Von einem Windows-client aus (auf dem habe ich die gleichen key, cert und ca Sachen) funktioniert es nicht.
Bekomme folgende Fehlermeldung:
Code: Alles auswählen
Thu Oct 30 10:53:22 2008 Re-using SSL/TLS context
Thu Oct 30 10:53:22 2008 LZO compression initialized
Thu Oct 30 10:53:22 2008 WARNING: normally if you use --mssfix and/or --fragment
, you should also set --tun-mtu 1500 (currently it is 1492)
Thu Oct 30 10:53:22 2008 Control Channel MTU parms [ L:1554 D:138 EF:38 EB:0 ET:
0 EL:0 ]
Thu Oct 30 10:53:22 2008 Data Channel MTU parms [ L:1554 D:1300 EF:62 EB:135 ET:
0 EL:0 AF:3/1 ]
Thu Oct 30 10:53:22 2008 Fragmentation MTU parms [ L:1554 D:1300 EF:61 EB:135 ET
:1 EL:0 AF:3/1 ]
Thu Oct 30 10:53:22 2008 Local Options hash (VER=V4): 'a9557fc3'
Thu Oct 30 10:53:22 2008 Expected Remote Options hash (VER=V4): '3e1c4603'
Thu Oct 30 10:53:22 2008 UDPv4 link local: [undef]
Thu Oct 30 10:53:22 2008 UDPv4 link remote: 80.116.111.226:65357
Thu Oct 30 10:53:22 2008 TLS: Initial packet from 80.116.111.226:65357, sid=5d44
2614 09062c2b
Thu Oct 30 10:53:23 2008 VERIFY OK: depth=1, /C=de/ST=NRW/L=Home-Server/O=Geb_xC
3_xA4udetechnik_Name/OU=Administration/CN=Daniel_Name/emailAddress=danie
l@Name.de
Thu Oct 30 10:53:23 2008 VERIFY X509NAME ERROR: /C=de/ST=NRW/L=Home-Server/O=Geb
_xC3_xA4udetechnik-Name/OU=Administration/CN=Daniel_Name/emailAddress=da
niel@Name.de, must be server
Thu Oct 30 10:53:23 2008 TLS_ERROR: BIO read tls_read_plaintext error: error:140
90086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Thu Oct 30 10:53:23 2008 TLS Error: TLS object -> incoming plaintext read error
Thu Oct 30 10:53:23 2008 TLS Error: TLS handshake failed
Thu Oct 30 10:53:23 2008 TCP/UDP: Closing socket
Thu Oct 30 10:53:23 2008 SIGUSR1[soft,tls-error] received, process restarting
Thu Oct 30 10:53:23 2008 Restart pause, 2 second(s)
Thu Oct 30 10:53:25 2008 IMPORTANT: OpenVPN's default port number is now 1194, b
ased on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earl
ier used 5000 as the default port.
Thu Oct 30 10:53:25 2008 Re-using SSL/TLS context
Thu Oct 30 10:53:25 2008 LZO compression initialized
Thu Oct 30 10:53:25 2008 WARNING: normally if you use --mssfix and/or --fragment
, you should also set --tun-mtu 1500 (currently it is 1492)
Thu Oct 30 10:53:25 2008 Control Channel MTU parms [ L:1554 D:138 EF:38 EB:0 ET:
0 EL:0 ]
Thu Oct 30 10:53:25 2008 Data Channel MTU parms [ L:1554 D:1300 EF:62 EB:135 ET:
0 EL:0 AF:3/1 ]
Thu Oct 30 10:53:25 2008 Fragmentation MTU parms [ L:1554 D:1300 EF:61 EB:135 ET
:1 EL:0 AF:3/1 ]
Thu Oct 30 10:53:25 2008 Local Options hash (VER=V4): 'a9557fc3'
Thu Oct 30 10:53:25 2008 Expected Remote Options hash (VER=V4): '3e1c4603'
Thu Oct 30 10:53:25 2008 UDPv4 link local: [undef]
Thu Oct 30 10:53:25 2008 UDPv4 link remote: 80.116.111.226:65357
Thu Oct 30 10:53:25 2008 TLS: Initial packet from 80.116.111.226:65357, sid=04f4
8a56 bbc3681e
Thu Oct 30 10:53:25 2008 VERIFY OK: depth=1, /C=de/ST=NRW/L=Home-Server/O=Geb_xC
3_xA4udetechnik_Name/OU=Administration/CN=Daniel_Name/emailAddress=danie
l@Name.de
Thu Oct 30 10:53:25 2008 VERIFY X509NAME ERROR: /C=de/ST=NRW/L=Home-Server/O=Geb
_xC3_xA4udetechnik-Name/OU=Administration/CN=Daniel_Name/emailAddress=da
niel@Name.de, must be server
Thu Oct 30 10:53:25 2008 TLS_ERROR: BIO read tls_read_plaintext error: error:140
90086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Thu Oct 30 10:53:25 2008 TLS Error: TLS object -> incoming plaintext read error
Thu Oct 30 10:53:25 2008 TLS Error: TLS handshake failed
Thu Oct 30 10:53:25 2008 TCP/UDP: Closing socket
Thu Oct 30 10:53:25 2008 SIGUSR1[soft,tls-error] received, process restarting
Thu Oct 30 10:53:25 2008 Restart pause, 2 second(s)
...stehe immer wieder vor neuen Problemen... ;-(