Hi there,
I'm trying to get my Mac to connect to our companies network, but i didn't get it to work. Anyone got an idea?
Here's the log from Tunnelblick:
2010-10-05 21:08:15 *Tunnelblick: OS X 10.6.4; Tunnelblick 3.0 (build 1437); OpenVPN 2.1.1
2010-10-05 21:08:28 *Tunnelblick: Attempting connection with ***x@***.xx.***.***.ovpn; Set nameserver = 1; monitoring connection
2010-10-05 21:08:28 *Tunnelblick: /Applications/Tunnelblick.app/Contents/Resources/openvpnstart start ***x@***.xx.***.***.ovpn 1337 1 0 0 0
2010-10-05 21:08:28 *Tunnelblick: /Applications/Tunnelblick.app/Contents/Resources/openvpn --management-query-passwords --cd /Users/Username/Library/Application Support/Tunnelblick/Configurations --daemon --management-hold --management 127.0.0.1 1337 --config /Users/username/Library/Application Support/Tunnelblick/Configurations/***x@***.xx.***.***.ovpn --script-security 2 --up "/Applications/Tunnelblick.app/Contents/Resources/client.up.osx.sh" --down "/Applications/Tunnelblick.app/Contents/Resources/client.down.osx.sh" --up-restart
2010-10-05 21:08:28 SUCCESS: pid=2056
2010-10-05 21:08:28 SUCCESS: real-time state notification set to ON
2010-10-05 21:08:28 SUCCESS: real-time log notification set to ON
2010-10-05 21:08:28 OpenVPN 2.1.1 i386-apple-darwin10.2.0 [SSL] [LZO2] [PKCS11] built on Feb 24 2010
2010-10-05 21:08:28 MANAGEMENT: TCP Socket listening on 127.0.0.1:1337
2010-10-05 21:08:28 waiting...
2010-10-05 21:08:28 MANAGEMENT: Client connected from 127.0.0.1:1337
2010-10-05 21:08:28 MANAGEMENT: CMD 'pid'
2010-10-05 21:08:28 MANAGEMENT: CMD 'state on'
2010-10-05 21:08:28 MANAGEMENT: CMD 'log on all'
2010-10-05 21:08:28 END
2010-10-05 21:08:28 MANAGEMENT: CMD 'hold release'
2010-10-05 21:08:28 SUCCESS: hold release succeeded
2010-10-05 21:08:28 MANAGEMENT: CMD 'username "Auth" "***x"'
2010-10-05 21:08:28 but not yet verified
2010-10-05 21:08:28 MANAGEMENT: CMD 'password [...]'
2010-10-05 21:08:28 but not yet verified
2010-10-05 21:08:28 WARNING: Make sure you understand the semantics of --tls-remote before using it (see the man page).
2010-10-05 21:08:28 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2010-10-05 21:08:28 LZO compression initialized
2010-10-05 21:08:28 Control Channel MTU parms [ L:1556 D:140 EF:40 EB:0 ET:0 EL:0 ]
2010-10-05 21:08:28 Data Channel MTU parms [ L:1556 D:1450 EF:56 EB:135 ET:0 EL:0 AF:3/1 ]
2010-10-05 21:08:28 Local Options hash (VER=V4): '619088b2'
2010-10-05 21:08:28 Expected Remote Options hash (VER=V4): 'a4f12474'
2010-10-05 21:08:28 Attempting to establish TCP connection with 217.91.153.139:4431 [nonblock]
2010-10-05 21:08:28
2010-10-05 21:08:29 TCP connection established with ***.xx.***.***:***x
2010-10-05 21:08:29 Socket Buffers: R=[525600->65536] S=[132480->65536]
2010-10-05 21:08:29 TCPv4_CLIENT link local: [undef]
2010-10-05 21:08:29 TCPv4_CLIENT link remote: ***.xx.***.***:***x
2010-10-05 21:08:29
2010-10-05 21:08:29
2010-10-05 21:08:29 sid=3638f156 4d76ec92
2010-10-05 21:08:29 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2010-10-05 21:08:30 /C=de/L=***_******/O=*********x_***_******/CN=*********x_***_******_VPN_CA/emailAddress=astaro@******.***
2010-10-05 21:08:30 VERIFY ERROR: could not extract Common Name from X509 subject string ('/C=de/L=***_******/O=*********x_***_******/emailAddress=astaro@******.***') -- note that the Common Name length is limited to 64 characters
2010-10-05 21:08:30 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
2010-10-05 21:08:30 TLS Error: TLS object -> incoming plaintext read error
2010-10-05 21:08:30 TLS Error: TLS handshake failed
2010-10-05 21:08:30 restarting
2010-10-05 21:08:30 TCP/UDP: Closing socket
2010-10-05 21:08:30 process restarting
This thread was automatically locked due to age.