The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.

    OpenVPN 2.3 doesn't like my VPN configs anymore

    Discussion in 'Networking and Wireless' started by Mr.Koala, Sep 30, 2013.

  1. Mr.Koala

    Mr.Koala Notebook Virtuoso

    Reputations:
    568
    Messages:
    2,307
    Likes Received:
    566
    Trophy Points:
    131
    I have some VPNs which worked just fine with the OpenVPN v2.2 client. I got a VPN on IPv6 transport and therefore upgraded the client to v2.3. Now the old VPN configs no longer work.

    Below is one of them. This one is a free trial service from a VPN provider so I can show you the details. The username is "tenacy" and the password is null.

    # OVPN Config
    Code:
    #
    verb 1
    client
    dev tun
    proto tcp
    resolv-retry 0
    nobind
    persist-key
    ns-cert-type server
    tls-cipher RC4-MD5
    tls-auth [inline] 1
    comp-lzo
    auth-user-pass pw.ini
    connect-retry 1
    connect-retry-max 2
    max-routes 2500
    remote localhost 1194
    http-proxy tephany.tenacy-free.com 39123 access
    <ca>
    -----BEGIN CERTIFICATE-----
    MIID2jCCA0OgAwIBAgIJANy8SjU3xEMLMA0GCSqGSIb3DQEBBQUAMIGlMQswCQYD
    VQQGEwJVUzELMAkGA1UECBMCQ0ExFjAUBgNVBAcTDVNhbiBGcmFuY2lzY28xFDAS
    BgNVBAoTC1RlbmFjeSBJbmMuMRAwDgYDVQQLEwdPcGVuVlBOMRAwDgYDVQQDEwdv
    cGVudnBuMRQwEgYDVQQpEwtUZW5hY3kgSW5jLjEhMB8GCSqGSIb3DQEJARYSc3Vw
    cG9ydEB0ZW5hY3kuY29tMB4XDTExMDkwMzA5NTkyNFoXDTIxMDgzMTA5NTkyNFow
    gaUxCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDQTEWMBQGA1UEBxMNU2FuIEZyYW5j
    aXNjbzEUMBIGA1UEChMLVGVuYWN5IEluYy4xEDAOBgNVBAsTB09wZW5WUE4xEDAO
    BgNVBAMTB29wZW52cG4xFDASBgNVBCkTC1RlbmFjeSBJbmMuMSEwHwYJKoZIhvcN
    AQkBFhJzdXBwb3J0QHRlbmFjeS5jb20wgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJ
    AoGBAK/UxEvs5RrgGhu1ILQiXxXJBTbi3v0RnjOzL3C/DhTDsqZj/89tojXHWONW
    kI1VFcvBoTHKwCojBgsHrmyejl31SD44HMUT8nngrMgtAF2aCDwCcIHZmhXMC8z0
    QOzlj12bKTmMtnj8pxLIB0K+FO6VP4Au3RYCTSy3Kinjy7eJAgMBAAGjggEOMIIB
    CjAdBgNVHQ4EFgQUu7YKia/hHYw0J7qzxZ5rKpamsEwwgdoGA1UdIwSB0jCBz4AU
    u7YKia/hHYw0J7qzxZ5rKpamsEyhgaukgagwgaUxCzAJBgNVBAYTAlVTMQswCQYD
    VQQIEwJDQTEWMBQGA1UEBxMNU2FuIEZyYW5jaXNjbzEUMBIGA1UEChMLVGVuYWN5
    IEluYy4xEDAOBgNVBAsTB09wZW5WUE4xEDAOBgNVBAMTB29wZW52cG4xFDASBgNV
    BCkTC1RlbmFjeSBJbmMuMSEwHwYJKoZIhvcNAQkBFhJzdXBwb3J0QHRlbmFjeS5j
    b22CCQDcvEo1N8RDCzAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4GBAHDb
    NDAsJqASN0FiLQqmgqSF/yVk2BzH/c3R+1phMMPeb/hIxMZKfjJIzYZ0z6fsbZHh
    A3ZzK09muWsV4TeA7uC40WkJGtbYtOX2hbf2FjPxELAe9itfYmB5kfIEDo2KxMXM
    8JbJqKYlzgg2+ce0D0bAA+9XCk+MEEWvpIHj+HRZ
    -----END CERTIFICATE-----
    </ca>
    <tls-auth>
    -----BEGIN OpenVPN Static key V1-----
    a32193a3a7b101a34be3e07178ce68af
    8a31f3b9a5cb69e4335a129f0d071e57
    bffa89581259885fae10d2c807a8fcf2
    329c6fcd6682edacc5f474480e1e1350
    596cce0c1db846b60cbe5f50dee44fb6
    cbdc945c9966779a7a5a1f9e158910d2
    2d6053ac4cbb811e91d53f5c2a9a5afb
    32114ee6956c0eb176a88430649d42f1
    cefa6c5e71caa7167e230cdc697f3016
    3b11839b9326b5f31591874711ca976c
    fdd73bddea0c101aba8aedfb262e088f
    309f2b6d69c28ee8d3b26af38730c252
    32f63f7fff6b12acc2b2207645f5795e
    a2f18054c77e3273a60eea015fcef90f
    85e4132f284a7c422ced5d5b27071f34
    c1657571379eb6d80120ce3a0200f8b1
    -----END OpenVPN Static key V1-----
    </tls-auth>
    # The "access" File
    Code:
    contact
    [email protected]
    # The "pw.ini" File
    Code:
    tenacy
    
    
    This is what happens when I try to connect to that VPN using v2.3 client.
    Code:
    ...
    ...
    ...
    Mon Sep 30 18:31:12 2013 us=321923 Attempting to establish TCP connection with [AF_INET]124.248.205.5:39123 [nonblock]
    Mon Sep 30 18:31:13 2013 us=322148 TCP connection established with [AF_INET]124.248.205.5:39123
    Mon Sep 30 18:31:13 2013 us=378272 Send to HTTP proxy: 'CONNECT localhost:1194 HTTP/1.0'
    Mon Sep 30 18:31:13 2013 us=378423 Attempting Basic Proxy-Authorization
    Mon Sep 30 18:31:13 2013 us=378460 Send to HTTP proxy: 'Proxy-Authorization: Basic 77u/Y29udGFjdDpzdXBwb3J0QHRlbmFjeS5jb20='
    Mon Sep 30 18:31:13 2013 us=460032 HTTP proxy returned: 'HTTP/1.0 407 Proxy Authentication Required'
    Mon Sep 30 18:31:13 2013 us=460122 Proxy requires authentication
    Mon Sep 30 18:31:13 2013 us=460151 Proxy requires authentication
    Mon Sep 30 18:31:13 2013 us=460218 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460313 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460344 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460372 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460414 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460442 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460470 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460497 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460636 TCP/UDP: Closing socket
    Mon Sep 30 18:31:13 2013 us=460705 PID packet_id_free
    Mon Sep 30 18:31:13 2013 us=460754 SIGTERM[soft,init_instance] received, process exiting
    Mon Sep 30 18:31:13 2013 us=461449 PKCS#11: Removing providers
    Mon Sep 30 18:31:13 2013 us=461484 PKCS#11: Releasing sessions
    Mon Sep 30 18:31:13 2013 us=461513 PKCS#11: Terminating slotevent
    Mon Sep 30 18:31:13 2013 us=461543 PKCS#11: Marking as uninitialized
    Any ideas about why the new client doesn't like my old IPv4 configs?
     
  2. ALLurGroceries

    ALLurGroceries  Vegan Vermin Super Moderator

    Reputations:
    15,730
    Messages:
    7,146
    Likes Received:
    2,343
    Trophy Points:
    331
    Your HTTP proxy authorization is failing.

    Code:
    http-proxy tephany.tenacy-free.com 39123 access
    Is access a file with your username on the first line and two newlines after (since there is a null password)?

    See: HOWTO
     
  3. Mr.Koala

    Mr.Koala Notebook Virtuoso

    Reputations:
    568
    Messages:
    2,307
    Likes Received:
    566
    Trophy Points:
    131
    Thanks for the reply.

    The content of the 'access' file appears to be the VPN provider's contact information:
    Code:
    contact
    [email protected]
    The 'pw.ini' file is created by me with 'tenacy' followed by two empty lines. I tried removing the reference on the config and type the credentials manually. Doesn't work.


    Installing v2.2 client makes the VPN accessible again, without editing anything in the config files.
     
  4. ALLurGroceries

    ALLurGroceries  Vegan Vermin Super Moderator

    Reputations:
    15,730
    Messages:
    7,146
    Likes Received:
    2,343
    Trophy Points:
    331
    Did you make any progress? The problem seems to be with your proxy authentication, not the VPN itself. Maybe try using the proxy with a web browser to double check the credentials.
     
  5. Mr.Koala

    Mr.Koala Notebook Virtuoso

    Reputations:
    568
    Messages:
    2,307
    Likes Received:
    566
    Trophy Points:
    131
    Am I supposed to use "contact" as username and "[email protected]" as password? Tried the http proxy in FireFox and the proxy refuses connection.