probleme321 | Bonjour,
Mon serveur vpn est installé sur un debian qui est dans un NAT, adresse : 192.168.1.29. Le client est installé sur un windows.
Quand je suis dans le réseau NAT mon client qui est inSur la configuration de ma box j'ai ajouté une règle NAT
port interne port externe protocole appareil
443 443 UDP 192.168.1.29
Quand je veux me connecter depuis l’extérieur du NAT je mets l'adresse de ma livebox dans le fichier client.ovpn en gardant le port 443. Je n'arrive pas à me connecter.
Log du client (windows)
Code :
- Thu Apr 13 10:51:27 2017 NOTE: --user option is not implemented on Windows
- Thu Apr 13 10:51:27 2017 NOTE: --group option is not implemented on Windows
- Thu Apr 13 10:51:27 2017 us=83064 Current Parameter Settings:
- Thu Apr 13 10:51:27 2017 us=83064 config = 'client.ovpn'
- Thu Apr 13 10:51:27 2017 us=83064 mode = 0
- Thu Apr 13 10:51:27 2017 us=83064 show_ciphers = DISABLED
- Thu Apr 13 10:51:27 2017 us=83064 show_digests = DISABLED
- Thu Apr 13 10:51:27 2017 us=83064 show_engines = DISABLED
- Thu Apr 13 10:51:27 2017 us=83064 genkey = DISABLED
- Thu Apr 13 10:51:27 2017 us=83064 key_pass_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=83064 show_tls_ciphers = DISABLED
- Thu Apr 13 10:51:27 2017 us=83064 Connection profiles [default]:
- Thu Apr 13 10:51:27 2017 us=83064 proto = udp
- Thu Apr 13 10:51:27 2017 us=83064 local = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=83064 local_port = 0
- Thu Apr 13 10:51:27 2017 us=83064 remote = '@_router'
- Thu Apr 13 10:51:27 2017 us=83064 remote_port = 443
- Thu Apr 13 10:51:27 2017 us=83064 remote_float = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 bind_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 bind_local = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 connect_retry_seconds = 5
- Thu Apr 13 10:51:27 2017 us=84041 connect_timeout = 10
- Thu Apr 13 10:51:27 2017 us=84041 connect_retry_max = 0
- Thu Apr 13 10:51:27 2017 us=84041 socks_proxy_server = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 socks_proxy_port = 0
- Thu Apr 13 10:51:27 2017 us=84041 socks_proxy_retry = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tun_mtu = 1500
- Thu Apr 13 10:51:27 2017 us=84041 tun_mtu_defined = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 link_mtu = 1500
- Thu Apr 13 10:51:27 2017 us=84041 link_mtu_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tun_mtu_extra = 0
- Thu Apr 13 10:51:27 2017 us=84041 tun_mtu_extra_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 mtu_discover_type = -1
- Thu Apr 13 10:51:27 2017 us=84041 fragment = 0
- Thu Apr 13 10:51:27 2017 us=84041 mssfix = 1450
- Thu Apr 13 10:51:27 2017 us=84041 explicit_exit_notification = 0
- Thu Apr 13 10:51:27 2017 us=84041 Connection profiles END
- Thu Apr 13 10:51:27 2017 us=84041 remote_random = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 ipchange = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 dev = 'tun'
- Thu Apr 13 10:51:27 2017 us=84041 dev_type = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 dev_node = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 lladdr = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 topology = 1
- Thu Apr 13 10:51:27 2017 us=84041 tun_ipv6 = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_local = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_remote_netmask = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_noexec = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_nowarn = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_ipv6_local = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_ipv6_netbits = 0
- Thu Apr 13 10:51:27 2017 us=84041 ifconfig_ipv6_remote = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 shaper = 0
- Thu Apr 13 10:51:27 2017 us=84041 mtu_test = 0
- Thu Apr 13 10:51:27 2017 us=84041 mlock = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 keepalive_ping = 0
- Thu Apr 13 10:51:27 2017 us=84041 keepalive_timeout = 0
- Thu Apr 13 10:51:27 2017 us=84041 inactivity_timeout = 0
- Thu Apr 13 10:51:27 2017 us=84041 ping_send_timeout = 0
- Thu Apr 13 10:51:27 2017 us=84041 ping_rec_timeout = 0
- Thu Apr 13 10:51:27 2017 us=84041 ping_rec_timeout_action = 0
- Thu Apr 13 10:51:27 2017 us=84041 ping_timer_remote = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 remap_sigusr1 = 0
- Thu Apr 13 10:51:27 2017 us=84041 persist_tun = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 persist_local_ip = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 persist_remote_ip = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 persist_key = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 passtos = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 resolve_retry_seconds = 1000000000
- Thu Apr 13 10:51:27 2017 us=84041 username = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 groupname = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 chroot_dir = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 cd_dir = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 writepid = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 up_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 down_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 down_pre = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 up_restart = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 up_delay = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 daemon = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 inetd = 0
- Thu Apr 13 10:51:27 2017 us=84041 log = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 suppress_timestamps = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 nice = 0
- Thu Apr 13 10:51:27 2017 us=84041 verbosity = 6
- Thu Apr 13 10:51:27 2017 us=84041 mute = 0
- Thu Apr 13 10:51:27 2017 us=84041 gremlin = 0
- Thu Apr 13 10:51:27 2017 us=84041 status_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 status_file_version = 1
- Thu Apr 13 10:51:27 2017 us=84041 status_file_update_freq = 60
- Thu Apr 13 10:51:27 2017 us=84041 occ = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 rcvbuf = 0
- Thu Apr 13 10:51:27 2017 us=84041 sndbuf = 0
- Thu Apr 13 10:51:27 2017 us=84041 sockflags = 0
- Thu Apr 13 10:51:27 2017 us=84041 fast_io = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 lzo = 7
- Thu Apr 13 10:51:27 2017 us=84041 route_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 route_default_gateway = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 route_default_metric = 0
- Thu Apr 13 10:51:27 2017 us=84041 route_noexec = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 route_delay = 5
- Thu Apr 13 10:51:27 2017 us=84041 route_delay_window = 30
- Thu Apr 13 10:51:27 2017 us=84041 route_delay_defined = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 route_nopull = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 route_gateway_via_dhcp = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 max_routes = 100
- Thu Apr 13 10:51:27 2017 us=84041 allow_pull_fqdn = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 management_addr = '127.0.0.1'
- Thu Apr 13 10:51:27 2017 us=84041 management_port = 25340
- Thu Apr 13 10:51:27 2017 us=84041 management_user_pass = 'stdin'
- Thu Apr 13 10:51:27 2017 us=84041 management_log_history_cache = 250
- Thu Apr 13 10:51:27 2017 us=84041 management_echo_buffer_size = 100
- Thu Apr 13 10:51:27 2017 us=84041 management_write_peer_info_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 management_client_user = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 management_client_group = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 management_flags = 6
- Thu Apr 13 10:51:27 2017 us=84041 shared_secret_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 key_direction = 0
- Thu Apr 13 10:51:27 2017 us=84041 ciphername_defined = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 ciphername = 'BF-CBC'
- Thu Apr 13 10:51:27 2017 us=84041 authname_defined = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 authname = 'SHA1'
- Thu Apr 13 10:51:27 2017 us=84041 prng_hash = 'SHA1'
- Thu Apr 13 10:51:27 2017 us=84041 prng_nonce_secret_len = 16
- Thu Apr 13 10:51:27 2017 us=84041 keysize = 0
- Thu Apr 13 10:51:27 2017 us=84041 engine = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 replay = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 mute_replay_warnings = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 replay_window = 64
- Thu Apr 13 10:51:27 2017 us=84041 replay_time = 15
- Thu Apr 13 10:51:27 2017 us=84041 packet_id_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 use_iv = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 test_crypto = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tls_server = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tls_client = ENABLED
- Thu Apr 13 10:51:27 2017 us=84041 key_method = 2
- Thu Apr 13 10:51:27 2017 us=84041 ca_file = 'ca.crt'
- Thu Apr 13 10:51:27 2017 us=84041 ca_path = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 dh_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 cert_file = 'client.crt'
- Thu Apr 13 10:51:27 2017 us=84041 extra_certs_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 priv_key_file = 'client.key'
- Thu Apr 13 10:51:27 2017 us=84041 pkcs12_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 cryptoapi_cert = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 cipher_list = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 tls_verify = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 tls_export_cert = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 verify_x509_type = 0
- Thu Apr 13 10:51:27 2017 us=84041 verify_x509_name = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 crl_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 ns_cert_type = 1
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_ku[i] = 0
- Thu Apr 13 10:51:27 2017 us=84041 remote_cert_eku = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 ssl_flags = 0
- Thu Apr 13 10:51:27 2017 us=84041 tls_timeout = 2
- Thu Apr 13 10:51:27 2017 us=84041 renegotiate_bytes = -1
- Thu Apr 13 10:51:27 2017 us=84041 renegotiate_packets = 0
- Thu Apr 13 10:51:27 2017 us=84041 renegotiate_seconds = 3600
- Thu Apr 13 10:51:27 2017 us=84041 handshake_window = 60
- Thu Apr 13 10:51:27 2017 us=84041 transition_window = 3600
- Thu Apr 13 10:51:27 2017 us=84041 single_session = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 push_peer_info = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tls_exit = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 tls_auth_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_protected_authentication = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_private_mode = 00000000
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=84041 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_cert_private = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_pin_cache_period = -1
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_id = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=85019 pkcs11_id_management = DISABLED
- Thu Apr 13 10:51:27 2017 us=85019 server_network = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=85019 server_netmask = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 server_network_ipv6 = ::
- Thu Apr 13 10:51:27 2017 us=86282 server_netbits_ipv6 = 0
- Thu Apr 13 10:51:27 2017 us=86282 server_bridge_ip = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 server_bridge_netmask = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 server_bridge_pool_start = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 server_bridge_pool_end = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_start = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_end = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_netmask = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_persist_filename = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_pool_persist_refresh_freq = 600
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_ipv6_pool_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_ipv6_pool_base = ::
- Thu Apr 13 10:51:27 2017 us=86282 ifconfig_ipv6_pool_netbits = 0
- Thu Apr 13 10:51:27 2017 us=86282 n_bcast_buf = 256
- Thu Apr 13 10:51:27 2017 us=86282 tcp_queue_limit = 64
- Thu Apr 13 10:51:27 2017 us=86282 real_hash_size = 256
- Thu Apr 13 10:51:27 2017 us=86282 virtual_hash_size = 256
- Thu Apr 13 10:51:27 2017 us=86282 client_connect_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 learn_address_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 client_disconnect_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 client_config_dir = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 ccd_exclusive = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 tmp_dir = 'C:\Users\Idriss\AppData\Local\Temp\'
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_local = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_remote_netmask = 0.0.0.0
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_ipv6_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_ipv6_local = ::/0
- Thu Apr 13 10:51:27 2017 us=86282 push_ifconfig_ipv6_remote = ::
- Thu Apr 13 10:51:27 2017 us=86282 enable_c2c = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 duplicate_cn = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 cf_max = 0
- Thu Apr 13 10:51:27 2017 us=86282 cf_per = 0
- Thu Apr 13 10:51:27 2017 us=86282 max_clients = 1024
- Thu Apr 13 10:51:27 2017 us=86282 max_routes_per_client = 256
- Thu Apr 13 10:51:27 2017 us=86282 auth_user_pass_verify_script = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 auth_user_pass_verify_script_via_file = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 client = ENABLED
- Thu Apr 13 10:51:27 2017 us=86282 pull = ENABLED
- Thu Apr 13 10:51:27 2017 us=86282 auth_user_pass_file = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 show_net_up = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 route_method = 0
- Thu Apr 13 10:51:27 2017 us=86282 block_outside_dns = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 ip_win32_defined = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 ip_win32_type = 3
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_masq_offset = 0
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_lease_time = 31536000
- Thu Apr 13 10:51:27 2017 us=86282 tap_sleep = 0
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_options = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_renew = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_pre_release = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 dhcp_release = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 domain = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 netbios_scope = '[UNDEF]'
- Thu Apr 13 10:51:27 2017 us=86282 netbios_node_type = 0
- Thu Apr 13 10:51:27 2017 us=86282 disable_nbt = DISABLED
- Thu Apr 13 10:51:27 2017 us=86282 OpenVPN 2.3.14 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Feb 1 2017
- Thu Apr 13 10:51:27 2017 us=86282 Windows version 6.2 (Windows 8 or greater) 64bit
- Thu Apr 13 10:51:27 2017 us=86282 library versions: OpenSSL 1.0.2k 26 Jan 2017, LZO 2.09
- Enter Management Password:
- Thu Apr 13 10:51:27 2017 us=86282 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
- Thu Apr 13 10:51:27 2017 us=86282 Need hold release from management interface, waiting...
- Thu Apr 13 10:51:27 2017 us=562223 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
- Thu Apr 13 10:51:27 2017 us=663013 MANAGEMENT: CMD 'state on'
- Thu Apr 13 10:51:27 2017 us=663013 MANAGEMENT: CMD 'log all on'
- Thu Apr 13 10:51:27 2017 us=742557 MANAGEMENT: CMD 'hold off'
- Thu Apr 13 10:51:27 2017 us=743033 MANAGEMENT: CMD 'hold release'
- Thu Apr 13 10:51:27 2017 us=821662 LZO compression initialized
- Thu Apr 13 10:51:27 2017 us=822640 Control Channel MTU parms [ L:1542 D:1212 EF:38 EB:0 ET:0 EL:3 ]
- Thu Apr 13 10:51:27 2017 us=822640 Socket Buffers: R=[65536->65536] S=[65536->65536]
- Thu Apr 13 10:51:27 2017 us=822640 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:143 ET:0 EL:3 AF:3/1 ]
- Thu Apr 13 10:51:27 2017 us=822640 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
- Thu Apr 13 10:51:27 2017 us=822640 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
- Thu Apr 13 10:51:27 2017 us=822640 Local Options hash (VER=V4): '41690919'
- Thu Apr 13 10:51:27 2017 us=822640 Expected Remote Options hash (VER=V4): '530fdded'
- Thu Apr 13 10:51:27 2017 us=822640 UDPv4 link local: [undef]
- Thu Apr 13 10:51:27 2017 us=822640 UDPv4 link remote: [AF_INET]@_router:443
- Thu Apr 13 10:51:27 2017 us=822640 MANAGEMENT: >STATE:1492066287,WAIT,,,
- Thu Apr 13 10:51:27 2017 us=822640 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:51:27 2017 us=822640 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
- Thu Apr 13 10:51:29 2017 us=937451 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:51:33 2017 us=109247 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:51:41 2017 us=99029 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:51:57 2017 us=469387 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:52:27 2017 us=693869 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
- Thu Apr 13 10:52:27 2017 us=693869 TLS Error: TLS handshake failed
- Thu Apr 13 10:52:27 2017 us=693869 TCP/UDP: Closing socket
- Thu Apr 13 10:52:27 2017 us=693869 SIGUSR1[soft,tls-error] received, process restarting
- Thu Apr 13 10:52:27 2017 us=693869 MANAGEMENT: >STATE:1492066347,RECONNECTING,tls-error,,
- Thu Apr 13 10:52:27 2017 us=693869 Restart pause, 2 second(s)
- Thu Apr 13 10:52:29 2017 us=694222 Re-using SSL/TLS context
- Thu Apr 13 10:52:29 2017 us=694222 LZO compression initialized
- Thu Apr 13 10:52:29 2017 us=694222 Control Channel MTU parms [ L:1542 D:1212 EF:38 EB:0 ET:0 EL:3 ]
- Thu Apr 13 10:52:29 2017 us=694222 Socket Buffers: R=[65536->65536] S=[65536->65536]
- Thu Apr 13 10:52:29 2017 us=694222 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:143 ET:0 EL:3 AF:3/1 ]
- Thu Apr 13 10:52:29 2017 us=694222 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
- Thu Apr 13 10:52:29 2017 us=694222 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
- Thu Apr 13 10:52:29 2017 us=694222 Local Options hash (VER=V4): '41690919'
- Thu Apr 13 10:52:29 2017 us=694222 Expected Remote Options hash (VER=V4): '530fdded'
- Thu Apr 13 10:52:29 2017 us=694222 UDPv4 link local: [undef]
- Thu Apr 13 10:52:29 2017 us=694222 UDPv4 link remote: [AF_INET]@_router:443
- Thu Apr 13 10:52:29 2017 us=694222 MANAGEMENT: >STATE:1492066349,WAIT,,,
- Thu Apr 13 10:52:29 2017 us=694222 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:52:29 2017 us=694222 UDPv4 READ [0] from [undef]: DATA UNDEF len=-1
- Thu Apr 13 10:52:31 2017 us=841933 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
- Thu Apr 13 10:52:35 2017 us=61436 UDPv4 WRITE [14] to [AF_INET]@_router:443: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA len=0
|
Serveur.conf (debian)
Code :
- port 443
- proto udp
- dev tun
- ca ca.crt
- cert server.crt
- key server.key
- server 10.8.0.0 255.255.255.0
- ifconfig-pool-persist ipp.txt
- push "dhcp-option DNS 208.67.222.222"
- push "dhcp-option DNS 208.67.220.220"
- comp-lzo
- user nobody
- group nogroup
- persist-key
- persist-tun
- status openvpn-status.log
- verb 6
|
before.rules
Code :
- # START OPENVPN RULES
- # NAT table rules
- *nat
- : POSTROUTING ACCEPT [0:0]
- # Allow traffic from OpenVPN client to eth0
- -A POSTROUTING -s 10.8.0.0/8 -o eth0 -j MASQUERADE
- COMMIT
- # END OPENVPN RULES
|
|