Here is my firewall and router status: root@DD-WRT:~# iptables -t nat -vnL Chain PREROUTING (policy ACCEPT 1348 packets, 98562 bytes) pkts bytes target prot opt in out source destination 0 0 DNAT icmp -- * * 0.0.0.0/0 209.xx118.107 to:192.168.1.1 82 6435 TRIGGER 0 -- * * 0.0.0.0/0 209.xx.118.107 TRIGGER type:dnat match:0 relate:0
Chain INPUT (policy ACCEPT 510 packets, 30310 bytes) pkts bytes target prot opt in out source destination Chain OUTPUT (policy ACCEPT 142 packets, 9980 bytes) pkts bytes target prot opt in out source destination Chain POSTROUTING (policy ACCEPT 146 packets, 10228 bytes) pkts bytes target prot opt in out source destination 469 38913 MASQUERADE 0 -- * vlan2 192.168.66.0/24 0.0.0.0/0 226 15037 SNAT 0 -- * vlan2 192.168.1.0/24 0.0.0.0/0 to:209.xx.118.107 0 0 MASQUERADE 0 -- * * 0.0.0.0/0 0.0.0.0/0 mark match 0x80000000/0x80000000 root@DD-WRT:~# ip route default via 209.6.112.1 dev vlan2 127.0.0.0/8 dev lo scope link 169.254.0.0/16 dev br0 proto kernel scope link src 169.254.255.1 192.168.1.0/24 dev br0 proto kernel scope link src 192.168.1.1 192.168.66.0/24 dev tun2 proto kernel scope link src 192.168.66.1 209.6.112.0/20 dev vlan2 proto kernel scope link src 209.6.118.107 -----Original Message----- From: James Peng via Openvpn-users [mailto:openvpn-users@lists.sourceforge.net] Sent: Wednesday, May 23, 2018 3:13 PM To: openvpn-users@lists.sourceforge.net Subject: [Openvpn-users] conneced but no internet access For a quick temporary experiment solution I will use this DD-WRT router as OpenVPN server. I can connect to the OpenVPN server now but I cannot access any websites. I can receive email via MS outlook but cannot send. By looking at the server log, it says: " 20180523 13:34:50 I TUN/TAP device tun2 opened ". Does that mean the "tun2" will always be used by the openVPN server? I am using Windows 7 client. And the Linksys E4200 DD-WRT router is the only router in my home network. I have the client and server log copied here. Please help me to figure out what I can do next. Thanks. Server Log::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: 20180523 13:34:50 I OpenVPN 2.4.3 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD] built on Aug 3 2017 20180523 13:34:50 I library versions: OpenSSL 1.0.2l 25 May 2017 LZO 2.09 20180523 13:34:50 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:14 20180523 13:34:50 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20180523 13:34:50 W Note: cannot open ipp.txt for READ/WRITE 20180523 13:34:50 Diffie-Hellman initialized with 2048 bit key 20180523 13:34:50 I TUN/TAP device tun2 opened 20180523 13:34:50 TUN/TAP TX queue length set to 100 20180523 13:34:50 D do_ifconfig tt->did_ifconfig_ipv6_setup=0 20180523 13:34:50 I /sbin/ifconfig tun2 192.168.66.1 netmask 255.255.255.0 mtu 1500 broadcast 192.168.66.255 20180523 13:34:50 Socket Buffers: R=[163840->163840] S=[163840->163840] 20180523 13:34:50 I UDPv4 link local (bound): [AF_INET][undef]:1194 20180523 13:34:50 I UDPv4 link remote: [AF_UNSPEC] 20180523 13:34:50 MULTI: multi_init called r=256 v=256 20180523 13:34:50 IFCONFIG POOL: base=192.168.66.2 size=252 ipv6=0 20180523 13:34:50 IFCONFIG POOL LIST 20180523 13:34:50 I Initialization Sequence Completed 20180523 13:35:40 96.92.170.77:38090 TLS: Initial packet from [AF_INET]96.92.170.77:38090 sid=689185a0 5ded67f3 20180523 13:35:42 96.92.170.77:38090 VERIFY OK: depth=1 C=US ST=MA L=Lexington O=lmei OU=tellyoulater CN=GleasonVPN name=dontwanttotellyou emailAddress=x...@yahoo.com 20180523 13:35:42 96.92.170.77:38090 VERIFY OK: depth=0 C=US ST=MA L=Lexington O=lmei OU=tellyoulater CN=client1 name=client1Name emailAddress=x...@yahoo.com 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_VER=2.4.6 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_PLAT=win 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_PROTO=2 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_NCP=2 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_LZ4=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_LZ4v2=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_LZO=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_COMP_STUB=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_COMP_STUBv2=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_TCPNL=1 20180523 13:35:42 I 96.92.170.77:38090 peer info: IV_GUI_VER=OpenVPN_GUI_11 20180523 13:35:42 96.92.170.77:38090 Control Channel: TLSv1.2 cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384 4096 bit RSA 20180523 13:35:42 I 96.92.170.77:38090 [client1] Peer Connection Initiated with [AF_INET]96.92.170.77:38090 20180523 13:35:42 I client1/96.92.170.77:38090 MULTI_sva: pool returned IPv4=192.168.66.2 IPv6=(Not enabled) 20180523 13:35:42 client1/96.92.170.77:38090 OPTIONS IMPORT: reading client specific options from: /tmp/openvpn_cc_b39a2e60202da703d2bcc5e97b9cb4a4.tmp 20180523 13:35:42 client1/96.92.170.77:38090 MULTI: Learn: 192.168.66.2 -> client1/96.92.170.77:38090 20180523 13:35:42 client1/96.92.170.77:38090 MULTI: primary virtual IP for client1/96.92.170.77:38090: 192.168.66.2 20180523 13:35:43 client1/96.92.170.77:38090 PUSH: Received control message: 'PUSH_REQUEST' 20180523 13:35:43 client1/96.92.170.77:38090 SENT CONTROL [client1]: 'PUSH_REPLY redirect-gateway def1 route 192.168.1.0 255.255.255.0 dhcp-option DNS 192.168.0.1 redirect-gateway def1 bypass-dhcp route-gateway 192.168.66.1 topology subnet ping 10 ping-restart 120 ifconfig 192.168.66.2 255.255.255.0 peer-id 0 cipher AES-256-GCM' (status=1) 20180523 13:35:43 client1/96.92.170.77:38090 Data Channel: using negotiated cipher 'AES-256-GCM' 20180523 13:35:43 client1/96.92.170.77:38090 Data Channel Encrypt: Cipher 'AES-256-GCM' initialized with 256 bit key 20180523 13:35:43 client1/96.92.170.77:38090 Data Channel Decrypt: Cipher 'AES-256-GCM' initialized with 256 bit key 20180523 13:37:26 N client1/96.92.170.77:38090 write UDPv4: Message too large (code=97) 20180523 13:37:26 N client1/96.92.170.77:38090 write UDPv4: Message too large (code=97) 20180523 13:37:26 N client1/96.92.170.77:38090 write UDPv4: Message too large (code=97) 20180523 13:37:26 client1/96.92.170.77:38090 NOTE: --mute triggered... 20180523 13:59:14 client1/96.92.170.77:38090 25 variation(s) on previous 3 message(s) suppressed by --mute 20180523 13:59:14 I client1/96.92.170.77:38090 [client1] Inactivity timeout (--ping-restart) restarting 20180523 13:59:14 client1/96.92.170.77:38090 SIGUSR1[soft ping-restart] received client-instance restarting 20180523 14:10:56 96.92.170.77:57031 TLS: Initial packet from [AF_INET]96.92.170.77:57031 sid=9eef2c25 dabda5b0 20180523 14:10:58 96.92.170.77:57031 VERIFY OK: depth=1 C=US ST=MA L=Lexington O=lmei OU=tellyoulater CN=GleasonVPN name=dontwanttotellyou emailAddress=x...@yahoo.com 20180523 14:10:58 96.92.170.77:57031 VERIFY OK: depth=0 C=US ST=MA L=Lexington O=lmei OU=tellyoulater CN=client1 name=client1Name emailAddress=x...@yahoo.com 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_VER=2.4.6 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_PLAT=win 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_PROTO=2 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_NCP=2 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_LZ4=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_LZ4v2=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_LZO=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_COMP_STUB=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_COMP_STUBv2=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_TCPNL=1 20180523 14:10:58 I 96.92.170.77:57031 peer info: IV_GUI_VER=OpenVPN_GUI_11 20180523 14:10:58 96.92.170.77:57031 Control Channel: TLSv1.2 cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384 4096 bit RSA 20180523 14:10:58 I 96.92.170.77:57031 [client1] Peer Connection Initiated with [AF_INET]96.92.170.77:57031 20180523 14:10:58 I client1/96.92.170.77:57031 MULTI_sva: pool returned IPv4=192.168.66.2 IPv6=(Not enabled) 20180523 14:10:58 client1/96.92.170.77:57031 OPTIONS IMPORT: reading client specific options from: /tmp/openvpn_cc_6a9abf5c456b93f41ab2e7bdaf77e5c3.tmp 20180523 14:10:58 client1/96.92.170.77:57031 MULTI: Learn: 192.168.66.2 -> client1/96.92.170.77:57031 20180523 14:10:58 client1/96.92.170.77:57031 MULTI: primary virtual IP for client1/96.92.170.77:57031: 192.168.66.2 20180523 14:10:59 client1/96.92.170.77:57031 PUSH: Received control message: 'PUSH_REQUEST' 20180523 14:10:59 client1/96.92.170.77:57031 SENT CONTROL [client1]: 'PUSH_REPLY redirect-gateway def1 route 192.168.1.0 255.255.255.0 dhcp-option DNS 192.168.0.1 redirect-gateway def1 bypass-dhcp route-gateway 192.168.66.1 topology subnet ping 10 ping-restart 120 ifconfig 192.168.66.2 255.255.255.0 peer-id 0 cipher AES-256-GCM' (status=1) 20180523 14:10:59 client1/96.92.170.77:57031 Data Channel: using negotiated cipher 'AES-256-GCM' 20180523 14:10:59 client1/96.92.170.77:57031 Data Channel Encrypt: Cipher 'AES-256-GCM' initialized with 256 bit key 20180523 14:10:59 client1/96.92.170.77:57031 Data Channel Decrypt: Cipher 'AES-256-GCM' initialized with 256 bit key 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 D MANAGEMENT: CMD 'state' 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 D MANAGEMENT: CMD 'state' 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 D MANAGEMENT: CMD 'state' 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 NOTE: --mute triggered... 20180523 14:11:35 1 variation(s) on previous 3 message(s) suppressed by --mute 20180523 14:11:35 D MANAGEMENT: CMD 'status 2' 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 D MANAGEMENT: CMD 'status 2' 20180523 14:11:35 MANAGEMENT: Client disconnected 20180523 14:11:35 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:14 20180523 14:11:35 D MANAGEMENT: CMD 'log 500' 19691231 19:00:00 Client Log::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: Wed May 23 13:35:43 2018 us=153820 Current Parameter Settings: Wed May 23 13:35:43 2018 us=154320 config = 'client1.ovpn' Wed May 23 13:35:43 2018 us=154320 mode = 0 Wed May 23 13:35:43 2018 us=154320 show_ciphers = DISABLED Wed May 23 13:35:43 2018 us=154320 show_digests = DISABLED Wed May 23 13:35:43 2018 us=154320 show_engines = DISABLED Wed May 23 13:35:43 2018 us=154320 genkey = DISABLED Wed May 23 13:35:43 2018 us=154320 key_pass_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=154320 show_tls_ciphers = DISABLED Wed May 23 13:35:43 2018 us=154320 connect_retry_max = 0 Wed May 23 13:35:43 2018 us=154320 Connection profiles [0]: Wed May 23 13:35:43 2018 us=154320 proto = udp Wed May 23 13:35:43 2018 us=154320 local = '[UNDEF]' Wed May 23 13:35:43 2018 us=154320 local_port = '[UNDEF]' Wed May 23 13:35:43 2018 us=154320 remote = 'XXX.hopto.org' Wed May 23 13:35:43 2018 us=154320 remote_port = '1194' Wed May 23 13:35:43 2018 us=154320 remote_float = ENABLED Wed May 23 13:35:43 2018 us=154320 bind_defined = DISABLED Wed May 23 13:35:43 2018 us=154320 bind_local = DISABLED Wed May 23 13:35:43 2018 us=154320 bind_ipv6_only = DISABLED Wed May 23 13:35:43 2018 us=154320 connect_retry_seconds = 5 Wed May 23 13:35:43 2018 us=154320 connect_timeout = 120 Wed May 23 13:35:43 2018 us=154320 socks_proxy_server = '[UNDEF]' Wed May 23 13:35:43 2018 us=154320 socks_proxy_port = '[UNDEF]' Wed May 23 13:35:43 2018 us=154320 tun_mtu = 1500 Wed May 23 13:35:43 2018 us=154320 tun_mtu_defined = ENABLED Wed May 23 13:35:43 2018 us=154320 link_mtu = 1500 Wed May 23 13:35:43 2018 us=154320 link_mtu_defined = DISABLED Wed May 23 13:35:43 2018 us=154320 tun_mtu_extra = 0 Wed May 23 13:35:43 2018 us=154320 tun_mtu_extra_defined = DISABLED Wed May 23 13:35:43 2018 us=154320 mtu_discover_type = -1 Wed May 23 13:35:43 2018 us=154320 fragment = 0 Wed May 23 13:35:43 2018 us=154320 mssfix = 1450 Wed May 23 13:35:43 2018 us=154320 explicit_exit_notification = 0 Wed May 23 13:35:43 2018 us=154820 Connection profiles END Wed May 23 13:35:43 2018 us=154820 remote_random = DISABLED Wed May 23 13:35:43 2018 us=154820 ipchange = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 dev = 'tun' Wed May 23 13:35:43 2018 us=154820 dev_type = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 dev_node = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 lladdr = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 topology = 1 Wed May 23 13:35:43 2018 us=154820 ifconfig_local = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 ifconfig_remote_netmask = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 ifconfig_noexec = DISABLED Wed May 23 13:35:43 2018 us=154820 ifconfig_nowarn = DISABLED Wed May 23 13:35:43 2018 us=154820 ifconfig_ipv6_local = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 ifconfig_ipv6_netbits = 0 Wed May 23 13:35:43 2018 us=154820 ifconfig_ipv6_remote = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 shaper = 0 Wed May 23 13:35:43 2018 us=154820 mtu_test = 0 Wed May 23 13:35:43 2018 us=154820 mlock = DISABLED Wed May 23 13:35:43 2018 us=154820 keepalive_ping = 0 Wed May 23 13:35:43 2018 us=154820 keepalive_timeout = 0 Wed May 23 13:35:43 2018 us=154820 inactivity_timeout = 0 Wed May 23 13:35:43 2018 us=154820 ping_send_timeout = 0 Wed May 23 13:35:43 2018 us=154820 ping_rec_timeout = 0 Wed May 23 13:35:43 2018 us=154820 ping_rec_timeout_action = 0 Wed May 23 13:35:43 2018 us=154820 ping_timer_remote = DISABLED Wed May 23 13:35:43 2018 us=154820 remap_sigusr1 = 0 Wed May 23 13:35:43 2018 us=154820 persist_tun = ENABLED Wed May 23 13:35:43 2018 us=154820 persist_local_ip = DISABLED Wed May 23 13:35:43 2018 us=154820 persist_remote_ip = DISABLED Wed May 23 13:35:43 2018 us=154820 persist_key = ENABLED Wed May 23 13:35:43 2018 us=154820 passtos = DISABLED Wed May 23 13:35:43 2018 us=154820 resolve_retry_seconds = 1000000000 Wed May 23 13:35:43 2018 us=154820 resolve_in_advance = DISABLED Wed May 23 13:35:43 2018 us=154820 username = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 groupname = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 chroot_dir = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 cd_dir = '[UNDEF]' Wed May 23 13:35:43 2018 us=154820 writepid = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 up_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 down_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 down_pre = DISABLED Wed May 23 13:35:43 2018 us=155321 up_restart = DISABLED Wed May 23 13:35:43 2018 us=155321 up_delay = DISABLED Wed May 23 13:35:43 2018 us=155321 daemon = DISABLED Wed May 23 13:35:43 2018 us=155321 inetd = 0 Wed May 23 13:35:43 2018 us=155321 log = ENABLED Wed May 23 13:35:43 2018 us=155321 suppress_timestamps = DISABLED Wed May 23 13:35:43 2018 us=155321 machine_readable_output = DISABLED Wed May 23 13:35:43 2018 us=155321 nice = 0 Wed May 23 13:35:43 2018 us=155321 verbosity = 4 Wed May 23 13:35:43 2018 us=155321 mute = 0 Wed May 23 13:35:43 2018 us=155321 gremlin = 0 Wed May 23 13:35:43 2018 us=155321 status_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 status_file_version = 1 Wed May 23 13:35:43 2018 us=155321 status_file_update_freq = 60 Wed May 23 13:35:43 2018 us=155321 occ = ENABLED Wed May 23 13:35:43 2018 us=155321 rcvbuf = 0 Wed May 23 13:35:43 2018 us=155321 sndbuf = 0 Wed May 23 13:35:43 2018 us=155321 sockflags = 0 Wed May 23 13:35:43 2018 us=155321 fast_io = DISABLED Wed May 23 13:35:43 2018 us=155321 comp.alg = 2 Wed May 23 13:35:43 2018 us=155321 comp.flags = 0 Wed May 23 13:35:43 2018 us=155321 route_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 route_default_gateway = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 route_default_metric = 0 Wed May 23 13:35:43 2018 us=155321 route_noexec = DISABLED Wed May 23 13:35:43 2018 us=155321 route_delay = 5 Wed May 23 13:35:43 2018 us=155321 route_delay_window = 30 Wed May 23 13:35:43 2018 us=155321 route_delay_defined = ENABLED Wed May 23 13:35:43 2018 us=155321 route_nopull = DISABLED Wed May 23 13:35:43 2018 us=155321 route_gateway_via_dhcp = DISABLED Wed May 23 13:35:43 2018 us=155321 allow_pull_fqdn = DISABLED Wed May 23 13:35:43 2018 us=155321 management_addr = '127.0.0.1' Wed May 23 13:35:43 2018 us=155321 management_port = '25341' Wed May 23 13:35:43 2018 us=155321 management_user_pass = 'stdin' Wed May 23 13:35:43 2018 us=155321 management_log_history_cache = 250 Wed May 23 13:35:43 2018 us=155321 management_echo_buffer_size = 100 Wed May 23 13:35:43 2018 us=155321 management_write_peer_info_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 management_client_user = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 management_client_group = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 management_flags = 6 Wed May 23 13:35:43 2018 us=155321 shared_secret_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155321 key_direction = not set Wed May 23 13:35:43 2018 us=155321 ciphername = 'AES-128-CBC' Wed May 23 13:35:43 2018 us=155321 ncp_enabled = ENABLED Wed May 23 13:35:43 2018 us=155321 ncp_ciphers = 'AES-256-GCM:AES-128-GCM' Wed May 23 13:35:43 2018 us=155321 authname = 'SHA256' Wed May 23 13:35:43 2018 us=155321 prng_hash = 'SHA1' Wed May 23 13:35:43 2018 us=155321 prng_nonce_secret_len = 16 Wed May 23 13:35:43 2018 us=155821 keysize = 0 Wed May 23 13:35:43 2018 us=155821 engine = DISABLED Wed May 23 13:35:43 2018 us=155821 replay = ENABLED Wed May 23 13:35:43 2018 us=155821 mute_replay_warnings = DISABLED Wed May 23 13:35:43 2018 us=155821 replay_window = 64 Wed May 23 13:35:43 2018 us=155821 replay_time = 15 Wed May 23 13:35:43 2018 us=155821 packet_id_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 use_iv = ENABLED Wed May 23 13:35:43 2018 us=155821 test_crypto = DISABLED Wed May 23 13:35:43 2018 us=155821 tls_server = DISABLED Wed May 23 13:35:43 2018 us=155821 tls_client = ENABLED Wed May 23 13:35:43 2018 us=155821 key_method = 2 Wed May 23 13:35:43 2018 us=155821 ca_file = 'ca.crt' Wed May 23 13:35:43 2018 us=155821 ca_path = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 dh_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 cert_file = 'client1.crt' Wed May 23 13:35:43 2018 us=155821 extra_certs_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 priv_key_file = 'client1.key' Wed May 23 13:35:43 2018 us=155821 pkcs12_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 cryptoapi_cert = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 cipher_list = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 tls_cert_profile = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 tls_verify = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 tls_export_cert = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 verify_x509_type = 0 Wed May 23 13:35:43 2018 us=155821 verify_x509_name = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 crl_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 ns_cert_type = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_ku[i] = 0 Wed May 23 13:35:43 2018 us=155821 remote_cert_eku = '[UNDEF]' Wed May 23 13:35:43 2018 us=155821 ssl_flags = 0 Wed May 23 13:35:43 2018 us=155821 tls_timeout = 2 Wed May 23 13:35:43 2018 us=155821 renegotiate_bytes = -1 Wed May 23 13:35:43 2018 us=155821 renegotiate_packets = 0 Wed May 23 13:35:43 2018 us=155821 renegotiate_seconds = 3600 Wed May 23 13:35:43 2018 us=155821 handshake_window = 60 Wed May 23 13:35:43 2018 us=155821 transition_window = 3600 Wed May 23 13:35:43 2018 us=155821 single_session = DISABLED Wed May 23 13:35:43 2018 us=155821 push_peer_info = DISABLED Wed May 23 13:35:43 2018 us=155821 tls_exit = DISABLED Wed May 23 13:35:43 2018 us=156321 tls_auth_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=156321 tls_crypt_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_protected_authentication = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_private_mode = 00000000 Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_cert_private = DISABLED Wed May 23 13:35:43 2018 us=156321 pkcs11_pin_cache_period = -1 Wed May 23 13:35:43 2018 us=156321 pkcs11_id = '[UNDEF]' Wed May 23 13:35:43 2018 us=156321 pkcs11_id_management = DISABLED Wed May 23 13:35:43 2018 us=156321 server_network = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 server_netmask = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 server_network_ipv6 = :: Wed May 23 13:35:43 2018 us=156321 server_netbits_ipv6 = 0 Wed May 23 13:35:43 2018 us=156321 server_bridge_ip = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 server_bridge_netmask = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 server_bridge_pool_start = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 server_bridge_pool_end = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_defined = DISABLED Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_start = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_end = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_netmask = 0.0.0.0 Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_persist_filename = '[UNDEF]' Wed May 23 13:35:43 2018 us=156321 ifconfig_pool_persist_refresh_freq = 600 Wed May 23 13:35:43 2018 us=156821 ifconfig_ipv6_pool_defined = DISABLED Wed May 23 13:35:43 2018 us=156821 ifconfig_ipv6_pool_base = :: Wed May 23 13:35:43 2018 us=156821 ifconfig_ipv6_pool_netbits = 0 Wed May 23 13:35:43 2018 us=156821 n_bcast_buf = 256 Wed May 23 13:35:43 2018 us=156821 tcp_queue_limit = 64 Wed May 23 13:35:43 2018 us=156821 real_hash_size = 256 Wed May 23 13:35:43 2018 us=156821 virtual_hash_size = 256 Wed May 23 13:35:43 2018 us=156821 client_connect_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 learn_address_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 client_disconnect_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 client_config_dir = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 ccd_exclusive = DISABLED Wed May 23 13:35:43 2018 us=156821 tmp_dir = 'C:\Users\lmei\AppData\Local\Temp\' Wed May 23 13:35:43 2018 us=156821 push_ifconfig_defined = DISABLED Wed May 23 13:35:43 2018 us=156821 push_ifconfig_local = 0.0.0.0 Wed May 23 13:35:43 2018 us=156821 push_ifconfig_remote_netmask = 0.0.0.0 Wed May 23 13:35:43 2018 us=156821 push_ifconfig_ipv6_defined = DISABLED Wed May 23 13:35:43 2018 us=156821 push_ifconfig_ipv6_local = ::/0 Wed May 23 13:35:43 2018 us=156821 push_ifconfig_ipv6_remote = :: Wed May 23 13:35:43 2018 us=156821 enable_c2c = DISABLED Wed May 23 13:35:43 2018 us=156821 duplicate_cn = DISABLED Wed May 23 13:35:43 2018 us=156821 cf_max = 0 Wed May 23 13:35:43 2018 us=156821 cf_per = 0 Wed May 23 13:35:43 2018 us=156821 max_clients = 1024 Wed May 23 13:35:43 2018 us=156821 max_routes_per_client = 256 Wed May 23 13:35:43 2018 us=156821 auth_user_pass_verify_script = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 auth_user_pass_verify_script_via_file = DISABLED Wed May 23 13:35:43 2018 us=156821 auth_token_generate = DISABLED Wed May 23 13:35:43 2018 us=156821 auth_token_lifetime = 0 Wed May 23 13:35:43 2018 us=156821 client = ENABLED Wed May 23 13:35:43 2018 us=156821 pull = ENABLED Wed May 23 13:35:43 2018 us=156821 auth_user_pass_file = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 show_net_up = DISABLED Wed May 23 13:35:43 2018 us=156821 route_method = 3 Wed May 23 13:35:43 2018 us=156821 block_outside_dns = DISABLED Wed May 23 13:35:43 2018 us=156821 ip_win32_defined = DISABLED Wed May 23 13:35:43 2018 us=156821 ip_win32_type = 3 Wed May 23 13:35:43 2018 us=156821 dhcp_masq_offset = 0 Wed May 23 13:35:43 2018 us=156821 dhcp_lease_time = 31536000 Wed May 23 13:35:43 2018 us=156821 tap_sleep = 0 Wed May 23 13:35:43 2018 us=156821 dhcp_options = DISABLED Wed May 23 13:35:43 2018 us=156821 dhcp_renew = DISABLED Wed May 23 13:35:43 2018 us=156821 dhcp_pre_release = DISABLED Wed May 23 13:35:43 2018 us=156821 domain = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 netbios_scope = '[UNDEF]' Wed May 23 13:35:43 2018 us=156821 netbios_node_type = 0 Wed May 23 13:35:43 2018 us=156821 disable_nbt = DISABLED Wed May 23 13:35:43 2018 us=156821 OpenVPN 2.4.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Apr 26 2018 Wed May 23 13:35:43 2018 us=156821 Windows version 6.1 (Windows 7) 64bit Wed May 23 13:35:43 2018 us=156821 library versions: OpenSSL 1.1.0h 27 Mar 2018, LZO 2.10 Enter Management Password: Wed May 23 13:35:43 2018 us=157821 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341 Wed May 23 13:35:43 2018 us=158321 Need hold release from management interface, waiting... Wed May 23 13:35:43 2018 us=622380 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341 Wed May 23 13:35:43 2018 us=722393 MANAGEMENT: CMD 'state on' Wed May 23 13:35:43 2018 us=722393 MANAGEMENT: CMD 'log all on' Wed May 23 13:35:43 2018 us=787901 MANAGEMENT: CMD 'echo all on' Wed May 23 13:35:43 2018 us=788401 MANAGEMENT: CMD 'bytecount 5' Wed May 23 13:35:43 2018 us=789901 MANAGEMENT: CMD 'hold off' Wed May 23 13:35:43 2018 us=790901 MANAGEMENT: CMD 'hold release' Wed May 23 13:35:43 2018 us=790901 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Wed May 23 13:35:43 2018 us=795902 LZO compression initializing Wed May 23 13:35:43 2018 us=795902 Control Channel MTU parms [ L:1622 D:1212 EF:38 EB:0 ET:0 EL:3 ] Wed May 23 13:35:43 2018 us=796402 MANAGEMENT: >STATE:1527096943,RESOLVE,,,,,, Wed May 23 13:35:43 2018 us=843908 Data Channel MTU parms [ L:1622 D:1450 EF:122 EB:406 ET:0 EL:3 ] Wed May 23 13:35:43 2018 us=843908 Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-128-CBC,auth SHA256,keysize 128,key-method 2,tls-client' Wed May 23 13:35:43 2018 us=843908 Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-128-CBC,auth SHA256,keysize 128,key-method 2,tls-server' Wed May 23 13:35:43 2018 us=843908 TCP/UDP: Preserving recently used remote address: [AF_INET]209XXX118.107:1194 Wed May 23 13:35:43 2018 us=843908 Socket Buffers: R=[8192->8192] S=[8192->8192] Wed May 23 13:35:43 2018 us=843908 UDP link local: (not bound) Wed May 23 13:35:43 2018 us=843908 UDP link remote: [AF_INET]209XXX118.107:1194 Wed May 23 13:35:43 2018 us=843908 MANAGEMENT: >STATE:1527096943,WAIT,,,,,, Wed May 23 13:35:43 2018 us=874412 MANAGEMENT: >STATE:1527096943,AUTH,,,,,, Wed May 23 13:35:43 2018 us=874412 TLS: Initial packet from [AF_INET]209XXX118.107:1194, sid=e4af23f0 a173ae48 Wed May 23 13:35:45 2018 us=757151 VERIFY OK: depth=1, C=US, ST=MA, L=Lexington, O=lmei, OU=tellyoulater, CN=GleasonVPN, name=dontwanttotellyou, emailAddress=x...@yahoo.com Wed May 23 13:35:45 2018 us=757651 VERIFY OK: depth=0, C=US, ST=MA, L=Lexington, O=lmei, OU=tellyoulater, CN=GleasonVPN, name=dontwanttotellyou, emailAddress=x...@yahoo.com Wed May 23 13:35:45 2018 us=917671 Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384, 4096 bit RSA Wed May 23 13:35:45 2018 us=917671 [GleasonVPN] Peer Connection Initiated with [AF_INET]209XXX118.107:1194 Wed May 23 13:35:47 2018 us=80819 MANAGEMENT: >STATE:1527096947,GET_CONFIG,,,,,, Wed May 23 13:35:47 2018 us=80819 SENT CONTROL [GleasonVPN]: 'PUSH_REQUEST' (status=1) Wed May 23 13:35:47 2018 us=115323 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route 192.168.1.0 255.255.255.0,dhcp-option DNS 192.168.0.1,redirect-gateway def1 bypass-dhcp,route-gateway 192.168.66.1,topology subnet,ping 10,ping-restart 120,ifconfig 192.168.66.2 255.255.255.0,peer-id 0,cipher AES-256-GCM' Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: timers and/or timeouts modified Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: --ifconfig/up options modified Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: route options modified Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: route-related options modified Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: peer-id set Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: adjusting link_mtu to 1625 Wed May 23 13:35:47 2018 us=115823 OPTIONS IMPORT: data channel crypto options modified Wed May 23 13:35:47 2018 us=115823 Data Channel: using negotiated cipher 'AES-256-GCM' Wed May 23 13:35:47 2018 us=115823 Data Channel MTU parms [ L:1553 D:1450 EF:53 EB:406 ET:0 EL:3 ] Wed May 23 13:35:47 2018 us=115823 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Wed May 23 13:35:47 2018 us=115823 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Wed May 23 13:35:47 2018 us=115823 interactive service msg_channel=304 Wed May 23 13:35:47 2018 us=118824 ROUTE_GATEWAY 10.1.30.1/255.255.254.0 I=26 HWADDR=e8:2a:ea:22:78:65 Wed May 23 13:35:47 2018 us=135326 ROUTE: bypass_host_route[0]=1.1.1.1 Wed May 23 13:35:47 2018 us=135326 open_tun Wed May 23 13:35:47 2018 us=137326 TAP-WIN32 device [Local Area Connection 3] opened: \\.\Global\{F573114C-0617-4F9D-9647-1ED45ED5ADC6}.tap Wed May 23 13:35:47 2018 us=137326 TAP-Windows Driver Version 9.21 Wed May 23 13:35:47 2018 us=137326 TAP-Windows MTU=1500 Wed May 23 13:35:47 2018 us=139326 Set TAP-Windows TUN subnet mode network/local/netmask = 192.168.66.0/192.168.66.2/255.255.255.0 [SUCCEEDED] Wed May 23 13:35:47 2018 us=139326 Notified TAP-Windows driver to set a DHCP IP/netmask of 192.168.66.2/255.255.255.0 on interface {F573114C-0617-4F9D-9647-1ED45ED5ADC6} [DHCP-serv: 192.168.66.254, lease-time: 31536000] Wed May 23 13:35:47 2018 us=139326 DHCP option string: 0604c0a8 0001 Wed May 23 13:35:47 2018 us=139827 Successful ARP Flush on interface [38] {F573114C-0617-4F9D-9647-1ED45ED5ADC6} Wed May 23 13:35:47 2018 us=145827 do_ifconfig, tt->did_ifconfig_ipv6_setup=0 Wed May 23 13:35:47 2018 us=145827 MANAGEMENT: >STATE:1527096947,ASSIGN_IP,,192.168.66.2,,,, Wed May 23 13:35:52 2018 us=967567 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=up Wed May 23 13:35:52 2018 us=967567 C:\Windows\system32\route.exe ADD 209XXX118.107 MASK 255.255.255.255 10.1.30.1 Wed May 23 13:35:52 2018 us=969567 Route addition via service succeeded Wed May 23 13:35:52 2018 us=969567 C:\Windows\system32\route.exe ADD 1.1.1.1 MASK 255.255.255.255 10.1.30.1 Wed May 23 13:35:52 2018 us=972067 Route addition via service succeeded Wed May 23 13:35:52 2018 us=972067 C:\Windows\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 192.168.66.1 Wed May 23 13:35:52 2018 us=974067 Route addition via service succeeded Wed May 23 13:35:52 2018 us=974067 C:\Windows\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 192.168.66.1 Wed May 23 13:35:52 2018 us=976068 Route addition via service succeeded Wed May 23 13:35:52 2018 us=976068 MANAGEMENT: >STATE:1527096952,ADD_ROUTES,,,,,, Wed May 23 13:35:52 2018 us=976068 C:\Windows\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 192.168.66.1 Wed May 23 13:35:52 2018 us=978568 Route addition via service succeeded Wed May 23 13:35:52 2018 us=978568 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this Wed May 23 13:35:52 2018 us=978568 Initialization Sequence Completed Wed May 23 13:35:52 2018 us=978568 MANAGEMENT: >STATE:1527096952,CONNECTED,SUCCESS,192.168.66.2,209XXX118.107,1194,, Wed May 23 13:35:59 2018 us=861442 PID_ERR replay-window backtrack occurred [1] [SSL-0] [0_00000000000000000000000000000000000000000000000000000000000000] 0:288 0:287 t=1527096959[0] r=[-1,64,15,1,1] sl=[32,64,64,528] Wed May 23 13:55:19 2018 us=730727 TCP/UDP: Closing socket Wed May 23 13:55:19 2018 us=730727 C:\Windows\system32\route.exe DELETE 192.168.1.0 MASK 255.255.255.0 192.168.66.1 Wed May 23 13:55:19 2018 us=733227 Route deletion via service succeeded Wed May 23 13:55:19 2018 us=733227 C:\Windows\system32\route.exe DELETE 209XXX118.107 MASK 255.255.255.255 10.1.30.1 Wed May 23 13:55:19 2018 us=736727 Route deletion via service succeeded Wed May 23 13:55:19 2018 us=736727 C:\Windows\system32\route.exe DELETE 1.1.1.1 MASK 255.255.255.255 10.1.30.1 Wed May 23 13:55:19 2018 us=738728 Route deletion via service succeeded Wed May 23 13:55:19 2018 us=738728 C:\Windows\system32\route.exe DELETE 0.0.0.0 MASK 128.0.0.0 192.168.66.1 Wed May 23 13:55:19 2018 us=741228 Route deletion via service succeeded Wed May 23 13:55:19 2018 us=741228 C:\Windows\system32\route.exe DELETE 128.0.0.0 MASK 128.0.0.0 192.168.66.1 Wed May 23 13:55:19 2018 us=743728 Route deletion via service succeeded Wed May 23 13:55:19 2018 us=744228 Closing TUN/TAP interface Wed May 23 13:55:19 2018 us=814237 TAP: DHCP address released Wed May 23 13:55:19 2018 us=816238 SIGTERM[hard,] received, process exiting Wed May 23 13:55:19 2018 us=816238 MANAGEMENT: >STATE:1527098119,EXITING,SIGTERM,,,,, -----Original Message----- From: David Sommerseth [mailto:open...@sf.lists.topphemmelig.net] Sent: Tuesday, May 22, 2018 2:17 AM To: James Peng <oldyounggu...@yahoo.com>; openvpn-users@lists.sourceforge.net Subject: Re: [Openvpn-users] cannot connect to server from outside of my home network On 21/05/18 15:14, James Peng via Openvpn-users wrote: > I am now testing my my dd-wrt router OpenVPN server. Again, I STRONGLY advice against using DD-WRT on any publicly available IP address. From my point of view, the company behind this firmware has _NO_ real understanding of security and security policies. > Mon May 21 20:29:40 2018 us=415428 Attempting to establish TCP > connection with [AF_INET]209.6.118.XXX:1194 [nonblock] Mon May 21 > 20:29:40 2018 us=415428 MANAGEMENT: >> STATE:1526905780,TCP_CONNECT,,,,,, > Mon May 21 20:29:41 2018 us=416743 TCP connection established with > [AF_INET]209.6.118.XXX:1194 > Mon May 21 20:29:41 2018 us=416743 TCP_CLIENT link local: (not bound) > Mon May 21 20:29:41 2018 us=416743 TCP_CLIENT link remote: > [AF_INET]209.6.118.XXX:1194 > Mon May 21 20:29:41 2018 us=416743 MANAGEMENT: > >STATE:1526905781,WAIT,,,,,, Mon May 21 20:29:41 2018 us=428738 > Connection reset, restarting [-1] Mon May 21 20:29:41 2018 us=428738 > TCP/UDP: Closing socket Mon May 21 20:29:41 2018 us=428738 > SIGUSR1[soft,connection-reset] received, process restarting Mon May 21 > 20:29:41 2018 us=429738 MANAGEMENT: >> STATE:1526905781,RECONNECTING,connection-reset,,,,, > Mon May 21 20:29:41 2018 us=429738 Restart pause, 5 second(s) Server log file would be helpful as well, but this does smell like a firewall issue somewhere. It can be both on your router and somewhere on the site you're connecting from. The hints are the connection restarts. I also see you use TCP. That is also not recommended. Routed TUN over UDP gives the best performing VPN tunnels for most users. -- kind regards, David Sommerseth ---------------------------------------------------------------------------- -- Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot _______________________________________________ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-users ------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot _______________________________________________ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-users