Установка OpenVPN Сервера на Ubuntu 18.04

Как правильно задавать вопросы Правильно сформулированный вопрос и его грамотное оформление способствует высокой вероятности получения достаточно содержательного и по существу ответа. Общая рекомендация по составлению тем: 1. Для начала воспользуйтесь поиском форума. 2. Укажите версию ОС вместе с разрядностью. Пример: LM 19.3 x64, LM Sarah x32 3. DE. Если вопрос касается двух, то через запятую. (xfce, KDE, cinnamon, mate) 4. Какое железо. (достаточно вывод inxi -Fxz в спойлере (как пользоваться спойлером смотрим здесь)) или же дать ссылку на hw-probe 5. Суть. Желательно с выводом консоли, логами. 6. Скрин. Просьба указывать 2, 3 и 4 независимо от того, имеет ли это отношение к вопросу или нет. Так же не забываем об общих правилах Как пример вот
Аватара пользователя

Chocobo
Сообщения: 10015
Зарегистрирован: 27 авг 2016, 22:57
Решено: 215
Откуда: НН
Благодарил (а): 815 раз
Поблагодарили: 3010 раз
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#21

04 дек 2018, 01:03

Я_Максим писал(а):
03 дек 2018, 21:39
explicit-exit-notify 1
опция работает только для UDP протокола. Вот он и ругается у тебя.
Изображение
   
Изображение

Аватара пользователя

Автор темы
Я_Максим
Сообщения: 207
Зарегистрирован: 10 ноя 2017, 19:25
Решено: 1
Благодарил (а): 32 раза
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#22

04 дек 2018, 08:00

di_mok, Chocobo, в логах он ругался на explicit-exit-notify , значение с 1 поставил в 0 и как бы завелся в логах все ок. остальное продолжу вечером :bravo:
FX-8350 тащит

Аватара пользователя

Автор темы
Я_Максим
Сообщения: 207
Зарегистрирован: 10 ноя 2017, 19:25
Решено: 1
Благодарил (а): 32 раза
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#23

04 дек 2018, 18:30

di_mok, я так понял серв стартует но сам к себе законнектиться не может

Код: Выделить всё

openvpn@server.service - OpenVPN connection to server
   Loaded: loaded (/lib/systemd/system/openvpn@.service; indirect; vendor preset: enabled)
   Active: active (running) (Result: exit-code) since Tue 2018-12-04 19:56:10 +05; 32min ago
     Docs: man:openvpn(8)
           https://community.openvpn.net/openvpn/wiki/Openvpn24ManPage
           https://community.openvpn.net/openvpn/wiki/HOWTO
  Process: 3403 ExecReload=/bin/kill -HUP $MAINPID (code=exited, status=1/FAILURE)
 Main PID: 864 (openvpn)
   Status: "Initialization Sequence Completed"
    Tasks: 1 (limit: 4662)
   CGroup: /system.slice/system-openvpn.slice/openvpn@server.service
           └─864 /usr/sbin/openvpn --daemon ovpn-server --status /run/openvpn/server.status 10 --cd /etc/openv

дек 04 20:21:03 server systemd[1]: openvpn@server.service: Control process exited, code=exited status=1
дек 04 20:21:03 server systemd[1]: Reload failed for OpenVPN connection to server.
дек 04 20:27:09 server systemd[1]: Reloading OpenVPN connection to server.
дек 04 20:27:09 server kill[3369]: kill: (864): Операция не позволена
дек 04 20:27:09 server systemd[1]: openvpn@server.service: Control process exited, code=exited status=1
дек 04 20:27:09 server systemd[1]: Reload failed for OpenVPN connection to server.
дек 04 20:28:20 server systemd[1]: Reloading OpenVPN connection to server.
дек 04 20:28:20 server kill[3403]: kill: (864): Операция не позволена
дек 04 20:28:20 server systemd[1]: openvpn@server.service: Control process exited, code=exited status=1
дек 04 20:28:20 server systemd[1]: Reload failed for OpenVPN connection to server.
FX-8350 тащит

Аватара пользователя

di_mok
Сообщения: 5469
Зарегистрирован: 27 авг 2016, 19:06
Решено: 32
Откуда: Арзамас
Благодарил (а): 1593 раза
Поблагодарили: 1276 раз
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#24

04 дек 2018, 19:51

Я_Максим писал(а):
04 дек 2018, 18:30
сам к себе законнектиться
А это что за балет такой?
Настоящая водка — это не пьянство, а ключ к своей совести, с нее-то и начинается настоящая мудрость. (c)
Изображение

Аватара пользователя

Автор темы
Я_Максим
Сообщения: 207
Зарегистрирован: 10 ноя 2017, 19:25
Решено: 1
Благодарил (а): 32 раза
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#25

04 дек 2018, 20:42

с балетом разрулил лог клиента странный

Код: Выделить всё

Tue Dec 04 22:35:40 2018 OpenVPN 2.4.6 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Apr 26 2018
Tue Dec 04 22:35:40 2018 Windows version 6.2 (Windows 8 or greater) 64bit
Tue Dec 04 22:35:40 2018 library versions: OpenSSL 1.1.0h  27 Mar 2018, LZO 2.10
Tue Dec 04 22:35:40 2018 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Tue Dec 04 22:35:40 2018 Need hold release from management interface, waiting...
Tue Dec 04 22:35:40 2018 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'state on'
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'log all on'
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'echo all on'
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'bytecount 5'
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'hold off'
Tue Dec 04 22:35:40 2018 MANAGEMENT: CMD 'hold release'
Tue Dec 04 22:35:40 2018 Outgoing Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Tue Dec 04 22:35:40 2018 Incoming Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Tue Dec 04 22:35:40 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:40 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Dec 04 22:35:40 2018 Attempting to establish TCP connection with [AF_INET]Х.Х.Х.Х:1194 [nonblock]
Tue Dec 04 22:35:40 2018 MANAGEMENT: >STATE:1543944940,TCP_CONNECT,,,,,,
Tue Dec 04 22:35:41 2018 TCP connection established with [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:41 2018 TCP_CLIENT link local: (not bound)
Tue Dec 04 22:35:41 2018 TCP_CLIENT link remote: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:41 2018 MANAGEMENT: >STATE:1543944941,WAIT,,,,,,
Tue Dec 04 22:35:41 2018 Connection reset, restarting [0]
Tue Dec 04 22:35:41 2018 SIGUSR1[soft,connection-reset] received, process restarting
Tue Dec 04 22:35:41 2018 MANAGEMENT: >STATE:1543944941,RECONNECTING,connection-reset,,,,,
Tue Dec 04 22:35:41 2018 Restart pause, 5 second(s)
Tue Dec 04 22:35:46 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:46 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Dec 04 22:35:46 2018 Attempting to establish TCP connection with [AF_INET]Х.Х.Х.Х:1194 [nonblock]
Tue Dec 04 22:35:46 2018 MANAGEMENT: >STATE:1543944946,TCP_CONNECT,,,,,,
Tue Dec 04 22:35:47 2018 TCP connection established with [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:47 2018 TCP_CLIENT link local: (not bound)
Tue Dec 04 22:35:47 2018 TCP_CLIENT link remote: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:47 2018 MANAGEMENT: >STATE:1543944947,WAIT,,,,,,
Tue Dec 04 22:35:47 2018 Connection reset, restarting [0]
Tue Dec 04 22:35:47 2018 SIGUSR1[soft,connection-reset] received, process restarting
Tue Dec 04 22:35:47 2018 MANAGEMENT: >STATE:1543944947,RECONNECTING,connection-reset,,,,,
Tue Dec 04 22:35:47 2018 Restart pause, 5 second(s)
Tue Dec 04 22:35:52 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:52 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Dec 04 22:35:52 2018 Attempting to establish TCP connection with [AF_INET]Х.Х.Х.Х:1194 [nonblock]
Tue Dec 04 22:35:52 2018 MANAGEMENT: >STATE:1543944952,TCP_CONNECT,,,,,,
Tue Dec 04 22:35:53 2018 TCP connection established with [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:53 2018 TCP_CLIENT link local: (not bound)
Tue Dec 04 22:35:53 2018 TCP_CLIENT link remote: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:53 2018 MANAGEMENT: >STATE:1543944953,WAIT,,,,,,
Tue Dec 04 22:35:53 2018 Connection reset, restarting [0]
Tue Dec 04 22:35:53 2018 SIGUSR1[soft,connection-reset] received, process restarting
Tue Dec 04 22:35:53 2018 MANAGEMENT: >STATE:1543944953,RECONNECTING,connection-reset,,,,,
Tue Dec 04 22:35:53 2018 Restart pause, 5 second(s)
Tue Dec 04 22:35:58 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:58 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Dec 04 22:35:58 2018 Attempting to establish TCP connection with [AF_INET]Х.Х.Х.Х:1194 [nonblock]
Tue Dec 04 22:35:58 2018 MANAGEMENT: >STATE:1543944958,TCP_CONNECT,,,,,,
Tue Dec 04 22:35:59 2018 TCP connection established with [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:59 2018 TCP_CLIENT link local: (not bound)
Tue Dec 04 22:35:59 2018 TCP_CLIENT link remote: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:35:59 2018 MANAGEMENT: >STATE:1543944959,WAIT,,,,,,
Tue Dec 04 22:35:59 2018 Connection reset, restarting [0]
Tue Dec 04 22:35:59 2018 SIGUSR1[soft,connection-reset] received, process restarting
Tue Dec 04 22:35:59 2018 MANAGEMENT: >STATE:1543944959,RECONNECTING,connection-reset,,,,,
Tue Dec 04 22:35:59 2018 Restart pause, 5 second(s)
Tue Dec 04 22:36:04 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:36:04 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Dec 04 22:36:04 2018 Attempting to establish TCP connection with [AF_INET]Х.Х.Х.Х:1194 [nonblock]
Tue Dec 04 22:36:04 2018 MANAGEMENT: >STATE:1543944964,TCP_CONNECT,,,,,,
Tue Dec 04 22:36:05 2018 TCP connection established with [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:36:05 2018 TCP_CLIENT link local: (not bound)
Tue Dec 04 22:36:05 2018 TCP_CLIENT link remote: [AF_INET]Х.Х.Х.Х:1194
Tue Dec 04 22:36:05 2018 MANAGEMENT: >STATE:1543944965,WAIT,,,,,,
Tue Dec 04 22:36:05 2018 Connection reset, restarting [0]
Tue Dec 04 22:36:05 2018 SIGUSR1[soft,connection-reset] received, process restarting
Tue Dec 04 22:36:05 2018 MANAGEMENT: >STATE:1543944965,RECONNECTING,connection-reset,,,,,
Tue Dec 04 22:36:05 2018 Restart pause, 10 second(s)
статус службы на серваке

Код: Выделить всё

scool11@server:~$ systemctl status openvpn@server.service
● openvpn@server.service - OpenVPN connection to server
   Loaded: loaded (/lib/systemd/system/openvpn@.service; indirect; vendor preset
   Active: activating (auto-restart) (Result: exit-code) since Tue 2018-12-04 22
     Docs: man:openvpn(8)
           https://community.openvpn.net/openvpn/wiki/Openvpn24ManPage
           https://community.openvpn.net/openvpn/wiki/HOWTO
  Process: 2400 ExecStart=/usr/sbin/openvpn --daemon ovpn-server --status /run/o
 Main PID: 2400 (code=exited, status=1/FAILURE)
   Status: "Pre-connection initialization successful"
lines 1-9/9 (END)
и еще одна команда sudo strace openvpn --config /etc/openvpn/server.conf

Код: Выделить всё

execve("/usr/sbin/openvpn", ["openvpn", "--config", "/etc/openvpn/server.conf"], 0x7fff248e1990 /* 17 vars */) = 0
brk(NULL)                               = 0x55b680153000
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
access("/etc/ld.so.preload", R_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 3
fstat(3, {st_mode=S_IFREG|0644, st_size=77314, ...}) = 0
mmap(NULL, 77314, PROT_READ, MAP_PRIVATE, 3, 0) = 0x7f1152ba8000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/liblzo2.so.2", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0000#\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=137256, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f1152bc6000
mmap(NULL, 2232416, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1152770000
mprotect(0x7f1152791000, 2093056, PROT_NONE) = 0
mmap(0x7f1152990000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x20000) = 0x7f1152990000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/usr/lib/x86_64-linux-gnu/liblz4.so.1", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240\35\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=112672, ...}) = 0
mmap(NULL, 2207840, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1152550000
mprotect(0x7f115256b000, 2093056, PROT_NONE) = 0
mmap(0x7f115276a000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x1a000) = 0x7f115276a000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libpthread.so.0", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0000b\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0755, st_size=144976, ...}) = 0
mmap(NULL, 2221184, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1152330000
mprotect(0x7f115234a000, 2093056, PROT_NONE) = 0
mmap(0x7f1152549000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x19000) = 0x7f1152549000
mmap(0x7f115254b000, 13440, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f115254b000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/usr/lib/x86_64-linux-gnu/libpkcs11-helper.so.1", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0@2\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=109304, ...}) = 0
mmap(NULL, 2204640, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1152110000
mprotect(0x7f115212a000, 2093056, PROT_NONE) = 0
mmap(0x7f1152329000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x19000) = 0x7f1152329000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/usr/lib/x86_64-linux-gnu/libcrypto.so.1.1", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0\220\6\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=2575848, ...}) = 0
mmap(NULL, 4685184, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1151c98000
mprotect(0x7f1151ee5000, 2097152, PROT_NONE) = 0
mmap(0x7f11520e5000, 163840, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x24d000) = 0x7f11520e5000
mmap(0x7f115210d000, 11648, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f115210d000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/usr/lib/x86_64-linux-gnu/libssl.so.1.1", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240w\1\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=433760, ...}) = 0
mmap(NULL, 2529304, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1151a28000
mprotect(0x7f1151a88000, 2097152, PROT_NONE) = 0
mmap(0x7f1151c88000, 40960, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x60000) = 0x7f1151c88000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libsystemd.so.0", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\200\323\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=536648, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f1152bc4000
mmap(NULL, 2634312, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f11517a0000
mprotect(0x7f1151820000, 2093056, PROT_NONE) = 0
mmap(0x7f1151a1f000, 16384, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x7f000) = 0x7f1151a1f000
mmap(0x7f1151a23000, 584, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f1151a23000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libdl.so.2", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0P\16\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=14560, ...}) = 0
mmap(NULL, 2109712, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1151598000
mprotect(0x7f115159b000, 2093056, PROT_NONE) = 0
mmap(0x7f115179a000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7f115179a000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libc.so.6", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\260\34\2\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0755, st_size=2030544, ...}) = 0
mmap(NULL, 4131552, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f11511a0000
mprotect(0x7f1151387000, 2097152, PROT_NONE) = 0
mmap(0x7f1151587000, 24576, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x1e7000) = 0x7f1151587000
mmap(0x7f115158d000, 15072, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f115158d000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/librt.so.1", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0\"\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=31680, ...}) = 0
mmap(NULL, 2128864, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1150f98000
mprotect(0x7f1150f9f000, 2093056, PROT_NONE) = 0
mmap(0x7f115119e000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x6000) = 0x7f115119e000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/liblzma.so.5", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\340(\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=153984, ...}) = 0
mmap(NULL, 2248968, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1150d70000
mprotect(0x7f1150d94000, 2097152, PROT_NONE) = 0
mmap(0x7f1150f94000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x24000) = 0x7f1150f94000
close(3)                                = 0
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libgcrypt.so.20", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0\274\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=1155768, ...}) = 0
mmap(NULL, 3252232, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1150a50000
mprotect(0x7f1150b64000, 2093056, PROT_NONE) = 0
mmap(0x7f1150d63000, 28672, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x113000) = 0x7f1150d63000
mmap(0x7f1150d6a000, 8, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f1150d6a000
close(3)                                = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f1152bc2000
access("/etc/ld.so.nohwcap", F_OK)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/lib/x86_64-linux-gnu/libgpg-error.so.0", O_RDONLY|O_CLOEXEC) = 3
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\340+\0\0\0\0\0\0"..., 832) = 832
fstat(3, {st_mode=S_IFREG|0644, st_size=84032, ...}) = 0
mmap(NULL, 2179304, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f1150838000
mprotect(0x7f115084c000, 2093056, PROT_NONE) = 0
mmap(0x7f1150a4b000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x13000) = 0x7f1150a4b000
close(3)                                = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f1152bbd000
arch_prctl(ARCH_SET_FS, 0x7f1152bbdc00) = 0
mprotect(0x7f1151587000, 16384, PROT_READ) = 0
mprotect(0x7f1150a4b000, 4096, PROT_READ) = 0
mprotect(0x7f1150d63000, 8192, PROT_READ) = 0
mprotect(0x7f1152549000, 4096, PROT_READ) = 0
mprotect(0x7f115179a000, 4096, PROT_READ) = 0
mprotect(0x7f1150f94000, 4096, PROT_READ) = 0
mprotect(0x7f115119e000, 4096, PROT_READ) = 0
mprotect(0x7f115276a000, 4096, PROT_READ) = 0
mprotect(0x7f1151a1f000, 12288, PROT_READ) = 0
mprotect(0x7f11520e5000, 122880, PROT_READ) = 0
mprotect(0x7f1151c88000, 16384, PROT_READ) = 0
mprotect(0x7f1152329000, 4096, PROT_READ) = 0
mprotect(0x7f1152990000, 4096, PROT_READ) = 0
mprotect(0x55b67ed42000, 8192, PROT_READ) = 0
mprotect(0x7f1152bbf000, 4096, PROT_READ) = 0
munmap(0x7f1152ba8000, 77314)           = 0
set_tid_address(0x7f1152bbded0)         = 16775
set_robust_list(0x7f1152bbdee0, 24)     = 0
rt_sigaction(SIGRTMIN, {sa_handler=0x7f1152335cb0, sa_mask=[], sa_flags=SA_RESTORER|SA_SIGINFO, sa_restorer=0x7f1152342890}, NULL, 8) = 0
rt_sigaction(SIGRT_1, {sa_handler=0x7f1152335d50, sa_mask=[], sa_flags=SA_RESTORER|SA_RESTART|SA_SIGINFO, sa_restorer=0x7f1152342890}, NULL, 8) = 0
rt_sigprocmask(SIG_UNBLOCK, [RTMIN RT_1], NULL, 8) = 0
prlimit64(0, RLIMIT_STACK, NULL, {rlim_cur=8192*1024, rlim_max=RLIM64_INFINITY}) = 0
brk(NULL)                               = 0x55b680153000
brk(0x55b680174000)                     = 0x55b680174000
futex(0x7f115210e278, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e340, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e25c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e254, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f1151c91720, FUTEX_WAKE_PRIVATE, 2147483647) = 0
sysinfo({uptime=5102, loads=[40608, 25248, 23776], totalram=4136312832, freeram=1298636800, sharedram=105881600, bufferram=87232512, totalswap=1989525504, freeswap=1989525504, procs=735, totalhigh=0, freehigh=0, mem_unit=1}) = 0
futex(0x7f115210c6ec, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f1151c917fc, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e0b0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e26c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f1151c917f0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7f115210e124, FUTEX_WAKE_PRIVATE, 2147483647) = 0
rt_sigaction(SIGINT, {sa_handler=0x55b67eaf0630, sa_mask=[INT], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
rt_sigaction(SIGTERM, {sa_handler=0x55b67eaf0630, sa_mask=[TERM], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
rt_sigaction(SIGHUP, {sa_handler=SIG_IGN, sa_mask=[HUP], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
rt_sigaction(SIGUSR1, {sa_handler=SIG_IGN, sa_mask=[USR1], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
rt_sigaction(SIGUSR2, {sa_handler=SIG_IGN, sa_mask=[USR2], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
rt_sigaction(SIGPIPE, {sa_handler=SIG_IGN, sa_mask=[PIPE], sa_flags=SA_RESTORER|SA_RESTART, sa_restorer=0x7f11511def20}, {sa_handler=SIG_DFL, sa_mask=[], sa_flags=0}, 8) = 0
brk(0x55b680196000)                     = 0x55b680196000
openat(AT_FDCWD, "/etc/openvpn/server.conf", O_RDONLY) = 3
fstat(3, {st_mode=S_IFREG|0777, st_size=10922, ...}) = 0
read(3, "################################"..., 4096) = 4096
read(3, "ce.  Then you must manually set "..., 4096) = 4096
read(3, "icate-cn\n\n# The keepalive direct"..., 4096) = 2730
openat(AT_FDCWD, "/var/log/openvpn/openvpn.log", O_WRONLY|O_CREAT|O_TRUNC, 0600) = 4
dup2(4, 1)                              = 1
dup2(4, 2)                              = 2
close(4)                                = 0
read(3, "", 4096)                       = 0
close(3)                                = 0
access("dh2048.pem", R_OK)              = -1 ENOENT (No such file or directory)
fstat(1, {st_mode=S_IFREG|0600, st_size=0, ...}) = 0
write(1, "Options error: --dh fails with '"..., 81) = 81
access("ca.crt", R_OK)                  = -1 ENOENT (No such file or directory)
write(1, "Options error: --ca fails with '"..., 77) = 77
access("server.crt", R_OK)              = -1 ENOENT (No such file or directory)
write(1, "Options error: --cert fails with"..., 83) = 83
access("server.key", R_OK)              = -1 ENOENT (No such file or directory)
stat("server.key", 0x7ffea617b2a0)      = -1 ENOENT (No such file or directory)
openat(AT_FDCWD, "/etc/localtime", O_RDONLY|O_CLOEXEC) = 3
fstat(3, {st_mode=S_IFREG|0644, st_size=1281, ...}) = 0
fstat(3, {st_mode=S_IFREG|0644, st_size=1281, ...}) = 0
read(3, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\f\0\0\0\f\0\0\0\0"..., 4096) = 1281
lseek(3, -781, SEEK_CUR)                = 500
read(3, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\f\0\0\0\f\0\0\0\0"..., 4096) = 781
close(3)                                = 0
write(1, "Tue Dec  4 23:41:36 2018 WARNING"..., 101) = 101
write(1, "Options error: --key fails with "..., 82) = 82
access("ta.key", R_OK)                  = -1 ENOENT (No such file or directory)
stat("ta.key", 0x7ffea617b2a0)          = -1 ENOENT (No such file or directory)
stat("/etc/localtime", {st_mode=S_IFREG|0644, st_size=1281, ...}) = 0
write(1, "Tue Dec  4 23:41:36 2018 WARNING"..., 97) = 97
write(1, "Options error: --tls-auth fails "..., 83) = 83
access("/var/log/openvpn", R_OK|W_OK|X_OK) = 0
access("/var/log/openvpn/openvpn-status.log", F_OK) = 0
access("/var/log/openvpn/openvpn-status.log", W_OK) = 0
access("/tmp", R_OK|W_OK|X_OK)          = 0
write(1, "Options error: Please correct th"..., 44) = 44
write(1, "Use --help for more information."..., 33) = 33
futex(0x7f115210e82c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
exit_group(1)                           = ?
+++ exited with 1 +++
FX-8350 тащит

Аватара пользователя

Автор темы
Я_Максим
Сообщения: 207
Зарегистрирован: 10 ноя 2017, 19:25
Решено: 1
Благодарил (а): 32 раза
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#26

04 дек 2018, 22:20

ХЗ что еще придумать лог OpenVPN

Код: Выделить всё

Wed Dec  5 00:15:21 2018 OpenVPN 2.4.4 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on$
Wed Dec  5 00:15:21 2018 library versions: OpenSSL 1.1.0g  2 Nov 2017, LZO 2.08
Wed Dec  5 00:15:21 2018 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x.  Be aware that th$
Wed Dec  5 00:15:21 2018 Diffie-Hellman initialized with 2048 bit key
Wed Dec  5 00:15:21 2018 Outgoing Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Wed Dec  5 00:15:21 2018 Incoming Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Wed Dec  5 00:15:21 2018 ROUTE_GATEWAY 192.168.1.1/255.255.255.0 IFACE=enp0s3 HWADDR=08:00:27:08:00:8c
Wed Dec  5 00:15:21 2018 TUN/TAP device tun0 opened
Wed Dec  5 00:15:21 2018 TUN/TAP TX queue length set to 100
Wed Dec  5 00:15:21 2018 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
Wed Dec  5 00:15:21 2018 /sbin/ip link set dev tun0 up mtu 1500
Wed Dec  5 00:15:21 2018 /sbin/ip addr add dev tun0 local 10.8.0.1 peer 10.8.0.2
Wed Dec  5 00:15:21 2018 /sbin/ip route add 10.8.0.0/24 via 10.8.0.2
Wed Dec  5 00:15:21 2018 Could not determine IPv4/IPv6 protocol. Using AF_INET
Wed Dec  5 00:15:21 2018 Socket Buffers: R=[87380->87380] S=[16384->16384]
Wed Dec  5 00:15:21 2018 Listening for incoming TCP connection on [AF_INET][undef]:1194
Wed Dec  5 00:15:21 2018 TCPv4_SERVER link local (bound): [AF_INET][undef]:1194
Wed Dec  5 00:15:21 2018 TCPv4_SERVER link remote: [AF_UNSPEC]
Wed Dec  5 00:15:21 2018 MULTI: multi_init called, r=256 v=256
Wed Dec  5 00:15:21 2018 IFCONFIG POOL: base=10.8.0.4 size=62, ipv6=0
Wed Dec  5 00:15:21 2018 IFCONFIG POOL LIST
Wed Dec  5 00:15:21 2018 MULTI: TCP INIT maxclients=1024 maxevents=1028
Wed Dec  5 00:15:21 2018 Initialization Sequence Completed
СТАТУС ДЕМОНА

Код: Выделить всё

scool11@server:~$ systemctl status openvpn@server.service
● openvpn@server.service - OpenVPN connection to server
   Loaded: loaded (/lib/systemd/system/openvpn@.service; indirect; vendor preset: enabled)
   Active: active (running) since Wed 2018-12-05 00:15:21 +05; 4min 8s ago
     Docs: man:openvpn(8)
           https://community.openvpn.net/openvpn/wiki/Openvpn24ManPage
           https://community.openvpn.net/openvpn/wiki/HOWTO
 Main PID: 851 (openvpn)
   Status: "Initialization Sequence Completed"
    Tasks: 1 (limit: 4662)
   CGroup: /system.slice/system-openvpn.slice/openvpn@server.service
           └─851 /usr/sbin/openvpn --daemon ovpn-server --status /run/openvpn/server.status 10 --cd /etc/openvpn --script-security 2 

дек 05 00:15:21 server systemd[1]: Starting OpenVPN connection to server...
дек 05 00:15:21 server systemd[1]: Started OpenVPN connection to server.
FX-8350 тащит

Аватара пользователя

027
Сообщения: 358
Зарегистрирован: 31 авг 2017, 09:05
Решено: 1
Благодарил (а): 26 раз
Поблагодарили: 53 раза
Контактная информация:

Установка OpenVPN Сервера на Ubuntu 18.04

#27

08 дек 2018, 07:12

(не вникая в портянки)
Зачем TCP? Злой одмин зобанел UDP на файрволле? Больше ни для чего оно не нужно. Туннели куда живее бегают по UDP.

Закрыто

Вернуться в «Работа с сетью»

Кто сейчас на конференции

Сейчас этот форум просматривают: нет зарегистрированных пользователей и 5 гостей