Voila je rencontre un petit soucis de connexion sur le vpn2 (OpenVPN) de mon réseau.
Je vous explique ma configue :
Arriver du net sur ipcop1 qui est config en red + green + blue + orange. Advproxy et urlfilter son egalement installer dessus ainsi que Openvpn (ovpn1).
Les utilisateurs passent par un 2eme ipcop (ipcop2) pour le surf avec advproxy, urlfilter et filtrage des nom d'utilisateurs.
Sur ipcop1 j'ai donc monter un VPN avec zerina sur le port par défaut (1194) et qui a accès a tout le réseau (LAN et WAN) pour les astreintes et donc les inter a distance.
Sur ipcop2 j'ai monter un 2eme openvpn qui est destiné a donner accès a certains prestataires l'accès a une machine du LAN. Tout est donc bien créer mais voici les log que j'obtient lors de la connexion.
Coter client :
Tue Jul 18 17:57:39 2006 OpenVPN 2.0.7 Win32-MinGW [SSL] [LZO] built on Apr 12 2006
Tue Jul 18 17:57:39 2006 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Tue Jul 18 17:57:42 2006 LZO compression initialized
Tue Jul 18 17:57:42 2006 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Tue Jul 18 17:57:42 2006 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Tue Jul 18 17:57:42 2006 Local Options hash (VER=V4): '41690919'
Tue Jul 18 17:57:42 2006 Expected Remote Options hash (VER=V4): '530fdded'
Tue Jul 18 17:57:42 2006 UDPv4 link local (bound): [undef]:1194
Tue Jul 18 17:57:42 2006 UDPv4 link remote: MON_IP_DU_NET:10000
Tue Jul 18 17:58:42 2006 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Tue Jul 18 17:58:42 2006 TLS Error: TLS handshake failed
Tue Jul 18 17:58:42 2006 TCP/UDP: Closing socket
Tue Jul 18 17:58:42 2006 SIGUSR1[soft,tls-error] received, process restarting
Tue Jul 18 17:58:42 2006 Restart pause, 2 second(s)
Tue Jul 18 17:58:44 2006 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Tue Jul 18 17:58:45 2006 LZO compression initialized
Tue Jul 18 17:58:45 2006 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Tue Jul 18 17:58:45 2006 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Tue Jul 18 17:58:45 2006 Local Options hash (VER=V4): '41690919'
Tue Jul 18 17:58:45 2006 Expected Remote Options hash (VER=V4): '530fdded'
Tue Jul 18 17:58:45 2006 UDPv4 link local (bound): [undef]:1194
Tue Jul 18 17:58:45 2006 UDPv4 link remote: MON_IP_DU_NET:10000
Coter server (ipcop2):
18:07:42 openvpnserver 89.83.221.239:1194 TLS: Initial packet from 89.83.221.239:1194, sid=025bde13 fd4 fb2f3
18:07:42 openvpnserver 89.83.221.239:1194 Expected Remote Options hash (VER=V4): '41690919'
18:07:42 openvpnserver 89.83.221.239:1194 Local Options hash (VER=V4): '530fdded'
18:07:42 openvpnserver 89.83.221.239:1194 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
18:07:42 openvpnserver 89.83.221.239:1194 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
18:07:42 openvpnserver 89.83.221.239:1194 LZO compression initialized
18:07:42 openvpnserver 89.83.221.239:1194 Re-using SSL/TLS context
18:07:42 openvpnserver MULTI: multi_create_instance called
18:07:40 openvpnserver 89.83.221.239:1194 SIGUSR1[soft,tls-error] received, client-instance restarting
18:07:40 openvpnserver 89.83.221.239:1194 TLS Error: TLS handshake failed
18:07:40 openvpnserver 89.83.221.239:1194 TLS Error: TLS key negotiation failed to occur within 60 seco nds (check your network connectivity)
18:06:40 openvpnserver 89.83.221.239:1194 TLS: Initial packet from 89.83.221.239:1194, sid=3ba40f19 8c6 8cb8a
18:06:40 openvpnserver 89.83.221.239:1194 Expected Remote Options hash (VER=V4): '41690919'
18:06:40 openvpnserver 89.83.221.239:1194 Local Options hash (VER=V4): '530fdded'
18:06:40 openvpnserver 89.83.221.239:1194 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
18:06:40 openvpnserver 89.83.221.239:1194 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
18:06:40 openvpnserver 89.83.221.239:1194 LZO compression initialized
18:06:40 openvpnserver 89.83.221.239:1194 Re-using SSL/TLS context
18:06:40 openvpnserver MULTI: multi_create_instance called
18:06:37 openvpnserver 89.83.221.239:1194 SIGUSR1[soft,tls-error] received, client-instance restarting
18:06:37 openvpnserver 89.83.221.239:1194 TLS Error: TLS handshake failed
18:06:37 openvpnserver 89.83.221.239:1194 TLS Error: TLS key negotiation failed to occur within 60 seco nds (check your network connectivity)
18:05:37 openvpnserver 89.83.221.239:1194 TLS: Initial packet from 89.83.221.239:1194, sid=028daac4 07a b227e
18:05:37 openvpnserver 89.83.221.239:1194 Expected Remote Options hash (VER=V4): '41690919'
18:05:37 openvpnserver 89.83.221.239:1194 Local Options hash (VER=V4): '530fdded'
18:05:37 openvpnserver 89.83.221.239:1194 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
18:05:37 openvpnserver 89.83.221.239:1194 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
18:05:37 openvpnserver 89.83.221.239:1194 LZO compression initialized
18:05:37 openvpnserver 89.83.221.239:1194 Re-using SSL/TLS context
18:05:37 openvpnserver MULTI: multi_create_instance called
Je pense que c'est la ligne du log coter client que j'ai mis en rouge qui pose problème!!!!
En effet on dirait qu'il essaye d'utiliser le port 1194 pour s'authentifier sur ipcop2 mais comme celui ci est deja utiliser par ipcop1 je pense que cela pose problème.
Savez vous comment modifier la valeur : UDPv4 link local (bound): [undef]:1194 afin de lui définir le port 10000???
Plutot une configue a mettre en place coter client dans le fichier *.ovpn ou plutot coter server???
Merci d'avance