juliansoares
(usa Debian)
Enviado em 17/01/2012 - 09:19h
Bom dia amigos, estou tendo problemas com minha VPN,
tenho um servidor em casa, e quero colocar uma vpn lá, ja instalei tudo, gerei os certificaddos (build-key) dh etc...
preciso ter um 1 conf no servidor e outro na maquina que ira acessar?
uso ip dinamico, dai uso o no-ip
meu server.conf
proto udp
port 1194
dev tun
ifconfig 10.10.0.0 255.255.255.0.0
push "route 10.0.0.1 255.255.0.0"
comp-lzo
keepalive 10 120
persist-key
persist-tun
float
tls-server
dh /etc/openvpn/key-server/dh1024.pem
ca /etc/openvpn/key-server/ca.crt
cert /etc/openvpn/key-server/warmachine.crt
key /etc/openvpn/key-server/warmachine.key
tls-auth /etc/openvpn/key-server/chave.key
status /var/log/openvpn-status.log
log-append /var/log/openvpn.lo
client.conf
remote soarescps.no-ip.org (no-ip)
remote 10.0.0.1 (ifconfig do server, redelocal)
remote soarescps.no-ip.org:8080 (no-ip c port 8080 para apache)
remote 201.53.X.X (ip virtua)
remote 10.10.0.0 (ip VPN)
proto udp
port 1194
client
pull
dev tun
comp-lzo
keepalive 10 120
persist-key
persist-tun
float
tls-client
dh /etc/openvpn/keys/dh1024.pem
ca /etc/openvpn/keys/ca.crt
cert /etc/openvpn/keys/julian.crt
key /etc/openvpn/keys/julian.key
tls-auth /etc/openvpn/keys/chave.key
status /var/log/openvpn-status.log
log-append /var/log/openvpn.lo
ja liberei no firewall o ip 10.10.0.0 para redelocal e a porta 1194
log do openvpn ao tentar conectar de uma rede fora da minha , sem firewall sem nada.
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> Starting VPN service 'openvpn'...
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> VPN service 'openvpn' started (org.freedesktop.NetworkManager.openvpn), PID 5158
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> VPN service 'openvpn' appeared; activating connections
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> VPN plugin state changed: init (1)
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> VPN plugin state changed: starting (3)
Jan 17 09:03:36 zeus NetworkManager[1517]: <info> VPN connection 'Server Home' (Connect) reply received.
Jan 17 09:03:36 zeus nm-openvpn[5161]: OpenVPN 2.2.1 x86_64-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [eurephia] [MH] [PF_INET6] [IPv6 payload 20110424-2 (2.2RC2)] built on Dec 20 2011
Jan 17 09:03:36 zeus nm-openvpn[5161]: WARNING: No server certificate verification method has been enabled. See
http://openvpn.net/howto.html#mitm for more info.
Jan 17 09:03:36 zeus nm-openvpn[5161]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Jan 17 09:03:36 zeus nm-openvpn[5161]: LZO compression initialized
Jan 17 09:03:36 zeus nm-openvpn[5161]: Attempting to establish TCP connection with [AF_INET]10.10.0.0:1194 [nonblock]
Jan 17 09:03:47 zeus nm-openvpn[5161]: TCP: connect to [AF_INET]10.10.0.0:1194 failed, will try again in 5 seconds: Connection timed out
Jan 17 09:04:01 zeus nm-openvpn[5161]: TCP: connect to [AF_INET]10.10.0.0:1194 failed, will try again in 5 seconds: Connection timed out
Jan 17 09:04:16 zeus nm-openvpn[5161]: TCP: connect to [AF_INET]10.10.0.0:1194 failed, will try again in 5 seconds: Connection timed out
Jan 17 09:04:16 zeus NetworkManager[1517]: <warn> VPN connection 'Server Home' (IP Config Get) timeout exceeded.
Jan 17 09:04:16 zeus nm-openvpn[5161]: SIGTERM[hard,init_instance] received, process exiting