Hello, In the meantime I've tried running it with Apparmor and the Radius plugin disabled. Also with the python version of this script. The error is the same. Maybe Synology did some magic thing, in that case I would be in the wrong place to ask. > I'd add some debug statements to the script, e.g. add on the second line. > echo "[$0] [$1] [$2] [$3] [$4]"Result:***************************** Mon Oct > 5 19:23:14 2015 us=499434 192.168.11.32:1194 ++ Certificate has EKU (str) > TLS Web Client Authentication, expects TLS Web Client Authentication Mon Oct 5 19:23:14 2015 us=499500 192.168.11.32:1194 VERIFY EKU OK *** [/volume1/@appstore/VPNCenter/scripts/ovpnCNcheck.sh] [/volume1/@appstore/VPNCenter/scripts/userlist.txt] [0] [C=NL, ST=GLD, O=MMD, OU=OVPN-NAS, CN=admin, emailAddress=dreet...@hotmail.com] [] ***^^^^^^^^^^ This line shows up extra, so I would think the admin cert arrived. *** Mon Oct 5 19:23:14 2015 us=511255 192.168.11.32:1194 WARNING: Failed running command (--tls-verify script): external program exited with error status: 1 Mon Oct 5 19:23:14 2015 us=511360 192.168.11.32:1194 VERIFY SCRIPT ERROR: depth=0, C=NL, ST=GLD, O=MMD, OU=OVPN-NAS, CN=admin, emailAddress=dreet...@hotmail.com Mon Oct 5 19:23:14 2015 us=511681 192.168.11.32:1194 TLS_ERROR: BIO read tls_read_plaintext error: error:140890B2:lib(20):func(137):reason(178) ****************************** > Also, what happens if you run the script manually > with the same parameters as specified via OpenVPN ? You mean start from the CLI? It`s becoming quit a journey :) Thanks for trying to help this novice. André
------------------------------------------------------------------------------
_______________________________________________ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-users