LINUX.ORG.RU

История изменений

Исправление ecspl01t, (текущая версия) :

Сегодня переключился на Ubuntu на клиенской машине и попытался подключится, оказывается тут больше логов чем на windows:

Mon Aug  9 08:56:56 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:56:57 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:56:59 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:01 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:04 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:10 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:12 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:26 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:28 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:56 2021 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mon Aug  9 08:57:56 2021 TLS Error: TLS handshake failed

После того как добавил --float, клиент подключился, но без интернета.

Логи с server_1:

Sun Aug  1 10:49:06 2021 us=63789 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:06 2021 us=974853 client1VPN/client_ip:11519 PID_ERR replay-window backtrack occurred [1] [SSL-0] [0_00011111112222333334455555555666677777777778888888>>>>>>>>>>>>] 0:99 0:98 t=1627807746[0] r=[-1,64,15,1,1] sl=[29,64,64,528]
Sun Aug  1 10:49:06 2021 us=974919 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:06 2021 us=977681 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:07 2021 us=34601 client_ip:11466 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Sun Aug  1 10:49:07 2021 us=34641 client_ip:11466 TLS Error: TLS handshake failed
Sun Aug  1 10:49:07 2021 us=34777 client_ip:11466 SIGUSR1[soft,tls-error] received, client-instance restarting
RSun Aug  1 10:49:07 2021 us=113635 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
RSun Aug  1 10:49:09 2021 us=40995 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
RSun Aug  1 10:49:09 2021 us=549999 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped

client local ip wlo1: 192.168.0.129

Исходная версия ecspl01t, :

Сьогодня переключился на Ubuntu на клинской машине и попытался подключится, оказывается тут больше логов чем на windows:

Mon Aug  9 08:56:56 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:56:57 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:56:59 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:01 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:04 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:10 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:12 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:26 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:28 2021 TCP/UDP: Incoming packet rejected from [AF_INET]server_2:1194[2], expected peer address: [AF_INET]server_1:1194 (allow this incoming source address/port by removing --remote or adding --float)
Mon Aug  9 08:57:56 2021 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mon Aug  9 08:57:56 2021 TLS Error: TLS handshake failed

После того как добавил --float, клиент подключился, но без интернета.

Логи с server_1:

Sun Aug  1 10:49:06 2021 us=63789 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:06 2021 us=974853 client1VPN/client_ip:11519 PID_ERR replay-window backtrack occurred [1] [SSL-0] [0_00011111112222333334455555555666677777777778888888>>>>>>>>>>>>] 0:99 0:98 t=1627807746[0] r=[-1,64,15,1,1] sl=[29,64,64,528]
Sun Aug  1 10:49:06 2021 us=974919 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:06 2021 us=977681 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
Sun Aug  1 10:49:07 2021 us=34601 client_ip:11466 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Sun Aug  1 10:49:07 2021 us=34641 client_ip:11466 TLS Error: TLS handshake failed
Sun Aug  1 10:49:07 2021 us=34777 client_ip:11466 SIGUSR1[soft,tls-error] received, client-instance restarting
RSun Aug  1 10:49:07 2021 us=113635 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
RSun Aug  1 10:49:09 2021 us=40995 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped
RSun Aug  1 10:49:09 2021 us=549999 client1VPN/client_ip:11519 MULTI: bad source address from client [192.168.0.129], packet dropped

client local ip wlo1: 192.168.0.129