Отчаянно пытаюсь запустить openvpn клиента с Windows 7. Сервер на Debian. Выдает это:
Лог клиента
Wed Dec 20 12:12:27 2017 us=601093 config = 'lel.ovpn'
Wed Dec 20 12:12:27 2017 us=601093 mode = 0
Wed Dec 20 12:12:27 2017 us=601093 show_ciphers = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 show_digests = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 show_engines = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 genkey = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 key_pass_file = '[UNDEF]'
Wed Dec 20 12:12:27 2017 us=601093 show_tls_ciphers = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 connect_retry_max = 0
Wed Dec 20 12:12:27 2017 us=601093 Connection profiles [0]:
Wed Dec 20 12:12:27 2017 us=601093 proto = tcp-client
Wed Dec 20 12:12:27 2017 us=601093 local = '[UNDEF]'
Wed Dec 20 12:12:27 2017 us=601093 local_port = '[UNDEF]'
Wed Dec 20 12:12:27 2017 us=601093 remote = '192.168.0.173'
Wed Dec 20 12:12:27 2017 us=601093 remote_port = '1194'
Wed Dec 20 12:12:27 2017 us=601093 remote_float = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 bind_defined = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 bind_local = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 bind_ipv6_only = DISABLED
Wed Dec 20 12:12:27 2017 us=601093 NOTE: --mute triggered...
Wed Dec 20 12:12:27 2017 us=601093 271 variation(s) on previous 20 message(s) suppressed by --mute
Wed Dec 20 12:12:27 2017 us=601093 OpenVPN 2.4.4 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Sep 26 2017
Wed Dec 20 12:12:27 2017 us=601093 Windows version 6.1 (Windows 7) 64bit
Wed Dec 20 12:12:27 2017 us=601093 library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.10
Enter Management Password:
Wed Dec 20 12:12:27 2017 us=616679 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Wed Dec 20 12:12:27 2017 us=616679 Need hold release from management interface, waiting...
Wed Dec 20 12:12:28 2017 us=99845 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Wed Dec 20 12:12:28 2017 us=208947 MANAGEMENT: CMD 'state on'
Wed Dec 20 12:12:28 2017 us=208947 MANAGEMENT: CMD 'log all on'
Wed Dec 20 12:12:28 2017 us=318049 MANAGEMENT: CMD 'echo all on'
Wed Dec 20 12:12:28 2017 us=318049 MANAGEMENT: CMD 'hold off'
Wed Dec 20 12:12:28 2017 us=333635 MANAGEMENT: CMD 'hold release'
Wed Dec 20 12:12:28 2017 us=333635 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Wed Dec 20 12:12:28 2017 us=583011 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Dec 20 12:12:28 2017 us=583011 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed Dec 20 12:12:28 2017 us=583011 Control Channel MTU parms [ L:1623 D:1182 EF:68 EB:0 ET:0 EL:3 ]
Wed Dec 20 12:12:28 2017 us=583011 Data Channel MTU parms [ L:1623 D:1450 EF:123 EB:406 ET:0 EL:3 ]
Wed Dec 20 12:12:28 2017 us=583011 Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1559,tun-mtu 1500,proto TCPv4_CLIENT,keydir 1,cipher AES-256-CBC,auth SHA1,keysize 256,tls-auth,key-method 2,tls-client'
Wed Dec 20 12:12:28 2017 us=583011 Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1559,tun-mtu 1500,proto TCPv4_SERVER,keydir 0,cipher AES-256-CBC,auth SHA1,keysize 256,tls-auth,key-method 2,tls-server'
Wed Dec 20 12:12:28 2017 us=583011 TCP/UDP: Preserving recently used remote address: [AF_INET]192.168.0.173:1194
Wed Dec 20 12:12:28 2017 us=583011 Socket Buffers: R=[8192->8192] S=[8192->8192]
Wed Dec 20 12:12:28 2017 us=583011 Attempting to establish TCP connection with [AF_INET]192.168.0.173:1194 [nonblock]
Wed Dec 20 12:12:28 2017 us=583011 MANAGEMENT: >STATE:1513746748,TCP_CONNECT,,,,,,
Wed Dec 20 12:12:29 2017 us=596101 TCP connection established with [AF_INET]192.168.0.173:1194
Wed Dec 20 12:12:29 2017 us=596101 TCP_CLIENT link local: (not bound)
Wed Dec 20 12:12:29 2017 us=596101 TCP_CLIENT link remote: [AF_INET]192.168.0.173:1194
Wed Dec 20 12:12:29 2017 us=596101 MANAGEMENT: >STATE:1513746749,WAIT,,,,,,
Wed Dec 20 12:12:29 2017 us=596101 Connection reset, restarting [0]
Wed Dec 20 12:12:29 2017 us=596101 TCP/UDP: Closing socket
Wed Dec 20 12:12:29 2017 us=596101 SIGUSR1[soft,connection-reset] received, process restarting
Wed Dec 20 12:12:29 2017 us=596101 MANAGEMENT: >STATE:1513746749,RECONNECTING,connection-reset,,,,,
Wed Dec 20 12:12:29 2017 us=596101 Restart pause, 5 second(s)
Лог Сервера
Wed Dec 20 12:12:28 2017 us=385620 MULTI: multi_create_instance called
Wed Dec 20 12:12:28 2017 us=385724 Re-using SSL/TLS context
Wed Dec 20 12:12:28 2017 us=385744 LZO compression initialized
Wed Dec 20 12:12:28 2017 us=385848 Control Channel MTU parms [ L:1588 D:212 EF:112 EB:0 ET:0 EL:0 ]
Wed Dec 20 12:12:28 2017 us=385876 Data Channel MTU parms [ L:1588 D:1450 EF:88 EB:135 ET:0 EL:0 AF:3/1 ]
Wed Dec 20 12:12:28 2017 us=385913 Local Options String: 'V4,dev-type tun,link-mtu 1588,tun-mtu 1500,proto TCPv4_SERVER,comp-l
zo,keydir 0,cipher BF-CBC,auth SHA512,keysize 128,tls-auth,key-method 2,tls-server'
Wed Dec 20 12:12:28 2017 us=385925 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1588,tun-mtu 1500,proto TCPv4_CLI
ENT,comp-lzo,keydir 1,cipher BF-CBC,auth SHA512,keysize 128,tls-auth,key-method 2,tls-client'
Wed Dec 20 12:12:28 2017 us=385947 Local Options hash (VER=V4): '4edee331'
Wed Dec 20 12:12:28 2017 us=385964 Expected Remote Options hash (VER=V4): 'd5c45101'
Wed Dec 20 12:12:28 2017 us=385997 TCP connection established with [AF_INET]172.16.1.37:50731
Wed Dec 20 12:12:28 2017 us=386012 TCPv4_SERVER link local: [undef]
Wed Dec 20 12:12:28 2017 us=386024 TCPv4_SERVER link remote: [AF_INET]172.16.1.37:50731
RWed Dec 20 12:12:29 2017 us=383392 172.16.1.37:50731 TLS: Initial packet from [AF_INET]172.16.1.37:50731, sid=28d68d9e b4704356
Wed Dec 20 12:12:29 2017 us=383434 172.16.1.37:50731 TLS Error: cannot locate HMAC in incoming packet from [AF_INET]172.16.1.37:50731
Wed Dec 20 12:12:29 2017 us=383486 172.16.1.37:50731 Fatal TLS error (check_tls_errors_co), restarting
Wed Dec 20 12:12:29 2017 us=383502 172.16.1.37:50731 SIGUSR1[soft,tls-error] received, client-instance restarting
Wed Dec 20 12:12:29 2017 us=383561 TCP/UDP: Closing socket
Конфиг сервера
dev tun0
port 1194
proto tcp
comp-lzo yes
verb 5
dh /etc/openvpn/easy-rsa/keys/dh2048.pem
ca /etc/openvpn/easy-rsa/keys/ca.crt
cert /etc/openvpn/server.crt
key /etc/openvpn/server.key
tls-server
local 192.168.0.173
server 10.10.0.0 255.255.255.0
push «route 192.168.0.0 255.255.255.0»
push «route 192.168.100.0 255.255.255.0»
push «dhcp-option DNS 192.168.0.5 192.168.0.25»
push «dhcp-option DOMAIN lolumed.local»
route 10.10.0.0 255.255.255.255
client-config-dir /etc/openvpn/ccd
crl-verify /etc/openvpn/easy-rsa/keys/crl.pem
keepalive 10 120
log /var/log/openvpn.log
status /var/log/openvpn-status.log
user nobody
group nogroup
cipher AES-256-CBC
tls-cipher DHE-RSA-AES256-SHA
tls-auth /etc/openvpn/easy-rsa/keys/ta.key 0
auth SHA512
max-clients 50
persist-key
persist-tun
Конфиг клиента
client
remote 192.168.0.173
port 1194
#redirect-gateway def1
dev tun
proto tcp
resolv-retry infinite
nobind
pull
persist-key
persist-tun
ca ca.crt
cert lolumed.crt
key lolumed.key
tls-client
tls-auth ta.key 1
cipher AES-256-CBC
mute 20
verb 4
log openvpn.log
Такие дела, где я допустил ошибку?