Tento web používá soubory cookie. Dalším používáním webu s tímto souhlasíte.
jméno
heslo
přihlásit
zaregistrujte se
zapomněli jste heslo?
Mikrotik, Alix a jina mala reseni...
SHORTY

OS

imedialinux.com
Voyage Linux
RouterOS/

Platformy

PC Engines
Mikrotik

Prislusenstvi

...

Reseni

router, prehravac, ap, monitorovatko, filestorage
Máte k tomu co říct? Vložte se do diskuze.
BREBER --- 15:02:47 16.6.2011
MIKZ: uz jsem trosku pokrocil...

v nastaveni serveru na MK jsem nemel usera, po doplneni to vypada trosku, ze se to posunulo, ale ted musim resit neco jineho...

projdou mi uz verify certifikatu, ale asi encoding nesedi...podivam se na to...ted uz alespon neco vypisuje i ten MK a da se nekam posunout
MIKZ --- 14:28:29 16.6.2011
BREBER: nevím to tom, dělal jsem z něj jen klienta

a tun/tap ip/ethernet máš správně? zkusil bych snížit MTU, na ADSL třeba jsem se s výchozím mtu nepřipojil, zkus tak 1400, to snad musí fungovat všude

taky by možná chtělo ukázat ten config klienta a serveru
BREBER --- 13:24:09 16.6.2011
da se na tom MK nejak zapnout podrobnejsi logovani toho OVPN?
BREBER --- 13:02:29 16.6.2011
MIKZ: aha...rozvines to? :-)

asi byla povolena, ale po zakazu je to stejne
MIKZ --- 12:55:14 16.6.2011
BREBER: tcp tam je, o je dobre, co komprese? ta nesmi byt povolena
BREBER --- 12:24:51 16.6.2011
MIKZ: práve že nic, server je na Mikrotiku, ale je tam je TCP connection established from...a to stále dokola, jak se zkousu klient pripojit
MIKZ --- 11:42:48 16.6.2011
BREBER: a server říká něco?
BREBER --- 10:56:57 16.6.2011
AHARAZ: tady je, jen podotykam, ze jsem k tomuto reseni byl vicemene dotlacen...mel jsem tam PPTP, ale to nevyhovuje :-(

log:

Thu Jun 16 10:42:46 2011 OpenVPN 2.1.1 i686-pc-mingw32 [SSL] [LZO2] [PKCS11] built on Dec 11 2009
Thu Jun 16 10:42:46 2011 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Jun 16 10:42:46 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Jun 16 10:42:46 2011 LZO compression initialized
Thu Jun 16 10:42:46 2011 Control Channel MTU parms [ L:1544 D:140 EF:40 EB:0 ET:0 EL:0 ]
Thu Jun 16 10:42:47 2011 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Jun 16 10:42:47 2011 Local Options hash (VER=V4): '69109d17'
Thu Jun 16 10:42:47 2011 Expected Remote Options hash (VER=V4): 'c0103fa8'
Thu Jun 16 10:42:47 2011 Attempting to establish TCP connection with 212.71.152.195:1194
Thu Jun 16 10:42:47 2011 TCP connection established with 212.71.152.195:1194
Thu Jun 16 10:42:47 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu Jun 16 10:42:47 2011 TCPv4_CLIENT link local: [undef]
Thu Jun 16 10:42:47 2011 TCPv4_CLIENT link remote: 212.71.152.195:1194
Thu Jun 16 10:42:48 2011 Connection reset, restarting [-1]
Thu Jun 16 10:42:48 2011 TCP/UDP: Closing socket
Thu Jun 16 10:42:48 2011 SIGUSR1[soft,connection-reset] received, process restarting
Thu Jun 16 10:42:48 2011 Restart pause, 5 second(s)
Thu Jun 16 10:42:53 2011 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Jun 16 10:42:53 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Jun 16 10:42:53 2011 Re-using SSL/TLS context
Thu Jun 16 10:42:53 2011 LZO compression initialized
Thu Jun 16 10:42:53 2011 Control Channel MTU parms [ L:1544 D:140 EF:40 EB:0 ET:0 EL:0 ]
Thu Jun 16 10:42:53 2011 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Jun 16 10:42:53 2011 Local Options hash (VER=V4): '69109d17'
Thu Jun 16 10:42:53 2011 Expected Remote Options hash (VER=V4): 'c0103fa8'
Thu Jun 16 10:42:53 2011 Attempting to establish TCP connection with 212.71.152.195:1194
Thu Jun 16 10:42:53 2011 TCP connection established with 212.71.152.195:1194
Thu Jun 16 10:42:53 2011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu Jun 16 10:42:53 2011 TCPv4_CLIENT link local: [undef]
Thu Jun 16 10:42:53 2011 TCPv4_CLIENT link remote: 212.71.152.195:1194
Thu Jun 16 10:42:53 2011 Connection reset, restarting [0]
Thu Jun 16 10:42:53 2011 TCP/UDP: Closing socket
Thu Jun 16 10:42:53 2011 SIGUSR1[soft,connection-reset] received, process restarting
Thu Jun 16 10:42:53 2011 Restart pause, 5 second(s)
Thu Jun 16 10:42:58 2011 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Thu Jun 16 10:42:58 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Jun 16 10:42:58 2011 Re-using SSL/TLS context
Thu Jun 16 10:42:58 2011 LZO compression initialized
Thu Jun 16 10:42:58 2011 Control Channel MTU parms [ L:1544 D:140 EF:40 EB:0 ET:0 EL:0 ]
Thu Jun 16 10:42:58 2011 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
Thu Jun 16 10:42:58 2011 Local Options hash (VER=V4): '69109d17'
Thu Jun 16 10:42:58 2011 Expected Remote Options hash (VER=V4): 'c0103fa8'
Thu Jun 16 10:42:58 2011 Attempting to establish TCP connection with 212.71.152.195:1194
Thu Jun 16 10:42:58 2011 TCP/UDP: Closing socket
Thu Jun 16 10:42:58 2011 SIGTERM[hard,init_instance] received, process exiting
BREBER --- 10:16:25 16.6.2011
AHARAZ: ja delal certifikaty rovnez pres easy-rsa na win z OpenVPN .net

log hodim
AHARAZ --- 22:13:14 15.6.2011
BREBER: Jen z WinXP? koukal jsi jake jine tunely MK umi, je OpenVPN spravna volba? To se mne vzdycky ptali ostatni ;-)
Ad spojeni muzes-li dej konec logu z klienta.

MARECEK: Ja vzdy delal certifikaty pomoci easy-rsa na Linuxu, jinou zkusenost nemam...