my new laptop runs Windows 8. I´ve installed the new Sophos SSl Client and copied all my config to it.
The problem is: Some Sessions work, some won´t
It´s giong green, routes are ok with all sessions. The Gateway seems ok and it gets an ip. But nothing goes through...
With Windows 7 everything works fine.
What I´ve done so far:
Run Sophos Client with Admin Rights, Compatibility set to Win7
Compared a working .ovpn with one that´s not working
Tested route-method exe
Searched the log files
Here is the log file (public ip set to 99.99.99.99:
[SIZE="2"]Wed Apr 03 13:46:40 2013 OpenVPN 2.1.1 i686-w64-mingw32 [SSL] [LZO2] built on Oct 15 2012
Wed Apr 03 13:46:40 2013 MANAGEMENT: TCP Socket listening on 127.0.0.1:25352
Wed Apr 03 13:46:40 2013 Need hold release from management interface, waiting...
Wed Apr 03 13:46:40 2013 MANAGEMENT: Client connected from 127.0.0.1:25352
Wed Apr 03 13:46:40 2013 MANAGEMENT: CMD 'state on'
Wed Apr 03 13:46:40 2013 MANAGEMENT: CMD 'log all on'
Wed Apr 03 13:46:40 2013 MANAGEMENT: CMD 'hold off'
Wed Apr 03 13:46:40 2013 MANAGEMENT: CMD 'hold release'
Wed Apr 03 13:47:09 2013 MANAGEMENT: CMD 'username "Auth" "nevicon-example"'
Wed Apr 03 13:47:09 2013 MANAGEMENT: CMD 'password [...]'
Wed Apr 03 13:47:09 2013 WARNING: Make sure you understand the semantics of --tls-remote before using it (see the man page).
Wed Apr 03 13:47:09 2013 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Wed Apr 03 13:47:09 2013 LZO compression initialized
Wed Apr 03 13:47:09 2013 Control Channel MTU parms [ L:1556 D:140 EF:40 EB:0 ET:0 EL:0 ]
Wed Apr 03 13:47:09 2013 Data Channel MTU parms [ L:1556 D:1450 EF:56 EB:135 ET:0 EL:0 AF:3/1 ]
Wed Apr 03 13:47:09 2013 Local Options hash (VER=V4): '619088b2'
Wed Apr 03 13:47:09 2013 Expected Remote Options hash (VER=V4): 'a4f12474'
Wed Apr 03 13:47:09 2013 Attempting to establish TCP connection with 99.99.99.99:443
Wed Apr 03 13:47:09 2013 MANAGEMENT: >STATE:1364989629,TCP_CONNECT,,,
Wed Apr 03 13:47:09 2013 TCP connection established with 99.99.99.99:443
Wed Apr 03 13:47:09 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]
Wed Apr 03 13:47:09 2013 TCPv4_CLIENT link local: [undef]
Wed Apr 03 13:47:09 2013 TCPv4_CLIENT link remote: 99.99.99.99:443
Wed Apr 03 13:47:09 2013 MANAGEMENT: >STATE:1364989629,WAIT,,,
Wed Apr 03 13:47:09 2013 MANAGEMENT: >STATE:1364989629,AUTH,,,
Wed Apr 03 13:47:09 2013 TLS: Initial packet from 99.99.99.99:443, sid=212fc63d 85b81053
Wed Apr 03 13:47:09 2013 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Wed Apr 03 13:47:10 2013 VERIFY OK: depth=1, /C=de/L=Bremen/O=example/CN=example_VPN_CA/emailAddress=admin@example.de
Wed Apr 03 13:47:10 2013 VERIFY X509NAME OK: /C=de/L=Bremen/O=example/CN=firewall/emailAddress=admin@example.de
Wed Apr 03 13:47:10 2013 VERIFY OK: depth=0, /C=de/L=Bremen/O=example/CN=firewall/emailAddress=admin@example.de
Wed Apr 03 13:47:11 2013 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Wed Apr 03 13:47:11 2013 Data Channel Encrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Wed Apr 03 13:47:11 2013 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key
Wed Apr 03 13:47:11 2013 Data Channel Decrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Wed Apr 03 13:47:11 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
Wed Apr 03 13:47:11 2013 [firewall] Peer Connection Initiated with 99.99.99.99:443
Wed Apr 03 13:47:12 2013 MANAGEMENT: >STATE:1364989632,GET_CONFIG,,,
Wed Apr 03 13:47:13 2013 SENT CONTROL [firewall]: 'PUSH_REQUEST' (status=1)
Wed Apr 03 13:47:13 2013 PUSH: Received control message: 'PUSH_REPLY,route remote_host 255.255.255.255 net_gateway,route 192.168.244.0 255.255.255.0,route 10.242.2.1,topology net30,ping 10,ping-restart 120,ifconfig 10.242.2.6 10.242.2.5'
Wed Apr 03 13:47:13 2013 OPTIONS IMPORT: timers and/or timeouts modified
Wed Apr 03 13:47:13 2013 OPTIONS IMPORT: --ifconfig/up options modified
Wed Apr 03 13:47:13 2013 OPTIONS IMPORT: route options modified
Wed Apr 03 13:47:13 2013 ROUTE default_gateway=192.168.20.254
Wed Apr 03 13:47:13 2013 MANAGEMENT: >STATE:1364989633,ASSIGN_IP,,10.242.2.6,
Wed Apr 03 13:47:13 2013 TAP-WIN32 device [LAN-Verbindung] opened: \.\Global\{4D3A6114-686C-4AAE-8C3F-8070D1CF43A5}.tap
Wed Apr 03 13:47:13 2013 TAP-Win32 Driver Version 9.6
Wed Apr 03 13:47:13 2013 TAP-Win32 MTU=1500
Wed Apr 03 13:47:13 2013 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.242.2.6/255.255.255.252 on interface {4D3A6114-686C-4AAE-8C3F-8070D1CF43A5} [DHCP-serv: 10.242.2.5, lease-time: 31536000]
Wed Apr 03 13:47:13 2013 Successful ARP Flush on interface [22] {4D3A6114-686C-4AAE-8C3F-8070D1CF43A5}
Wed Apr 03 13:47:17 2013 TEST ROUTES: 3/3 succeeded len=3 ret=1 a=0 u/d=up
Wed Apr 03 13:47:17 2013 MANAGEMENT: >STATE:1364989637,ADD_ROUTES,,,
Wed Apr 03 13:47:17 2013 C:\WINDOWS\system32\route.exe ADD 99.99.99.99 MASK 255.255.255.255 192.168.20.254
Wed Apr 03 13:47:17 2013 Route addition via service succeeded
Wed Apr 03 13:47:17 2013 C:\WINDOWS\system32\route.exe ADD 192.168.244.0 MASK 255.255.255.0 10.242.2.5
Wed Apr 03 13:47:17 2013 Route addition via service succeeded
Wed Apr 03 13:47:17 2013 C:\WINDOWS\system32\route.exe ADD 10.242.2.1 MASK 255.255.255.255 10.242.2.5
Wed Apr 03 13:47:17 2013 Route addition via service succeeded
Wed Apr 03 13:47:17 2013 Initialization Sequence Completed
Wed Apr 03 13:47:17 2013 MANAGEMENT: >STATE:1364989637,CONNECTED,SUCCESS,10.242.2.6,99.99.99.99
[/SIZE]
This thread was automatically locked due to age.