2014:05:29-14:55:23 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 OPTIONS IMPORT: reading client specific options from: /tmp/openvpn_cc_8d114810e9ff94eff42bade24efe9a96.tmp 2014:05:29-14:55:23 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 MULTI: Learn: 10.211.253.90 -> mark.brown/94.197.121.180:50142 2014:05:29-14:55:23 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 MULTI: primary virtual IP for mark.brown/94.197.121.180:50142: 10.211.253.90 2014:05:29-14:55:26 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 PUSH: Received control message: 'PUSH_REQUEST' 2014:05:29-14:55:26 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 send_push_reply(): safe_cap=940 2014:05:29-14:55:26 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 SENT CONTROL [mark.brown]: 'PUSH_REPLY,route 10.211.253.81,topology net30,ping 10,ping-restart 120,route 10.202.0.0 255.255.0.0,route 10.201.0.0 255.255.0.0,route 10.240.41.0 255.255.255.0,route 10.240.1.0 255.255.255.0,route 10.240.150.0 255.255.255.0,route 10.240.9.0 255.255.255.0,route 10.240.51.0 255.255.255.0,ifconfig 10.211.253.90 10.211.253.89' (status=1) 2014:05:29-15:04:10 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 Connection reset, restarting [0] 2014:05:29-15:04:10 rugast openvpn[4612]: mark.brown/94.197.121.180:50142 SIGUSR1[soft,connection-reset] received, client-instance restarting 2014:05:29-15:04:10 rugast openvpn[4612]: id="2202" severity="info" sys="SecureNet" sub="vpn" event="Connection terminated" username="mark.brown" variant="ssl" srcip="94.197.121.180" virtual_ip="10.211.253.90" 2014:05:29-15:04:10 rugast openvpn[4612]: PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_CLIENT_DISCONNECT status=0 2014:05:29-15:04:20 rugast openvpn[4612]: TCP connection established with [AF_INET]94.197.121.180:10171 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:04:21 rugast openvpn[4612]: 94.197.121.180:10171 TLS: Initial packet from [AF_INET]94.197.121.180:10171 (via [AF_INET]91.236.18.4:443), sid=52014ab1 6d062671 2014:05:29-15:04:24 rugast openvpn[4612]: 94.197.121.180:10171 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Mark Brown, emailAddress=mark.brown@sfl.co.uk 2014:05:29-15:04:24 rugast openvpn[4612]: 94.197.121.180:10171 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:04:24 rugast openvpn[4612]: 94.197.121.180:10171 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:04:24 rugast openvpn[4612]: 94.197.121.180:10171 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Mark Brown, emailAddress=mark.brown@sfl.co.uk 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_AUTH_USER_PASS_VERIFY status=2 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 TLS: Username/Password authentication deferred for username 'mark.brown' [CN SET] 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA 2014:05:29-15:04:25 rugast openvpn[4612]: 94.197.121.180:10171 [mark.brown] Peer Connection Initiated with [AF_INET]94.197.121.180:10171 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 OPTIONS IMPORT: reading client specific options from: /etc/openvpn/conf.d/mark.brown 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 MULTI_sva: pool returned IPv4=10.211.253.90, IPv6=(Not enabled) 2014:05:29-15:04:25 rugast openvpn[4612]: id="2201" severity="info" sys="SecureNet" sub="vpn" event="Connection started" username="mark.brown" variant="ssl" srcip="94.197.121.180" virtual_ip="10.211.253.90" 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_CLIENT_CONNECT status=0 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 OPTIONS IMPORT: reading client specific options from: /tmp/openvpn_cc_b985b663386863180c168adc4a03a053.tmp 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 MULTI: Learn: 10.211.253.90 -> mark.brown/94.197.121.180:10171 2014:05:29-15:04:25 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 MULTI: primary virtual IP for mark.brown/94.197.121.180:10171: 10.211.253.90 2014:05:29-15:04:28 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 PUSH: Received control message: 'PUSH_REQUEST' 2014:05:29-15:04:28 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 send_push_reply(): safe_cap=940 2014:05:29-15:04:28 rugast openvpn[4612]: mark.brown/94.197.121.180:10171 SENT CONTROL [mark.brown]: 'PUSH_REPLY,route 10.211.253.81,topology net30,ping 10,ping-restart 120,route 10.202.0.0 255.255.0.0,route 10.201.0.0 255.255.0.0,route 10.240.41.0 255.255.255.0,route 10.240.1.0 255.255.255.0,route 10.240.150.0 255.255.255.0,route 10.240.9.0 255.255.255.0,route 10.240.51.0 255.255.255.0,ifconfig 10.211.253.90 10.211.253.89' (status=1) 2014:05:29-15:09:24 rugast openvpn[4612]: TCP connection established with [AF_INET]81.137.218.119:54961 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:09:25 rugast openvpn[4612]: 81.137.218.119:54961 TLS: Initial packet from [AF_INET]81.137.218.119:54961 (via [AF_INET]91.236.18.4:443), sid=9a75213d 5d49131c 2014:05:29-15:09:28 rugast openvpn[4612]: 81.137.218.119:54961 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Peter Heath, emailAddress=peter.heath@sfl.co.uk 2014:05:29-15:09:28 rugast openvpn[4612]: 81.137.218.119:54961 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:09:28 rugast openvpn[4612]: 81.137.218.119:54961 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:09:28 rugast openvpn[4612]: 81.137.218.119:54961 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Peter Heath, emailAddress=peter.heath@sfl.co.uk 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_AUTH_USER_PASS_VERIFY status=2 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 TLS: Username/Password authentication deferred for username 'peter.heath' [CN SET] 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA 2014:05:29-15:09:29 rugast openvpn[4612]: 81.137.218.119:54961 [peter.heath] Peer Connection Initiated with [AF_INET]81.137.218.119:54961 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 OPTIONS IMPORT: reading client specific options from: /etc/openvpn/conf.d/peter.heath 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 MULTI_sva: pool returned IPv4=10.211.253.86, IPv6=(Not enabled) 2014:05:29-15:09:29 rugast openvpn[4612]: id="2201" severity="info" sys="SecureNet" sub="vpn" event="Connection started" username="peter.heath" variant="ssl" srcip="81.137.218.119" virtual_ip="10.211.253.86" 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_CLIENT_CONNECT status=0 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 OPTIONS IMPORT: reading client specific options from: /tmp/openvpn_cc_d2fac205fa2dfec5c33ba414b0b7fe90.tmp 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 MULTI: Learn: 10.211.253.86 -> peter.heath/81.137.218.119:54961 2014:05:29-15:09:29 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 MULTI: primary virtual IP for peter.heath/81.137.218.119:54961: 10.211.253.86 2014:05:29-15:09:31 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 PUSH: Received control message: 'PUSH_REQUEST' 2014:05:29-15:09:31 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 send_push_reply(): safe_cap=940 2014:05:29-15:09:31 rugast openvpn[4612]: peter.heath/81.137.218.119:54961 SENT CONTROL [peter.heath]: 'PUSH_REPLY,route 10.211.253.81,topology net30,ping 10,ping-restart 120,route 10.202.0.0 255.255.0.0,route 10.201.0.0 255.255.0.0,route 10.240.41.0 255.255.255.0,route 10.240.1.0 255.255.255.0,route 10.240.150.0 255.255.255.0,route 10.240.9.0 255.255.255.0,route 10.240.51.0 255.255.255.0,dhcp-option DNS 8.8.8.8,ifconfig 10.211.253.86 10.211.253.85' (status=1) 2014:05:29-15:10:17 rugast openvpn[4612]: TCP connection established with [AF_INET]80.87.30.5:18731 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:10:18 rugast openvpn[4612]: 80.87.30.5:18731 TLS: Initial packet from [AF_INET]80.87.30.5:18731 (via [AF_INET]91.236.18.4:443), sid=23b272fa d750be1a 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Alec Davis, emailAddress=alec.davis@hubwise.co.uk 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Alec Davis, emailAddress=alec.davis@hubwise.co.uk 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_AUTH_USER_PASS_VERIFY status=2 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 TLS: Username/Password authentication deferred for username 'alec.davis' [CN SET] 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:10:19 rugast openvpn[4612]: 80.87.30.5:18731 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:10:20 rugast openvpn[4612]: 80.87.30.5:18731 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA 2014:05:29-15:10:20 rugast openvpn[4612]: 80.87.30.5:18731 [alec.davis] Peer Connection Initiated with [AF_INET]80.87.30.5:18731 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:10:20 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 OPTIONS IMPORT: reading client specific options from: /etc/openvpn/conf.d/alec.davis 2014:05:29-15:10:20 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 MULTI: no free --ifconfig-pool addresses are available 2014:05:29-15:10:20 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_CLIENT_CONNECT status=1 2014:05:29-15:10:20 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 PLUGIN_CALL: plugin function PLUGIN_CLIENT_CONNECT failed with status 1: /usr/lib/openvpn/plugins/openvpn-plugin-utm.so 2014:05:29-15:10:20 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 WARNING: client-connect plugin call failed 2014:05:29-15:10:22 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 PUSH: Received control message: 'PUSH_REQUEST' 2014:05:29-15:10:22 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 Delayed exit in 5 seconds 2014:05:29-15:10:22 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 SENT CONTROL [alec.davis]: 'AUTH_FAILED' (status=1) 2014:05:29-15:10:22 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 Connection reset, restarting [0] 2014:05:29-15:10:22 rugast openvpn[4612]: alec.davis/80.87.30.5:18731 SIGUSR1[soft,connection-reset] received, client-instance restarting 2014:05:29-15:10:32 rugast openvpn[4612]: TCP connection established with [AF_INET]80.87.30.5:11780 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:10:33 rugast openvpn[4612]: 80.87.30.5:11780 TLS: Initial packet from [AF_INET]80.87.30.5:11780 (via [AF_INET]91.236.18.4:443), sid=41a0e014 23ead9b1 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Alec Davis, emailAddress=alec.davis@hubwise.co.uk 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 VERIFY OK: depth=1, C=uk, L=rugby, O=sTechnology, CN=sTechnology VPN CA, emailAddress=technical@hubwise.co.uk 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 VERIFY OK: depth=0, C=uk, L=rugby, O=sTechnology, CN=Alec Davis, emailAddress=alec.davis@hubwise.co.uk 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_AUTH_USER_PASS_VERIFY status=2 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 TLS: Username/Password authentication deferred for username 'alec.davis' [CN SET] 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA 2014:05:29-15:10:34 rugast openvpn[4612]: 80.87.30.5:11780 [alec.davis] Peer Connection Initiated with [AF_INET]80.87.30.5:11780 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:10:34 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 OPTIONS IMPORT: reading client specific options from: /etc/openvpn/conf.d/alec.davis 2014:05:29-15:10:34 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 MULTI: no free --ifconfig-pool addresses are available 2014:05:29-15:10:34 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 PLUGIN_CALL: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so/PLUGIN_CLIENT_CONNECT status=1 2014:05:29-15:10:34 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 PLUGIN_CALL: plugin function PLUGIN_CLIENT_CONNECT failed with status 1: /usr/lib/openvpn/plugins/openvpn-plugin-utm.so 2014:05:29-15:10:34 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 WARNING: client-connect plugin call failed 2014:05:29-15:10:37 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 PUSH: Received control message: 'PUSH_REQUEST' 2014:05:29-15:10:37 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 Delayed exit in 5 seconds 2014:05:29-15:10:37 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 SENT CONTROL [alec.davis]: 'AUTH_FAILED' (status=1) 2014:05:29-15:10:37 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 Connection reset, restarting [0] 2014:05:29-15:10:37 rugast openvpn[4612]: alec.davis/80.87.30.5:11780 SIGUSR1[soft,connection-reset] received, client-instance restarting 2014:05:29-15:10:42 rugast openvpn[4612]: TCP connection established with [AF_INET]80.87.30.5:12739 (via [AF_INET]91.236.18.4:443) 2014:05:29-15:10:43 rugast openvpn[4612]: 80.87.30.5:12739 TLS: Initial packet from [AF_INET]80.87.30.5:12739 (via [AF_INET]91.236.18.4:443), sid=9cee9b2c 51a93c1c 2014:05:29-15:11:10 rugast openvpn[4612]: 80.87.30.5:12739 Connection reset, restarting [0] 2014:05:29-15:11:10 rugast openvpn[4612]: 80.87.30.5:12739 SIGUSR1[soft,connection-reset] received, client-instance restarting