public inbox for development@lists.ipfire.org
 help / color / mirror / Atom feed
* Problems with Core 70 and OpenVPN N2N
@ 2013-07-11 18:33 Erik K.
  2013-07-11 22:06 ` Michael Tremer
  0 siblings, 1 reply; 4+ messages in thread
From: Erik K. @ 2013-07-11 18:33 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1389 bytes --]

Hi all,
have tried today Core 70 and OpenVPN N2N and i have had problems to establish the connection. 

The infrastructure:

IPFire (remote) <--> Router <--> [ Internet ] <--> (local) Router <-->  (local) IPFire

So both sides with double NAT. The log messages gives me the following back

Jul 11 18:17:35 ipfire Testn2n[13565]: UDPv4 link remote: 192.168.20.2:5329
Jul 11 18:19:09 ipfire Testn2n[13808]: TLS Error: client->client or server->server connection attempted from 192.168.20.2:5329
Jul 11 18:18:01 ipfire Testn2n[13565]: event_wait : Interrupted system call (code=4)
have never seen this message (in the middle) before...

So i looked to the configuration file on the TLS-client where the "Remote Host/IP" was stated with the 192.168.20.2 (red0 IP), i changed it then to the remote IP (in versions before Core 70 this was not necessary) and the following log output was stated.

Jul 11 20:22:49 ipfire Testn2n[6875]: Expected Remote Options hash (VER=V4): '9e986809'
Jul 11 20:22:49 ipfire-bbach Testn2n[[6875]: UDPv4 link remote: 172.11.xx.xx:5329
Jul 11 20:23:50 ipfire Testn2n[[6875]: [UNDEF] Inactivity timeout (--ping-restart), restarting


Looks like a closed firewall. Portforwarding from both upstream routers to IPFire was made, outgoing FW was in mode 0 .

May some one have an idea what´s causing this problem ?


Greetings 


Erik



^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2013-07-12 11:24 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2013-07-11 18:33 Problems with Core 70 and OpenVPN N2N Erik K.
2013-07-11 22:06 ` Michael Tremer
2013-07-12  9:04   ` Erik K.
2013-07-12 11:24     ` Michael Tremer

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox