Hi kenners!
Ik ben nieuw met VPN en het lukt me niet op mijn iPhone met de server te verbinden.
Op mijn Asus RT-AC68u Router heb ik de VPN Server enabled. Eerst heb ik de boel getest met het TCP protocol op port 1194, alles werkte prima. Op mijn MacBook (via wifi in dezelfde LAN) en op mijn iPhone (met 4G cellular en via wifi in hetzelfde LAN).
Daarna veranderde ik maar één ding in de server settings, ik veranderde het protocol van TCP naar UDP, nog steeds op standaard port 1194. Ik exporteerde de config file opnieuw en importeerde hem in de OpenVPN iOS-app en probeerde verbinding te maken. Met 4G cellular werkte het allemaal weer perfect maar via wifi krijg ik deze TLS Error: "TLS key negotiation failed to occur within 60 seconds". Uiteindelijk volgt er een connection timeout.
Ik heb het thuis getest (in dezelfde LAN als de server) en buiten de deur in een ander wifi/LAN netwerk. Wanneer ik middels wifi verbinding maak met mijn MacBook (Tunnelblick/zeflde config file) gaat het gewoon goed en kan ik op de VPN inloggen middels UDP.
De firewall van de router staat uit, geen port forwarding/-triggering op port 1194.
In de NAT Passthrough staat alles op enabled maar OpenVPN staat daar niet bij.
I heb het ook getest met mijn iPad (ook iOS 9.2), zelfde probleem.
Ik hoop dat jullie me kunnen helpen met dit probleem.
Alvast bedankt!!!
Danny.
DE LOGS
192.168.1.1 = Router
192.168.1.105 = iPhone
(manually assigned)
--------------------------------------------
Server/Router (Asus RT-AC68u)
--------------------------------------------
Jan 8 09:33:06 openvpn[7068]: 192.168.1.105:54933 TLS: Initial packet from [AF_INET]192.168.1.105:54933, sid=bd257b7a ce66acff
Jan 8 09:33:15 openvpn[7068]: 192.168.1.105:51183 TLS: Initial packet from [AF_INET]192.168.1.105:51183, sid=cf8399e7 bba00712
Jan 8 09:33:25 openvpn[7068]: 192.168.1.105:52100 TLS: Initial packet from [AF_INET]192.168.1.105:52100, sid=8ae0c26c 422e09b5
Jan 8 09:33:35 openvpn[7068]: 192.168.1.105:58368 TLS: Initial packet from [AF_INET]192.168.1.105:58368, sid=84608a48 d0187bdb
Jan 8 09:33:45 openvpn[7068]: 192.168.1.105:53538 TLS: Initial packet from [AF_INET]192.168.1.105:53538, sid=af29c7f9 55938467
Jan 8 09:33:55 openvpn[7068]: 192.168.1.105:51671 TLS: Initial packet from [AF_INET]192.168.1.105:51671, sid=eb536368 dbc1c0ff
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 TLS Error: TLS handshake failed
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 SIGUSR1[soft,tls-error] received, client-instance restarting
-------------------------------
Client/iPhone (iOS 9.2)
-------------------------------
2016-01-08 09:00:44 ----- OpenVPN Start -----
OpenVPN core 3.0 ios arm64 64-bit
2016-01-08 09:00:44 UNUSED OPTIONS
6 [keepalive] [15] [60]
12 [resolv-retry] [infinite]
13 [nobind]
2016-01-08 09:00:44 LZO-ASYM init swap=0 asym=0
2016-01-08 09:00:44 EVENT: RESOLVE
2016-01-08 09:00:45 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:00:45 EVENT: WAIT
2016-01-08 09:00:45 SetTunnelSocket returned 1
2016-01-08 09:00:45 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:00:54 Server poll timeout, trying next remote entry...
2016-01-08 09:00:54 EVENT: RECONNECTING
2016-01-08 09:00:54 LZO-ASYM init swap=0 asym=0
2016-01-08 09:00:54 EVENT: RESOLVE
2016-01-08 09:00:54 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:00:54 EVENT: WAIT
2016-01-08 09:00:54 SetTunnelSocket returned 1
2016-01-08 09:00:54 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:04 Server poll timeout, trying next remote entry...
2016-01-08 09:01:04 EVENT: RECONNECTING
2016-01-08 09:01:04 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:04 EVENT: RESOLVE
2016-01-08 09:01:04 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:04 EVENT: WAIT
2016-01-08 09:01:04 SetTunnelSocket returned 1
2016-01-08 09:01:04 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:14 Server poll timeout, trying next remote entry...
2016-01-08 09:01:14 EVENT: RECONNECTING
2016-01-08 09:01:14 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:14 EVENT: RESOLVE
2016-01-08 09:01:14 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:14 EVENT: WAIT
2016-01-08 09:01:14 SetTunnelSocket returned 1
2016-01-08 09:01:14 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:24 Server poll timeout, trying next remote entry...
2016-01-08 09:01:24 EVENT: RECONNECTING
2016-01-08 09:01:24 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:24 EVENT: RESOLVE
2016-01-08 09:01:24 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:24 EVENT: WAIT
2016-01-08 09:01:24 SetTunnelSocket returned 1
2016-01-08 09:01:24 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:34 Server poll timeout, trying next remote entry...
2016-01-08 09:01:34 EVENT: RECONNECTING
2016-01-08 09:01:34 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:34 EVENT: RESOLVE
2016-01-08 09:01:34 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:34 EVENT: WAIT
2016-01-08 09:01:34 SetTunnelSocket returned 1
2016-01-08 09:01:34 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:44 EVENT: CONNECTION_TIMEOUT [ERR]
2016-01-08 09:01:44 EVENT: DISCONNECTED
2016-01-08 09:01:44 Raw stats on disconnect:
BYTES_OUT : 420
PACKETS_OUT : 30
CONNECTION_TIMEOUT : 1
N_RECONNECT : 5
2016-01-08 09:01:44 Performance stats on disconnect:
CPU usage (microseconds): 45231
Network bytes per CPU second: 9285
Tunnel bytes per CPU second: 0
2016-01-08 09:01:44 EVENT: DISCONNECT_PENDING
2016-01-08 09:01:44 ----- OpenVPN Stop -----
---------------------
Server Settings
---------------------
Interface Type: TUN
Protocol: UDP
Server Port: 1194
Firewall: Auto
Authorization Mode: TLS
Username/Password Auth. Only: No
Extra HMAC authorization: Disable
VPN Subnet/Netmask: 10.8.0.0 / 255.255.255.0
Poll Interval: 0
Push LAN to Clients: Yes
Direct Clients te redirect Internet Traffic: No
Respond to DNS: No
Encryption Cipher: Default
Compression: Adaptive
TLS Renegotiation Time: -1
Managa Client-Specific Options: No
---------------
Config File
---------------
client
dev tun
proto udp
remote blablabla.net 1194
float
comp-lzo adaptive
keepalive 15 60
auth-user-pass
ns-cert-type server
<ca>
-----BEGIN CERTIFICATE-----
blablabla
Ik ben nieuw met VPN en het lukt me niet op mijn iPhone met de server te verbinden.
Op mijn Asus RT-AC68u Router heb ik de VPN Server enabled. Eerst heb ik de boel getest met het TCP protocol op port 1194, alles werkte prima. Op mijn MacBook (via wifi in dezelfde LAN) en op mijn iPhone (met 4G cellular en via wifi in hetzelfde LAN).
Daarna veranderde ik maar één ding in de server settings, ik veranderde het protocol van TCP naar UDP, nog steeds op standaard port 1194. Ik exporteerde de config file opnieuw en importeerde hem in de OpenVPN iOS-app en probeerde verbinding te maken. Met 4G cellular werkte het allemaal weer perfect maar via wifi krijg ik deze TLS Error: "TLS key negotiation failed to occur within 60 seconds". Uiteindelijk volgt er een connection timeout.
Ik heb het thuis getest (in dezelfde LAN als de server) en buiten de deur in een ander wifi/LAN netwerk. Wanneer ik middels wifi verbinding maak met mijn MacBook (Tunnelblick/zeflde config file) gaat het gewoon goed en kan ik op de VPN inloggen middels UDP.
De firewall van de router staat uit, geen port forwarding/-triggering op port 1194.
In de NAT Passthrough staat alles op enabled maar OpenVPN staat daar niet bij.
I heb het ook getest met mijn iPad (ook iOS 9.2), zelfde probleem.
Ik hoop dat jullie me kunnen helpen met dit probleem.
Alvast bedankt!!!
Danny.
DE LOGS
192.168.1.1 = Router
192.168.1.105 = iPhone
(manually assigned)
--------------------------------------------
Server/Router (Asus RT-AC68u)
--------------------------------------------
Jan 8 09:33:06 openvpn[7068]: 192.168.1.105:54933 TLS: Initial packet from [AF_INET]192.168.1.105:54933, sid=bd257b7a ce66acff
Jan 8 09:33:15 openvpn[7068]: 192.168.1.105:51183 TLS: Initial packet from [AF_INET]192.168.1.105:51183, sid=cf8399e7 bba00712
Jan 8 09:33:25 openvpn[7068]: 192.168.1.105:52100 TLS: Initial packet from [AF_INET]192.168.1.105:52100, sid=8ae0c26c 422e09b5
Jan 8 09:33:35 openvpn[7068]: 192.168.1.105:58368 TLS: Initial packet from [AF_INET]192.168.1.105:58368, sid=84608a48 d0187bdb
Jan 8 09:33:45 openvpn[7068]: 192.168.1.105:53538 TLS: Initial packet from [AF_INET]192.168.1.105:53538, sid=af29c7f9 55938467
Jan 8 09:33:55 openvpn[7068]: 192.168.1.105:51671 TLS: Initial packet from [AF_INET]192.168.1.105:51671, sid=eb536368 dbc1c0ff
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 TLS Error: TLS handshake failed
Jan 8 09:34:06 openvpn[7068]: 192.168.1.105:54933 SIGUSR1[soft,tls-error] received, client-instance restarting
-------------------------------
Client/iPhone (iOS 9.2)
-------------------------------
2016-01-08 09:00:44 ----- OpenVPN Start -----
OpenVPN core 3.0 ios arm64 64-bit
2016-01-08 09:00:44 UNUSED OPTIONS
6 [keepalive] [15] [60]
12 [resolv-retry] [infinite]
13 [nobind]
2016-01-08 09:00:44 LZO-ASYM init swap=0 asym=0
2016-01-08 09:00:44 EVENT: RESOLVE
2016-01-08 09:00:45 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:00:45 EVENT: WAIT
2016-01-08 09:00:45 SetTunnelSocket returned 1
2016-01-08 09:00:45 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:00:54 Server poll timeout, trying next remote entry...
2016-01-08 09:00:54 EVENT: RECONNECTING
2016-01-08 09:00:54 LZO-ASYM init swap=0 asym=0
2016-01-08 09:00:54 EVENT: RESOLVE
2016-01-08 09:00:54 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:00:54 EVENT: WAIT
2016-01-08 09:00:54 SetTunnelSocket returned 1
2016-01-08 09:00:54 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:04 Server poll timeout, trying next remote entry...
2016-01-08 09:01:04 EVENT: RECONNECTING
2016-01-08 09:01:04 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:04 EVENT: RESOLVE
2016-01-08 09:01:04 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:04 EVENT: WAIT
2016-01-08 09:01:04 SetTunnelSocket returned 1
2016-01-08 09:01:04 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:14 Server poll timeout, trying next remote entry...
2016-01-08 09:01:14 EVENT: RECONNECTING
2016-01-08 09:01:14 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:14 EVENT: RESOLVE
2016-01-08 09:01:14 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:14 EVENT: WAIT
2016-01-08 09:01:14 SetTunnelSocket returned 1
2016-01-08 09:01:14 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:24 Server poll timeout, trying next remote entry...
2016-01-08 09:01:24 EVENT: RECONNECTING
2016-01-08 09:01:24 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:24 EVENT: RESOLVE
2016-01-08 09:01:24 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:24 EVENT: WAIT
2016-01-08 09:01:24 SetTunnelSocket returned 1
2016-01-08 09:01:24 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:34 Server poll timeout, trying next remote entry...
2016-01-08 09:01:34 EVENT: RECONNECTING
2016-01-08 09:01:34 LZO-ASYM init swap=0 asym=0
2016-01-08 09:01:34 EVENT: RESOLVE
2016-01-08 09:01:34 Contacting 12.34.567.89:1194 via UDP
2016-01-08 09:01:34 EVENT: WAIT
2016-01-08 09:01:34 SetTunnelSocket returned 1
2016-01-08 09:01:34 Connecting to blablabla.net:1194 (12.34.567.89) via UDPv4
2016-01-08 09:01:44 EVENT: CONNECTION_TIMEOUT [ERR]
2016-01-08 09:01:44 EVENT: DISCONNECTED
2016-01-08 09:01:44 Raw stats on disconnect:
BYTES_OUT : 420
PACKETS_OUT : 30
CONNECTION_TIMEOUT : 1
N_RECONNECT : 5
2016-01-08 09:01:44 Performance stats on disconnect:
CPU usage (microseconds): 45231
Network bytes per CPU second: 9285
Tunnel bytes per CPU second: 0
2016-01-08 09:01:44 EVENT: DISCONNECT_PENDING
2016-01-08 09:01:44 ----- OpenVPN Stop -----
---------------------
Server Settings
---------------------
Interface Type: TUN
Protocol: UDP
Server Port: 1194
Firewall: Auto
Authorization Mode: TLS
Username/Password Auth. Only: No
Extra HMAC authorization: Disable
VPN Subnet/Netmask: 10.8.0.0 / 255.255.255.0
Poll Interval: 0
Push LAN to Clients: Yes
Direct Clients te redirect Internet Traffic: No
Respond to DNS: No
Encryption Cipher: Default
Compression: Adaptive
TLS Renegotiation Time: -1
Managa Client-Specific Options: No
---------------
Config File
---------------
client
dev tun
proto udp
remote blablabla.net 1194
float
comp-lzo adaptive
keepalive 15 60
auth-user-pass
ns-cert-type server
<ca>
-----BEGIN CERTIFICATE-----
blablabla