNECTING,tls-error,,
Wed Sep 16 21:51:51 2015 Restart pause, 2 second(s)
Wed Sep 16 21:51:53 2015 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Wed Sep 16 21:51:53 2015 Socket Buffers: R=[8192->8192] S=[8192->8192]
Wed Sep 16 21:51:53 2015 UDPv4 link local (bound): [undef]
Wed Sep 16 21:51:53 2015 UDPv4 link remote: [AF_INET]89.2.7.225:1194
Wed Sep 16 21:51:53 2015 MANAGEMENT: >STATE:1442433113,WAIT,,,
Wed Sep 16 21:52:07 2015 SIGTERM received, sending exit notification to peer
Wed Sep 16 21:52:08 2015 SIGTERM[soft,exit-with-notification] received, process exiting
Wed Sep 16 21:52:08 2015 MANAGEMENT: >STATE:1442433128,EXITING,exit-with-notification,,



what do i have do to connect via openvpn.

Offline Daniel B.

  • *
  • 1,699
  • +0/-0
    • Firewall Services, la sécurité des réseaux
Re: OpenVPN
« Reply #1 on: September 16, 2015, 11:13:50 PM »
You should first tell us which contrib you have installed, and which client is trying to connect, and how you have configured it.....
As a side note, you should not modify directly your /etc/resolv.conf file. This is managed by the SME Server templates engine, you'd better read some documentation
C'est la fin du monde !!! :lol:

Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
Re: OpenVPN
« Reply #2 on: September 16, 2015, 11:56:15 PM »
Ok. thanks for the advice.
my version of OS is - Linux 2.6.18 371. i686
I have deployed this server as a Gateway and server mode
I am trying to connect from windows 7

do i have to re configure openvpn?
How can i check if my openvpn is configured as bridge mode or as an othermode?

thanks for your quick reply

Offline Daniel B.

  • *
  • 1,699
  • +0/-0
    • Firewall Services, la sécurité des réseaux
Re: OpenVPN
« Reply #3 on: September 17, 2015, 09:53:25 AM »
do i have to re configure openvpn?
How can i check if my openvpn is configured as bridge mode or as an othermode?

There's no builtin OpenVPN server. Which contrib have you installed ?
C'est la fin du monde !!! :lol:

Offline Stefano

  • *
  • 10,839
  • +2/-0
Re: OpenVPN
« Reply #4 on: September 17, 2015, 10:09:26 AM »
Quote
"DNS address when no internet"

can you explain where did you see such a request and in which language? I don't remember anything similar in SME's console..

Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
Re: OpenVPN
« Reply #5 on: September 17, 2015, 12:49:01 PM »
How to check which contrib?

Offline Stefano

  • *
  • 10,839
  • +2/-0
Re: OpenVPN
« Reply #6 on: September 17, 2015, 01:00:47 PM »
Code: [Select]
/sbin/e-smith/audittools/newrpms

Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
Re: OpenVPN
« Reply #7 on: September 17, 2015, 05:38:28 PM »
Centos sme server 8

Offline Stefano

  • *
  • 10,839
  • +2/-0
Re: OpenVPN
« Reply #8 on: September 17, 2015, 05:44:49 PM »
smnirosh, you'd try to answer to the questions you've been asked..

Code: [Select]
rpm -qa | grep openvpn

Offline janet

  • ****
  • 4,812
  • +0/-0
Re: OpenVPN
« Reply #9 on: September 17, 2015, 06:38:28 PM »
smnirosh

To explain more simply/fully.
Log in as root or a user with root privileges to a command prompt on your SME server.
Then type in the following commands one at a time & record the output & post it back here.
If you use Putty ssh remote access client (free download) from a workstation on your LAN, then you can cut & paste, making it easy to copy the output from the screen after you type these commands. You right click the little logo icon at the top left corner of the Putty window to access cut & paste commands etc.

/sbin/e-smith/audittools/newrpms

rpm -qa | grep openvpn

These commands will show all the additional rpm packages installed, & specifically show the version of openvpn installed (if installed).

« Last Edit: September 18, 2015, 04:25:41 AM by janet »
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline Stefano

  • *
  • 10,839
  • +2/-0
Re: OpenVPN
« Reply #10 on: September 17, 2015, 06:54:22 PM »
thank you janet.. sometimes I forget to give more explanations

Offline janet

  • ****
  • 4,812
  • +0/-0
Re: OpenVPN
« Reply #11 on: September 18, 2015, 03:36:44 AM »
Stefano

For most users here, a simple command should be sufficient, but it seems smnirosh needs some hand holding.
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
Re: OpenVPN
« Reply #12 on: September 18, 2015, 11:37:30 AM »
openvpn 2.1.1-2.e15

Offline Stefano

  • *
  • 10,839
  • +2/-0
Re: OpenVPN
« Reply #13 on: September 18, 2015, 12:19:24 PM »
is this the only output?

if so, you missed the smeserver-openvpn package..

so, now, please tell us how did you install openvpn

take a look here: http://wiki.contribs.org/OpenVPN_Bridge


Offline smnirosh

  • ****
  • 329
  • +0/-0
  • Learning never ends
Re: OpenVPN
« Reply #14 on: September 18, 2015, 12:40:49 PM »
Dear friends, so sad... after power loss this server has no display. But we have another linux server. we are planned to take this server into action. I am so so so sure this server has to be reconfigure again to be worked.

all this things happen to me is DISASTOR.  :-x :-x :-x :-x