История изменений
Исправление trofk, (текущая версия) :
Врядли.
Я покажу пример подключения через мобильник (android)
Вот лог сервера
Самое начало подключения
Sat Feb 15 23:25:11 2014 us=774283 MULTI: multi_create_instance called Sat Feb 15 23:25:11 2014 us=785831 МОЙ_ИП:48496 Re-using SSL/TLS context Sat Feb 15 23:25:11 2014 us=859295 МОЙ_ИП:48496 LZO compression initialized Sat Feb 15 23:25:11 2014 us=895112 МОЙ_ИП:48496 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Sat Feb 15 23:25:11 2014 us=895189 МОЙ_ИП:48496 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Sat Feb 15 23:25:11 2014 us=895467 МОЙ_ИП:48496 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server' Sat Feb 15 23:25:11 2014 us=895530 МОЙ_ИП:48496 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client' Sat Feb 15 23:25:11 2014 us=895580 МОЙ_ИП:48496 Local Options hash (VER=V4): '530fdded' Sat Feb 15 23:25:11 2014 us=895621 МОЙ_ИП:48496 Expected Remote Options hash (VER=V4): '41690919' Sat Feb 15 23:25:11 2014 us=895700 МОЙ_ИП:48496 TLS: Initial packet from [AF_INET]МОЙ_ИП:48496, sid=96b7f868 d38b160a
Обмен сертификатами и получение конфы клиентом
Sat Feb 15 23:25:27 2014 us=37413 МОЙ_ИП:48496 VERIFY OK: depth=1, /C=RU/ST=RUS/L=Moscow/O=Fort-Funston/OU=changeme/CN=changeme/name=changeme/emailAddress=me@name.ru Sat Feb 15 23:25:27 2014 us=37810 МОЙ_ИП:48496 VERIFY OK: depth=0, /C=RU/ST=RUS/L=Moscow/O=Fort-Funston/OU=changeme/CN=nexus2/name=changeme/emailAddress=me@name.ru Sat Feb 15 23:25:29 2014 us=143194 МОЙ_ИП:48496 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key Sat Feb 15 23:25:29 2014 us=143403 МОЙ_ИП:48496 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Sat Feb 15 23:25:29 2014 us=143609 МОЙ_ИП:48496 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key Sat Feb 15 23:25:29 2014 us=143716 МОЙ_ИП:48496 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Sat Feb 15 23:25:33 2014 us=973513 МОЙ_ИП:48496 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA Sat Feb 15 23:25:33 2014 us=973759 МОЙ_ИП:48496 [nexus2] Peer Connection Initiated with [AF_INET]МОЙ_ИП:48496 Sat Feb 15 23:25:34 2014 us=3005 nexus2/МОЙ_ИП:48496 MULTI_sva: pool returned IPv4=192.168.100.34, IPv6=2700::8fa:7118:897f:0 Sat Feb 15 23:25:34 2014 us=3208 nexus2/МОЙ_ИП:48496 MULTI: Learn: 192.168.100.34 -> nexus2/МОЙ_ИП:48496 Sat Feb 15 23:25:34 2014 us=3315 nexus2/МОЙ_ИП:48496 MULTI: primary virtual IP for nexus2/МОЙ_ИП:48496: 192.168.100.34 Sat Feb 15 23:25:38 2014 us=602496 nexus2/МОЙ_ИП:48496 PUSH: Received control message: 'PUSH_REQUEST' Sat Feb 15 23:25:38 2014 us=602726 nexus2/МОЙ_ИП:48496 send_push_reply(): safe_cap=960 Sat Feb 15 23:25:38 2014 us=602891 nexus2/МОЙ_ИП:48496 SENT CONTROL [nexus2]: 'PUSH_REPLY,dhcp-option DNS 192.168.137.4,route 192.168.100.1,topology net30,ping 10,ping-restart 120,ifconfig 192.168.100.34 192.168.100.33' (status=1)
Исходная версия trofk, :
Врядли.
Я покажу пример подключения через мобильник (android)
Вот лог сервера
Самое начало подключения
Sat Feb 15 23:25:11 2014 us=774283 MULTI: multi_create_instance called Sat Feb 15 23:25:11 2014 us=785831 МОЙ_ИП:48496 Re-using SSL/TLS context Sat Feb 15 23:25:11 2014 us=859295 МОЙ_ИП:48496 LZO compression initialized Sat Feb 15 23:25:11 2014 us=895112 МОЙ_ИП:48496 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Sat Feb 15 23:25:11 2014 us=895189 МОЙ_ИП:48496 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Sat Feb 15 23:25:11 2014 us=895467 МОЙ_ИП:48496 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server' Sat Feb 15 23:25:11 2014 us=895530 МОЙ_ИП:48496 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client' Sat Feb 15 23:25:11 2014 us=895580 МОЙ_ИП:48496 Local Options hash (VER=V4): '530fdded' Sat Feb 15 23:25:11 2014 us=895621 МОЙ_ИП:48496 Expected Remote Options hash (VER=V4): '41690919' Sat Feb 15 23:25:11 2014 us=895700 МОЙ_ИП:48496 TLS: Initial packet from [AF_INET]83.149.8.160:48496, sid=96b7f868 d38b160a
Обмен сертификатами и получение конфы клиентом
Sat Feb 15 23:25:27 2014 us=37413 МОЙ_ИП:48496 VERIFY OK: depth=1, /C=RU/ST=RUS/L=Moscow/O=Fort-Funston/OU=changeme/CN=changeme/name=changeme/emailAddress=me@name.ru Sat Feb 15 23:25:27 2014 us=37810 МОЙ_ИП:48496 VERIFY OK: depth=0, /C=RU/ST=RUS/L=Moscow/O=Fort-Funston/OU=changeme/CN=nexus2/name=changeme/emailAddress=me@name.ru Sat Feb 15 23:25:29 2014 us=143194 МОЙ_ИП:48496 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key Sat Feb 15 23:25:29 2014 us=143403 МОЙ_ИП:48496 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Sat Feb 15 23:25:29 2014 us=143609 МОЙ_ИП:48496 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key Sat Feb 15 23:25:29 2014 us=143716 МОЙ_ИП:48496 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Sat Feb 15 23:25:33 2014 us=973513 МОЙ_ИП:48496 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA Sat Feb 15 23:25:33 2014 us=973759 МОЙ_ИП:48496 [nexus2] Peer Connection Initiated with [AF_INET]83.149.8.160:48496 Sat Feb 15 23:25:34 2014 us=3005 nexus2/МОЙ_ИП:48496 MULTI_sva: pool returned IPv4=192.168.100.34, IPv6=2700::8fa:7118:897f:0 Sat Feb 15 23:25:34 2014 us=3208 nexus2/МОЙ_ИП:48496 MULTI: Learn: 192.168.100.34 -> nexus2/83.149.8.160:48496 Sat Feb 15 23:25:34 2014 us=3315 nexus2/МОЙ_ИП:48496 MULTI: primary virtual IP for nexus2/83.149.8.160:48496: 192.168.100.34 Sat Feb 15 23:25:38 2014 us=602496 nexus2/МОЙ_ИП:48496 PUSH: Received control message: 'PUSH_REQUEST' Sat Feb 15 23:25:38 2014 us=602726 nexus2/МОЙ_ИП:48496 send_push_reply(): safe_cap=960 Sat Feb 15 23:25:38 2014 us=602891 nexus2/МОЙ_ИП:48496 SENT CONTROL [nexus2]: 'PUSH_REPLY,dhcp-option DNS 192.168.137.4,route 192.168.100.1,topology net30,ping 10,ping-restart 120,ifconfig 192.168.100.34 192.168.100.33' (status=1)