Package: openvpn
Version: 2.0-1

somehow i cant get authentication via pam login working.
thats my first problem:
dcrt01:/etc/openvpn# openvpn multi-server.conf
Fri Sep 16 18:05:13 2005 OpenVPN 2.0 i386-pc-linux [SSL] [LZO] [EPOLL]
built on Apr 18 2005
AUTH-PAM: BACKGROUND: could not load PAM lib libpam.so: libpam.so:
cannot open shared object file: No such file or directory
Fri Sep 16 18:05:13 2005 PLUGIN_INIT:
POST /usr/lib/openvpn/openvpn-auth-pam.so 'login login USERNAME password
PASSWORD' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY
Fri Sep 16 18:05:13 2005 PLUGIN_INIT: plugin initialization function
failed: /usr/lib/openvpn/openvpn-auth-pam.so
Fri Sep 16 18:05:13 2005 Exiting

so i linked libpam.so.0 to libpam.so, hope this is right...

now openvpn starts up, but passwd auth dont work.

Fri Sep 16 18:07:40 2005 OpenVPN 2.0 i386-pc-linux [SSL] [LZO] [EPOLL]
built on Apr 18 2005
Fri Sep 16 18:07:40 2005 PLUGIN_INIT:
POST /usr/lib/openvpn/openvpn-auth-pam.so 'login login USERNAME password
PASSWORD' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY
Fri Sep 16 18:07:40 2005 Diffie-Hellman initialized with 1024 bit key
Fri Sep 16 18:07:40 2005 TLS-Auth MTU parms [ L:1542 D:138 EF:38 EB:0
ET:0 EL:0 ]
Fri Sep 16 18:07:40 2005 TUN/TAP device tun0 opened
Fri Sep 16 18:07:40 2005 /sbin/ifconfig tun0 10.8.0.1 pointopoint
10.8.0.2 mtu 1500
Fri Sep 16 18:07:41 2005 /sbin/route add -net 10.8.0.0 netmask
255.255.255.0 gw 10.8.0.2
Fri Sep 16 18:07:41 2005 Data Channel MTU parms [ L:1542 D:1450 EF:42
EB:23 ET:0 EL:0 AF:3/1 ]
Fri Sep 16 18:07:41 2005 GID set to nogroup
Fri Sep 16 18:07:41 2005 UID set to nobody
Fri Sep 16 18:07:41 2005 UDPv4 link local (bound): 213.146.112.84:1194
Fri Sep 16 18:07:41 2005 UDPv4 link remote: [undef]
Fri Sep 16 18:07:41 2005 MULTI: multi_init called, r=256 v=256
Fri Sep 16 18:07:41 2005 IFCONFIG POOL: base=10.8.0.4 size=62
Fri Sep 16 18:07:41 2005 IFCONFIG POOL LIST
Fri Sep 16 18:07:41 2005 michallek,10.8.0.4
Fri Sep 16 18:07:41 2005 Initialization Sequence Completed
Fri Sep 16 18:07:56 2005 MULTI: multi_create_instance called
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 Re-using SSL/TLS context
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 LZO compression initialized
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 Control Channel MTU parms
[ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 Data Channel MTU parms
[ L:1542 D:1450 EF:42 EB:23 ET:0 EL:0 AF:3/1 ]
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 Local Options hash (VER=V4):
'530fdded'
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 Expected Remote Options hash
(VER=V4): '41690919'
Fri Sep 16 18:07:56 2005 84.171.99.86:1119 TLS: Initial packet from
84.171.99.86:1119, sid=c4faecd0 3f8b62e0
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 VERIFY OK:
depth=1, /C=DE/ST=Hessen/L=FULDA/O=DATACONSULT/CN=213.146.112.84/[EMAIL 
PROTECTED]
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 VERIFY OK:
depth=0, /C=DE/ST=Hessen/O=DATACONSULT/CN=michallek/[EMAIL PROTECTED]
AUTH-PAM: BACKGROUND: user 'michallek' failed to authenticate: Error in
service module
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 PLUGIN_CALL:
POST /usr/lib/openvpn/openvpn-auth-pam.so/PLUGIN_AUTH_USER_PASS_VERIFY
status=1
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 PLUGIN_CALL: plugin function
PLUGIN_AUTH_USER_PASS_VERIFY failed with status
1: /usr/lib/openvpn/openvpn-auth-pam.so
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 TLS Auth Error: Auth
Username/Password verification failed for peer
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 Control Channel: TLSv1,
cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Fri Sep 16 18:07:57 2005 84.171.99.86:1119 [michallek] Peer Connection
Initiated with 84.171.99.86:1119
Fri Sep 16 18:07:59 2005 84.171.99.86:1119 PUSH: Received control
message: 'PUSH_REQUEST'
Fri Sep 16 18:07:59 2005 84.171.99.86:1119 SENT CONTROL [michallek]:
'AUTH_FAILED' (status=1)
Fri Sep 16 18:07:59 2005 84.171.99.86:1119 Delayed exit in 5 seconds
Fri Sep 16 18:08:01 2005 read UDPv4 [ECONNREFUSED]: Connection refused
(code=111)
Fri Sep 16 18:08:03 2005 read UDPv4 [ECONNREFUSED]: Connection refused
(code=111)
Fri Sep 16 18:08:04 2005 84.171.99.86:1119 SIGTERM[soft,delayed-exit]
received, client-instance exiting

i havent changed anything to pamconfig yet, everything is  default
debian sarge. the username/password i tried is a normal user on the
vpnserver. i tried :
login michallek
and i can login via password.
what can be the problem here?


-- 
Mit freundlichen Grüßen / Best regards

Christian Michallek
IT Management und Integration

DATA CONSULT SYSTEMHAUS GMBH
Bahnhofstraße 26
36037 Fulda

Tel.: 0661- 9339-481
Fax: 0661- 9337-567
eMail: [EMAIL PROTECTED]

http://www.data-consult.com


Reply via email to