[svlug] OpenVPN

Skip Evans skip at venomouspenguin.com
Sun Mar 18 23:23:58 PDT 2007


Tin Le wrote:
> 1. Did you open the firewall on FreeBSD for OpenVPN port?  That's UDP 1194.
>   

The server is connected to the Internet through an Actiontec router, so 
after the
initial failure to connect I went ahead and set up port forwarding on it 
to forward
port 1194 to the server, even though I Googled this router and openVPN 
and it did
not seem necessary.

> 2. No, you can not test OpenVPN by telneting to port 1194, since it's
> UDP. You can test using nc.
>   
Yes, I did that and was able to connect to the port, which simply echoed 
back all
characters I typed. That's what nc does, right? I did the following:

root at Xu-100:/etc/openvpn# nc -u 71.36.241.186 1194
and now for something completely different.
a man with three...

That is a successful connection to OpenVPN via the port 1194, correct?

Before I post such very long log files, can I post the following and ask 
if this might
be the problem? First, the server log file has this:

Sun Mar 18 22:55:39 2007 us=164119   server_network = 10.8.0.0
Sun Mar 18 22:55:39 2007 us=164139   server_netmask = 255.255.255.0

Showing the network just as it is configured in the server.conf  file 
read when
OpenVPN starts up. however, the client machine here has this:

Sun Mar 18 23:59:44 2007 us=721671   server_network = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721736   server_netmask = 0.0.0.0

Could this be the problem? Nowhere in the sample client.conf file do I 
find an
entry to set up the netowrk the same way the server.conf file does.

Is that handled when the client connects through port 1194, or is there 
something
else I need to do on the client.


> 3. Turn on more verbosity in server.conf when you start OpenVPN, do the
> same on client.conf.  Post both logs here.
>   
Okay, since you asked for the log files, here are they, but they are 
quite long. I'll truncate the
server log file at the point where it gets the "handshake failed" 
messages so you can see
everything leading to that point. The rest is the same.

First, the server:

Sun Mar 18 22:55:39 2007 us=161522 Current Parameter Settings:
Sun Mar 18 22:55:39 2007 us=161730   config = 'server.conf'
Sun Mar 18 22:55:39 2007 us=161755   mode = 1
Sun Mar 18 22:55:39 2007 us=161775   show_ciphers = DISABLED
Sun Mar 18 22:55:39 2007 us=161792   show_digests = DISABLED
Sun Mar 18 22:55:39 2007 us=161809   show_engines = DISABLED
Sun Mar 18 22:55:39 2007 us=161826   genkey = DISABLED
Sun Mar 18 22:55:39 2007 us=161843   key_pass_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=161860   show_tls_ciphers = DISABLED
Sun Mar 18 22:55:39 2007 us=161877   proto = 0
Sun Mar 18 22:55:39 2007 us=161895   local = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=161911   remote_list = NULL
Sun Mar 18 22:55:39 2007 us=161931   remote_random = DISABLED
Sun Mar 18 22:55:39 2007 us=161950   local_port = 1194
Sun Mar 18 22:55:39 2007 us=161967   remote_port = 1194
Sun Mar 18 22:55:39 2007 us=161984   remote_float = DISABLED
Sun Mar 18 22:55:39 2007 us=162001   ipchange = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162018   bind_local = ENABLED
Sun Mar 18 22:55:39 2007 us=162036   dev = 'tun'
Sun Mar 18 22:55:39 2007 us=162053   dev_type = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162071   dev_node = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162089   tun_ipv6 = DISABLED
Sun Mar 18 22:55:39 2007 us=162107   ifconfig_local = '10.8.0.1'
Sun Mar 18 22:55:39 2007 us=162124   ifconfig_remote_netmask = '10.8.0.2'
Sun Mar 18 22:55:39 2007 us=162140   ifconfig_noexec = DISABLED
Sun Mar 18 22:55:39 2007 us=162158   ifconfig_nowarn = DISABLED
Sun Mar 18 22:55:39 2007 us=162176   shaper = 0
Sun Mar 18 22:55:39 2007 us=162193   tun_mtu = 1500
Sun Mar 18 22:55:39 2007 us=162210   tun_mtu_defined = ENABLED
Sun Mar 18 22:55:39 2007 us=162227   link_mtu = 1500
Sun Mar 18 22:55:39 2007 us=162244   link_mtu_defined = DISABLED
Sun Mar 18 22:55:39 2007 us=162261   tun_mtu_extra = 0
Sun Mar 18 22:55:39 2007 us=162279   tun_mtu_extra_defined = DISABLED
Sun Mar 18 22:55:39 2007 us=162296   fragment = 0
Sun Mar 18 22:55:39 2007 us=162312   mtu_discover_type = -1
Sun Mar 18 22:55:39 2007 us=162330   mtu_test = 0
Sun Mar 18 22:55:39 2007 us=162362   mlock = DISABLED
Sun Mar 18 22:55:39 2007 us=162381   keepalive_ping = 10
Sun Mar 18 22:55:39 2007 us=162398   keepalive_timeout = 120
Sun Mar 18 22:55:39 2007 us=162414   inactivity_timeout = 0
Sun Mar 18 22:55:39 2007 us=162431   ping_send_timeout = 10
Sun Mar 18 22:55:39 2007 us=162455   ping_rec_timeout = 240
Sun Mar 18 22:55:39 2007 us=162475   ping_rec_timeout_action = 2
Sun Mar 18 22:55:39 2007 us=162492   ping_timer_remote = DISABLED
Sun Mar 18 22:55:39 2007 us=162509   remap_sigusr1 = 0
Sun Mar 18 22:55:39 2007 us=162527   explicit_exit_notification = 0
Sun Mar 18 22:55:39 2007 us=162544   persist_tun = ENABLED
Sun Mar 18 22:55:39 2007 us=162562   persist_local_ip = DISABLED
Sun Mar 18 22:55:39 2007 us=162579   persist_remote_ip = DISABLED
Sun Mar 18 22:55:39 2007 us=162596   persist_key = ENABLED
Sun Mar 18 22:55:39 2007 us=162613   mssfix = 1450
Sun Mar 18 22:55:39 2007 us=162630   passtos = DISABLED
Sun Mar 18 22:55:39 2007 us=162648   resolve_retry_seconds = 1000000000
Sun Mar 18 22:55:39 2007 us=162667   connect_retry_seconds = 5
Sun Mar 18 22:55:39 2007 us=162684   username = 'nobody'
Sun Mar 18 22:55:39 2007 us=162701   groupname = 'nobody'
Sun Mar 18 22:55:39 2007 us=162718   chroot_dir = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162735   cd_dir = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162751   writepid = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162768   up_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162785   down_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=162802   down_pre = DISABLED
Sun Mar 18 22:55:39 2007 us=162819   up_restart = DISABLED
Sun Mar 18 22:55:39 2007 us=162836   up_delay = DISABLED
Sun Mar 18 22:55:39 2007 us=162853   daemon = DISABLED
Sun Mar 18 22:55:39 2007 us=162870   inetd = 0
Sun Mar 18 22:55:39 2007 us=162887   log = ENABLED
Sun Mar 18 22:55:39 2007 us=162904   suppress_timestamps = DISABLED
Sun Mar 18 22:55:39 2007 us=162921   nice = 0
Sun Mar 18 22:55:39 2007 us=162940   verbosity = 6
Sun Mar 18 22:55:39 2007 us=162958   mute = 0
Sun Mar 18 22:55:39 2007 us=162986   gremlin = 0
Sun Mar 18 22:55:39 2007 us=163004   status_file = 'openvpn-status.log'
Sun Mar 18 22:55:39 2007 us=163021   status_file_version = 1
Sun Mar 18 22:55:39 2007 us=163039   status_file_update_freq = 60
Sun Mar 18 22:55:39 2007 us=163055   occ = ENABLED
Sun Mar 18 22:55:39 2007 us=163073   rcvbuf = 65536
Sun Mar 18 22:55:39 2007 us=163089   sndbuf = 65536
Sun Mar 18 22:55:39 2007 us=163107   socks_proxy_server = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163124   socks_proxy_port = 0
Sun Mar 18 22:55:39 2007 us=163143   socks_proxy_retry = DISABLED
Sun Mar 18 22:55:39 2007 us=163160   fast_io = DISABLED
Sun Mar 18 22:55:39 2007 us=163176   comp_lzo = ENABLED
Sun Mar 18 22:55:39 2007 us=163194   comp_lzo_adaptive = ENABLED
Sun Mar 18 22:55:39 2007 us=163212   route_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163230   route_default_gateway = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163248   route_noexec = DISABLED
Sun Mar 18 22:55:39 2007 us=163266   route_delay = 0
Sun Mar 18 22:55:39 2007 us=163283   route_delay_window = 30
Sun Mar 18 22:55:39 2007 us=163300   route_delay_defined = DISABLED
Sun Mar 18 22:55:39 2007 us=163320   route 10.8.0.0/255.255.255.0/nil/nil
Sun Mar 18 22:55:39 2007 us=163338   management_addr = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163356   management_port = 0
Sun Mar 18 22:55:39 2007 us=163375   management_user_pass = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163393   management_log_history_cache = 250
Sun Mar 18 22:55:39 2007 us=163410   management_echo_buffer_size = 100
Sun Mar 18 22:55:39 2007 us=163427   management_query_passwords = DISABLED
Sun Mar 18 22:55:39 2007 us=163449   management_hold = DISABLED
Sun Mar 18 22:55:39 2007 us=163467   shared_secret_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163484   key_direction = 0
Sun Mar 18 22:55:39 2007 us=163503   ciphername_defined = ENABLED
Sun Mar 18 22:55:39 2007 us=163520   ciphername = 'BF-CBC'
Sun Mar 18 22:55:39 2007 us=163537   authname_defined = ENABLED
Sun Mar 18 22:55:39 2007 us=163562   authname = 'SHA1'
Sun Mar 18 22:55:39 2007 us=163581   keysize = 0
Sun Mar 18 22:55:39 2007 us=163599   engine = DISABLED
Sun Mar 18 22:55:39 2007 us=163615   replay = ENABLED
Sun Mar 18 22:55:39 2007 us=163632   mute_replay_warnings = DISABLED
Sun Mar 18 22:55:39 2007 us=163650   replay_window = 64
Sun Mar 18 22:55:39 2007 us=163666   replay_time = 15
Sun Mar 18 22:55:39 2007 us=163684   packet_id_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163700   use_iv = ENABLED
Sun Mar 18 22:55:39 2007 us=163716   test_crypto = DISABLED
Sun Mar 18 22:55:39 2007 us=163733   tls_server = ENABLED
Sun Mar 18 22:55:39 2007 us=163750   tls_client = DISABLED
Sun Mar 18 22:55:39 2007 us=163766   key_method = 2
Sun Mar 18 22:55:39 2007 us=163784   ca_file = '/etc/openvpn/ca.crt'
Sun Mar 18 22:55:39 2007 us=163801   dh_file = '/etc/openvpn/dh1024.pem'
Sun Mar 18 22:55:39 2007 us=163818   cert_file = '/etc/openvpn/server.crt'
Sun Mar 18 22:55:39 2007 us=163835   priv_key_file = 
'/etc/openvpn/server.key'
Sun Mar 18 22:55:39 2007 us=163853   pkcs12_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163870   cipher_list = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163886   tls_verify = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163905   tls_remote = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163922   crl_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=163940   ns_cert_type = 0
Sun Mar 18 22:55:39 2007 us=163957   tls_timeout = 2
Sun Mar 18 22:55:39 2007 us=163975   renegotiate_bytes = 0
Sun Mar 18 22:55:39 2007 us=163992   renegotiate_packets = 0
Sun Mar 18 22:55:39 2007 us=164009   renegotiate_seconds = 3600
Sun Mar 18 22:55:39 2007 us=164026   handshake_window = 60
Sun Mar 18 22:55:39 2007 us=164043   transition_window = 3600
Sun Mar 18 22:55:39 2007 us=164060   single_session = DISABLED
Sun Mar 18 22:55:39 2007 us=164078   tls_exit = DISABLED
Sun Mar 18 22:55:39 2007 us=164097   tls_auth_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164119   server_network = 10.8.0.0
Sun Mar 18 22:55:39 2007 us=164139   server_netmask = 255.255.255.0
Sun Mar 18 22:55:39 2007 us=164169   server_bridge_ip = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164191   server_bridge_netmask = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164212   server_bridge_pool_start = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164232   server_bridge_pool_end = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164250   push_list = 'route 10.8.0.1,ping 
10,ping-restart 120'
Sun Mar 18 22:55:39 2007 us=164268   ifconfig_pool_defined = ENABLED
Sun Mar 18 22:55:39 2007 us=164288   ifconfig_pool_start = 10.8.0.4
Sun Mar 18 22:55:39 2007 us=164307   ifconfig_pool_end = 10.8.0.251
Sun Mar 18 22:55:39 2007 us=164328   ifconfig_pool_netmask = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164347   ifconfig_pool_persist_filename = 
'ipp.txt'
Sun Mar 18 22:55:39 2007 us=164364   ifconfig_pool_persist_refresh_freq 
= 600
Sun Mar 18 22:55:39 2007 us=164382   ifconfig_pool_linear = DISABLED
Sun Mar 18 22:55:39 2007 us=164399   n_bcast_buf = 256
Sun Mar 18 22:55:39 2007 us=164416   tcp_queue_limit = 64
Sun Mar 18 22:55:39 2007 us=164433   real_hash_size = 256
Sun Mar 18 22:55:39 2007 us=164457   virtual_hash_size = 256
Sun Mar 18 22:55:39 2007 us=164474   client_connect_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164491   learn_address_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164510   client_disconnect_script = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164527   client_config_dir = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164544   ccd_exclusive = DISABLED
Sun Mar 18 22:55:39 2007 us=164561   tmp_dir = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164580   push_ifconfig_defined = DISABLED
Sun Mar 18 22:55:39 2007 us=164599   push_ifconfig_local = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164619   push_ifconfig_remote_netmask = 0.0.0.0
Sun Mar 18 22:55:39 2007 us=164638   enable_c2c = DISABLED
Sun Mar 18 22:55:39 2007 us=164655   duplicate_cn = DISABLED
Sun Mar 18 22:55:39 2007 us=164672   cf_max = 0
Sun Mar 18 22:55:39 2007 us=164689   cf_per = 0
Sun Mar 18 22:55:39 2007 us=164706   max_clients = 1024
Sun Mar 18 22:55:39 2007 us=164723   max_routes_per_client = 256
Sun Mar 18 22:55:39 2007 us=164747   client_cert_not_required = DISABLED
Sun Mar 18 22:55:39 2007 us=164766   username_as_common_name = DISABLED
Sun Mar 18 22:55:39 2007 us=164783   auth_user_pass_verify_script = 
'[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164800   
auth_user_pass_verify_script_via_file = DISABLED
Sun Mar 18 22:55:39 2007 us=164818   client = DISABLED
Sun Mar 18 22:55:39 2007 us=164835   pull = DISABLED
Sun Mar 18 22:55:39 2007 us=164853   auth_user_pass_file = '[UNDEF]'
Sun Mar 18 22:55:39 2007 us=164873 OpenVPN 2.0.6 i386-portbld-freebsd6.0 
[SSL] [LZO] built on Mar 18 2007
Sun Mar 18 22:55:39 2007 us=177862 Diffie-Hellman initialized with 1024 
bit key
Sun Mar 18 22:55:39 2007 us=179434 TLS-Auth MTU parms [ L:1542 D:138 
EF:38 EB:0 ET:0 EL:0 ]
Sun Mar 18 22:55:39 2007 us=179630 gw 192.168.0.1
Sun Mar 18 22:55:39 2007 us=179760 TUN/TAP device /dev/tun0 opened
Sun Mar 18 22:55:39 2007 us=179802 /sbin/ifconfig tun0 10.8.0.1 10.8.0.2 
mtu 1500 netmask 255.255.255.255 up
Sun Mar 18 22:55:39 2007 us=185900 /sbin/route add -net 10.8.0.0 
10.8.0.2 255.255.255.0
add net 10.8.0.0: gateway 10.8.0.2
Sun Mar 18 22:55:39 2007 us=190728 Data Channel MTU parms [ L:1542 
D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sun Mar 18 22:55:39 2007 us=192123 GID set to nobody
Sun Mar 18 22:55:39 2007 us=192175 UID set to nobody
Sun Mar 18 22:55:39 2007 us=192217 Socket Buffers: R=[42080->65536] 
S=[9216->65536]
Sun Mar 18 22:55:39 2007 us=192241 UDPv4 link local (bound): [undef]:1194
Sun Mar 18 22:55:39 2007 us=192256 UDPv4 link remote: [undef]
Sun Mar 18 22:55:39 2007 us=192284 MULTI: multi_init called, r=256 v=256
Sun Mar 18 22:55:39 2007 us=192336 IFCONFIG POOL: base=10.8.0.4 size=62
Sun Mar 18 22:55:39 2007 us=192364 IFCONFIG POOL LIST
Sun Mar 18 22:55:39 2007 us=192393 Initialization Sequence Completed
Sun Mar 18 23:02:29 2007 us=223522 MULTI: multi_create_instance called
Sun Mar 18 23:02:29 2007 us=223612 209.181.37.219:33402 Re-using SSL/TLS 
context
Sun Mar 18 23:02:29 2007 us=223669 209.181.37.219:33402 LZO compression 
initialized
Sun Mar 18 23:02:29 2007 us=224071 209.181.37.219:33402 Control Channel 
MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sun Mar 18 23:02:29 2007 us=224112 209.181.37.219:33402 Data Channel MTU 
parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sun Mar 18 23:02:29 2007 us=224192 209.181.37.219:33402 Local Options 
String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto 
UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Sun Mar 18 23:02:29 2007 us=224212 209.181.37.219:33402 Expected Remote 
Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto 
UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Sun Mar 18 23:02:29 2007 us=224289 209.181.37.219:33402 Local Options 
hash (VER=V4): '530fdded'
Sun Mar 18 23:02:29 2007 us=224323 209.181.37.219:33402 Expected Remote 
Options hash (VER=V4): '41690919'
Sun Mar 18 23:02:29 2007 us=224388 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:29 2007 us=224422 209.181.37.219:33402 TLS: Initial 
packet from 209.181.37.219:33402, sid=0ad066d1 22458a08
Sun Mar 18 23:02:29 2007 us=224488 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:02:31 2007 us=435197 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:31 2007 us=545399 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:31 2007 us=545515 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:33 2007 us=646139 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:33 2007 us=864945 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:33 2007 us=865100 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:36 2007 us=28110 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:36 2007 us=184825 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:36 2007 us=184942 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:38 2007 us=397069 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:38 2007 us=504676 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:38 2007 us=504793 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:40 2007 us=656532 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:40 2007 us=656629 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:02:42 2007 us=808664 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:42 2007 us=808755 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:02:44 2007 us=960212 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:44 2007 us=960309 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:02:46 2007 us=66956 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:47 2007 us=116112 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:47 2007 us=116240 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:48 2007 us=270916 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:49 2007 us=267728 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:49 2007 us=267850 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:50 2007 us=324887 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:50 2007 us=491586 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:50 2007 us=491710 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:52 2007 us=604848 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:52 2007 us=939971 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:52 2007 us=940081 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:55 2007 us=4815 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:55 2007 us=388064 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:55 2007 us=388190 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:56 2007 us=619506 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:56 2007 us=619624 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:02:57 2007 us=676766 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:02:59 2007 us=67128 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:02:59 2007 us=67232 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:03:01 2007 us=424719 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:01 2007 us=507235 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:01 2007 us=507352 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:03 2007 us=781676 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:03 2007 us=962336 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:03 2007 us=962463 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:05 2007 us=91662 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:06 2007 us=402787 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:06 2007 us=402914 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:07 2007 us=581619 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:07 2007 us=622671 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:07 2007 us=622775 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:09 2007 us=938588 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:10 2007 us=18353 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:10 2007 us=18473 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:11 2007 us=79572 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:12 2007 us=378502 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:12 2007 us=378627 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:13 2007 us=459531 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:13 2007 us=558137 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:13 2007 us=558243 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:15 2007 us=838493 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:15 2007 us=913715 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:15 2007 us=913824 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:17 2007 us=27474 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:18 2007 us=266177 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:18 2007 us=266292 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:19 2007 us=407444 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:20 2007 us=661378 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:20 2007 us=661500 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:21 2007 us=757400 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:23 2007 us=102441 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:23 2007 us=102536 209.181.37.219:33402 UDPv4 WRITE [26] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ 0 ] 
pid=0 DATA len=0
Sun Mar 18 23:03:25 2007 us=453342 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:25 2007 us=545202 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:25 2007 us=545320 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:27 2007 us=804307 209.181.37.219:33402 UDPv4 WRITE [14] 
to 209.181.37.219:33402: P_CONTROL_HARD_RESET_SERVER_V2 kid=0 [ ] pid=0 
DATA len=0
Sun Mar 18 23:03:27 2007 us=985337 209.181.37.219:33402 UDPv4 READ [14] 
from 209.181.37.219:33402: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] 
pid=0 DATA len=0
Sun Mar 18 23:03:27 2007 us=985480 209.181.37.219:33402 UDPv4 WRITE [22] 
to 209.181.37.219:33402: P_ACK_V1 kid=0 [ 0 ]
Sun Mar 18 23:03:29 2007 us=112253 209.181.37.219:33402 TLS Error: TLS 
key negotiation failed to occur within 60 seconds (check your network 
connectivity)
Sun Mar 18 23:03:29 2007 us=112297 209.181.37.219:33402 TLS Error: TLS 
handshake failed
Sun Mar 18 23:03:29 2007 us=112517 209.181.37.219:33402 
SIGUSR1[soft,tls-error] received, client-instance restarting
Sun Mar 18 23:03:31 2007 us=210286 MULTI: multi_create_instance called
Sun Mar 18 23:03:31 2007 us=210361 209.181.37.219:33402 Re-using SSL/TLS 
context
Sun Mar 18 23:03:31 2007 us=210392 209.181.37.219:33402 LZO compression 
initialized
Sun Mar 18 23:03:31 2007 us=210598 209.181.37.219:33402 Control Channel 
MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sun Mar 18 23:03:31 2007 us=210636 209.181.37.219:33402 Data Channel MTU 
parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]

Now the client:

Sun Mar 18 23:59:44 2007 us=686640 Current Parameter Settings:
Sun Mar 18 23:59:44 2007 us=715888   config = 'client.conf'
Sun Mar 18 23:59:44 2007 us=715975   mode = 0
Sun Mar 18 23:59:44 2007 us=716023   persist_config = DISABLED
Sun Mar 18 23:59:44 2007 us=716070   persist_mode = 1
Sun Mar 18 23:59:44 2007 us=716113   show_ciphers = DISABLED
Sun Mar 18 23:59:44 2007 us=716159   show_digests = DISABLED
Sun Mar 18 23:59:44 2007 us=716203   show_engines = DISABLED
Sun Mar 18 23:59:44 2007 us=716242   genkey = DISABLED
Sun Mar 18 23:59:44 2007 us=716284   key_pass_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716326   show_tls_ciphers = DISABLED
Sun Mar 18 23:59:44 2007 us=716370   proto = 0
Sun Mar 18 23:59:44 2007 us=716410   local = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716462   remote_list[0] = {'71.36.241.186', 
1194}
Sun Mar 18 23:59:44 2007 us=716508   remote_random = DISABLED
Sun Mar 18 23:59:44 2007 us=716554   local_port = 1194
Sun Mar 18 23:59:44 2007 us=716599   remote_port = 1194
Sun Mar 18 23:59:44 2007 us=716643   remote_float = DISABLED
Sun Mar 18 23:59:44 2007 us=716687   ipchange = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716727   bind_local = DISABLED
Sun Mar 18 23:59:44 2007 us=716768   dev = 'tun'
Sun Mar 18 23:59:44 2007 us=716809   dev_type = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716848   dev_node = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716887   tun_ipv6 = DISABLED
Sun Mar 18 23:59:44 2007 us=716926   ifconfig_local = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=716966   ifconfig_remote_netmask = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=717005   ifconfig_noexec = DISABLED
Sun Mar 18 23:59:44 2007 us=717043   ifconfig_nowarn = DISABLED
Sun Mar 18 23:59:44 2007 us=717081   shaper = 0
Sun Mar 18 23:59:44 2007 us=717121   tun_mtu = 1500
Sun Mar 18 23:59:44 2007 us=717163   tun_mtu_defined = ENABLED
Sun Mar 18 23:59:44 2007 us=717202   link_mtu = 1500
Sun Mar 18 23:59:44 2007 us=717241   link_mtu_defined = DISABLED
Sun Mar 18 23:59:44 2007 us=717283   tun_mtu_extra = 0
Sun Mar 18 23:59:44 2007 us=717317   tun_mtu_extra_defined = DISABLED
Sun Mar 18 23:59:44 2007 us=717357   fragment = 0
Sun Mar 18 23:59:44 2007 us=717396   mtu_discover_type = -1
Sun Mar 18 23:59:44 2007 us=717434   mtu_test = 0
Sun Mar 18 23:59:44 2007 us=717470   mlock = DISABLED
Sun Mar 18 23:59:44 2007 us=717509   keepalive_ping = 0
Sun Mar 18 23:59:44 2007 us=717546   keepalive_timeout = 0
Sun Mar 18 23:59:44 2007 us=717584   inactivity_timeout = 0
Sun Mar 18 23:59:44 2007 us=717624   ping_send_timeout = 0
Sun Mar 18 23:59:44 2007 us=717663   ping_rec_timeout = 120
Sun Mar 18 23:59:44 2007 us=717703   ping_rec_timeout_action = 2
Sun Mar 18 23:59:44 2007 us=717740   ping_timer_remote = DISABLED
Sun Mar 18 23:59:44 2007 us=717782   remap_sigusr1 = 0
Sun Mar 18 23:59:44 2007 us=717821   explicit_exit_notification = 0
Sun Mar 18 23:59:44 2007 us=717860   persist_tun = ENABLED
Sun Mar 18 23:59:44 2007 us=717897   persist_local_ip = DISABLED
Sun Mar 18 23:59:44 2007 us=717936   persist_remote_ip = DISABLED
Sun Mar 18 23:59:44 2007 us=717975   persist_key = ENABLED
Sun Mar 18 23:59:44 2007 us=718014   mssfix = 1450
Sun Mar 18 23:59:44 2007 us=718057   passtos = DISABLED
Sun Mar 18 23:59:44 2007 us=718099   resolve_retry_seconds = 1000000000
Sun Mar 18 23:59:44 2007 us=718142   connect_retry_seconds = 5
Sun Mar 18 23:59:44 2007 us=718183   username = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718223   groupname = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718264   chroot_dir = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718307   cd_dir = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718347   writepid = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718386   up_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718425   down_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=718465   down_pre = DISABLED
Sun Mar 18 23:59:44 2007 us=718503   up_restart = DISABLED
Sun Mar 18 23:59:44 2007 us=718542   up_delay = DISABLED
Sun Mar 18 23:59:44 2007 us=718582   daemon = DISABLED
Sun Mar 18 23:59:44 2007 us=718624   inetd = 0
Sun Mar 18 23:59:44 2007 us=718667   log = ENABLED
Sun Mar 18 23:59:44 2007 us=718708   suppress_timestamps = DISABLED
Sun Mar 18 23:59:44 2007 us=718789   nice = 0
Sun Mar 18 23:59:44 2007 us=718840   verbosity = 6
Sun Mar 18 23:59:44 2007 us=718921   mute = 0
Sun Mar 18 23:59:44 2007 us=718977   gremlin = 0
Sun Mar 18 23:59:44 2007 us=719018   status_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719059   status_file_version = 1
Sun Mar 18 23:59:44 2007 us=719099   status_file_update_freq = 60
Sun Mar 18 23:59:44 2007 us=719139   occ = ENABLED
Sun Mar 18 23:59:44 2007 us=719178   rcvbuf = 65536
Sun Mar 18 23:59:44 2007 us=719217   sndbuf = 65536
Sun Mar 18 23:59:44 2007 us=719255   socks_proxy_server = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719296   socks_proxy_port = 0
Sun Mar 18 23:59:44 2007 us=719333   socks_proxy_retry = DISABLED
Sun Mar 18 23:59:44 2007 us=719370   fast_io = DISABLED
Sun Mar 18 23:59:44 2007 us=719413   comp_lzo = ENABLED
Sun Mar 18 23:59:44 2007 us=719455   comp_lzo_adaptive = ENABLED
Sun Mar 18 23:59:44 2007 us=719495   route_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719535   route_default_gateway = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719590   route_noexec = DISABLED
Sun Mar 18 23:59:44 2007 us=719636   route_delay = 0
Sun Mar 18 23:59:44 2007 us=719679   route_delay_window = 30
Sun Mar 18 23:59:44 2007 us=719721   route_delay_defined = DISABLED
Sun Mar 18 23:59:44 2007 us=719761   management_addr = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719804   management_port = 0
Sun Mar 18 23:59:44 2007 us=719844   management_user_pass = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=719884   management_log_history_cache = 250
Sun Mar 18 23:59:44 2007 us=719924   management_echo_buffer_size = 100
Sun Mar 18 23:59:44 2007 us=719963   management_query_passwords = DISABLED
Sun Mar 18 23:59:44 2007 us=720003   management_hold = DISABLED
Sun Mar 18 23:59:44 2007 us=720044   shared_secret_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=720087   key_direction = 0
Sun Mar 18 23:59:44 2007 us=720130   ciphername_defined = ENABLED
Sun Mar 18 23:59:44 2007 us=720174   ciphername = 'BF-CBC'
Sun Mar 18 23:59:44 2007 us=720218   authname_defined = ENABLED
Sun Mar 18 23:59:44 2007 us=720258   authname = 'SHA1'
Sun Mar 18 23:59:44 2007 us=720301   keysize = 0
Sun Mar 18 23:59:44 2007 us=720341   engine = DISABLED
Sun Mar 18 23:59:44 2007 us=720381   replay = ENABLED
Sun Mar 18 23:59:44 2007 us=720421   mute_replay_warnings = DISABLED
Sun Mar 18 23:59:44 2007 us=720463   replay_window = 64
Sun Mar 18 23:59:44 2007 us=720504   replay_time = 15
Sun Mar 18 23:59:44 2007 us=720543   packet_id_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=720585   use_iv = ENABLED
Sun Mar 18 23:59:44 2007 us=720625   test_crypto = DISABLED
Sun Mar 18 23:59:44 2007 us=720664   tls_server = DISABLED
Sun Mar 18 23:59:44 2007 us=720705   tls_client = ENABLED
Sun Mar 18 23:59:44 2007 us=720747   key_method = 2
Sun Mar 18 23:59:44 2007 us=720789   ca_file = '/etc/openvpn/ca.crt'
Sun Mar 18 23:59:44 2007 us=720834   dh_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=720875   cert_file = '/etc/openvpn/436smain.crt'
Sun Mar 18 23:59:44 2007 us=720917   priv_key_file = 
'/etc/openvpn/436smain.key'
Sun Mar 18 23:59:44 2007 us=720960   pkcs12_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721001   cipher_list = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721042   tls_verify = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721085   tls_remote = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721126   crl_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721169   ns_cert_type = 0
Sun Mar 18 23:59:44 2007 us=721211   tls_timeout = 2
Sun Mar 18 23:59:44 2007 us=721255   renegotiate_bytes = 0
Sun Mar 18 23:59:44 2007 us=721298   renegotiate_packets = 0
Sun Mar 18 23:59:44 2007 us=721339   renegotiate_seconds = 3600
Sun Mar 18 23:59:44 2007 us=721383   handshake_window = 60
Sun Mar 18 23:59:44 2007 us=721425   transition_window = 3600
Sun Mar 18 23:59:44 2007 us=721465   single_session = DISABLED
Sun Mar 18 23:59:44 2007 us=721505   tls_exit = DISABLED
Sun Mar 18 23:59:44 2007 us=721544   tls_auth_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=721671   server_network = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721736   server_netmask = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721823   server_bridge_ip = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721881   server_bridge_netmask = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721930   server_bridge_pool_start = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=721977   server_bridge_pool_end = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722020   ifconfig_pool_defined = DISABLED
Sun Mar 18 23:59:44 2007 us=722065   ifconfig_pool_start = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722111   ifconfig_pool_end = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722157   ifconfig_pool_netmask = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722199   ifconfig_pool_persist_filename = 
'[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722242   ifconfig_pool_persist_refresh_freq 
= 600
Sun Mar 18 23:59:44 2007 us=722285   ifconfig_pool_linear = DISABLED
Sun Mar 18 23:59:44 2007 us=722326   n_bcast_buf = 256
Sun Mar 18 23:59:44 2007 us=722366   tcp_queue_limit = 64
Sun Mar 18 23:59:44 2007 us=722407   real_hash_size = 256
Sun Mar 18 23:59:44 2007 us=722447   virtual_hash_size = 256
Sun Mar 18 23:59:44 2007 us=722488   client_connect_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722531   learn_address_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722573   client_disconnect_script = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722618   client_config_dir = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722662   ccd_exclusive = DISABLED
Sun Mar 18 23:59:44 2007 us=722704   tmp_dir = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=722747   push_ifconfig_defined = DISABLED
Sun Mar 18 23:59:44 2007 us=722794   push_ifconfig_local = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722840   push_ifconfig_remote_netmask = 0.0.0.0
Sun Mar 18 23:59:44 2007 us=722886   enable_c2c = DISABLED
Sun Mar 18 23:59:44 2007 us=722953   duplicate_cn = DISABLED
Sun Mar 18 23:59:44 2007 us=722995   cf_max = 0
Sun Mar 18 23:59:44 2007 us=723039   cf_per = 0
Sun Mar 18 23:59:44 2007 us=723081   max_clients = 1024
Sun Mar 18 23:59:44 2007 us=723122   max_routes_per_client = 256
Sun Mar 18 23:59:44 2007 us=723161   client_cert_not_required = DISABLED
Sun Mar 18 23:59:44 2007 us=723204   username_as_common_name = DISABLED
Sun Mar 18 23:59:44 2007 us=723246   auth_user_pass_verify_script = 
'[UNDEF]'
Sun Mar 18 23:59:44 2007 us=723289   
auth_user_pass_verify_script_via_file = DISABLED
Sun Mar 18 23:59:44 2007 us=723331   client = ENABLED
Sun Mar 18 23:59:44 2007 us=723372   pull = ENABLED
Sun Mar 18 23:59:44 2007 us=723411   auth_user_pass_file = '[UNDEF]'
Sun Mar 18 23:59:44 2007 us=723467 OpenVPN 2.0.7 i486-pc-linux-gnu [SSL] 
[LZO] [EPOLL] built on Sep 13 2006
Sun Mar 18 23:59:44 2007 us=723652 IMPORTANT: OpenVPN's default port 
number is now 1194, based on an official port number assignment by 
IANA.  OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Sun Mar 18 23:59:44 2007 us=723711 WARNING: No server certificate 
verification method has been enabled.  See 
http://openvpn.net/howto.html#mitm for more info.
Sun Mar 18 23:59:44 2007 us=726239 LZO compression initialized
Sun Mar 18 23:59:44 2007 us=726623 Control Channel MTU parms [ L:1542 
D:138 EF:38 EB:0 ET:0 EL:0 ]
Sun Mar 18 23:59:44 2007 us=747923 Data Channel MTU parms [ L:1542 
D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sun Mar 18 23:59:44 2007 us=748044 Local Options String: 'V4,dev-type 
tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth 
SHA1,keysize 128,key-method 2,tls-client'
Sun Mar 18 23:59:44 2007 us=748087 Expected Remote Options String: 
'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher 
BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Sun Mar 18 23:59:44 2007 us=748183 Local Options hash (VER=V4): '41690919'
Sun Mar 18 23:59:44 2007 us=748249 Expected Remote Options hash 
(VER=V4): '530fdded'
Sun Mar 18 23:59:44 2007 us=748343 Socket Buffers: R=[107520->131072] 
S=[107520->131072]
Sun Mar 18 23:59:44 2007 us=748417 UDPv4 link local: [undef]
Sun Mar 18 23:59:44 2007 us=748475 UDPv4 link remote: 71.36.241.186:1194
Sun Mar 18 23:59:44 2007 us=748667 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:47 2007 us=70978 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:49 2007 us=390913 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:51 2007 us=710997 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:54 2007 us=30847 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:56 2007 us=182884 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Sun Mar 18 23:59:58 2007 us=334755 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:00 2007 us=486744 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:02 2007 us=642712 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:04 2007 us=794669 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:06 2007 us=18621 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:08 2007 us=466579 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:10 2007 us=915047 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:12 2007 us=146206 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:14 2007 us=594594 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:17 2007 us=34722 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:19 2007 us=490394 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:21 2007 us=930342 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:23 2007 us=150339 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:25 2007 us=546309 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:27 2007 us=906237 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:29 2007 us=86417 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:31 2007 us=442211 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:33 2007 us=794137 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:36 2007 us=190095 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:38 2007 us=630748 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:41 2007 us=74009 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:43 2007 us=514014 UDPv4 WRITE [14] to 
71.36.241.186:1194: P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 [ ] pid=0 DATA 
len=0
Mon Mar 19 00:00:44 2007 us=734089 TLS Error: TLS key negotiation failed 
to occur within 60 seconds (check your network connectivity)
Mon Mar 19 00:00:44 2007 us=734201 TLS Error: TLS handshake failed
Mon Mar 19 00:00:44 2007 us=734571 TCP/UDP: Closing socket
Mon Mar 19 00:00:44 2007 us=734702 SIGUSR1[soft,tls-error] received, 
process restarting
Mon Mar 19 00:00:44 2007 us=734773 Restart pause, 2 second(s)




> I am running OpenVPN and OpenBSD 4.0 and supporting Windoze, Linux,
> MacOSX, FreeBSD and OpenBSD clients.  Work flawlessly.
>
> Tin Le
>   





More information about the Svlug mailing list