Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN Connecting Issue

Greetings -

My VPN connection has been quite stable but now will not connect. Can anyone see an issue from the log below?

Thanks,

 

Thu Jan 26 08:26:19 2017 OpenVPN 2.3.0 i686-w64-mingw32 [SSL (OpenSSL)] [LZO] [IPv6] built on Mar 23 2015
Thu Jan 26 08:26:19 2017 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Thu Jan 26 08:26:19 2017 Need hold release from management interface, waiting...
Thu Jan 26 08:26:20 2017 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Thu Jan 26 08:26:20 2017 MANAGEMENT: CMD 'state on'
Thu Jan 26 08:26:20 2017 MANAGEMENT: CMD 'log all on'
Thu Jan 26 08:26:20 2017 MANAGEMENT: CMD 'hold off'
Thu Jan 26 08:26:20 2017 MANAGEMENT: CMD 'hold release'
Thu Jan 26 08:26:38 2017 MANAGEMENT: CMD 'username "Auth" "Frankvpn"'
Thu Jan 26 08:26:38 2017 MANAGEMENT: CMD 'password [...]'
Thu Jan 26 08:26:38 2017 WARNING: Make sure you understand the semantics of --tls-remote before using it (see the man page).
Thu Jan 26 08:26:38 2017 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Thu Jan 26 08:26:38 2017 Socket Buffers: R=[8192->8192] S=[8192->8192]
Thu Jan 26 08:26:38 2017 Attempting to establish TCP connection with [AF_INET]162.252.100.2:10041 [nonblock]
Thu Jan 26 08:26:38 2017 MANAGEMENT: >STATE:1485447998,TCP_CONNECT,,,
Thu Jan 26 08:26:39 2017 TCP connection established with [AF_INET]162.252.100.2:10041
Thu Jan 26 08:26:39 2017 TCPv4_CLIENT link local: [undef]
Thu Jan 26 08:26:39 2017 TCPv4_CLIENT link remote: [AF_INET]162.252.100.2:10041
Thu Jan 26 08:26:39 2017 MANAGEMENT: >STATE:1485447999,WAIT,,,
Thu Jan 26 08:26:39 2017 MANAGEMENT: >STATE:1485447999,AUTH,,,
Thu Jan 26 08:26:39 2017 TLS: Initial packet from [AF_INET]162.252.100.2:10041, sid=c3a25423 3471d88b
Thu Jan 26 08:26:39 2017 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Thu Jan 26 08:26:39 2017 VERIFY OK: depth=1, C=us, L=Culver City, O=ZZZ Studios, emailAddress=jgiorgio@viktrix.com
Thu Jan 26 08:26:39 2017 VERIFY X509NAME OK: C=us, L=Culver City, O=ZZZ Studios, CN=Astaro.ZZZstudios.com, emailAddress=
Thu Jan 26 08:26:39 2017 VERIFY OK: depth=0, C=us, L=Culver City, O=ZZZ Studios, CN=Astaro.ZZZstudios.com, emailAddress=
Thu Jan 26 08:26:40 2017 Data Channel Encrypt: Cipher 'AES-192-CBC' initialized with 192 bit key
Thu Jan 26 08:26:40 2017 Data Channel Encrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Thu Jan 26 08:26:40 2017 Data Channel Decrypt: Cipher 'AES-192-CBC' initialized with 192 bit key
Thu Jan 26 08:26:40 2017 Data Channel Decrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Thu Jan 26 08:26:40 2017 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Thu Jan 26 08:26:40 2017 [Astaro.zzzstudios.com] Peer Connection Initiated with [AF_INET]162.252.100.2:10041
Thu Jan 26 08:26:41 2017 MANAGEMENT: >STATE:1485448001,GET_CONFIG,,,
Thu Jan 26 08:26:42 2017 SENT CONTROL [Astaro.zzzstudios.com]: 'PUSH_REQUEST' (status=1)
Thu Jan 26 08:26:43 2017 AUTH: Received control message: AUTH_FAILED
Thu Jan 26 08:26:43 2017 SIGUSR1[soft,auth-failure] received, process restarting
Thu Jan 26 08:26:43 2017 MANAGEMENT: >STATE:1485448003,RECONNECTING,auth-failure,,
Thu Jan 26 08:26:43 2017 Restart pause, 5 second(s)

 

Config File:

ip-win32 dynamic
client
dev tun
proto tcp
remote 162.252.100.2 10041
tls-remote "C=us, L=Culver City, O=xxx Studios, CN=Astaro.xxxstudios.com, emailAddress=xxx@xxxx.com"
route remote_host 255.255.255.255 net_gateway
resolv-retry infinite
nobind
persist-key
persist-tun
ca 162.252.100.2.ca.crt
cert 162.252.100.2.user.crt
key 162.252.100.2.user.key
auth-user-pass
cipher AES-192-CBC
auth MD5
comp-lzo
route-delay 4
verb 3
reneg-sec 0



This thread was automatically locked due to age.