|
OpenVPN Mikrotik <-> linux
|
|||
---|---|---|---|
#18+
Есть следующая схема: [Железяка с линухом Дебиан]-[USB 3G Modem] ---Интернет--- [Роутер микротик]-[домашняя сеть] Выписал ключи. На микротике настроил OpenVPN сервер. На Линуксовой железяке клиент. Конфиг клиента: clientавтор;dev tap dev tun proto tcp-client ;proto udp remote 176.15.xxx.xxx 1194 resolv-retry infinite nobind user pi group openvpn persist-key persist-tun ca /etc/openvpn/keys/ca.crt cert /etc/openvpn/keys/VPN_Client.crt key /etc/openvpn/keys/VPN_Client.key tls-client ns-cert-type server cipher AES-256-CBC auth SHA1 pull comp-lzo verb 3 log /var/log/openvpn/openvpn-status.log route-method exe route-delay 2 auth-user-pass rampvpn Лог подключения на линуксе(дебиан): авторWed Jul 22 19:18:32 2015 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Wed Jul 22 19:18:32 2015 Re-using SSL/TLS context Wed Jul 22 19:18:32 2015 LZO compression initialized Wed Jul 22 19:18:32 2015 Control Channel MTU parms [ L:1560 D:140 EF:40 EB:0 ET:0 EL:0 ] Wed Jul 22 19:18:32 2015 Socket Buffers: R=[87380->131072] S=[16384->131072] Wed Jul 22 19:18:32 2015 Data Channel MTU parms [ L:1560 D:1450 EF:60 EB:135 ET:0 EL:0 AF:3/1 ] Wed Jul 22 19:18:32 2015 Local Options hash (VER=V4): '958c5492' Wed Jul 22 19:18:32 2015 Expected Remote Options hash (VER=V4): '79ef4284' Wed Jul 22 19:18:32 2015 Attempting to establish TCP connection with [AF_INET]176.15.116.223:1194 [nonblock] Wed Jul 22 19:18:33 2015 TCP connection established with [AF_INET]176.15.116.223:1194 Wed Jul 22 19:18:33 2015 TCPv4_CLIENT link local: [undef] Wed Jul 22 19:18:33 2015 TCPv4_CLIENT link remote: [AF_INET]176.15.116.223:1194 Wed Jul 22 19:18:33 2015 Connection reset, restarting [0] Wed Jul 22 19:18:33 2015 TCP/UDP: Closing socket Wed Jul 22 19:18:33 2015 SIGUSR1[soft,connection-reset] received, process restarting Wed Jul 22 19:18:33 2015 Restart pause, 5 second(s) с бОльшим уровнем логирования: авторWed Jul 22 21:10:34 2015 us=827191 TLS: tls_multi_process: i=2 state=S_UNDEF, mysid=00000000 00000000, stored-sid=00000000 00000000, stored-ip=[undef] Wed Jul 22 21:10:34 2015 us=827420 RANDOM USEC=208913 Wed Jul 22 21:10:34 2015 us=827602 STREAM: SET NEXT, buf=[64,0] next=[64,1559] len=-1 maxlen=1559 Wed Jul 22 21:10:34 2015 us=827768 PO_CTL rwflags=0x0003 ev=4 arg=0xb6f960c4 Wed Jul 22 21:10:34 2015 us=827953 I/O WAIT T?|T?|SR|SW [1/208913] Wed Jul 22 21:10:34 2015 us=828153 PO_WAIT[0,0] fd=4 rev=0x00000005 rwflags=0x0003 arg=0xb6f960c4 Wed Jul 22 21:10:34 2015 us=828317 event_wait returned 1 Wed Jul 22 21:10:34 2015 us=828478 I/O WAIT status=0x0003 Wed Jul 22 21:10:34 2015 us=828729 TCPv4_CLIENT WRITE [14] to [AF_INET]176.15.116.223:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 sid=12d2d70c a8dafeee [ ] pid=0 DATA Wed Jul 22 21:10:34 2015 us=828891 STREAM: WRITE 14 offset=26 Wed Jul 22 21:10:34 2015 us=829327 TCPv4_CLIENT write returned 16 Wed Jul 22 21:10:34 2015 us=829896 TLS: tls_multi_process: i=0 state=S_PRE_START, mysid=12d2d70c a8dafeee, stored-sid=00000000 00000000, stored-ip=[AF_INET]176.15.116.223:1194 Wed Jul 22 21:10:34 2015 us=830100 TLS: tls_process: chg=0 ks=S_PRE_START lame=S_UNDEF to_link->len=0 wakeup=604800 Wed Jul 22 21:10:34 2015 us=830279 ACK reliable_can_send active=1 current=0 : [1] 0 Wed Jul 22 21:10:34 2015 us=830665 SSL state (connect): before/connect initialization Wed Jul 22 21:10:34 2015 us=831044 SSL state (connect): SSLv3 write client hello A Wed Jul 22 21:10:34 2015 us=831304 ACK reliable_send_timeout 2 [1] 0 Wed Jul 22 21:10:34 2015 us=831475 TLS: tls_process: timeout set to 2 Wed Jul 22 21:10:34 2015 us=831708 TLS: tls_multi_process: i=1 state=S_INITIAL, mysid=579935cf 32c8ea43, stored-sid=00000000 00000000, stored-ip=[undef] Wed Jul 22 21:10:34 2015 us=831943 TLS: tls_multi_process: i=2 state=S_UNDEF, mysid=00000000 00000000, stored-sid=00000000 00000000, stored-ip=[undef] Wed Jul 22 21:10:34 2015 us=832130 STREAM: SET NEXT, buf=[64,0] next=[64,1559] len=-1 maxlen=1559 Wed Jul 22 21:10:34 2015 us=832295 PO_CTL rwflags=0x0001 ev=4 arg=0xb6f960c4 Wed Jul 22 21:10:34 2015 us=832483 I/O WAIT T?|T?|SR|Sw [1/208913] Wed Jul 22 21:10:34 2015 us=832682 PO_WAIT[0,0] fd=4 rev=0x00000019 rwflags=0x0001 arg=0xb6f960c4 Wed Jul 22 21:10:34 2015 us=832956 event_wait returned 1 Wed Jul 22 21:10:34 2015 us=833128 I/O WAIT status=0x0001 Wed Jul 22 21:10:34 2015 us=833285 STREAM: GET NEXT len=1559 Wed Jul 22 21:10:34 2015 us=833595 Connection reset, restarting [0] Wed Jul 22 21:10:34 2015 us=833808 PID packet_id_free Wed Jul 22 21:10:34 2015 us=834121 PID packet_id_free Wed Jul 22 21:10:34 2015 us=834295 PID packet_id_free Wed Jul 22 21:10:34 2015 us=834447 PID packet_id_free Wed Jul 22 21:10:34 2015 us=834688 PID packet_id_free Wed Jul 22 21:10:34 2015 us=834858 PID packet_id_free Wed Jul 22 21:10:34 2015 us=835015 PID packet_id_free Wed Jul 22 21:10:34 2015 us=835168 PID packet_id_free Wed Jul 22 21:10:34 2015 us=835326 TCP/UDP: Closing socket Wed Jul 22 21:10:34 2015 us=835574 PID packet_id_free Wed Jul 22 21:10:34 2015 us=835773 SIGUSR1[soft,connection-reset] received, process restarting Wed Jul 22 21:10:34 2015 us=835974 Restart pause, 5 second(s) на стороне Микротика в логе сплошные: TCP connection established. и все. вопрос, что - делать? :) ... |
|||
:
Нравится:
Не нравится:
|
|||
23.07.2015, 09:34 |
|
|
start [/forum/topic.php?fid=25&tid=1482002]: |
0ms |
get settings: |
10ms |
get forum list: |
11ms |
check forum access: |
3ms |
check topic access: |
3ms |
track hit: |
42ms |
get topic data: |
13ms |
get forum data: |
2ms |
get page messages: |
39ms |
get tp. blocked users: |
2ms |
others: | 249ms |
total: | 374ms |
0 / 0 |