Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Can't Connect VPN

Hi there. 

Hope you are doing good. I cant connect my vpn in Jordan Country. I've tried with different users with different laptops but it isn't working for one of our client. 

Please check this I've attached the logs that are getting on that  particular client. please check its very urgent.

Thank you.

Regards,

James Almeda.

Thu Sep 09 17:01:03 2021 OpenVPN 2.3.8 i686-w64-mingw32 [SSL (OpenSSL)] [LZO] [IPv6] built on Jul  3 2017
Thu Sep 09 17:01:03 2021 library versions: OpenSSL 1.0.2l  25 May 2017, LZO 2.09
Enter Management Password:
Thu Sep 09 17:01:03 2021 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Thu Sep 09 17:01:03 2021 Need hold release from management interface, waiting...
Thu Sep 09 17:01:03 2021 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Thu Sep 09 17:01:03 2021 MANAGEMENT: CMD 'state on'
Thu Sep 09 17:01:03 2021 MANAGEMENT: CMD 'log all on'
Thu Sep 09 17:01:03 2021 MANAGEMENT: CMD 'hold off'
Thu Sep 09 17:01:03 2021 MANAGEMENT: CMD 'hold release'
Thu Sep 09 17:01:12 2021 MANAGEMENT: CMD 'username "Auth" "ahmed.a"'
Thu Sep 09 17:01:12 2021 MANAGEMENT: CMD 'password [...]'
Thu Sep 09 17:01:12 2021 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Sep 09 17:01:12 2021 Attempting to establish TCP connection with [AF_INET]168.187.51.171:8444 [nonblock]
Thu Sep 09 17:01:12 2021 MANAGEMENT: >STATE:1631196072,TCP_CONNECT,,,,,,
Thu Sep 09 17:01:13 2021 TCP connection established with [AF_INET]168.187.51.171:8444
Thu Sep 09 17:01:13 2021 TCPv4_CLIENT link local: [undef]
Thu Sep 09 17:01:13 2021 TCPv4_CLIENT link remote: [AF_INET]168.187.51.171:8444
Thu Sep 09 17:01:13 2021 MANAGEMENT: >STATE:1631196073,WAIT,,,,,,



This thread was automatically locked due to age.
  • FormerMember
    0 FormerMember

    Hi James, Thanks for reaching out to Sophos Community.

    These are not complete logs, Can you share complete logs once again? At times, ISPs tend to block certain outbound ports as well and that could result in these type of scenarios.

    Just to verify, You can just take tcpdump on SSH (Option 4 > Console) by running the command "tcpdump 'host x.x.x.x " (where x.x.x.x would be the public IP of the VPN Client machine). Then connect the VPN while the capture is running and verify when you attempt to connect, Do you see any traffic hitting the firewall?