Re: [Openvpn-users] PC connects to the server but not Android

2024-04-08 Thread Peter Davis via Openvpn-users
> On Monday, April 8th, 2024 at 2:37 PM, Gert Doering > wrote: > Hi, > > On Mon, Apr 08, 2024 at 10:18:11AM +, Peter Davis wrote: > > > Not really. As I said, others can connect to the server and even I can > > connect to the server through PC with the same key. On Android, it was > >

Re: [Openvpn-users] PC connects to the server but not Android

2024-04-08 Thread Peter Davis via Openvpn-users
> On Monday, April 8th, 2024 at 1:39 PM, Gert Doering > wrote: > Hi, > > On Mon, Apr 08, 2024 at 10:03:20AM +0000, Peter Davis via Openvpn-users wrote: > > > 2024-04-08 13:21:09 read UDPv4 [ECONNREFUSED]: Connection refused > > (fd=6,code=111) >

[Openvpn-users] PC connects to the server but not Android

2024-04-08 Thread Peter Davis via Openvpn-users
Hello, I can connect to OpenVPN server through PC, but it is not possible from Android. There is no such problem for other users. The logs are as follows: 2024-04-08 13:21:09 read UDPv4 [ECONNREFUSED]: Connection refused (fd=6,code=111) 2024-04-08 13:21:19 read UDPv4 [ECONNREFUSED]: Connection

Re: [Openvpn-users] Client history

2024-03-02 Thread Peter Davis via Openvpn-users
> On Wednesday, February 28th, 2024 at 5:01 PM, Bo Berglund > wrote: > On Wed, 28 Feb 2024 14:07:13 +0100, Marc SCHAEFER schae...@alphanet.ch wrote: > > > On Wed, Feb 28, 2024 at 12:52:17PM +0000, Peter Davis via Openvpn-users > > wrote: > > > > > #

Re: [Openvpn-users] Client history

2024-03-02 Thread Peter Davis via Openvpn-users
> On Wednesday, February 28th, 2024 at 6:10 PM, Gert Doering > wrote: > Hi, > > On Wed, Feb 28, 2024 at 12:52:17PM +0000, Peter Davis via Openvpn-users wrote: > > > # cat /tmp/Connections.log > > 2024-02-28 16:16:51 - CommonName connected with IP 192.168.129.253

Re: [Openvpn-users] Client history

2024-02-28 Thread Peter Davis via Openvpn-users
> On Monday, February 26th, 2024 at 5:06 PM, Bo Berglund > wrote: > On Mon, 26 Feb 2024 10:07:14 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Thanks again. > > I changed "LOG_FILE" to L

Re: [Openvpn-users] Increase data transmission

2024-02-26 Thread Peter Davis via Openvpn-users
> On Monday, February 26th, 2024 at 2:20 PM, Jochen Bern > wrote: > On 24.02.24 11:35, Peter Davis via Openvpn-users wrote: > > > If you use OpenVPN to access the Internet of another country, then > > receiving data is usually more than sending it, and this traffic is &

Re: [Openvpn-users] Client history

2024-02-26 Thread Peter Davis via Openvpn-users
> On Monday, February 26th, 2024 at 1:42 PM, Gert Doering > wrote: > Hi, > > On Mon, Feb 26, 2024 at 10:10:23AM +, Peter Davis wrote: > > > I have two scripts. The second script worked, but puts the data in the /tmp > > directory. > > I selected the "/tmp" directory, so this is not

Re: [Openvpn-users] Client history

2024-02-26 Thread Peter Davis via Openvpn-users
> On Monday, February 26th, 2024 at 10:55 AM, Gert Doering > wrote: > Hi, > > On Sun, Feb 25, 2024 at 06:50:39PM +0000, Peter Davis via Openvpn-users wrote: > > > But my problem is that the script doesn't work at all. How do I find the > > cause? > > &

Re: [Openvpn-users] Client history

2024-02-26 Thread Peter Davis via Openvpn-users
> On Monday, February 26th, 2024 at 12:05 AM, Bo Berglund > wrote: > On Sun, 25 Feb 2024 10:50:05 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > Hello, > > > I installed shellcheck and result is: > >

[Openvpn-users] Failed to reload openvpn.service: Job type reload is not applicable for unit openvpn.service.

2024-02-26 Thread Peter Davis via Openvpn-users
Hello, Why can't I reload the OpenVPN service? # systemctl reload openvpn Failed to reload openvpn.service: Job type reload is not applicable for unit openvpn.service. # # systemctl reload openvpn@ServerFailed to reload openvpn@Server.service: Job type reload is not applicable for unit

Re: [Openvpn-users] Client history

2024-02-25 Thread Peter Davis via Openvpn-users
> On Sunday, February 25th, 2024 at 6:20 PM, Bo Berglund > wrote: > On Sun, 25 Feb 2024 15:31:20 +0100, Bo Berglund bo.bergl...@gmail.com wrote: > > > On Sun, 25 Feb 2024 10:50:05 +0000, Peter Davis via Openvpn-users > > openvpn-users@lists.sourceforge.net wrote: &

Re: [Openvpn-users] Client history

2024-02-25 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 4:39 PM, Bo Berglund > wrote: > On Fri, 23 Feb 2024 13:24:36 +0100, Gert Doering g...@greenie.muc.de wrote: > > > I think at this point you need to familiarize yourself with shell > > scripting to ensure that script is well-behaved. > > > And using

[Openvpn-users] Increase data transmission

2024-02-24 Thread Peter Davis via Openvpn-users
Hello, If you use OpenVPN to access the Internet of another country, then receiving data is usually more than sending it, and this traffic is considered suspicious and blocked. Is there a way to send fake data? Thank you.___ Openvpn-users mailing list

Re: [Openvpn-users] Client history

2024-02-23 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 3:54 PM, Gert Doering > wrote: > Hi, > > On Fri, Feb 23, 2024 at 12:20:32PM +0000, Peter Davis via Openvpn-users wrote: > > > 2024-02-23 15:46:43 Peter/172.20.1.254:44526 OPTIONS IMPORT: reading client > &g

Re: [Openvpn-users] Client history

2024-02-23 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 3:33 PM, Bo Berglund > wrote: > On Fri, 23 Feb 2024 11:36:39 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > On Friday, February 23rd, 2024 at 2:50 PM, Bo Berglund > >

Re: [Openvpn-users] Client history

2024-02-23 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 2:50 PM, Bo Berglund > wrote: > On Fri, 23 Feb 2024 10:33:19 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > But: > > > > # ls /etc/openvpn/Log/ > > # > > > > No

Re: [Openvpn-users] Client history

2024-02-23 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 12:36 PM, Bo Berglund > wrote: > On Fri, 23 Feb 2024 08:12:47 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Thanks again. > > You right. Logs are

Re: [Openvpn-users] Client history

2024-02-23 Thread Peter Davis via Openvpn-users
> On Friday, February 23rd, 2024 at 10:58 AM, Gert Doering > wrote: > Hi > > On Fri, Feb 23, 2024 at 07:05:46AM +, Peter Davis wrote: > > > log_file="/tmp/Connections.log" > > > Don't use /tmp in systemd environments - that was bad advice by one of > the other posters. Systemd likes to

Re: [Openvpn-users] Client history

2024-02-22 Thread Peter Davis via Openvpn-users
> On Wednesday, February 21st, 2024 at 9:48 PM, Gert Doering > wrote: > Hi, > > On Wed, Feb 21, 2024 at 05:53:59PM +0000, Peter Davis via Openvpn-users wrote: > > > What is wrong? > > > Have you enabled the script in the openvpn config? Including rai

Re: [Openvpn-users] Client history

2024-02-21 Thread Peter Davis via Openvpn-users
> On Wednesday, February 21st, 2024 at 5:18 PM, Bo Berglund > wrote: > On Wed, 21 Feb 2024 11:04:48 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hello, > > I use Debian. I used "bash" instead of "sh&quo

Re: [Openvpn-users] Client history

2024-02-21 Thread Peter Davis via Openvpn-users
>On Wednesday, February 21st, 2024 at 1:01 PM, Bo Berglund > wrote: > On Wed, 21 Feb 2024 06:59:25 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > On Tuesday, February 20th, 2024 at 8:26 PM, Bo Berglund > >

Re: [Openvpn-users] Client history

2024-02-20 Thread Peter Davis via Openvpn-users
> On Tuesday, February 20th, 2024 at 8:26 PM, Bo Berglund > wrote: > On Tue, 20 Feb 2024 11:29:36 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Thanks again. > > Can you make the report be saved to a file? >

Re: [Openvpn-users] Client history

2024-02-20 Thread Peter Davis via Openvpn-users
> On Tuesday, February 20th, 2024 at 8:26 PM, Bo Berglund > wrote: > On Tue, 20 Feb 2024 11:29:36 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Thanks again. > > Can you make the report be saved to a file? >

Re: [Openvpn-users] Client history

2024-02-20 Thread Peter Davis via Openvpn-users
> On Monday, February 19th, 2024 at 5:16 PM, Bo Berglund > wrote: > On Mon, 19 Feb 2024 11:57:43 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Thanks again. > > Can you put the script somewhere like pastebin? I

Re: [Openvpn-users] Client history

2024-02-19 Thread Peter Davis via Openvpn-users
> On Sunday, February 18th, 2024 at 5:57 PM, Bo Berglund > wrote: > On Sun, 18 Feb 2024 09:44:14 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > Mine is: > > > > # ls -l scripts/script-events.sh >

Re: [Openvpn-users] Client history

2024-02-18 Thread Peter Davis via Openvpn-users
> On Sunday, February 18th, 2024 at 12:27 PM, Bo Berglund > wrote: > On Sun, 18 Feb 2024 06:50:06 +0000, Peter Davis via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > SOLUTION > > > > > > Just to follow up on my question >

Re: [Openvpn-users] Client history

2024-02-17 Thread Peter Davis via Openvpn-users
> On Friday, February 16th, 2024 at 2:10 PM, Bo Berglund > wrote: > On Wed, 14 Feb 2024 08:34:38 +0100, Bo Berglund bo.bergl...@gmail.com wrote: > > > I also want to log server side client connect/disconnect events on my > > server. > > > > And I have tried to read the documentation here: >

Re: [Openvpn-users] Client history

2024-02-13 Thread Peter Davis via Openvpn-users
> On Tuesday, February 13th, 2024 at 9:58 PM, mike tancsa > wrote: > On 2/13/2024 1:13 PM, Peter Davis via Openvpn-users wrote: > >> Hello, >> 1- Is there a way to report when clients connect and disconnect? >> >> 2- Is it possible to notify the connection of

[Openvpn-users] Client history

2024-02-13 Thread Peter Davis via Openvpn-users
Hello, 1- Is there a way to report when clients connect and disconnect? 2- Is it possible to notify the connection of a specific client to the server through email? Thank you.___ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net

Re: [Openvpn-users] Disconnecting a specified client from the server

2024-02-10 Thread Peter Davis via Openvpn-users
> On Friday, February 9th, 2024 at 8:11 PM, Gert Doering > wrote: > Hi, > > On Fri, Feb 09, 2024 at 04:37:29PM +0000, Peter Davis via Openvpn-users wrote: > > > With the help of the "openvpn-status.log" file, I can see which client > > is connected

Re: [Openvpn-users] How to hide the number of connections to the server?

2024-02-09 Thread Peter Davis via Openvpn-users
>On Friday, February 9th, 2024 at 1:10 AM, Gert Doering >wrote: > Hi, > > On Thu, Feb 08, 2024 at 06:14:48PM +, Peter Davis wrote: > > > How to connect the traffic from the OpenVPN server on the intermediate > > server to the OpenVPN client on the intermediate server? Is it possible? >

[Openvpn-users] Disconnecting a specified client from the server

2024-02-09 Thread Peter Davis via Openvpn-users
Hello, With the help of the "openvpn-status.log" file, I can see which client is connected to the server. I want to disconnect one of the clients. I know I have to use the OpenVPN Management Interface. Should "--management IP port" be added in the server configuration file? What should be the

Re: [Openvpn-users] OpenVPN and ChaCha20-Poly1305 encryption

2024-02-08 Thread Peter Davis via Openvpn-users
>On Thursday, February 8th, 2024 at 10:21 PM, Jochen Bern > wrote: > On 08.02.24 19:36, Peter Davis via Openvpn-users wrote: > > > Why OpenVPN does not support ChaCha20-Poly1305 encryption? > > > You sure? > > > $ openvpn --show-ciphers | grep -i ch

[Openvpn-users] OpenVPN and ChaCha20-Poly1305 encryption

2024-02-08 Thread Peter Davis via Openvpn-users
Hi, According to Wikipedia: The main external difference with ChaCha20 is its 64 byte (512 bit) block size, in comparison to 16 bytes (128 bit) with both AES-128 and AES-256. The larger block size enables higher performance on modern CPUs and allows for larger streams before the 32 bit counter

Re: [Openvpn-users] How to hide the number of connections to the server?

2024-02-08 Thread Peter Davis via Openvpn-users
>On Thursday, February 8th, 2024 at 9:36 PM, Gert Doering >wrote: > Hi, > > On Thu, Feb 08, 2024 at 05:58:42PM +, Peter Davis wrote: > > > Can an intermediate server be an OpenVPN server for clients and an OpenVPN > > client for the final server at the same time? > > > Sure. > > gert

Re: [Openvpn-users] How to hide the number of connections to the server?

2024-02-08 Thread Peter Davis via Openvpn-users
>On Thursday, February 8th, 2024 at 3:45 PM, Jochen Bern > wrote: > On 08.02.24 11:36, Peter Davis via Openvpn-users wrote: > > > Is there a way to hide the number of connections to a server? > > > From whom, having what resources at his disposal? What resou

Re: [Openvpn-users] How to hide the number of connections to the server?

2024-02-08 Thread Peter Davis via Openvpn-users
>On Thursday, February 8th, 2024 at 2:29 PM, Gert Doering >wrote: > hi, > > On Thu, Feb 08, 2024 at 10:36:31AM +0000, Peter Davis via Openvpn-users wrote: > > > Is there a way to hide the number of connections to a server? Can an > > intermediate server

[Openvpn-users] How to hide the number of connections to the server?

2024-02-08 Thread Peter Davis via Openvpn-users
Hello, Is there a way to hide the number of connections to a server? Can an intermediate server do this? Instead of connecting directly to the final server, people connect to an intermediate server and this intermediate server sends requests to the final server! Thank

Re: [Openvpn-users] A few questions about revoking keys

2024-02-04 Thread Peter Davis via Openvpn-users
>On Sunday, February 4th, 2024 at 3:41 PM, Gert Doering >wrote: > Hi, > > On Sun, Feb 04, 2024 at 10:31:20AM +0000, Peter Davis via Openvpn-users wrote: > > > I want to revoke a user's key and I have a few questions: > > 1- If I revoke a key and create a new ke

[Openvpn-users] A few questions about revoking keys

2024-02-04 Thread Peter Davis via Openvpn-users
Hello, I want to revoke a user's key and I have a few questions: 1- If I revoke a key and create a new key with the same name as before, can the previous user connect to the server? 2- If I use the ./revoke-full "Client_Name" command to revoke a key, do I need to add a line to the server

Re: [Openvpn-users] Shadowsocks and OpenvPN

2024-01-29 Thread Peter Davis via Openvpn-users
>On Monday, January 29th, 2024 at 12:10 PM, Gert Doering >wrote: > Hi, > > On Mon, Jan 29, 2024 at 08:35:27AM +, Peter Davis wrote: > > > Why has it worked for others? Is this a bug? > > > It might be considered a bug that we can't give you limitless support > for free. > > It's not a

Re: [Openvpn-users] Shadowsocks and OpenvPN

2024-01-29 Thread Peter Davis via Openvpn-users
>On Monday, January 29th, 2024 at 11:44 AM, Gert Doering >wrote: > Hi, > > On Mon, Jan 29, 2024 at 06:29:20AM +0000, Peter Davis via Openvpn-users wrote: > > > What is wrong? > > > What you are trying to achieve requires a deep understanding of IP routing,

Re: [Openvpn-users] Shadowsocks and OpenvPN

2024-01-28 Thread Peter Davis via Openvpn-users
>On Sunday, January 28th, 2024 at 3:56 PM, Peter Davis via Openvpn-users > wrote: > Hello, > I want to implement the following scenario: > > VPS (Shadowsocks Server) ---> Home Server (Shadowsocks Client + OpenVPN > Server) ---> Client (OpenVPN Connect) > >

[Openvpn-users] Shadowsocks and OpenvPN

2024-01-28 Thread Peter Davis via Openvpn-users
Hello, I want to implement the following scenario: VPS (Shadowsocks Server) ---> Home Server (Shadowsocks Client + OpenVPN Server) ---> Client (OpenVPN Connect) I want the clients to connect to the home server through OpenVPN Connect and the OpenVPN server to use Shadowsocks client Internet.

Re: [Openvpn-users] OpenVPN on port 443

2024-01-27 Thread Peter Davis via Openvpn-users
>On Thursday, January 25th, 2024 at 1:25 AM, Jochen Bern > wrote: > On 24.01.24 13:31, Hans via Openvpn-users wrote: > > > From: "Gert Doering" mailto:g...@greenie.muc.de> > > Date: Wednesday, 24 January 2024 at 13:03:30 > > > > > On We

Re: [Openvpn-users] OpenVPN on port 443

2024-01-27 Thread Peter Davis via Openvpn-users
>On Wednesday, January 24th, 2024 at 3:38 PM, Marc SCHAEFER > wrote: > Hello, > > On Wed, Jan 24, 2024 at 11:49:43AM +, Peter Davis wrote: > > > I am testing this scenario in a virtual environment before moving it to the > > real world. > > > So, use subnets within private address

[Openvpn-users] OpenVPN and V2Ray

2024-01-27 Thread Peter Davis via Openvpn-users
Hello, I want to use OpenVPN with V2Ray. I took a look at the OpenVPN configuration with Shadowsocks and saw that in the Client.conf file there were two lines as follows: socks-proxy 127.0.0.1 1080 route SHADOWSOCKS_SERVER_IP 255.255.255.255 net_gateway I have two questions: 1- Are these two

Re: [Openvpn-users] OpenVPN on port 443

2024-01-24 Thread Peter Davis via Openvpn-users
>On Wednesday, January 24th, 2024 at 11:18 AM, Marc SCHAEFER > wrote: > Hello, > > On Wed, Jan 24, 2024 at 06:14:22AM +0000, Peter Davis via Openvpn-users wrote: > > > 1- I don't understand what you mean about "server 20.20.0.0 255.255.255.0". > > What

Re: [Openvpn-users] OpenVPN on port 443

2024-01-23 Thread Peter Davis via Openvpn-users
>On Tuesday, January 23rd, 2024 at 4:37 PM, Jakob Curdes >wrote: > Am 23.01.2024 um 13:32 schrieb Peter Davis via Openvpn-users: > > > Hello, > > I want to use OpenVPN and HTTPS. I found the following article: > > (...) > > > > > > > ser

[Openvpn-users] OpenVPN on port 443

2024-01-23 Thread Peter Davis via Openvpn-users
Hello, I want to use OpenVPN and HTTPS. I found the following article: https://snikt.net/blog/2016/12/01/how-not-to-hide-openvpn-behind-https/ssl/ My server has two NICs: enp0s3 (NAT) enp0s8 (Local) My OpenVPN server.conf is as below: port 443 proto tcp dev tun1 local 0.0.0.0 port-share

Re: [Openvpn-users] iptables rules required for OpenVPN and Tor

2024-01-22 Thread Peter Davis via Openvpn-users
>On Monday, January 22nd, 2024 at 10:41 AM, Jochen Bern >wrote: > On 20.01.24 07:24, Peter Davis wrote: > > > On Friday, January 19th, 2024 at 5:04 PM, Jochen Bern jochen.b...@binect.de > > wrote: > > > > > On 19.01.24 13:59, Peter Davis via Ope

[Openvpn-users] Hide OpenVPN behind HTTPS/SSL

2024-01-21 Thread Peter Davis via Openvpn-users
Hello, I found the following article about hiding OpenVPN behind HTTPS: https://snikt.net/blog/2016/12/01/how-not-to-hide-openvpn-behind-https/ssl/ As you can see, this article is old (December 1, 2016). I have three questions: 1- Does this method work nowadays? 2- Do Internet censorship

[Openvpn-users] The openvpn-status.log file

2024-01-20 Thread Peter Davis via Openvpn-users
Hello, How can I save the contents of the openvpn-status.log file? When someone connects to the server, his\her information is placed in this file, and when he\she leaves the server, his\her information is deleted! I want to know who is connected to the server. Thank

Re: [Openvpn-users] iptables rules required for OpenVPN and Tor

2024-01-19 Thread Peter Davis via Openvpn-users
>On Friday, January 19th, 2024 at 5:04 PM, Jochen Bern >wrote: > On 19.01.24 13:59, Peter Davis via Openvpn-users wrote: > > > I want to tunnel OpenVPN on Tor and I found the following iptables rules: > > > > # export OVPN=tun0 > > # IPTABLES -A INPUT -i $

Re: [Openvpn-users] Two questions about key generation for clients

2024-01-19 Thread Peter Davis via Openvpn-users
>On Wednesday, January 17th, 2024 at 3:19 PM, Gert Doering > wrote: > Hi, > > On Wed, Jan 17, 2024 at 10:17:27AM +, Peter Davis wrote: > > > I want the previous user to be disconnected. > > > Try setting "explicit-exit-notify 2" in the server config, it might > or might not send an

[Openvpn-users] iptables rules required for OpenVPN and Tor

2024-01-19 Thread Peter Davis via Openvpn-users
Hello, To set up a normal OpenVPN server, I use the following iptables rules: # IF_MAIN=enp0s3 # IF_TUNNEL=tun0 # YOUR_OPENVPN_SUBNET=10.8.0.0/16 # iptables -I INPUT -p udp --dport 1194 -j ACCEPT # iptables -A FORWARD -i $IF_MAIN -o $IF_TUNNEL -m state --state ESTABLISHED,RELATED -j ACCEPT #

Re: [Openvpn-users] Two questions about key generation for clients

2024-01-17 Thread Peter Davis via Openvpn-users
>On Wednesday, January 17th, 2024 at 2:23 PM, Gert Doering > wrote: > Hi, > > On Wed, Jan 17, 2024 at 10:17:27AM +, Peter Davis wrote: > > > But why didn't the previous OpenVPN Connect disconnect? I want the previous > > user to be disconnected. > > > I'm not 100% sure about that - I

[Openvpn-users] OpenVPN and Google Play

2024-01-17 Thread Peter Davis via Openvpn-users
Hello, I have tunneled OpenVPN on Tor and I connect to OpenVPN server with OpenVPN Connect app on Android and PC. On Android I can't open some apps like Google Play and X, but when I use Orbot on Android these apps open. What changes does OpenVPN make? Thank

Re: [Openvpn-users] Two questions about key generation for clients

2024-01-17 Thread Peter Davis via Openvpn-users
>On Wednesday, January 17th, 2024 at 1:33 PM, Gert Doering > wrote: > Hi, > > On Wed, Jan 17, 2024 at 09:57:14AM +, Peter Davis wrote: > > > 2024-01-17 13:17:56 MULTI: new connection by client 'Coders_Client' will > > cause previous active sessions by this client to be dropped. Remember

Re: [Openvpn-users] Two questions about key generation for clients

2024-01-17 Thread Peter Davis via Openvpn-users
>On Wednesday, January 17th, 2024 at 11:23 AM, Gert Doering > wrote: > Hi, > > On Wed, Jan 17, 2024 at 07:45:21AM +, Peter Davis wrote: > > > I use the OpenVPN Connect app on Android and PC. When I connect to the > > server with the same key on two devices, the OpenVPN Connect app on the

Re: [Openvpn-users] Two questions about key generation for clients

2024-01-16 Thread Peter Davis via Openvpn-users
>On Tuesday, January 16th, 2024 at 8:40 PM, Gert Doering >wrote: > Hi, > > On Tue, Jan 16, 2024 at 05:02:59PM +0000, Peter Davis via Openvpn-users wrote: > > > I have generated server keys and I have two questions for generating client > > keys: > >

[Openvpn-users] Two questions about key generation for clients

2024-01-16 Thread Peter Davis via Openvpn-users
Hello, I have generated server keys and I have two questions for generating client keys: 1- I used the following two commands to generate keys for clients: # ./easyrsa gen-req nopass # ./easyrsa sign-req client In the first command, I see the following message: Common Name (eg: your user,

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-16 Thread Peter Davis via Openvpn-users
> On Tuesday, January 16th, 2024 at 11:38 AM, Gert Doering > wrote: > Hi, > > On Tue, Jan 16, 2024 at 08:03:41AM +, Peter Davis wrote: > > > 1- You said "I said that OpenVPN will (by default) disallow multiple logins > > with the same client key+cert.", so if I generate a client key

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-16 Thread Peter Davis via Openvpn-users
> On Tuesday, January 16th, 2024 at 10:59 AM, Gert Doering > wrote: > Hi, > > On Tue, Jan 16, 2024 at 07:10:02AM +0000, Peter Davis via Openvpn-users wrote: > > > Hi, > > Thanks again. > > So, if I delete the client keys from the OpenVPN serve

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-15 Thread Peter Davis via Openvpn-users
>On Tuesday, January 16th, 2024 at 5:02 AM, tincantech > wrote: > Hi, > > Sent with Proton Mail secure email. > > > On Monday, January 15th, 2024 at 4:40 PM, Gert Doering g...@greenie.muc.de > wrote: > > > > > Hi, > > > > On Mon, Jan 15, 2024 at 04:35:40PM +, Peter Davis wrote: > >

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-15 Thread Peter Davis via Openvpn-users
>On Monday, January 15th, 2024 at 5:14 PM, Gert Doering >wrote: > Hi, > > On Mon, Jan 15, 2024 at 08:41:16AM +, Peter Davis wrote: > > > Yes, but shouldn't you copy the following files for each client? > > > > # cp pki/ca.crt /etc/openvpn/client/ > > # cp pki/issued/client.crt

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-15 Thread Peter Davis via Openvpn-users
>On Monday, January 15th, 2024 at 10:51 AM, Gert Doering >wrote: > Hi, > > On Mon, Jan 15, 2024 at 06:25:38AM +0000, Peter Davis via Openvpn-users wrote: > > > Thanks again. > > Should I run the following commands for each client? > > > > $ ./easyrs

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-14 Thread Peter Davis via Openvpn-users
>On Saturday, January 13th, 2024 at 3:26 PM, Gert Doering >wrote: > Hi, > > On Thu, Jan 11, 2024 at 07:35:13PM +, Peter Davis wrote: > > > > Abandon that thought. We've been here before: you need unique keys per > > > user, everything else will just make your life painful and miserable.

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-14 Thread Peter Davis via Openvpn-users
>On Friday, January 12th, 2024 at 12:04 AM, Jochen Bern >wrote: > On 11.01.24 20:35, Peter Davis via Openvpn-users wrote: > > > On Wednesday, January 10th, 2024 at 11:25 AM, Gert Doering > > g...@greenie.muc.de wrote: > > > > > On Wed, Jan 10, 2024

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-11 Thread Peter Davis via Openvpn-users
>On Wednesday, January 10th, 2024 at 11:25 AM, Gert Doering > wrote: > Hi > > On Wed, Jan 10, 2024 at 07:53:35AM +, Peter Davis wrote: > > > True, but I don't want to create a key for each employee in the department. > > > Abandon that thought. We've been here before: you need unique

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 4:25 PM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 11:33:22AM +, Peter Davis wrote: > > > > What do you mean by "revoke the key of one department"? This question does > > > not make much sense, since there is no per-department key, if you do

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 3:27 PM, Antonio Quartulli >wrote: > Hi, > > On 09/01/2024 12:24, Peter Davis wrote: > > > Hi, > > In the Easy-RSA directory I have the following files and directories: > > easyrsa openssl-easyrsa.cnf pki ta.key vars x509-types > > > > Is it enough to keep

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 2:47 PM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 11:14:26AM +, Peter Davis wrote: > > > 1- So, by using --auth-user-pass I can prevent excessive access to the > > server. > > > That depends on your definition of "excessive" and

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 2:40 PM, Antonio Quartulli >wrote: > Hi, > > On 09/01/2024 08:18, Peter Davis via Openvpn-users wrote: > > > Hi, > > So if I want to revoke the keys in the future and prevent clients from > > connecting to the server

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 2:02 PM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 10:25:13AM +, Peter Davis wrote: > > > 1- Assuming that a user shares his\her username and password with > > others in addition to the keys, then using --auth-user-pass, can > > two users

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 1:45 PM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 10:06:33AM +, Peter Davis wrote: > > > I'd like to use something like a MAC address filtering mechanism, but that > > would require scripting and I don't know how to do that. I want no one

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-09 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 11:33 AM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 07:20:24AM +, Peter Davis wrote: > > > 1- So one of the benefits of using LDAP mechanism is that two users cannot > > use the OpenOne server at the same time? I mean using

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-08 Thread Peter Davis via Openvpn-users
>On Sunday, January 7th, 2024 at 3:50 PM, Gert Doering >wrote: > Hi, > > On Sun, Dec 31, 2023 at 09:07:09PM +, Peter Davis wrote: > > > 1- How can I find out if a user has shared the key with others? > > > You can't, unless you combine the VPN connect with some other auth > mechanism

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-08 Thread Peter Davis via Openvpn-users
>On Tuesday, January 9th, 2024 at 10:42 AM, Gert Doering >wrote: > Hi, > > On Tue, Jan 09, 2024 at 07:08:08AM +, Peter Davis wrote: > > > Thanks again. > > I forgot to tell you that this is an internal server. I have other > > questions: > > > > 1- Assuming my vars file is as follows:

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-08 Thread Peter Davis via Openvpn-users
>On Monday, January 8th, 2024 at 3:59 PM, Gert Doering >wrote: > Hi, > > On Mon, Jan 08, 2024 at 12:02:58PM +0000, Peter Davis via Openvpn-users wrote: > > > 1- What tool do you use to generate server and client keys? > > > Something homegrown, b

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-08 Thread Peter Davis via Openvpn-users
>On Monday, January 8th, 2024 at 3:38 PM, Antonio Quartulli >wrote: > Hi, > > On 08/01/2024 13:02, Peter Davis via Openvpn-users wrote: > > > I still don't quite understand why I shouldn't delete the Easy-RSA > > directory after generating the keys! >

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-08 Thread Peter Davis via Openvpn-users
>On Monday, January 8th, 2024 at 2:55 PM, Jochen Bern >wrote: > On 08.01.24 07:19, Peter Davis wrote: > > > On Sunday, January 7th, 2024 at 10:52 PM, Jochen Bern jochen.b...@binect.de > > wrote: > > > > > On 07.01.24 06:50, Peter Davis via Openvpn-user

Re: [Openvpn-users] Limit the number of users based on the key

2024-01-07 Thread Peter Davis via Openvpn-users
> On Sunday, January 7th, 2024 at 3:50 PM, Gert Doering > wrote: > Hi, > > On Sun, Dec 31, 2023 at 09:07:09PM +, Peter Davis wrote: > > > 1- How can I find out if a user has shared the key with others? > > > You can't, unless you combine the VPN connect with some other auth > mechanism

Re: [Openvpn-users] Firewall rules and ports

2024-01-07 Thread Peter Davis via Openvpn-users
> On Sunday, January 7th, 2024 at 1:00 AM, Antonio Quartulli > wrote: > Hi, > > On 06/01/2024 08:43, Peter Davis via Openvpn-users wrote: > > > Hello, > > 1- Is it possible to run all OpenVPN servers on one port? I currently have > > an OpenVPN ser

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-07 Thread Peter Davis via Openvpn-users
> On Sunday, January 7th, 2024 at 10:52 PM, Jochen Bern > wrote: > On 07.01.24 06:50, Peter Davis via Openvpn-users wrote: > > > As you can see, I have moved the files to /etc/openvpn/server directory. > > > Correction: You have copied SOME files to th

Re: [Openvpn-users] I have a question about Easy-RSA

2024-01-06 Thread Peter Davis via Openvpn-users
>On Sunday, January 7th, 2024 at 1:27 AM, Gert Doering >wrote: > Hi, > > On Sat, Jan 06, 2024 at 06:48:55AM +0000, Peter Davis via Openvpn-users wrote: > > > Now I want to create another server and when I use the command "./easyrsa > > init-pki",

Re: [Openvpn-users] Transfer from one server to another, compress and digest

2024-01-06 Thread Peter Davis via Openvpn-users
>On Wednesday, January 3rd, 2024 at 7:53 PM, Gert Doering >wrote: > Hi, > > On Wed, Jan 03, 2024 at 04:04:02PM +0000, Peter Davis via Openvpn-users wrote: > > > I have two questions: > > 1- Is it possible to transfer server and client keys from one server to

Re: [Openvpn-users] Transfer from one server to another, compress and digest

2024-01-06 Thread Peter Davis via Openvpn-users
>On Saturday, January 6th, 2024 at 12:27 PM, Gert Doering >wrote: > Hi, > > On Sat, Jan 06, 2024 at 07:03:37AM +, Peter Davis wrote: > > > 1- But I need to put the server and client keys in /etc/openvpn/server and > > /etc/openvpn/client directories. Am I wrong? > > > Server keys go

[Openvpn-users] I have a question about Easy-RSA

2024-01-06 Thread Peter Davis via Openvpn-users
Hello, I edited the vars file as below and created an OpenVPN server: export KEY_COUNTRY="US" export KEY_PROVINCE="CA" export KEY_CITY="NY" export KEY_ORG="GreatCoder" export [KEY_EMAIL="admin@greatcoder.](mailto:KEY_EMAIL=)xyz"export KEY_OU="OpenVPN" Now I want to create another server and

[Openvpn-users] Firewall rules and ports

2024-01-06 Thread Peter Davis via Openvpn-users
Hello, 1- Is it possible to run all OpenVPN servers on one port? I currently have an OpenVPN server running with an IP address range of 20.20.0.0 on port 2024, now I want to run another server with a different IP address range on the same port as before. 2- Should every OpenVPN server have its

[Openvpn-users] Transfer from one server to another, compress and digest

2024-01-03 Thread Peter Davis via Openvpn-users
Hello, I have two questions: 1- Is it possible to transfer server and client keys from one server to another or must the keys be generated on each server? 2- I connected to an OpenVPN server with the OpenVPN Connect app on Android, I saw the following two lines in the logs: compress: NONE

[Openvpn-users] obfs4proxy-openvpn

2024-01-03 Thread Peter Davis via Openvpn-users
Hello, Has anyone used obfs4proxy-openvpn? This project is a bit old and its last update is on Aug 31, 2019. The project URL is https://github.com/HRomie/obfs4proxy-openvpn-linux. Thanks.___ Openvpn-users mailing list

[Openvpn-users] OpenVPN and outside clients

2024-01-02 Thread Peter Davis via Openvpn-users
Hello, My server has a NIC with a local IP address. Clients can connect to it on the internal network. I want clients from outside to be able to connect to it, but I can't set a public IP on the server's network card. On the firewall (Fortinet) that is directly connected to the Internet, a

[Openvpn-users] Limit the number of users based on the key

2023-12-31 Thread Peter Davis via Openvpn-users
Hello, How can I limit the number of users based on a key? For example, only 10 users can use a key at the same time. Thank you.___ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net

Re: [Openvpn-users] Bypassing censorship devices

2023-12-13 Thread Peter Davis via Openvpn-users
> On Wednesday, December 13th, 2023 at 12:13 AM, j.witvl...@mindef.nl > wrote: >> From: "Peter Davis via Openvpn-users" >> Date: Tuesday, 12 December 2023 at 19:46:18 >> To: "Stella Ashburne" >> Cc: "openvpn-users@lists.sourcefo

Re: [Openvpn-users] Bypassing censorship devices

2023-12-12 Thread Peter Davis via Openvpn-users
> On Tuesday, December 12th, 2023 at 5:03 PM, Stella Ashburne via Openvpn-users > wrote: > Hi Peter > > > Sent: Tuesday, December 12, 2023 at 2:03 PM > > From: "Peter Davis via Openvpn-users" openvpn-users@lists.sourceforge.net > > To: &quo

Re: [Openvpn-users] Bypassing censorship devices

2023-12-12 Thread Peter Davis via Openvpn-users
> > To: peter.davis1...@proton.me, openvpn-users@lists.sourceforge.net > > Subject: Re: [Openvpn-users] Bypassing censorship devices > > > > > From: "Peter Davis via Openvpn-users" > > > mailto:openvpn-users@lists.sourceforge.net]&g

Re: [Openvpn-users] Bypassing censorship devices

2023-12-12 Thread Peter Davis via Openvpn-users
> On Tuesday, December 12th, 2023 at 10:45 AM, > j.witvl...@mindef.nl > wrote: >> From: "Peter Davis via Openvpn-users" >> Date: Tuesday, 12 December 2023 at 07:08:08 >> To: "Tincantech via Openvpn-users" >> Subject: [Openvpn-users] By

[Openvpn-users] Bypassing censorship devices

2023-12-11 Thread Peter Davis via Openvpn-users
Hello, How to use OpenVPN in a country that uses internet censorship devices to block VPN services? Is there a way to hide OpenVPN or make it look like a normal internet connection? Cheers.___ Openvpn-users mailing list

  1   2   >