29.04.29 und openvpn

@Crevlon

Kannst du mal die Fehlermeldung posten die OpenVPN ausgibt?
 
das wird ausgegeben wenn ich openvpn mit dem befehl "./openvpn --config ./server.ovpn" oder "./openvpn --config ./server.ovpn &" ausführe:

Code:
Sun Jan  7 13:17:13 2007 us=378992   ping_rec_timeout_action = 2
Sun Jan  7 13:17:13 2007 us=383256   ping_timer_remote = DISABLED
Sun Jan  7 13:17:13 2007 us=387032   remap_sigusr1 = 0
Sun Jan  7 13:17:13 2007 us=392817   explicit_exit_notification = 0
Sun Jan  7 13:17:13 2007 us=396853   persist_tun = DISABLED
Sun Jan  7 13:17:13 2007 us=401399   persist_local_ip = DISABLED
Sun Jan  7 13:17:13 2007 us=405439   persist_remote_ip = DISABLED
Sun Jan  7 13:17:13 2007 us=410236   persist_key = DISABLED
Sun Jan  7 13:17:13 2007 us=414258   mssfix = 1450
Sun Jan  7 13:17:13 2007 us=418211   passtos = DISABLED
Sun Jan  7 13:17:13 2007 us=422938   resolve_retry_seconds = 1000000000
Sun Jan  7 13:17:13 2007 us=426926   connect_retry_seconds = 5
Sun Jan  7 13:17:13 2007 us=431356   connect_timeout = 10
Sun Jan  7 13:17:13 2007 us=435311   connect_retry_max = 0
Sun Jan  7 13:17:13 2007 us=442958   username = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=447185   groupname = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=451370   chroot_dir = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=455580   cd_dir = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=459921   writepid = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=463852   up_script = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=467812   down_script = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=472202   down_pre = DISABLED
Sun Jan  7 13:17:13 2007 us=476136   up_restart = DISABLED
Sun Jan  7 13:17:13 2007 us=480950   up_delay = DISABLED
Sun Jan  7 13:17:13 2007 us=484921   daemon = DISABLED
Sun Jan  7 13:17:13 2007 us=491378   inetd = 0
Sun Jan  7 13:17:13 2007 us=495364   log = DISABLED
Sun Jan  7 13:17:13 2007 us=499939   suppress_timestamps = DISABLED
Sun Jan  7 13:17:13 2007 us=503647   nice = 0
Sun Jan  7 13:17:13 2007 us=507818   verbosity = 4
Sun Jan  7 13:17:13 2007 us=511936   mute = 0
Sun Jan  7 13:17:13 2007 us=516075   gremlin = 0
Sun Jan  7 13:17:13 2007 us=520144   status_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=524284   status_file_version = 1
Sun Jan  7 13:17:13 2007 us=527954   status_file_update_freq = 60
Sun Jan  7 13:17:13 2007 us=532542   occ = ENABLED
Sun Jan  7 13:17:13 2007 us=536219   rcvbuf = 65536
Sun Jan  7 13:17:13 2007 us=540780   sndbuf = 65536
Sun Jan  7 13:17:13 2007 us=544441   sockflags = 0
Sun Jan  7 13:17:13 2007 us=548980   socks_proxy_server = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=552677   socks_proxy_port = 0
Sun Jan  7 13:17:13 2007 us=556800   socks_proxy_retry = DISABLED
Sun Jan  7 13:17:13 2007 us=560898   fast_io = DISABLED
Sun Jan  7 13:17:13 2007 us=565051   route_script = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=569130   route_default_gateway = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=573310   route_default_metric = 0
Sun Jan  7 13:17:13 2007 us=576961   route_noexec = DISABLED
Sun Jan  7 13:17:13 2007 us=581526   route_delay = 0
Sun Jan  7 13:17:13 2007 us=585168   route_delay_window = 30
Sun Jan  7 13:17:13 2007 us=590376   route_delay_defined = DISABLED
Sun Jan  7 13:17:13 2007 us=594027   route_nopull = DISABLED
Sun Jan  7 13:17:13 2007 us=598195   route 192.168.178.0/255.255.255.0/nil/nil
Sun Jan  7 13:17:13 2007 us=602280   management_addr = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=606429   management_port = 0
Sun Jan  7 13:17:13 2007 us=610493   management_user_pass = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=614662   management_log_history_cache = 250
Sun Jan  7 13:17:13 2007 us=618315   management_echo_buffer_size = 100
Sun Jan  7 13:17:13 2007 us=622900   management_query_passwords = DISABLED
Sun Jan  7 13:17:13 2007 us=626564   management_hold = DISABLED
Sun Jan  7 13:17:13 2007 us=631138   management_client = DISABLED
Sun Jan  7 13:17:13 2007 us=634776   management_write_peer_info_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=639330   shared_secret_file = '/var/tmp/secret.key'
Sun Jan  7 13:17:13 2007 us=643001   key_direction = 0
Sun Jan  7 13:17:13 2007 us=647103   ciphername_defined = ENABLED
Sun Jan  7 13:17:13 2007 us=651156   ciphername = 'BF-CBC'
Sun Jan  7 13:17:13 2007 us=655268   authname_defined = ENABLED
Sun Jan  7 13:17:13 2007 us=659282   authname = 'SHA1'
Sun Jan  7 13:17:13 2007 us=663378   keysize = 0
Sun Jan  7 13:17:13 2007 us=666964   engine = DISABLED
Sun Jan  7 13:17:13 2007 us=671478   replay = ENABLED
Sun Jan  7 13:17:13 2007 us=675072   mute_replay_warnings = DISABLED
Sun Jan  7 13:17:13 2007 us=679599   replay_window = 0
Sun Jan  7 13:17:13 2007 us=683449   replay_time = 0
Sun Jan  7 13:17:13 2007 us=687289   packet_id_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=692069   use_iv = ENABLED
Sun Jan  7 13:17:13 2007 us=695879   test_crypto = DISABLED
Sun Jan  7 13:17:13 2007 us=700148   tls_server = DISABLED
Sun Jan  7 13:17:13 2007 us=703949   tls_client = DISABLED
Sun Jan  7 13:17:13 2007 us=707783   key_method = 2
Sun Jan  7 13:17:13 2007 us=712030   ca_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=715846   ca_path = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=720383   dh_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=724184   cert_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=727976   priv_key_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=732202   pkcs12_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=735991   cipher_list = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=740259   tls_verify = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=744041   tls_remote = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=747844   crl_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=752061   ns_cert_type = 0
Sun Jan  7 13:17:13 2007 us=755844   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=760046   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=763859   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=767640   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=771846   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=775621   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=779833   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=783601   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=787121   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=792279   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=796027   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=800270   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=804025   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=807776   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=811960   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=815709   remote_cert_ku[i] = 0
Sun Jan  7 13:17:13 2007 us=819847   remote_cert_eku = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=823609   tls_timeout = 2
Sun Jan  7 13:17:13 2007 us=827107   renegotiate_bytes = 0
Sun Jan  7 13:17:13 2007 us=831534   renegotiate_packets = 0
Sun Jan  7 13:17:13 2007 us=835042   renegotiate_seconds = 3600
Sun Jan  7 13:17:13 2007 us=839465   handshake_window = 60
Sun Jan  7 13:17:13 2007 us=842959   transition_window = 3600
Sun Jan  7 13:17:13 2007 us=846955   single_session = DISABLED
Sun Jan  7 13:17:13 2007 us=850889   tls_exit = DISABLED
Sun Jan  7 13:17:13 2007 us=854885   tls_auth_file = '[UNDEF]'
Sun Jan  7 13:17:13 2007 us=858390   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=862865   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=866399   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=870858   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=874387   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=878800   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=882372   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=886394   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=891971   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=895791   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=900582   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=904402   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=909090   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=912900   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=917211   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=921444   pkcs11_protected_authentication = DISABLED
Sun Jan  7 13:17:13 2007 us=925758   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=930018   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=934286   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=938052   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=942729   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=946494   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=951192   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=954946   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=959581   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=963331   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=967570   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=972793   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=976768   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=981192   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=985164   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=990284   pkcs11_cert_private = DISABLED
Sun Jan  7 13:17:13 2007 us=994266   pkcs11_pin_cache_period = -1
Sun Jan  7 13:17:13 2007 us=998248   pkcs11_slot_type = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=2624   pkcs11_slot = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=6601   pkcs11_id_type = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=10982   pkcs11_id = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=15097   server_network = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=19740   server_netmask = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=23490   server_bridge_ip = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=27727   server_bridge_netmask = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=31908   server_bridge_pool_start = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=36109   server_bridge_pool_end = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=40226   ifconfig_pool_defined = DISABLED
Sun Jan  7 13:17:14 2007 us=44439   ifconfig_pool_start = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=48157   ifconfig_pool_end = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=52766   ifconfig_pool_netmask = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=56456   ifconfig_pool_persist_filename = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=61286   ifconfig_pool_persist_refresh_freq = 600
Sun Jan  7 13:17:14 2007 us=64980   n_bcast_buf = 256
Sun Jan  7 13:17:14 2007 us=69556   tcp_queue_limit = 64
Sun Jan  7 13:17:14 2007 us=73225   real_hash_size = 256
Sun Jan  7 13:17:14 2007 us=77387   virtual_hash_size = 256
Sun Jan  7 13:17:14 2007 us=81501   client_connect_script = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=85818   learn_address_script = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=90468   client_disconnect_script = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=94649   client_config_dir = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=98312   ccd_exclusive = DISABLED
Sun Jan  7 13:17:14 2007 us=102926   tmp_dir = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=106578   push_ifconfig_defined = DISABLED
Sun Jan  7 13:17:14 2007 us=111216   push_ifconfig_local = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=114911   push_ifconfig_remote_netmask = 0.0.0.0
Sun Jan  7 13:17:14 2007 us=119476   enable_c2c = DISABLED
Sun Jan  7 13:17:14 2007 us=123106   duplicate_cn = DISABLED
Sun Jan  7 13:17:14 2007 us=127241   cf_max = 0
Sun Jan  7 13:17:14 2007 us=131296   cf_per = 0
Sun Jan  7 13:17:14 2007 us=135417   max_clients = 1024
Sun Jan  7 13:17:14 2007 us=139733   max_routes_per_client = 256
Sun Jan  7 13:17:14 2007 us=143614   client_cert_not_required = DISABLED
Sun Jan  7 13:17:14 2007 us=147258   username_as_common_name = DISABLED
Sun Jan  7 13:17:14 2007 us=151845   auth_user_pass_verify_script = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=155783   auth_user_pass_verify_script_via_file = DIS                                                                             ABLED
Sun Jan  7 13:17:14 2007 us=160114   port_share_host = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=163980   port_share_port = 0
Sun Jan  7 13:17:14 2007 us=167800   client = DISABLED
Sun Jan  7 13:17:14 2007 us=172053   pull = DISABLED
Sun Jan  7 13:17:14 2007 us=175885   auth_user_pass_file = '[UNDEF]'
Sun Jan  7 13:17:14 2007 us=180226 OpenVPN 2.1_rc1 mipsel-linux [SSL] [EPOLL] bu                                                                             ilt on Dec 25 2006
Sun Jan  7 13:17:14 2007 us=192420 Static Encrypt: Cipher 'BF-CBC' initialized w                                                                             ith 128 bit key
Sun Jan  7 13:17:14 2007 us=196603 Static Encrypt: Using 160 bit message hash 'S                                                                             HA1' for HMAC authentication
Sun Jan  7 13:17:14 2007 us=202359 Static Decrypt: Cipher 'BF-CBC' initialized w                                                                             ith 128 bit key
Sun Jan  7 13:17:14 2007 us=206413 Static Decrypt: Using 160 bit message hash 'S                                                                             HA1' for HMAC authentication
Sun Jan  7 13:17:14 2007 us=293911 TUN/TAP device tun0 opened
Sun Jan  7 13:17:14 2007 us=297644 TUN/TAP TX queue length set to 100
Sun Jan  7 13:17:14 2007 us=302449 /sbin/ifconfig tun0 10.0.0.2 pointopoint 10.0                                                                             .0.1 mtu 1500
Sun Jan  7 13:17:14 2007 us=372676 /sbin/route add -net 192.168.178.0 netmask 25                                                                             5.255.255.0 gw 10.0.0.1
Sun Jan  7 13:17:14 2007 us=434883 Data Channel MTU parms [ L:1546 D:1450 EF:46                                                                              EB:4 ET:0 EL:0 ]
Sun Jan  7 13:17:14 2007 us=439910 Local Options String: 'V4,dev-type tun,link-m                                                                             tu 1546,tun-mtu 1500,proto TCPv4_SERVER,ifconfig 10.0.0.1 10.0.0.2,cipher BF-CBC                                                                             ,auth SHA1,keysize 128,secret'
Sun Jan  7 13:17:14 2007 us=444132 Expected Remote Options String: 'V4,dev-type                                                                              tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_CLIENT,ifconfig 10.0.0.2 10.0.0.1,cip                                                                             her BF-CBC,auth SHA1,keysize 128,secret'
Sun Jan  7 13:17:14 2007 us=450117 Local Options hash (VER=V4): '36c79fa1'
Sun Jan  7 13:17:14 2007 us=454560 Expected Remote Options hash (VER=V4): '0eca8                                                                             072'
Sun Jan  7 13:17:14 2007 us=458879 Listening for incoming TCP connection on [und

leider konnte ich nicht den kompletten code kopieren weil putty nicht mehr alles anzeigen konnte.
 
Zuletzt bearbeitet:
Kann man das neue binary auch kleiner machen?
Das von jack1st ist ~3MB gross, dass alte ~2MB.

Mit dem neuen läuft es zwar wunderbar, jedoch nur
ein paar Minuten, danach bootet die Box neu. So macht
das irgendwie keinen Spass.

Ich benutze:
- Zertifikate
- Ausblenden: vom Hersteller...
- USB-Stick
- FW: 29.04.29

Ich denke mal, der Speicher wird zu voll, kenne aber keine Möglichkeit,
zu überprüfen, wie voll der Speicher ist.

Kennt jemand ne Möglichkeit, was ich ändern kann?


@crevlon:
hmm. Versuch doch noch mal das in ne komplette datei zu loggen.
Wenn du nen USB-Stick dran hängen hast:

z.B.
./openvpn --config ./server.ovpn > /var/media/ftp/DISKPro-Partition-0-0/log

Dann kannste die log-Datei über ftp runterladen.
 
ah! (headbang) Ich habe vergessen gehabt, Dropbear
auszukommentieren. Der wurde immer noch nachgeladen.

jetzt scheint es zu laufen (zumindest seit ner 3/4h).
 
@Crevlon

Zeigt er dir denn an das OpenVPN gestartet wurde wenn du PS eintippst??
Wenn ja, was für ne Fehlermeldung gibt dann der Client aus?

@risaer

Ich denke mal, der Speicher wird zu voll, kenne aber keine Möglichkeit,
zu überprüfen, wie voll der Speicher ist.

Glaube mit dem Befehl FREE
 
risaer schrieb:
Kann man das neue binary auch kleiner machen?
Das von jack1st ist ~3MB gross, dass alte ~2MB.
.

sag mir was du nicht brauchst und ich werd's abschalten. Ich hab erst mal alle Optionen drin gelassen, weil ich mich noch nicht sehr lange damit beschäftigt habe.

Code:
Optional Features:
  --disable-FEATURE       do not include FEATURE (same as --enable-FEATURE=no)
  --enable-FEATURE[=ARG]  include FEATURE [ARG=yes]
  --disable-lzo           Disable LZO compression support
  --disable-crypto        Disable OpenSSL crypto support
  --disable-ssl           Disable OpenSSL SSL support for TLS-based key exchange
  --disable-multi         Disable client/server support (--mode server + client mode)
  --disable-server        Disable server support only (but retain client support)
  --disable-plugins       Disable plug-in support
  --disable-management    Disable management server support
  --disable-pkcs11        Disable pkcs11 support
  --disable-socks         Disable Socks support
  --disable-http          Disable HTTP proxy support
  --disable-fragment      Disable internal fragmentation support (--fragment)
  --disable-multihome     Disable multi-homed UDP server support (--multihome)
  --disable-port-share    Disable TCP server port-share support (--port-share)
  --disable-debug         Disable debugging support (disable gremlin and verb 7+ messages)
 
@grobi2000:
bis zum ps befehl komm ich gar nicht mehr. wenn ich openvpn starte habe ich keine möglichkeit mehr auf eine eingabe und die box stürzt nach einer gewissen zeit ab.

@risaer:
hier der inhalt der logdatei:
Code:
Sun Jan  7 19:37:40 2007 us=986272 Current Parameter Settings:
Sun Jan  7 19:37:40 2007 us=987846   config = './server.ovpn'
Sun Jan  7 19:37:40 2007 us=990726   mode = 0
Sun Jan  7 19:37:40 2007 us=991812   persist_config = DISABLED
Sun Jan  7 19:37:40 2007 us=992292   persist_mode = 1
Sun Jan  7 19:37:40 2007 us=992735   show_ciphers = DISABLED
Sun Jan  7 19:37:40 2007 us=993466   show_digests = DISABLED
Sun Jan  7 19:37:40 2007 us=993926   show_engines = DISABLED
Sun Jan  7 19:37:40 2007 us=994372   genkey = DISABLED
Sun Jan  7 19:37:40 2007 us=994865   key_pass_file = '[UNDEF]'
Sun Jan  7 19:37:40 2007 us=995471   show_tls_ciphers = DISABLED
Sun Jan  7 19:37:40 2007 us=995951   proto = 1
Sun Jan  7 19:37:40 2007 us=996527   local = '[UNDEF]'
Sun Jan  7 19:37:40 2007 us=996995   remote_list = NULL
Sun Jan  7 19:37:40 2007 us=997445   remote_random = DISABLED
Sun Jan  7 19:37:40 2007 us=997892   local_port = 1194
Sun Jan  7 19:37:40 2007 us=998803   remote_port = 1194
Sun Jan  7 19:37:40 2007 us=999264   remote_float = ENABLED
Sun Jan  7 19:37:40 2007 us=999761   ipchange = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=219   bind_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=669   bind_local = ENABLED
Sun Jan  7 19:37:41 2007 us=1390   dev = 'tun0'
Sun Jan  7 19:37:41 2007 us=2212   dev_type = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=2662   dev_node = '/var/tmp/tun'
Sun Jan  7 19:37:41 2007 us=3107   lladdr = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=3558   topology = 1
Sun Jan  7 19:37:41 2007 us=3997   tun_ipv6 = DISABLED
Sun Jan  7 19:37:41 2007 us=4492   ifconfig_local = '10.0.0.2'
Sun Jan  7 19:37:41 2007 us=4951   ifconfig_remote_netmask = '10.0.0.1'
Sun Jan  7 19:37:41 2007 us=5404   ifconfig_noexec = DISABLED
Sun Jan  7 19:37:41 2007 us=5972   ifconfig_nowarn = DISABLED
Sun Jan  7 19:37:41 2007 us=6437   shaper = 0
Sun Jan  7 19:37:41 2007 us=6880   tun_mtu = 1500
Sun Jan  7 19:37:41 2007 us=7325   tun_mtu_defined = ENABLED
Sun Jan  7 19:37:41 2007 us=7777   link_mtu = 1500
Sun Jan  7 19:37:41 2007 us=9631   link_mtu_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=10160   tun_mtu_extra = 0
Sun Jan  7 19:37:41 2007 us=10605   tun_mtu_extra_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=11051   fragment = 0
Sun Jan  7 19:37:41 2007 us=11496   mtu_discover_type = -1
Sun Jan  7 19:37:41 2007 us=11941   mtu_test = 0
Sun Jan  7 19:37:41 2007 us=12377   mlock = DISABLED
Sun Jan  7 19:37:41 2007 us=13168   keepalive_ping = 0
Sun Jan  7 19:37:41 2007 us=14300   keepalive_timeout = 0
Sun Jan  7 19:37:41 2007 us=14759   inactivity_timeout = 0
Sun Jan  7 19:37:41 2007 us=15244   ping_send_timeout = 15
Sun Jan  7 19:37:41 2007 us=15692   ping_rec_timeout = 120
Sun Jan  7 19:37:41 2007 us=16136   ping_rec_timeout_action = 2
Sun Jan  7 19:37:41 2007 us=16572   ping_timer_remote = DISABLED
Sun Jan  7 19:37:41 2007 us=17309   remap_sigusr1 = 0
Sun Jan  7 19:37:41 2007 us=17763   explicit_exit_notification = 0
Sun Jan  7 19:37:41 2007 us=18699   persist_tun = DISABLED
Sun Jan  7 19:37:41 2007 us=19316   persist_local_ip = DISABLED
Sun Jan  7 19:37:41 2007 us=19789   persist_remote_ip = DISABLED
Sun Jan  7 19:37:41 2007 us=20278   persist_key = DISABLED
Sun Jan  7 19:37:41 2007 us=20736   mssfix = 1450
Sun Jan  7 19:37:41 2007 us=21172   passtos = DISABLED
Sun Jan  7 19:37:41 2007 us=21623   resolve_retry_seconds = 1000000000
Sun Jan  7 19:37:41 2007 us=22067   connect_retry_seconds = 5
Sun Jan  7 19:37:41 2007 us=23430   connect_timeout = 10
Sun Jan  7 19:37:41 2007 us=23981   connect_retry_max = 0
Sun Jan  7 19:37:41 2007 us=24420   username = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=25205   groupname = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=26681   chroot_dir = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=27247   cd_dir = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=27709   writepid = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=29089   up_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=29570   down_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=30004   down_pre = DISABLED
Sun Jan  7 19:37:41 2007 us=30439   up_restart = DISABLED
Sun Jan  7 19:37:41 2007 us=30868   up_delay = DISABLED
Sun Jan  7 19:37:41 2007 us=31732   daemon = DISABLED
Sun Jan  7 19:37:41 2007 us=32216   inetd = 0
Sun Jan  7 19:37:41 2007 us=32909   log = DISABLED
Sun Jan  7 19:37:41 2007 us=33745   suppress_timestamps = DISABLED
Sun Jan  7 19:37:41 2007 us=34184   nice = 0
Sun Jan  7 19:37:41 2007 us=34608   verbosity = 4
Sun Jan  7 19:37:41 2007 us=35031   mute = 0
Sun Jan  7 19:37:41 2007 us=35453   gremlin = 0
Sun Jan  7 19:37:41 2007 us=35872   status_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=36310   status_file_version = 1
Sun Jan  7 19:37:41 2007 us=36798   status_file_update_freq = 60
Sun Jan  7 19:37:41 2007 us=37231   occ = ENABLED
Sun Jan  7 19:37:41 2007 us=37664   rcvbuf = 65536
Sun Jan  7 19:37:41 2007 us=38544   sndbuf = 65536
Sun Jan  7 19:37:41 2007 us=39025   sockflags = 0
Sun Jan  7 19:37:41 2007 us=39453   socks_proxy_server = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=39888   socks_proxy_port = 0
Sun Jan  7 19:37:41 2007 us=40312   socks_proxy_retry = DISABLED
Sun Jan  7 19:37:41 2007 us=41005   fast_io = DISABLED
Sun Jan  7 19:37:41 2007 us=41525   route_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=41969   route_default_gateway = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=42409   route_default_metric = 0
Sun Jan  7 19:37:41 2007 us=42832   route_noexec = DISABLED
Sun Jan  7 19:37:41 2007 us=43265   route_delay = 0
Sun Jan  7 19:37:41 2007 us=43689   route_delay_window = 30
Sun Jan  7 19:37:41 2007 us=44111   route_delay_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=44542   route_nopull = DISABLED
Sun Jan  7 19:37:41 2007 us=45057   route 192.168.178.0/255.255.255.0/nil/nil
Sun Jan  7 19:37:41 2007 us=45511   management_addr = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=45954   management_port = 0
Sun Jan  7 19:37:41 2007 us=46388   management_user_pass = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=46838   management_log_history_cache = 250
Sun Jan  7 19:37:41 2007 us=47286   management_echo_buffer_size = 100
Sun Jan  7 19:37:41 2007 us=47735   management_query_passwords = DISABLED
Sun Jan  7 19:37:41 2007 us=49179   management_hold = DISABLED
Sun Jan  7 19:37:41 2007 us=50698   management_client = DISABLED
Sun Jan  7 19:37:41 2007 us=51296   management_write_peer_info_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=51745   shared_secret_file = '/var/tmp/secret.key'
Sun Jan  7 19:37:41 2007 us=52194   key_direction = 0
Sun Jan  7 19:37:41 2007 us=52627   ciphername_defined = ENABLED
Sun Jan  7 19:37:41 2007 us=53071   ciphername = 'BF-CBC'
Sun Jan  7 19:37:41 2007 us=53520   authname_defined = ENABLED
Sun Jan  7 19:37:41 2007 us=53968   authname = 'SHA1'
Sun Jan  7 19:37:41 2007 us=54468   keysize = 0
Sun Jan  7 19:37:41 2007 us=54910   engine = DISABLED
Sun Jan  7 19:37:41 2007 us=55349   replay = ENABLED
Sun Jan  7 19:37:41 2007 us=55792   mute_replay_warnings = DISABLED
Sun Jan  7 19:37:41 2007 us=56239   replay_window = 0
Sun Jan  7 19:37:41 2007 us=56943   replay_time = 0
Sun Jan  7 19:37:41 2007 us=57441   packet_id_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=57880   use_iv = ENABLED
Sun Jan  7 19:37:41 2007 us=58750   test_crypto = DISABLED
Sun Jan  7 19:37:41 2007 us=59268   tls_server = DISABLED
Sun Jan  7 19:37:41 2007 us=59719   tls_client = DISABLED
Sun Jan  7 19:37:41 2007 us=60163   key_method = 2
Sun Jan  7 19:37:41 2007 us=60595   ca_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=61038   ca_path = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=61482   dh_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=61928   cert_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=62378   priv_key_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=62822   pkcs12_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=63315   cipher_list = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=64099   tls_verify = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=64866   tls_remote = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=65374   crl_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=65823   ns_cert_type = 0
Sun Jan  7 19:37:41 2007 us=66635   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=67101   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=67545   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=67993   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=69912   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=70395   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=70832   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=71267   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=71701   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=72255   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=72946   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=73545   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=74054   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=74618   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=75089   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=75530   remote_cert_ku[i] = 0
Sun Jan  7 19:37:41 2007 us=75969   remote_cert_eku = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=77703   tls_timeout = 2
Sun Jan  7 19:37:41 2007 us=79381   renegotiate_bytes = 0
Sun Jan  7 19:37:41 2007 us=79865   renegotiate_packets = 0
Sun Jan  7 19:37:41 2007 us=80309   renegotiate_seconds = 3600
Sun Jan  7 19:37:41 2007 us=81082   handshake_window = 60
Sun Jan  7 19:37:41 2007 us=81552   transition_window = 3600
Sun Jan  7 19:37:41 2007 us=81985   single_session = DISABLED
Sun Jan  7 19:37:41 2007 us=82417   tls_exit = DISABLED
Sun Jan  7 19:37:41 2007 us=82852   tls_auth_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=84269   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=84760   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=85211   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=86566   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=87073   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=87868   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=89034   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=89528   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=89978   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=90484   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=90942   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=91388   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=91834   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=92279   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=92721   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=93168   pkcs11_protected_authentication = DISABLED
Sun Jan  7 19:37:41 2007 us=93669   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=94126   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=94570   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=95017   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=95463   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=95909   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=96352   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=97163   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=97682   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=99040   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=99881   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=101177   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=101633   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=102080   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=102528   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=103032   pkcs11_cert_private = DISABLED
Sun Jan  7 19:37:41 2007 us=103496   pkcs11_pin_cache_period = -1
Sun Jan  7 19:37:41 2007 us=103934   pkcs11_slot_type = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=104367   pkcs11_slot = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=105070   pkcs11_id_type = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=105544   pkcs11_id = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=106162   server_network = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=106661   server_netmask = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=107415   server_bridge_ip = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=107927   server_bridge_netmask = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=109569   server_bridge_pool_start = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=110055   server_bridge_pool_end = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=110498   ifconfig_pool_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=110964   ifconfig_pool_start = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=111436   ifconfig_pool_end = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=111914   ifconfig_pool_netmask = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=112421   ifconfig_pool_persist_filename = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=113138   ifconfig_pool_persist_refresh_freq = 600
Sun Jan  7 19:37:41 2007 us=113640   n_bcast_buf = 256
Sun Jan  7 19:37:41 2007 us=114079   tcp_queue_limit = 64
Sun Jan  7 19:37:41 2007 us=114523   real_hash_size = 256
Sun Jan  7 19:37:41 2007 us=114968   virtual_hash_size = 256
Sun Jan  7 19:37:41 2007 us=115408   client_connect_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=116360   learn_address_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=116861   client_disconnect_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=117312   client_config_dir = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=117765   ccd_exclusive = DISABLED
Sun Jan  7 19:37:41 2007 us=118805   tmp_dir = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=119286   push_ifconfig_defined = DISABLED
Sun Jan  7 19:37:41 2007 us=119866   push_ifconfig_local = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=120371   push_ifconfig_remote_netmask = 0.0.0.0
Sun Jan  7 19:37:41 2007 us=121135   enable_c2c = DISABLED
Sun Jan  7 19:37:41 2007 us=121611   duplicate_cn = DISABLED
Sun Jan  7 19:37:41 2007 us=122050   cf_max = 0
Sun Jan  7 19:37:41 2007 us=122600   cf_per = 0
Sun Jan  7 19:37:41 2007 us=123042   max_clients = 1024
Sun Jan  7 19:37:41 2007 us=123480   max_routes_per_client = 256
Sun Jan  7 19:37:41 2007 us=123915   client_cert_not_required = DISABLED
Sun Jan  7 19:37:41 2007 us=124361   username_as_common_name = DISABLED
Sun Jan  7 19:37:41 2007 us=124871   auth_user_pass_verify_script = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=125333   auth_user_pass_verify_script_via_file = DISABLED
Sun Jan  7 19:37:41 2007 us=125788   port_share_host = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=126235   port_share_port = 0
Sun Jan  7 19:37:41 2007 us=126668   client = DISABLED
Sun Jan  7 19:37:41 2007 us=127104   pull = DISABLED
Sun Jan  7 19:37:41 2007 us=127543   auth_user_pass_file = '[UNDEF]'
Sun Jan  7 19:37:41 2007 us=128006 OpenVPN 2.1_rc1 mipsel-linux [SSL] [EPOLL] built on Dec 25 2006
Sun Jan  7 19:37:41 2007 us=136253 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Jan  7 19:37:41 2007 us=137267 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Jan  7 19:37:41 2007 us=139607 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Jan  7 19:37:41 2007 us=140233 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Jan  7 19:37:41 2007 us=245348 TUN/TAP device tun0 opened
Sun Jan  7 19:37:41 2007 us=246053 TUN/TAP TX queue length set to 100
Sun Jan  7 19:37:41 2007 us=246726 /sbin/ifconfig tun0 10.0.0.2 pointopoint 10.0.0.1 mtu 1500
Sun Jan  7 19:37:41 2007 us=327580 /sbin/route add -net 192.168.178.0 netmask 255.255.255.0 gw 10.0.0.1
Sun Jan  7 19:37:41 2007 us=401338 Data Channel MTU parms [ L:1546 D:1450 EF:46 EB:4 ET:0 EL:0 ]
Sun Jan  7 19:37:41 2007 us=404141 Local Options String: 'V4,dev-type tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_SERVER,ifconfig 10.0.0.1 10.0.0.2,cipher BF-CBC,auth SHA1,keysize 128,secret'
Sun Jan  7 19:37:41 2007 us=404830 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_CLIENT,ifconfig 10.0.0.2 10.0.0.1,cipher BF-CBC,auth SHA1,keysize 128,secret'
Sun Jan  7 19:37:41 2007 us=406525 Local Options hash (VER=V4): '36c79fa1'
Sun Jan  7 19:37:41 2007 us=407704 Expected Remote Options hash (VER=V4): '0eca8072'
Sun Jan  7 19:37:41 2007 us=410263 Listening for incoming TCP connection on [undef]:1194

edit: ich habe nebenbei noch einen ftpserver (bftp) und dropbear laufen. ist das schlimm?
 
Zuletzt bearbeitet:
@grobi
Ja, cool. free hab ich gesucht.

Sieht das bei Euch ähnlich knapp aus?

29.05.29 mit laufendem OVPN:
Code:
# free
              total         used         free       shared      buffers
  Mem:        30384        28772         1612            0         2556
 Swap:            0            0            0
Total:        30384        28772         1612
 
Zuletzt bearbeitet:
Crevlon schrieb:
@grobi2000:
bis zum ps befehl komm ich gar nicht mehr. wenn ich openvpn starte habe ich keine möglichkeit mehr auf eine eingabe und die box stürzt nach einer gewissen zeit ab.

...

edit: ich habe nebenbei noch einen ftpserver (bftp) und dropbear laufen. ist das schlimm?

Das wirds dann wohl auch bei dir sein. Ich hatte nur dropbear und das war schon zuviel.

Das log sieht OK aus. Nimm mal ftp (wozu eigentlich? Was haste denn für ne Box?) und dropbear raus und teste OVPN damit.
 
@risaer:
ja bei mir sieht es ähnlich aus:
Code:
# free
              total         used         free       shared      buffers
  Mem:        30384        28300         2084            0         3324
 Swap:            0            0            0
Total:        30384        28300         2084

ich hab die 7170 fon wlan (FW 29.04.29). ftp um mich von überall aus auf meine fritz box connecten zu können und dropbear für den sicheren ssh zugang per putty.
ich werde es gleich mal ausprobieren ob es klappt wenn ich beide prozesse gekilled habe. das killen müsste ja reichen oder?
 
Crevlon schrieb:
ich hab die 7170 fon wlan (FW 29.04.29). ftp um mich von überall aus auf meine fritz box connecten zu können

Die FW hat doch nen eingebauten FTP-Server. Da brauchste doch bftp gar nicht. Habs nicht getestet, aber die Verzeichnisse lassen sich doch sicherlich
so mounten/linken, dass du darauf Zugriff haben kannst.

Tja. SSH vermiss ich auch ein bisschen.

-- edit --
Ich denke, das blosse beenden reicht nicht. Du solltest die Files auch löschen.
Zumindest, wenn du sie vom RAM (/var/tmp/...) ausführst.
---------

@jack:
Soo tief sind meine Kenntnisse nu auch nicht, aber ich denke,
--disable-port-share kann man schon mal setzen. HTTPS kann die Box ja eh nicht.
--disable-plugins denke ich auch.
--disable-debug gremlin (was ist das denn) und verb > 5 nutzt - denk ich - auch niemand
--disable-management Disable management server support - tut auch nicht Not???

Die anderen weiss ich nicht.
 
Zuletzt bearbeitet:
habe nun folgende probleme, ich habe diese config auf zwei verschiedenen 7170, mit verschiedenen ip. auf die eine kann ich mich einwählen

PROBLEM bei anderen ist, dass ich keine ip für den tap zugewiesen bekomme
ich bekomme folgenden fehler

kann es sein das irgendwas beim tun erstellen falsch läuft.
auf der einen box hat die tun datei 200b -- hier bekomme ich keine ip
und auf der anderen hat sie 0b -- hier bekomme ich die ip

Code:
Sun Jan 07 20:26:46 2007 [fritzbox] Peer Connection Initiated with xxxxxxxx:1195
Sun Jan 07 20:26:47 2007 TAP-WIN32 device [OpenVPN Tapi 1] opened: \\.\Global\{4B839619-AD58-4C9E-8009-8AA7BBC2BDB7}.tap
Sun Jan 07 20:26:47 2007 Notified TAP-Win32 driver to set a DHCP IP/netmask of 192.168.69.80/255.255.255.0 on interface {4B839619-AD58-4C9E-8009-8AA7BBC2BDB7} [DHCP-serv: 192.168.69.0, lease-time: 31536000]
Sun Jan 07 20:26:47 2007 Successful ARP Flush on interface [5] {4B839619-AD58-4C9E-8009-8AA7BBC2BDB7}
Sun Jan 07 20:27:17 2007 Initialization Sequence Completed With Errors ( see http://openvpn.net/faq.html#dhcpclientserv )

die debug sieht so aus

Code:
####################################################################
#
#/usr/bin/logger "[DEBUG.CFG] 4. Starte OpenVPN-Server..."
cd /var/tmp
mkdir vpn
cd vpn
# OpenVPN holen und ausführbar machen
#/usr/bin/logger "[DEBUG.CFG] 4.1 Lade OpenVPN und Zertifikate runter..."
wget http://$serverurl$serverdir/openvpn

#Zertifikate holen
wget http://$serverurl$serverdir/fritzbox.crt
wget http://$serverurl$serverdir/ca.crt
wget http://$serverurl$serverdir/dh1024.pem
/usr/bin/logger "[DEBUG.CFG] 4.1 OpenVPN und Zertifikate heruntergeladen."

#FritzBox Config erzeugen
#/usr/bin/logger "[DEBUG.CFG] 4.2 Erzeuge FritzBox-OpenVPN Konfigurationsdatei..."
cat > "/var/tmp/vpn/fritzbox.conf" << "EOLOOP0"
# Grundsaetzliches
port 1195
proto udp
dev tap0
dev-node /var/tmp/vpn/tun
# Server-Einstellungen
mode server
tls-server
server-bridge 192.168.69.254 255.255.255.0 192.168.69.80 192.168.69.85
#server 10.0.0.0 255.255.255.0
client-to-client
# Dies ist der IP-Bereich von eurem FritzBox-LAN
push "route 192.168.69.0 255.255.255.0"
# Authentifizierung und Verschluesselung
ca /var/tmp/vpn/ca.crt
cert /var/tmp/vpn/fritzbox.crt
key /var/tmp/vpn/fritzbox.key
dh /var/tmp/vpn/dh1024.pem
auth SHA1
cipher AES-256-CBC
# Sonstiges
ping 10
push "ping 10"
ping-restart 60
push "ping-restart 60"
EOLOOP0
#/usr/bin/logger "[DEBUG.CFG] 4.2 FritzBox-OpenVPN Konfigurationsdatei erzeugt."

#FritzBox Key erzeugen
#/usr/bin/logger "[DEBUG.CFG] 4.3 FritzBox-OpenVPN Key erzeugen..."
cat > "/var/tmp/vpn/fritzbox.key" << "EOLOOP1"
-----BEGIN RSA PRIVATE KEY-----
xxxxx
-----END RSA PRIVATE KEY-----
EOLOOP1
#/usr/bin/logger "[DEBUG.CFG] 4.3 FritzBox-OpenVPN Key erzeugt."

#Dateirechte vergeben
#/usr/bin/logger "[DEBUG.CFG] 4.4 Vergebe Dateirechte für OpenVPN-Dateien..."
chmod 600 /var/tmp/vpn/fritzbox.key
chmod 600 /var/tmp/vpn/fritzbox.conf
chmod +x /var/tmp/vpn/openvpn
mknod /var/tmp/vpn/tun c 10 200
/usr/bin/logger "[DEBUG.CFG] 4.4 Dateirechte für OpenVPN-Dateien vergeben."


#OpenVPN als Daemon starten
#/usr/bin/logger "[DEBUG.CFG] 4.5 Starte OpenVPN als Daemon..."
/var/tmp/vpn/openvpn --cd /var/tmp/vpn --config fritzbox.conf --daemon
 
Zuletzt bearbeitet:
so hab es jetzt mal versucht. hab auch auch den bftp und dropbear komplett raus gelöscht.
hier der inhalt der logdatei (am ande habe ich den prozess mit STRG + C abgebrochen):

Code:
Sun Jan  7 20:45:13 2007 us=443646 Current Parameter Settings:
Sun Jan  7 20:45:13 2007 us=445443   config = './server.ovpn'
Sun Jan  7 20:45:13 2007 us=445945   mode = 0
Sun Jan  7 20:45:13 2007 us=447169   persist_config = DISABLED
Sun Jan  7 20:45:13 2007 us=447677   persist_mode = 1
Sun Jan  7 20:45:13 2007 us=448115   show_ciphers = DISABLED
Sun Jan  7 20:45:13 2007 us=448559   show_digests = DISABLED
Sun Jan  7 20:45:13 2007 us=449001   show_engines = DISABLED
Sun Jan  7 20:45:13 2007 us=449443   genkey = DISABLED
Sun Jan  7 20:45:13 2007 us=449933   key_pass_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=450537   show_tls_ciphers = DISABLED
Sun Jan  7 20:45:13 2007 us=451018   proto = 1
Sun Jan  7 20:45:13 2007 us=452501   local = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=452994   remote_list = NULL
Sun Jan  7 20:45:13 2007 us=453726   remote_random = DISABLED
Sun Jan  7 20:45:13 2007 us=454190   local_port = 1194
Sun Jan  7 20:45:13 2007 us=454628   remote_port = 1194
Sun Jan  7 20:45:13 2007 us=455063   remote_float = ENABLED
Sun Jan  7 20:45:13 2007 us=455556   ipchange = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=456123   bind_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=457030   bind_local = ENABLED
Sun Jan  7 20:45:13 2007 us=457621   dev = 'tun0'
Sun Jan  7 20:45:13 2007 us=458068   dev_type = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=458627   dev_node = '/var/tmp/tun'
Sun Jan  7 20:45:13 2007 us=459086   lladdr = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=459535   topology = 1
Sun Jan  7 20:45:13 2007 us=460083   tun_ipv6 = DISABLED
Sun Jan  7 20:45:13 2007 us=460594   ifconfig_local = '10.0.0.2'
Sun Jan  7 20:45:13 2007 us=461353   ifconfig_remote_netmask = '10.0.0.1'
Sun Jan  7 20:45:13 2007 us=461879   ifconfig_noexec = DISABLED
Sun Jan  7 20:45:13 2007 us=462428   ifconfig_nowarn = DISABLED
Sun Jan  7 20:45:13 2007 us=462902   shaper = 0
Sun Jan  7 20:45:13 2007 us=463342   tun_mtu = 1500
Sun Jan  7 20:45:13 2007 us=463783   tun_mtu_defined = ENABLED
Sun Jan  7 20:45:13 2007 us=464229   link_mtu = 1500
Sun Jan  7 20:45:13 2007 us=464666   link_mtu_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=465157   tun_mtu_extra = 0
Sun Jan  7 20:45:13 2007 us=465596   tun_mtu_extra_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=466041   fragment = 0
Sun Jan  7 20:45:13 2007 us=467857   mtu_discover_type = -1
Sun Jan  7 20:45:13 2007 us=469473   mtu_test = 0
Sun Jan  7 20:45:13 2007 us=470011   mlock = DISABLED
Sun Jan  7 20:45:13 2007 us=470457   keepalive_ping = 0
Sun Jan  7 20:45:13 2007 us=470897   keepalive_timeout = 0
Sun Jan  7 20:45:13 2007 us=471336   inactivity_timeout = 0
Sun Jan  7 20:45:13 2007 us=471822   ping_send_timeout = 15
Sun Jan  7 20:45:13 2007 us=472266   ping_rec_timeout = 120
Sun Jan  7 20:45:13 2007 us=472706   ping_rec_timeout_action = 2
Sun Jan  7 20:45:13 2007 us=473138   ping_timer_remote = DISABLED
Sun Jan  7 20:45:13 2007 us=473578   remap_sigusr1 = 0
Sun Jan  7 20:45:13 2007 us=474015   explicit_exit_notification = 0
Sun Jan  7 20:45:13 2007 us=474448   persist_tun = DISABLED
Sun Jan  7 20:45:13 2007 us=475024   persist_local_ip = DISABLED
Sun Jan  7 20:45:13 2007 us=475544   persist_remote_ip = DISABLED
Sun Jan  7 20:45:13 2007 us=475994   persist_key = DISABLED
Sun Jan  7 20:45:13 2007 us=476871   mssfix = 1450
Sun Jan  7 20:45:13 2007 us=477616   passtos = DISABLED
Sun Jan  7 20:45:13 2007 us=478081   resolve_retry_seconds = 1000000000
Sun Jan  7 20:45:13 2007 us=478522   connect_retry_seconds = 5
Sun Jan  7 20:45:13 2007 us=478964   connect_timeout = 10
Sun Jan  7 20:45:13 2007 us=479402   connect_retry_max = 0
Sun Jan  7 20:45:13 2007 us=479881   username = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=480326   groupname = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=480767   chroot_dir = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=481201   cd_dir = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=481644   writepid = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=482082   up_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=482514   down_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=482939   down_pre = DISABLED
Sun Jan  7 20:45:13 2007 us=483364   up_restart = DISABLED
Sun Jan  7 20:45:13 2007 us=484311   up_delay = DISABLED
Sun Jan  7 20:45:13 2007 us=484790   daemon = DISABLED
Sun Jan  7 20:45:13 2007 us=485585   inetd = 0
Sun Jan  7 20:45:13 2007 us=486020   log = DISABLED
Sun Jan  7 20:45:13 2007 us=487210   suppress_timestamps = DISABLED
Sun Jan  7 20:45:13 2007 us=487701   nice = 0
Sun Jan  7 20:45:13 2007 us=488121   verbosity = 4
Sun Jan  7 20:45:13 2007 us=488543   mute = 0
Sun Jan  7 20:45:13 2007 us=488967   gremlin = 0
Sun Jan  7 20:45:13 2007 us=489390   status_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=489883   status_file_version = 1
Sun Jan  7 20:45:13 2007 us=490320   status_file_update_freq = 60
Sun Jan  7 20:45:13 2007 us=490742   occ = ENABLED
Sun Jan  7 20:45:13 2007 us=491175   rcvbuf = 65536
Sun Jan  7 20:45:13 2007 us=491600   sndbuf = 65536
Sun Jan  7 20:45:13 2007 us=492027   sockflags = 0
Sun Jan  7 20:45:13 2007 us=492456   socks_proxy_server = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=492894   socks_proxy_port = 0
Sun Jan  7 20:45:13 2007 us=493889   socks_proxy_retry = DISABLED
Sun Jan  7 20:45:13 2007 us=494404   fast_io = DISABLED
Sun Jan  7 20:45:13 2007 us=494844   route_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=495277   route_default_gateway = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=495716   route_default_metric = 0
Sun Jan  7 20:45:13 2007 us=496140   route_noexec = DISABLED
Sun Jan  7 20:45:13 2007 us=497047   route_delay = 0
Sun Jan  7 20:45:13 2007 us=497502   route_delay_window = 30
Sun Jan  7 20:45:13 2007 us=497924   route_delay_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=498413   route_nopull = DISABLED
Sun Jan  7 20:45:13 2007 us=498883   route 192.168.178.0/255.255.255.0/nil/nil
Sun Jan  7 20:45:13 2007 us=499336   management_addr = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=499778   management_port = 0
Sun Jan  7 20:45:13 2007 us=500211   management_user_pass = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=500662   management_log_history_cache = 250
Sun Jan  7 20:45:13 2007 us=501375   management_echo_buffer_size = 100
Sun Jan  7 20:45:13 2007 us=501911   management_query_passwords = DISABLED
Sun Jan  7 20:45:13 2007 us=502371   management_hold = DISABLED
Sun Jan  7 20:45:13 2007 us=504587   management_client = DISABLED
Sun Jan  7 20:45:13 2007 us=507820   management_write_peer_info_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=508358   shared_secret_file = '/var/tmp/secret.key'
Sun Jan  7 20:45:13 2007 us=508804   key_direction = 0
Sun Jan  7 20:45:13 2007 us=509512   ciphername_defined = ENABLED
Sun Jan  7 20:45:13 2007 us=509988   ciphername = 'BF-CBC'
Sun Jan  7 20:45:13 2007 us=510494   authname_defined = ENABLED
Sun Jan  7 20:45:13 2007 us=510953   authname = 'SHA1'
Sun Jan  7 20:45:13 2007 us=511398   keysize = 0
Sun Jan  7 20:45:13 2007 us=511830   engine = DISABLED
Sun Jan  7 20:45:13 2007 us=512265   replay = ENABLED
Sun Jan  7 20:45:13 2007 us=512707   mute_replay_warnings = DISABLED
Sun Jan  7 20:45:13 2007 us=513157   replay_window = 0
Sun Jan  7 20:45:13 2007 us=513600   replay_time = 0
Sun Jan  7 20:45:13 2007 us=514036   packet_id_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=514532   use_iv = ENABLED
Sun Jan  7 20:45:13 2007 us=515277   test_crypto = DISABLED
Sun Jan  7 20:45:13 2007 us=515801   tls_server = DISABLED
Sun Jan  7 20:45:13 2007 us=516242   tls_client = DISABLED
Sun Jan  7 20:45:13 2007 us=517367   key_method = 2
Sun Jan  7 20:45:13 2007 us=517867   ca_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=518312   ca_path = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=518756   dh_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=519199   cert_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=519703   priv_key_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=520156   pkcs12_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=520602   cipher_list = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=521041   tls_verify = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=521485   tls_remote = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=521934   crl_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=522389   ns_cert_type = 0
Sun Jan  7 20:45:13 2007 us=522840   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=523588   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=524071   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=524517   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=524961   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=525987   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=527260   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=528166   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=530718   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=531174   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=531665   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=532113   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=532552   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=532996   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=533736   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=534206   remote_cert_ku[i] = 0
Sun Jan  7 20:45:13 2007 us=534639   remote_cert_eku = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=535084   tls_timeout = 2
Sun Jan  7 20:45:13 2007 us=535520   renegotiate_bytes = 0
Sun Jan  7 20:45:13 2007 us=536016   renegotiate_packets = 0
Sun Jan  7 20:45:13 2007 us=536884   renegotiate_seconds = 3600
Sun Jan  7 20:45:13 2007 us=537365   handshake_window = 60
Sun Jan  7 20:45:13 2007 us=537799   transition_window = 3600
Sun Jan  7 20:45:13 2007 us=538227   single_session = DISABLED
Sun Jan  7 20:45:13 2007 us=538665   tls_exit = DISABLED
Sun Jan  7 20:45:13 2007 us=539101   tls_auth_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=539546   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=540046   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=540502   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=540949   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=541686   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=542150   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=542598   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=543099   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=543550   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=543994   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=544437   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=544881   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=545322   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=545764   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=546257   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=547410   pkcs11_protected_authentication = DISABLED
Sun Jan  7 20:45:13 2007 us=547875   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=548321   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=548762   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=549206   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=550044   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=550565   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=551117   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=551588   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=552027   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=552465   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=553020   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=553469   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=554057   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=554548   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=554996   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=555552   pkcs11_cert_private = DISABLED
Sun Jan  7 20:45:13 2007 us=556012   pkcs11_pin_cache_period = -1
Sun Jan  7 20:45:13 2007 us=556966   pkcs11_slot_type = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=557710   pkcs11_slot = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=558273   pkcs11_id_type = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=558984   pkcs11_id = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=559638   server_network = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=560136   server_netmask = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=560608   server_bridge_ip = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=561082   server_bridge_netmask = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=561554   server_bridge_pool_start = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=562020   server_bridge_pool_end = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=562458   ifconfig_pool_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=562980   ifconfig_pool_start = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=563457   ifconfig_pool_end = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=563931   ifconfig_pool_netmask = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=564379   ifconfig_pool_persist_filename = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=565222   ifconfig_pool_persist_refresh_freq = 600
Sun Jan  7 20:45:13 2007 us=568116   n_bcast_buf = 256
Sun Jan  7 20:45:13 2007 us=568610   tcp_queue_limit = 64
Sun Jan  7 20:45:13 2007 us=569111   real_hash_size = 256
Sun Jan  7 20:45:13 2007 us=569567   virtual_hash_size = 256
Sun Jan  7 20:45:13 2007 us=570009   client_connect_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=570606   learn_address_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=571087   client_disconnect_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=571537   client_config_dir = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=571987   ccd_exclusive = DISABLED
Sun Jan  7 20:45:13 2007 us=572428   tmp_dir = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=572933   push_ifconfig_defined = DISABLED
Sun Jan  7 20:45:13 2007 us=573725   push_ifconfig_local = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=574225   push_ifconfig_remote_netmask = 0.0.0.0
Sun Jan  7 20:45:13 2007 us=574672   enable_c2c = DISABLED
Sun Jan  7 20:45:13 2007 us=575111   duplicate_cn = DISABLED
Sun Jan  7 20:45:13 2007 us=575551   cf_max = 0
Sun Jan  7 20:45:13 2007 us=575982   cf_per = 0
Sun Jan  7 20:45:13 2007 us=576837   max_clients = 1024
Sun Jan  7 20:45:13 2007 us=577324   max_routes_per_client = 256
Sun Jan  7 20:45:13 2007 us=577821   client_cert_not_required = DISABLED
Sun Jan  7 20:45:13 2007 us=578276   username_as_common_name = DISABLED
Sun Jan  7 20:45:13 2007 us=578719   auth_user_pass_verify_script = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=579278   auth_user_pass_verify_script_via_file = DISABLED
Sun Jan  7 20:45:13 2007 us=579750   port_share_host = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=580193   port_share_port = 0
Sun Jan  7 20:45:13 2007 us=580625   client = DISABLED
Sun Jan  7 20:45:13 2007 us=581374   pull = DISABLED
Sun Jan  7 20:45:13 2007 us=581862   auth_user_pass_file = '[UNDEF]'
Sun Jan  7 20:45:13 2007 us=582326 OpenVPN 2.1_rc1 mipsel-linux [SSL] [EPOLL] built on Dec 25 2006
Sun Jan  7 20:45:13 2007 us=590602 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Jan  7 20:45:13 2007 us=591365 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Jan  7 20:45:13 2007 us=593270 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sun Jan  7 20:45:13 2007 us=593945 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sun Jan  7 20:45:13 2007 us=692304 TUN/TAP device tun0 opened
Sun Jan  7 20:45:13 2007 us=692945 TUN/TAP TX queue length set to 100
Sun Jan  7 20:45:13 2007 us=693958 /sbin/ifconfig tun0 10.0.0.2 pointopoint 10.0.0.1 mtu 1500
Sun Jan  7 20:45:13 2007 us=769836 /sbin/route add -net 192.168.178.0 netmask 255.255.255.0 gw 10.0.0.1
Sun Jan  7 20:45:13 2007 us=836075 Data Channel MTU parms [ L:1546 D:1450 EF:46 EB:4 ET:0 EL:0 ]
Sun Jan  7 20:45:13 2007 us=839624 Local Options String: 'V4,dev-type tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_SERVER,ifconfig 10.0.0.1 10.0.0.2,cipher BF-CBC,auth SHA1,keysize 128,secret'
Sun Jan  7 20:45:13 2007 us=840104 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1546,tun-mtu 1500,proto TCPv4_CLIENT,ifconfig 10.0.0.2 10.0.0.1,cipher BF-CBC,auth SHA1,keysize 128,secret'
Sun Jan  7 20:45:13 2007 us=841417 Local Options hash (VER=V4): '36c79fa1'
Sun Jan  7 20:45:13 2007 us=842541 Expected Remote Options hash (VER=V4): '0eca8072'
Sun Jan  7 20:45:13 2007 us=843344 Listening for incoming TCP connection on [undef]:1194
Sun Jan  7 20:45:20 2007 us=48608 TCP/UDP: Closing socket
Sun Jan  7 20:45:20 2007 us=50090 /sbin/route del -net 192.168.178.0 netmask 255.255.255.0
Sun Jan  7 20:45:20 2007 us=109632 Closing TUN/TAP interface
Sun Jan  7 20:45:20 2007 us=259685 SIGINT[hard,init_instance] received, process exiting

wenn ich den prozess abbreche kann ich zwar mit den ps befehl eingeben aber openvpn läuft immer noch nicht bzw nicht mehr :) . wenn ich nicht STRG + C eingebe und mich vorher schon mit einem zweiten cmd per telnet mit der box verbunden habe kann ich keine eingaben mehr machen. so als ob die ganze box geblock wäre. und das so lange bis ich halt STRG + C eingebe.
 
@lolax:
Ich denke, du solltest mal ein paar angaben machen:

- wie sind die IP-Bereiche (müssen unterschiedlich sein)

- was verbindet sich womit (ich denke mal, das log ist von dem Windows client)

- soll sich Win mit beiden gleichzeitig verbinden? Hast du dann die richtigen Adapternamen in den jeweiligen client.conf eingestellt

- von was sind die Auszüge, die du gibst?

Nenn die doch mal FB A und FB B und schreib da was zu
 
Crevlon schrieb:
wenn ich den prozess abbreche kann ich zwar mit den ps befehl eingeben aber openvpn läuft immer noch nicht bzw nicht mehr :) . wenn ich nicht STRG + C eingebe und mich vorher schon mit einem zweiten cmd per telnet mit der box verbunden habe kann ich keine eingaben mehr machen. so als ob die ganze box geblock wäre. und das so lange bis ich halt STRG + C eingebe.

Jo. Das is auch gut so. Die Kommandozeile wartet auf das Beenden des letzten Kommandos. Da du in diesem Falle diesen Befehl nicht beenden willst
(!), empfielt es sich ein neues Fenster zu öffnen. Siehe Grundlagen der
Linux Shell ;)

Im Allgemeinen hängst du ein & hinter einen Befehl, wenn du ihn im
Hintergrund laufen lassen willst. OVPN kennt dafür auch noch --daemon.

Wie isses denn? Klappt die Verbindung? Zumindes startet er nich mehr neu, oder?

Mit den ganzen Logausgaben wirst dabei aber sicherlich während der Fehlersuche nicht viel Land sehen.

Also einfach: neues Fenster!

--
Wie isses denn? Klappt ne Verbindung? Auf jeden bootet die Box nicht mehr neu, oder?
 
mit dem & zeichen hab ich es schon getestet. da tut sich auch nichts anderes. also es läuft nicht im hintergrund. ich machs jetzt mal mit --daemon.
 
so habs jetzt auch mal mit dem --daemon ausprobiert. außer dass ich keine ausgabe mehr hatte hat sich nichts geändert. ich konnte weiterhin keine eingaben (z.B.: "ps") machen. also nichts mit "im hintergrund laufen".
 
Wie gesagt: Benutze ein zweites Fenster. Erstmal muss die Verbindung
klappen, dann kannst du dich immer noch mit der Hintergrundausführung
beschäftigen.
 
klappt das auch mit zwei windows cmd fenstern?
das hatte ich nämlich schon mal ausprobiert und ich konnte auch mit dem zweiten fenster nichts mehr schreiben.
 
klar. . . . . .
 

Neueste Beiträge

Statistik des Forums

Themen
244,695
Beiträge
2,216,690
Mitglieder
371,314
Neuestes Mitglied
Gjorstn
Holen Sie sich 3CX - völlig kostenlos!
Verbinden Sie Ihr Team und Ihre Kunden Telefonie Livechat Videokonferenzen

Gehostet oder selbst-verwaltet. Für bis zu 10 Nutzer dauerhaft kostenlos. Keine Kreditkartendetails erforderlich. Ohne Risiko testen.

3CX
Für diese E-Mail-Adresse besteht bereits ein 3CX-Konto. Sie werden zum Kundenportal weitergeleitet, wo Sie sich anmelden oder Ihr Passwort zurücksetzen können, falls Sie dieses vergessen haben.