OpenVPN für LAN-Kopplung mit 2x Fritz!Box 7270

U

unisys

Guest
Hallo!

Ich weiss, dass das Thema "LAN-Kopplung" schon öfter durchgekaut worden ist, doch habe ich die Lösung für mein Problem nicht konkret finden können:

Fritzbox 7270 Nr. 1 (Server)
----------------------------------

Interne Netzwerkkonfiguration: 192.168.1.1 / 255.255.255.0

Code:
#  OpenVPN 2.1 Config, Fri Jul 17 16:25:01 CEST 2009
proto udp
dev tun
secret /tmp/flash/static.key
port 5000
ifconfig 10.8.0.1 10.8.0.2
tun-mtu 1500
mssfix
log /var/tmp/debug_openvpn.out
verb 8
daemon
cipher BF-CBC
chroot /tmp/openvpn
user openvpn
group openvpn
persist-tun
persist-key
Startlog von OpenVPN:

Code:
Fri Jul 17 16:43:02 2009 us=570891 OpenVPN 2.1_rc18 mipsel-linux [SSL] [LZO2] [EPOLL] built on Jul 17 2009
Fri Jul 17 16:43:02 2009 us=572074 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Fri Jul 17 16:43:02 2009 us=575103 WARNING: file '/tmp/flash/static.key' is group or others accessible
Fri Jul 17 16:43:02 2009 us=576551 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Fri Jul 17 16:43:02 2009 us=576956 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri Jul 17 16:43:02 2009 us=577973 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Fri Jul 17 16:43:02 2009 us=578332 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri Jul 17 16:43:02 2009 us=599735 TUN/TAP device tun0 opened
Fri Jul 17 16:43:02 2009 us=600124 TUN/TAP TX queue length set to 100
Fri Jul 17 16:43:02 2009 us=600665 /sbin/ifconfig tun0 10.8.0.1 pointopoint 10.8.0.2 mtu 1500
Fri Jul 17 16:43:02 2009 us=619696 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:4 ET:0 EL:0 ]
Fri Jul 17 16:43:02 2009 us=622518 chroot to '/tmp/openvpn' and cd to '/' succeeded
Fri Jul 17 16:43:02 2009 us=623107 GID set to openvpn
Fri Jul 17 16:43:02 2009 us=623438 UID set to openvpn
Fri Jul 17 16:43:02 2009 us=625452 Socket Buffers: R=[108544->131072] S=[108544->131072]
Fri Jul 17 16:43:02 2009 us=625794 UDPv4 link local (bound): [undef]:5000
Fri Jul 17 16:43:02 2009 us=626037 UDPv4 link remote: [undef]
Fri Jul 17 16:43:12 2009 us=251197 UDPv4 READ [76] from 85.127.167.16:1036:  DATA len=76
Fri Jul 17 16:43:12 2009 us=252040 Peer Connection Initiated with 85.127.167.16:1036
Fri Jul 17 16:43:12 2009 us=252380 Initialization Sequence Completed
Fri Jul 17 16:43:12 2009 us=256047 UDPv4 READ [92] from 85.127.167.16:1036:  DATA len=92
Fri Jul 17 16:43:13 2009 us=71850 UDPv4 READ [92] from 85.127.167.16:1036:  DATA len=92

Fritzbox 7270 Nr. 2 (Client)
----------------------------------

Interne Netzwerkkonfiguration: 192.168.2.1 / 255.255.255.0

Code:
#  OpenVPN 2.1 Config, Fri Jul 17 16:40:29 CEST 2009
proto udp
dev tun
secret /tmp/flash/static.key
remote meinhostname.selfip.com 5000
nobind
ifconfig 10.8.0.2 10.8.0.1
tun-mtu 1500
mssfix
log /var/tmp/debug_openvpn.out
verb 8
daemon
cipher BF-CBC
chroot /tmp/openvpn
user openvpn
group openvpn
persist-tun
persist-key
Startlog von OpenVPN:

Code:
Fri Jul 17 16:43:21 2009 us=95484 OpenVPN 2.1_rc18 mipsel-linux [SSL] [LZO2] [EPOLL] built on Jul 17 2009
Fri Jul 17 16:43:21 2009 us=96997 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Fri Jul 17 16:43:21 2009 us=98845 WARNING: file '/tmp/flash/static.key' is group or others accessible
Fri Jul 17 16:43:21 2009 us=100061 Static Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Fri Jul 17 16:43:21 2009 us=100511 Static Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri Jul 17 16:43:21 2009 us=101544 Static Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Fri Jul 17 16:43:21 2009 us=101917 Static Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Fri Jul 17 16:43:21 2009 us=150619 TUN/TAP device tun0 opened
Fri Jul 17 16:43:21 2009 us=151042 TUN/TAP TX queue length set to 100
Fri Jul 17 16:43:21 2009 us=151611 /sbin/ifconfig tun0 10.8.0.2 pointopoint 10.8.0.1 mtu 1500
Fri Jul 17 16:43:21 2009 us=171532 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:4 ET:0 EL:0 ]
Fri Jul 17 16:43:21 2009 us=175880 chroot to '/tmp/openvpn' and cd to '/' succeeded
Fri Jul 17 16:43:21 2009 us=176945 GID set to openvpn
Fri Jul 17 16:43:21 2009 us=177349 UID set to openvpn
Fri Jul 17 16:43:21 2009 us=177760 Socket Buffers: R=[108544->131072] S=[108544->131072]
Fri Jul 17 16:43:21 2009 us=178078 UDPv4 link local: [undef]
Fri Jul 17 16:43:21 2009 us=178556 UDPv4 link remote: 85.127.167.118:5000
Fri Jul 17 16:43:21 2009 us=187665 UDPv4 WRITE [76] to 85.127.167.118:5000:  DATA len=76
Fri Jul 17 16:43:21 2009 us=190917 UDPv4 WRITE [92] to 85.127.167.118:5000:  DATA len=92
Fri Jul 17 16:43:22 2009 us=7396 UDPv4 WRITE [92] to 85.127.167.118:5000:  DATA len=92
Fri Jul 17 16:43:29 2009 us=121180 UDPv4 READ [92] from 85.127.167.118:5000:  DATA len=92
Fri Jul 17 16:43:29 2009 us=121925 Peer Connection Initiated with 85.127.167.118:5000
Fri Jul 17 16:43:29 2009 us=122258 Initialization Sequence Completed
Fri Jul 17 16:45:26 2009 us=170722 UDPv4 WRITE [76] to 85.127.167.118:5000:  DATA len=76
Ich kann von der Serverseite nur die 10.8.0.1 (also die virtuelle IP des Tunnels auf Serverseite) pingen, aber nicht die 10.8.0.2 (virtuelle IP des Tunnels auf Clientseite).

Was mach ich bitte da nur falsch? *seufz*
 
Holen Sie sich 3CX - völlig kostenlos!
Verbinden Sie Ihr Team und Ihre Kunden Telefonie Livechat Videokonferenzen

Gehostet oder selbst-verwaltet. Für bis zu 10 Nutzer dauerhaft kostenlos. Keine Kreditkartendetails erforderlich. Ohne Risiko testen.

3CX
Für diese E-Mail-Adresse besteht bereits ein 3CX-Konto. Sie werden zum Kundenportal weitergeleitet, wo Sie sich anmelden oder Ihr Passwort zurücksetzen können, falls Sie dieses vergessen haben.