OpenVPN pomoć

poruka: 7
|
čitano: 4.916
|
moderatori: Lazarus Long, pirat, XXX-Man, DrNasty, vincimus
1
+/- sve poruke
ravni prikaz
starije poruke gore
14 godina
neaktivan
offline
OpenVPN pomoć

Ako se netko kuži u konfiguracijske fajlove server/client u OpenVPN u pliz se javite pa da vas pitam par pitanja..

 
0 0 hvala 0
13 godina
offline
OpenVPN pomoć

Pozdrav. Moram za početak reći da sam samouk oko mrežnih stvari pa pojašnjenja molim što jednostavnija za shvatiti nekome tko ne zna a želi naučiti. Pokušavam prateći neke tutoriale po netu kreirati openvpn server na windows računalu te ostvariti spajanje sa drugog računala. Čisto da učim. Ne uspjeva mi baš (u smislu da napravim sve ali ne uspijem ili pokrenuti server ili ako i uspijem ne uspjevam se spojiti sa drugog računala) pa ako ima neka dobra duša da se razumije i voljna je dati savjet  kako da ostvarim to što sam zamislio. Neke easy to folow upute.

Poruka je uređivana zadnji put pet 12.8.2022 18:41 (display name ivo).
Moj PC  
0 0 hvala 0
23 mjeseca
protjeran
offline
Re: OpenVPN pomoć
Šta kaže log? Šta se desi kad ga pokreneš?
13 godina
offline
OpenVPN pomoć

Uspio sam ga pokrenuti na jednom računalu ali je javljao grešku da su svi TAP6 adapteri zauzeti ili tako nešto, to sam našao na netu da moram u mrežnim uređajimi disable/enable naraviti za OpenVPN TAP-Windows6 i onda ga uspijem pokrenuti.

 

Isti tutorial slijedim i da server podignem na Virtualci, sve isto napravim ali tamo ne mogu ni pokrenuti server, javlja: OpenVPN exited with error: exit code = 1.

 

Server log:

 

2022-08-12 20:32:30 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2022-08-12 20:32:30 WARNING: --topology net30 support for server configs with IPv4 pools will be removed in a future release. Please migrate to --topology subnet as soon as possible.
2022-08-12 20:32:30 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2022-08-12 20:32:30 OpenVPN 2.5.7 Windows-MSVC [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on May 27 2022
2022-08-12 20:32:30 Windows version 10.0 (Windows 10 or greater) 64bit
2022-08-12 20:32:30 library versions: OpenSSL 1.1.1o  3 May 2022, LZO 2.10
2022-08-12 20:32:30 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x.  Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.
2022-08-12 20:32:30 Diffie-Hellman initialized with 2048 bit key
2022-08-12 20:32:30 interactive service msg_channel=0
2022-08-12 20:32:30 open_tun
2022-08-12 20:32:30 tap-windows6 device [OpenVPN TAP-Windows6] opened
2022-08-12 20:32:30 TAP-Windows Driver Version 9.24
2022-08-12 20:32:30 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.20.30.1/255.255.255.252 on interface {85F2693C-FBF3-42A8-9822-1BD806AA9379} [DHCP-serv: 10.20.30.2, lease-time: 31536000]
2022-08-12 20:32:30 Sleeping for 10 seconds...
2022-08-12 20:32:40 Successful ARP Flush on interface [13] {85F2693C-FBF3-42A8-9822-1BD806AA9379}
2022-08-12 20:32:40 IPv4 MTU set to 1500 on interface 13 using SetIpInterfaceEntry()
2022-08-12 20:32:40 C:\Windows\system32\route.exe ADD 10.20.30.0 MASK 255.255.255.0 10.20.30.2
2022-08-12 20:32:40 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=25 and dwForwardType=4
2022-08-12 20:32:40 Route addition via IPAPI succeeded [adaptive]
2022-08-12 20:32:40 Could not determine IPv4/IPv6 protocol. Using AF_INET6
2022-08-12 20:32:40 Socket Buffers: R=[65536->65536] S=[65536->65536]
2022-08-12 20:32:40 setsockopt(IPV6_V6ONLY=0)
2022-08-12 20:32:40 UDPv6 link local (bound): [AF_INET6][undef]:1194
2022-08-12 20:32:40 UDPv6 link remote: [AF_UNSPEC]
2022-08-12 20:32:40 MULTI: multi_init called, r=256 v=256
2022-08-12 20:32:40 IFCONFIG POOL IPv4: base=10.20.30.4 size=62
2022-08-12 20:32:40 IFCONFIG POOL LIST
2022-08-12 20:32:40 Initialization Sequence Completed
2022-08-12 20:32:41 C:\Windows\system32\route.exe DELETE 10.20.30.0 MASK 255.255.255.0 10.20.30.2
2022-08-12 20:32:41 Route deletion via IPAPI succeeded [adaptive]
2022-08-12 20:32:41 Closing TUN/TAP interface
2022-08-12 20:32:41 TAP: DHCP address released
2022-08-12 20:32:41 SIGTERM[hard,] received, process exiting



Upute po kojima sam radio server:

 

1. Preuzemem i instaliram OpenVPN kao admin s tim da kliknem na advanced i instaliram sve.

2. pokrenem cmd kao admin i odem do putanje: C:\Program Files\OpenVPN\easy-rsa gdje pokrenem EasyRSA-Start.bat

3. Pišem naredbe:

./easyrsa init-pki
./easyrsa build-ca nopass
./easyrsa build-server-full server nopass
./easyrsa gen-dh
./easyrsa build-client-full client01 nopass

4. generirane certifikate kopiram u mapu koju sam nazvao server, i to iz:

C:\Program Files\OpenVPN\easy-rsa\pki - ca.crt i dh.pem
C:\Program Files\OpenVPN\easy-rsa\pki\issued - server.crt
C:\Program Files\OpenVPN\easy-rsa\pki\private - server.key

5. Te 4 datoteke iz 4. koraka kopiram u mape C:\Program Files\OpenVPN\config i C:\Program Files\OpenVPN\config-auto

6. U notepadu kreiram config i spremam ga kao server.ovpn u C:\Program Files\OpenVPN\config i C:\Program Files\OpenVPN\config-auto

port 1194
proto udp
dev tun

ca ca.crt
cert server.crt
key server.key
dh dh.pem

server 10.20.30.0 255.255.255.0
ifconfig-pool-persist ipp.txt

keepalive 10 120

comp-lzo

persist-key
persist-tun

status openvpn-status.log

verb 3

7. propuštam u windows firewallu port 1194

8. u routeru forwardam port 1194 na statički ip koji sam postavio na računalu gdje instaliram ovpn server.

Moj PC  
0 0 hvala 0
16 godina
neaktivan
offline
Re: OpenVPN pomoć
U svojoj .ovpn datoteci promijeni šifru linije AES-128-CBC u data-ciphers AES-128-CBC
8817,468 elektronskih cijevi,7,200 kristalnih dioda 1,500 releja,70,000 otpornika 10,000 kondenzatora,5 milijuna ručno zalemljenih spojeva,težina: 30 tona veličina opreme (~) 2.4 m x 0.9 m x 30.5 m
13 godina
offline
Re: OpenVPN pomoć

Oprosti ali ne vidim gdje se to nalazi uopće? U toj server.ovpn datoteci koju sam kreirao? Nemam taj podatak u njoj uopće. Napravljena je prema ovome što sam gore napisao pod korak 6.

 

Ali da, koliko sam do sada skužio poanta svega je složiti tu config datoteku... Taj dio mi nije skroz jasan.

Poruka je uređivana zadnji put pet 12.8.2022 21:23 (display name ivo).
16 godina
neaktivan
offline
Re: OpenVPN pomoć
display name ivo kaže...

Oprosti ali ne vidim gdje se to nalazi uopće? U toj server.ovpn datoteci koju sam kreirao? Nemam taj podatak u njoj uopće. Napravljena je prema ovome što sam gore napisao pod korak 6.

 

Ali da, koliko sam do sada skužio poanta svega je složiti tu config datoteku... Taj dio mi nije skroz jasan.

 Mislim da trebaš pogledati ovaj link.

8817,468 elektronskih cijevi,7,200 kristalnih dioda 1,500 releja,70,000 otpornika 10,000 kondenzatora,5 milijuna ručno zalemljenih spojeva,težina: 30 tona veličina opreme (~) 2.4 m x 0.9 m x 30.5 m
1
Nova poruka
E-mail:
Lozinka:
 
vrh stranice