striteiro
(usa Slackware)
Enviado em 19/04/2011 - 08:11h
Bom dia, tenho um sistema vpn rodando com openvpn na plataforma CentOS, e apos efetuar a conexao nao pinga nos servidores, nem do servidor pro cliente e nem do cliente pro servidor, mas estranhamente atribui o ip configurado ao adaptador e conecta sem nenhum erro.
Meus arquivos de conf:
matriz.conf:
dev tun
port 443
proto udp
ca keys/ca.crt
cert keys/matriz.crt
key keys/matriz.key
dh keys/dh1024.pem
server 10.0.20.0 255.255.255.0
push "route 10.0.3.0 255.255.255.0"
keepalive 10 120
max-clients 15
comp-lzo
persist-key
persist-tun
verb 3
cliente:
dev tun
port 443
ifconfig 10.0.20.2 10.0.20.1
remote 76.x.x.x
ca ca.crt
cert pablo.crt
key pablo.key
tls-client
keepalive 10 120
comp-lzo
persist-key
persist-tun
verb 3
Log do openvpn:
Tue Apr 19 08:08:18 2011 TLS: Initial packet from 76.73.19.157:443, sid=7d564f39 04ff299c
Tue Apr 19 08:08:19 2011 VERIFY OK: depth=1, /C=BR/ST=MG/L=Vicosa/O=Master-Informatica/CN=Master-Informatica_CA/emailAddress=striteiro@miv.net.br
Tue Apr 19 08:08:19 2011 VERIFY OK: depth=0, /C=BR/ST=MG/L=Vicosa/O=Master-Informatica/CN=matriz/name=matriz/emailAddress=striteiro@miv.net.br
Tue Apr 19 08:08:30 2011 WARNING: 'ifconfig' is present in local config but missing in remote config, local='ifconfig 10.0.20.2 10.0.20.1'
Tue Apr 19 08:08:30 2011 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Tue Apr 19 08:08:30 2011 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Apr 19 08:08:30 2011 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Tue Apr 19 08:08:30 2011 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Tue Apr 19 08:08:30 2011 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Tue Apr 19 08:08:30 2011 [matriz] Peer Connection Initiated with 76.73.19.157:443
Tue Apr 19 08:08:36 2011 TEST ROUTES: 0/0 succeeded len=-1 ret=1 a=0 u/d=up
Tue Apr 19 08:08:36 2011 Initialization Sequence Completed
Alguma ideia?