Fire TV2 - OpenVPN - Fire TV Themes and Apps

Hi,
i have installed openvpn binärie für Android 5.x to /system/xbin and chmof 755
the config is on /sdcard....
i become a tsl error...
the config iss correct (download fron cyberghost)
can everyboudy help me ?

Logfile
Hoggels said:
Hi,
i have installed openvpn binärie für Android 5.x to /system/xbin and chmof 755
the config is on /sdcard....
i become a tsl error...
the config iss correct (download fron cyberghost)
can everyboudy help me ?
Click to expand...
Click to collapse
Here my Config
client
remote 1-ch.cg-dialup.net 443
dev tun
proto udp
auth-user-pass /sdcard/openvpn/pas.key
resolv-retry infinite
redirect-gateway def1
persist-key
persist-tun
nobind
cipher AES-256-CBC
auth MD5
ping 15
ping-exit 90
ping-timer-rem
script-security 2
remote-cert-tls server
route-delay 5
verb 4
comp-lzo
ca /sdcard/openvpn/ca.crt
cert /sdcard/openvpn/client.crt
key /sdcard/openvpn/client.key
.........................
and Logfile
Thu May 5 15:51:48 2016 us=858896 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Thu May 5 15:51:48 2016 us=859110 Re-using SSL/TLS context
Thu May 5 15:51:48 2016 us=859292 LZO compression initialized
Thu May 5 15:51:48 2016 us=859574 Control Channel MTU parms [ L:1554 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 5 15:51:49 2016 us=17836 RESOLVE: NOTE: 1-ch.cg-dialup.net resolves to 10 addresses, choosing one by random
Thu May 5 15:51:49 2016 us=17940 Data Channel MTU parms [ L:1554 D:1450 EF:54 EB:135 ET:0 EL:0 AF:3/1 ]
Thu May 5 15:51:49 2016 us=18028 Local Options String: 'V4,dev-type tun,link-mtu 1554,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-client'
Thu May 5 15:51:49 2016 us=18063 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1554,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-server'
Thu May 5 15:51:49 2016 us=18121 Local Options hash (VER=V4): '4d1bd89e'
Thu May 5 15:51:49 2016 us=18175 Expected Remote Options hash (VER=V4): '4e0f8044'
Thu May 5 15:51:49 2016 us=18231 Socket Buffers: R=[212992->131072] S=[212992->131072]
Thu May 5 15:51:49 2016 us=18273 UDPv4 link local: [undef]
Thu May 5 15:51:49 2016 us=18315 UDPv4 link remote: 185.32.222.15:443
Thu May 5 15:51:49 2016 us=53970 TLS: Initial packet from 185.32.222.15:443, sid=172cc2ce 4ea31aac
Thu May 5 15:51:49 2016 us=54538 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Thu May 5 15:51:49 2016 us=109247 VERIFY OK: depth=1, /C=DE/O=CyberGhost_VPN/OU=CyberGhost/CN=CyberGhost
Thu May 5 15:51:49 2016 us=111061 VERIFY ERROR: depth=0, error=certificate signature failure: /C=RO/ST=RO/L=Bucharest/O=CyberGhost_VPN/OU=CyberGhost/CN=CyberGhost/name=CyberGhost_VPN/[email protected]
Thu May 5 15:51:49 2016 us=111645 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Thu May 5 15:51:49 2016 us=111842 TLS Error: TLS object -> incoming plaintext read error
Thu May 5 15:51:49 2016 us=112114 TLS Error: TLS handshake failed
Thu May 5 15:51:49 2016 us=112638 TCP/UDP: Closing socket
Thu May 5 15:51:49 2016 us=112978 SIGUSR1[soft,tls-error] received, process restarting
Thu May 5 15:51:49 2016 us=113172 Restart pause, 2 second(s)

Related

[Q] OpenVPN + ARHD

Hello all,
A few weeks ago i was still using a stock rom. On this rom i had a working VPN connection with my home netwerk trough OPENVPN ( settings). It connected to my network and i could acces my shares etc and my internet was browsing with my home ip adress.
Now i have installed ARHD 6.3.1 but i can't get my VPN working. The login is successful because i see that it it connected to **.*** etc. The problem however is that my phone doesn't get a ipadress from my network and i can't acces any shares. When i browse the internet i also don't have my home ip adress.
Can anyone give me an suggestion about what i could do to solve this problem?
Im using the same configs.
Thanks in advance
I solved my openvpn issue by ticking Menu>Advanced>Fix HTC Routes. Assuming you are using OpenVPN Settings by Friedrich Schäuffelhut?
Yes that's true but that option doesn't work for me.
Thank you for the reply.
Here is my log file:
Sat Dec 31 16:00:49 2011 OpenVPN 2.1_rc15 i686-pc-linux-gnu [SSL] [LZO2] [EPOLL] built on Jan 21 2010
Sat Dec 31 16:00:49 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Sat Dec 31 16:00:49 2011 WARNING: file 'client1.key' is group or others accessible
Sat Dec 31 16:00:49 2011 LZO compression initialized
Sat Dec 31 16:00:49 2011 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sat Dec 31 16:00:50 2011 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sat Dec 31 16:00:50 2011 Local Options hash (VER=V4): '41690919'
Sat Dec 31 16:00:50 2011 Expected Remote Options hash (VER=V4): '530fdded'
Sat Dec 31 16:00:50 2011 Socket Buffers: R=[110592->131072] S=[110592->131072]
Sat Dec 31 16:00:50 2011 UDPv4 link local: [undef]
Sat Dec 31 16:00:50 2011 UDPv4 link remote: xx.xxx.xxx.xxx:xxxx
Sat Dec 31 16:00:50 2011 TLS: Initial packet from xx.xxx.xxx.xxx:xxxx, sid=188ccff9 75db0c46
Sat Dec 31 16:00:51 2011 VERIFY OK: depth=1, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=Henk/name=Henkble3/[email protected]
Sat Dec 31 16:00:51 2011 VERIFY OK: nsCertType=SERVER
Sat Dec 31 16:00:51 2011 VERIFY OK: depth=0, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=server/name=Henkske/[email protected]
Sat Dec 31 16:00:52 2011 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 16:00:52 2011 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 16:00:52 2011 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 16:00:52 2011 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 16:00:52 2011 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Sat Dec 31 16:00:52 2011 [server] Peer Connection Initiated with xx.xxx.xxx.xxx:xxxx
Sat Dec 31 16:00:53 2011 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Sat Dec 31 16:00:53 2011 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.8.0.1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Sat Dec 31 16:00:53 2011 OPTIONS IMPORT: timers and/or timeouts modified
Sat Dec 31 16:00:53 2011 OPTIONS IMPORT: --ifconfig/up options modified
Sat Dec 31 16:00:53 2011 OPTIONS IMPORT: route options modified
Sat Dec 31 16:00:53 2011 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Sat Dec 31 16:00:53 2011 ROUTE default_gateway=10.100.38.17
Sat Dec 31 16:00:53 2011 TUN/TAP device tun0 opened
Sat Dec 31 16:00:53 2011 TUN/TAP TX queue length set to 100
Sat Dec 31 16:00:53 2011 /system/xbin/bb/ifconfig tun0 10.8.0.6 pointopoint 10.8.0.5 mtu 1500
Sat Dec 31 16:00:53 2011 /system/xbin/bb/route add -net xx.xxx.xxx.xxx netmask 255.255.255.255 gw 10.100.38.17
Sat Dec 31 16:00:53 2011 /system/xbin/bb/route add -net 0.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 16:00:53 2011 /system/xbin/bb/route add -net 128.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 16:00:53 2011 /system/xbin/bb/route add -net 10.8.0.1 netmask 255.255.255.255 gw 10.8.0.5
Sat Dec 31 16:00:53 2011 Initialization Sequence Completed
Here the log directly from openvpn:
Sat Dec 31 20:55:53 2011 OpenVPN 2.1_rc15 i686-pc-linux-gnu [SSL] [LZO2] [EPOLL] built on Jan 21 2010
Sat Dec 31 20:55:53 2011 MANAGEMENT: TCP Socket listening on 127.0.0.1:21004
Sat Dec 31 20:55:53 2011 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Sat Dec 31 20:55:53 2011 WARNING: file 'client1.key' is group or others accessible
Sat Dec 31 20:55:53 2011 LZO compression initialized
Sat Dec 31 20:55:53 2011 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sat Dec 31 20:55:53 2011 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sat Dec 31 20:55:53 2011 Local Options hash (VER=V4): '41690919'
Sat Dec 31 20:55:53 2011 Expected Remote Options hash (VER=V4): '530fdded'
Sat Dec 31 20:55:53 2011 Socket Buffers: R=[110592->131072] S=[110592->131072]
Sat Dec 31 20:55:53 2011 UDPv4 link local: [undef]
Sat Dec 31 20:55:53 2011 UDPv4 link remote: xx.xxx.xxx.xxx:xxxx
Sat Dec 31 20:55:53 2011 TLS: Initial packet from xx.xxx.xxx.xxx:xxxx, sid=391071b0 e351c68d
Sat Dec 31 20:55:54 2011 VERIFY OK: depth=1, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=Henk/name=Henkble3/[email protected]
Sat Dec 31 20:55:54 2011 VERIFY OK: nsCertType=SERVER
Sat Dec 31 20:55:54 2011 VERIFY OK: depth=0, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=server/name=Henkske/[email protected]
Sat Dec 31 20:55:55 2011 MANAGEMENT: Client connected from 127.0.0.1:21004
Sat Dec 31 20:55:56 2011 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 20:55:56 2011 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 20:55:56 2011 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 20:55:56 2011 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 20:55:56 2011 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Sat Dec 31 20:55:56 2011 [server] Peer Connection Initiated with xx.xxx.xxx.xxx:xxxx
Sat Dec 31 20:55:57 2011 MANAGEMENT: >STATE:1325361357,GET_CONFIG,,,
Sat Dec 31 20:55:57 2011 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Sat Dec 31 20:55:58 2011 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.8.0.1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Sat Dec 31 20:55:58 2011 OPTIONS IMPORT: timers and/or timeouts modified
Sat Dec 31 20:55:58 2011 OPTIONS IMPORT: --ifconfig/up options modified
Sat Dec 31 20:55:58 2011 OPTIONS IMPORT: route options modified
Sat Dec 31 20:55:58 2011 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Sat Dec 31 20:55:58 2011 ROUTE default_gateway=10.90.162.170
Sat Dec 31 20:55:58 2011 TUN/TAP device tun0 opened
Sat Dec 31 20:55:58 2011 TUN/TAP TX queue length set to 100
Sat Dec 31 20:55:58 2011 MANAGEMENT: >STATE:1325361358,ASSIGN_IP,,10.8.0.6,
Sat Dec 31 20:55:58 2011 /system/xbin/bb/ifconfig tun0 10.8.0.6 pointopoint 10.8.0.5 mtu 1500
Sat Dec 31 20:55:58 2011 /system/xbin/bb/route add -net xx.xxx.xxx.xxx.netmask 255.255.255.255 gw 10.90.162.170
Sat Dec 31 20:55:58 2011 /system/xbin/bb/route add -net 0.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 20:55:58 2011 /system/xbin/bb/route add -net 128.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 20:55:58 2011 MANAGEMENT: >STATE:1325361358,ADD_ROUTES,,,
Sat Dec 31 20:55:58 2011 /system/xbin/bb/route add -net 10.8.0.1 netmask 255.255.255.255 gw 10.8.0.5
Sat Dec 31 20:55:58 2011 Initialization Sequence Completed
Sat Dec 31 20:55:58 2011 MANAGEMENT: >STATE:1325361358,CONNECTED,SUCCESS,10.8.0.6,xx.xxx.xxx.xxx
Sat Dec 31 20:57:13 2011 TCP/UDP: Closing socket
Sat Dec 31 20:57:13 2011 /system/xbin/bb/route del -net 10.8.0.1 netmask 255.255.255.255
Sat Dec 31 20:57:13 2011 /system/xbin/bb/route del -net xx.xxx.xxx.xxx netmask 255.255.255.255
Sat Dec 31 20:57:14 2011 /system/xbin/bb/route del -net 0.0.0.0 netmask 128.0.0.0
Sat Dec 31 20:57:14 2011 /system/xbin/bb/route del -net 128.0.0.0 netmask 128.0.0.0
Sat Dec 31 20:57:14 2011 Closing TUN/TAP interface
Sat Dec 31 20:57:14 2011 /system/xbin/bb/ifconfig tun0 0.0.0.0
Sat Dec 31 20:57:15 2011 SIGTERM[hard,] received, process exiting
Sat Dec 31 20:57:15 2011 MANAGEMENT: >STATE:1325361435,EXITING,SIGTERM,,
I installed ARHD 6.1.3 and have flashed Lordmod kernel. It is correct that i only have to install openvpn settings i assume ?
Here is the log from a working vpn on stock FW:
Sat Dec 31 19:26:16 2011 OpenVPN 2.1_rc15 i686-pc-linux-gnu [SSL] [LZO2] [EPOLL] built on Jan 21 2010
Sat Dec 31 19:26:16 2011 MANAGEMENT: TCP Socket listening on 127.0.0.1:44512
Sat Dec 31 19:26:16 2011 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Sat Dec 31 19:26:16 2011 WARNING: file 'client1.key' is group or others accessible
Sat Dec 31 19:26:16 2011 LZO compression initialized
Sat Dec 31 19:26:16 2011 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Sat Dec 31 19:26:17 2011 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Sat Dec 31 19:26:17 2011 Local Options hash (VER=V4): '41690919'
Sat Dec 31 19:26:17 2011 Expected Remote Options hash (VER=V4): '530fdded'
Sat Dec 31 19:26:17 2011 Socket Buffers: R=[110592->131072] S=[110592->131072]
Sat Dec 31 19:26:17 2011 UDPv4 link local: [undef]
Sat Dec 31 19:26:17 2011 UDPv4 link remote: xx.xxx.xxx.xxx:xxxx
Sat Dec 31 19:26:17 2011 TLS: Initial packet from xx.xxx.xxx.xxx:xxxx, sid=49a09b7f 5e7b219a
Sat Dec 31 19:26:18 2011 VERIFY OK: depth=1, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=Henk/name=Henkble3/[email protected]
Sat Dec 31 19:26:18 2011 VERIFY OK: nsCertType=SERVER
Sat Dec 31 19:26:18 2011 VERIFY OK: depth=0, /C=xi/ST=NB/L=blabla/O=Henko/OU=Henkie2/CN=server/name=Henkske/[email protected]m
Sat Dec 31 19:26:19 2011 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 19:26:19 2011 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 19:26:19 2011 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Sat Dec 31 19:26:19 2011 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Sat Dec 31 19:26:19 2011 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Sat Dec 31 19:26:19 2011 [server] Peer Connection Initiated with xx.xxx.xxx.xxx:xxxx
Sat Dec 31 19:26:20 2011 MANAGEMENT: Client connected from 127.0.0.1:44512
Sat Dec 31 19:26:20 2011 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Sat Dec 31 19:26:20 2011 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.8.0.1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Sat Dec 31 19:26:20 2011 OPTIONS IMPORT: timers and/or timeouts modified
Sat Dec 31 19:26:20 2011 OPTIONS IMPORT: --ifconfig/up options modified
Sat Dec 31 19:26:20 2011 OPTIONS IMPORT: route options modified
Sat Dec 31 19:26:20 2011 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Sat Dec 31 19:26:20 2011 ROUTE default_gateway=10.12.91.169
Sat Dec 31 19:26:20 2011 TUN/TAP device tun0 opened
Sat Dec 31 19:26:20 2011 TUN/TAP TX queue length set to 100
Sat Dec 31 19:26:20 2011 MANAGEMENT: >STATE:1325355980,ASSIGN_IP,,10.8.0.6,
Sat Dec 31 19:26:20 2011 /system/xbin/bb/ifconfig tun0 10.8.0.6 pointopoint 10.8.0.5 mtu 1500
Sat Dec 31 19:26:20 2011 /system/xbin/bb/route add -net xx.xxx.xxx.xxx netmask 255.255.255.255 gw 10.12.91.169
Sat Dec 31 19:26:20 2011 /system/xbin/bb/route add -net 0.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 19:26:20 2011 /system/xbin/bb/route add -net 128.0.0.0 netmask 128.0.0.0 gw 10.8.0.5
Sat Dec 31 19:26:20 2011 MANAGEMENT: >STATE:1325355980,ADD_ROUTES,,,
Sat Dec 31 19:26:20 2011 /system/xbin/bb/route add -net 10.8.0.1 netmask 255.255.255.255 gw 10.8.0.5
Sat Dec 31 19:26:20 2011 Initialization Sequence Completed
Sat Dec 31 19:26:20 2011 MANAGEMENT: >STATE:1325355980,CONNECTED,SUCCESS,10.8.0.6,xx.xxx.xxx.xxx
Sat Dec 31 19:27:19 2011 TCP/UDP: Closing socket
Sat Dec 31 19:27:19 2011 /system/xbin/bb/route del -net 10.8.0.1 netmask 255.255.255.255
Sat Dec 31 19:27:19 2011 /system/xbin/bb/route del -net xx.xxx.xxx.xxx netmask 255.255.255.255
Sat Dec 31 19:27:19 2011 /system/xbin/bb/route del -net 0.0.0.0 netmask 128.0.0.0
Sat Dec 31 19:27:19 2011 /system/xbin/bb/route del -net 128.0.0.0 netmask 128.0.0.0
Sat Dec 31 19:27:19 2011 Closing TUN/TAP interface
Sat Dec 31 19:27:19 2011 /system/xbin/bb/ifconfig tun0 0.0.0.0
Sat Dec 31 19:27:21 2011 SIGTERM[hard,] received, process exiting
Sat Dec 31 19:27:21 2011 MANAGEMENT: >STATE:1325356041,EXITING,SIGTERM,,
Sorry for the kick but is here anyone who can help me?

[Q] [Need Help] ( openvpn ) having problems with route :(

I've been spending my time on this in a couple of days, and this thing's killing me.. my vpn is connected, but there's no traffic goes through the tunnel. device keeps using ISP's original IP
here's the details:
- installed busybox from busybox installer
- installed the latest version of openvpn binary with openvpn installer from the market
- installed openvpn settings from market
- not installed tun.ko ( i did this because s5360 has a preloaded tun.ko) also tried using tun.ko for ace and galaxy mini which is compatible with s5360
- symlinked busybox with /system/xbin/bb/ifconfig and /system/xbin/bb/route
when i executed 'which ifconfig' on terminal emulator, it said its location is /system/bin/ifconfig
what's wrong here? pls help
here's my log:
Code:
Mon Feb 6 10:47:08 2012 OpenVPN 2.1.1 i686-pc-linux-gnu [SSL] [LZO2] [EPOLL] built on Feb 2 2010
Mon Feb 6 10:47:08 2012 MANAGEMENT: TCP Socket listening on 127.0.0.1:42563
Mon Feb 6 10:47:08 2012 WARNING: file 'pass.txt' is group or others accessible
Mon Feb 6 10:47:08 2012 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Mon Feb 6 10:47:08 2012 ******* WARNING *******: null cipher specified, no encryption will be used
Mon Feb 6 10:47:08 2012 ******* WARNING *******: null MAC specified, no authentication will be used
Mon Feb 6 10:47:08 2012 LZO compression initialized
Mon Feb 6 10:47:08 2012 Control Channel MTU parms [ L:1508 D:140 EF:40 EB:0 ET:0 EL:0 ]
Mon Feb 6 10:47:08 2012 Data Channel MTU parms [ L:1508 D:1450 EF:8 EB:135 ET:0 EL:0 AF:14/8 ]
Mon Feb 6 10:47:08 2012 Local Options hash (VER=V4): 'a4a6c33e'
Mon Feb 6 10:47:08 2012 Expected Remote Options hash (VER=V4): '3053fa03'
Mon Feb 6 10:47:08 2012 Attempting to establish TCP connection with 199.119.224.205:443 [nonblock]
Mon Feb 6 10:47:09 2012 TCP connection established with 199.119.224.205:443
Mon Feb 6 10:47:09 2012 Socket Buffers: R=[87380->131072] S=[16384->131072]
Mon Feb 6 10:47:09 2012 TCPv4_CLIENT link local: [undef]
Mon Feb 6 10:47:09 2012 TCPv4_CLIENT link remote: 199.119.224.205:443
Mon Feb 6 10:47:09 2012 TLS: Initial packet from 199.119.224.205:443, sid=fa6b06ce e9c894e0
Mon Feb 6 10:47:10 2012 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Mon Feb 6 10:47:13 2012 MANAGEMENT: Client connected from 127.0.0.1:42563
Mon Feb 6 10:47:13 2012 MANAGEMENT: CMD 'state'
Mon Feb 6 10:47:13 2012 MANAGEMENT: CMD 'state on'
Mon Feb 6 10:47:13 2012 MANAGEMENT: CMD 'bytecount 0'
Mon Feb 6 10:47:16 2012 VERIFY OK: depth=1, /C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/CN=azznet/[email protected]
Mon Feb 6 10:47:16 2012 VERIFY OK: nsCertType=SERVER
Mon Feb 6 10:47:16 2012 VERIFY OK: depth=0, /C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/CN=server/[email protected]
Mon Feb 6 10:47:22 2012 WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1508', remote='link-mtu 1540'
Mon Feb 6 10:47:22 2012 WARNING: 'tun-mtu' is used inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
Mon Feb 6 10:47:22 2012 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Mon Feb 6 10:47:22 2012 [server] Peer Connection Initiated with 199.119.224.205:443
Mon Feb 6 10:47:23 2012 MANAGEMENT: >STATE:1328500043,GET_CONFIG,,,
Mon Feb 6 10:47:23 2012 MANAGEMENT: CMD 'bytecount 0'
Mon Feb 6 10:47:24 2012 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Mon Feb 6 10:47:25 2012 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 8.8.8.8,dhcp-option DNS 8.8.4.4,route-method exe,route-delay 2,route 10.2.0.1,ping 5,ping-restart 30,ifconfig 10.2.0.10 10.2.0.9'
Mon Feb 6 10:47:25 2012 OPTIONS IMPORT: timers and/or timeouts modified
Mon Feb 6 10:47:25 2012 OPTIONS IMPORT: --ifconfig/up options modified
Mon Feb 6 10:47:25 2012 OPTIONS IMPORT: route options modified
Mon Feb 6 10:47:25 2012 OPTIONS IMPORT: route-related options modified
Mon Feb 6 10:47:25 2012 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Mon Feb 6 10:47:25 2012 ROUTE default_gateway=10.168.156.1
Mon Feb 6 10:47:25 2012 TUN/TAP device tun0 opened
Mon Feb 6 10:47:25 2012 TUN/TAP TX queue length set to 100
Mon Feb 6 10:47:25 2012 MANAGEMENT: >STATE:1328500045,ASSIGN_IP,,10.2.0.10,
Mon Feb 6 10:47:25 2012 /system/xbin/bb/ifconfig tun0 10.2.0.10 pointopoint 10.2.0.9 mtu 1500
Mon Feb 6 10:47:25 2012 MANAGEMENT: CMD 'bytecount 0'
Mon Feb 6 10:47:27 2012 /system/xbin/bb/route add -net 199.119.224.205 netmask 255.255.255.255 gw 10.168.156.1
Mon Feb 6 10:47:27 2012 /system/xbin/bb/route add -net 0.0.0.0 netmask 128.0.0.0 gw 10.2.0.9
Mon Feb 6 10:47:27 2012 /system/xbin/bb/route add -net 128.0.0.0 netmask 128.0.0.0 gw 10.2.0.9
Mon Feb 6 10:47:27 2012 MANAGEMENT: >STATE:1328500047,ADD_ROUTES,,,
Mon Feb 6 10:47:27 2012 /system/xbin/bb/route add -net 10.2.0.1 netmask 255.255.255.255 gw 10.2.0.9
Mon Feb 6 10:47:27 2012 Initialization Sequence Completed
Mon Feb 6 10:47:27 2012 MANAGEMENT: >STATE:1328500047,CONNECTED,SUCCESS,10.2.0.10,199.119.224.205
Mon Feb 6 10:47:27 2012 MANAGEMENT: CMD 'bytecount 0'
Mon Feb 6 10:47:27 2012 MANAGEMENT: CMD 'bytecount 3'
Mon Feb 6 10:49:05 2012 MANAGEMENT: CMD 'state'
Mon Feb 6 10:49:05 2012 MANAGEMENT: CMD 'bytecount 3'
Mon Feb 6 10:49:09 2012 MANAGEMENT: CMD 'signal SIGTERM'
Mon Feb 6 10:49:09 2012 TCP/UDP: Closing socket
Mon Feb 6 10:49:09 2012 /system/xbin/bb/route del -net 10.2.0.1 netmask 255.255.255.255
Mon Feb 6 10:49:09 2012 /system/xbin/bb/route del -net 199.119.224.205 netmask 255.255.255.255
Mon Feb 6 10:49:09 2012 /system/xbin/bb/route del -net 0.0.0.0 netmask 128.0.0.0
Mon Feb 6 10:49:09 2012 /system/xbin/bb/route del -net 128.0.0.0 netmask 128.0.0.0
Mon Feb 6 10:49:09 2012 Closing TUN/TAP interface
Mon Feb 6 10:49:09 2012 /system/xbin/bb/ifconfig tun0 0.0.0.0
Mon Feb 6 10:49:11 2012 SIGTERM[hard,] received, process exiting
Mon Feb 6 10:49:11 2012 MANAGEMENT: >STATE:1328500151,EXITING,SIGTERM,,
and here's the config:
Code:
auth-user-pass pass.txt
ca ca.crt
client
dev tun
proto tcp
remote 199.119.224.205 443
resolv-retry infinite
nobind
persist-key
persist-tun
route-method exe
route-delay 3
auth none
cipher none
ns-cert-type server
comp-lzo
script-security 2 system
verb 2
redirect-gateway def1
;push redirect-gateway def1 bypass-dhcp
;push dhcp-option DNS 8.8.8.8
;route-gateway dhcp
log /sdcard/openvpn/log.ovpn
Code:
Mon Feb 6 10:47:22 2012 WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1508', remote='link-mtu 1540'
Mon Feb 6 10:47:22 2012 WARNING: 'tun-mtu' is used inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
i think that's the problem...
try add
Code:
tun-mtu 1500
tun-mtu-extra 32
on the config

[Q] OpenVPN: routing/bridged network and [semi]stock kernel

Hello to everybody,
I'm trying to run open VPN in my rooted stock Galaxy Nexus, with ICS 4.0.3.
My goal is to create a bridged interface to get an ip directly from the same DHCP server that serve to all the pcs at my work network instead of assign a special pool by using a tap interface, but i'm not even able to bring up a tun interface to check if openvpn is working.
I keep getting some error when it's trying to bring up the tun0 interface; openvpn quit with value exit with "Linux ifconfig failed: external program fork failed".
If I try to bring up the tun0 from shell, I get "ifconfig: tun0: error fetching interface information: Device not found".
Then I check if the kernel is running with support for tunneling and i found that CONFIG_TUN is correctly set.
Did I miss something? Did I had to set other kernel modules? Also, somewhere in this forum is said that "tun is possible, tap no due to system limitations": someone knows what this limitations are and how can i pass them?
Also, is this a right place to ask or i'm posting to the wrong forum?
Thank you and sorry for my english
R.
Here is a part of logcat showing the errror (whit location masked at line 4)
Code:
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-mgmt( 1959): =============> 0 == 4 resetting dns, leaving dns alone
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-mgmt( 1959): SUCCESS: bytecount interval changed
D/OpenVPNDaemonEnabler( 1959): Received OpenVPN network state changed from Auth to Get Config
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:43 2012 SENT CONTROL [xx.xx.xx.it]: 'PUSH_REQUEST' (status=1)
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 PUSH: Received control message: 'PUSH_REPLY,route 192.168.11.0 255.255.255.0,dhcp-option DNS 10.8.0.1,dhcp-option WINS 192.168.11.2,route 10.8.0.0 255.255.255.0,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.74 10.8.0.73'
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 OPTIONS IMPORT: timers and/or timeouts modified
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 OPTIONS IMPORT: --ifconfig/up options modified
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 OPTIONS IMPORT: route options modified
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 ROUTE default_gateway=2.195.48.1
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 TUN/TAP device tun0 opened
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 TUN/TAP TX queue length set to 100
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 MANAGEMENT: >STATE:1352902484,ASSIGN_IP,,10.8.0.74,
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 /system/xbin/busybox ifconfig tun0 10.8.0.74 pointopoint 10.8.0.73 mtu 1500
V/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-mgmt( 1959): onState(">STATE:1352902484,ASSIGN_IP,,10.8.0.74,")
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 MANAGEMENT: Client disconnected
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 Linux ifconfig failed: external program fork failed
D/OpenVPN-DaemonMonitor[/sdcard/openvpn/Nexus.ovpn]-daemon-stdout( 1959): Wed Nov 14 15:14:44 2012 Exiting

[AFTV2] OpenVPN Installer will not work

hi
OpenVPN Installer will not install Binaries. the logfile tell me system are not rw.
The System is rw.
adb shell tell me
/dev/block/platform/mtk-msdc.0/by-name/system /system ext4 rw,seclabel,noatime,commit=1,data=ordered 0 0
The openvpn installer say no.
erledigt !
Logfile
Thu May 5 15:51:48 2016 us=858896 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Thu May 5 15:51:48 2016 us=859110 Re-using SSL/TLS context
Thu May 5 15:51:48 2016 us=859292 LZO compression initialized
Thu May 5 15:51:48 2016 us=859574 Control Channel MTU parms [ L:1554 D:138 EF:38 EB:0 ET:0 EL:0 ]
Thu May 5 15:51:49 2016 us=17836 RESOLVE: NOTE: 1-ch.cg-dialup.net resolves to 10 addresses, choosing one by random
Thu May 5 15:51:49 2016 us=17940 Data Channel MTU parms [ L:1554 D:1450 EF:54 EB:135 ET:0 EL:0 AF:3/1 ]
Thu May 5 15:51:49 2016 us=18028 Local Options String: 'V4,dev-type tun,link-mtu 1554,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-client'
Thu May 5 15:51:49 2016 us=18063 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1554,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-server'
Thu May 5 15:51:49 2016 us=18121 Local Options hash (VER=V4): '4d1bd89e'
Thu May 5 15:51:49 2016 us=18175 Expected Remote Options hash (VER=V4): '4e0f8044'
Thu May 5 15:51:49 2016 us=18231 Socket Buffers: R=[212992->131072] S=[212992->131072]
Thu May 5 15:51:49 2016 us=18273 UDPv4 link local: [undef]
Thu May 5 15:51:49 2016 us=18315 UDPv4 link remote: 185.32.222.15:443
Thu May 5 15:51:49 2016 us=53970 TLS: Initial packet from 185.32.222.15:443, sid=172cc2ce 4ea31aac
Thu May 5 15:51:49 2016 us=54538 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Thu May 5 15:51:49 2016 us=109247 VERIFY OK: depth=1, /C=DE/O=CyberGhost_VPN/OU=CyberGhost/CN=CyberGhost
Thu May 5 15:51:49 2016 us=111061 VERIFY ERROR: depth=0, error=certificate signature failure: /C=RO/ST=RO/L=Bucharest/O=CyberGhost_VPN/OU=CyberGhost/CN=CyberGhost/name=CyberGhost_VPN/[email protected]
Thu May 5 15:51:49 2016 us=111645 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Thu May 5 15:51:49 2016 us=111842 TLS Error: TLS object -> incoming plaintext read error
Thu May 5 15:51:49 2016 us=112114 TLS Error: TLS handshake failed
Thu May 5 15:51:49 2016 us=112638 TCP/UDP: Closing socket
Thu May 5 15:51:49 2016 us=112978 SIGUSR1[soft,tls-error] received, process restarting
Thu May 5 15:51:49 2016 us=113172 Restart pause, 2 second(s)
what is the problem ? can everyboudy help me ?
here die config
client
remote 1-ch.cg-dialup.net 443
dev tun
proto udp
auth-user-pass /sdcard/openvpn/pas.key
resolv-retry infinite
redirect-gateway def1
persist-key
persist-tun
nobind
cipher AES-256-CBC
auth MD5
ping 15
ping-exit 90
ping-timer-rem
script-security 2
remote-cert-tls server
route-delay 5
verb 4
comp-lzo
ca /sdcard/openvpn/ca.crt
cert /sdcard/openvpn/client.crt
key /sdcard/openvpn/client.key
Hoggels said:
hi
OpenVPN Installer will not install Binaries. the logfile tell me system are not rw.
The System is rw.
adb shell tell me
/dev/block/platform/mtk-msdc.0/by-name/system /system ext4 rw,seclabel,noatime,commit=1,data=ordered 0 0
The openvpn installer say no.
erledigt !
Click to expand...
Click to collapse
You might want to include the basics. Like if your Rooted, What device version & on what FW are you trying this on.
I had some luck with OpenVPN Installer discussed in second thread here: http://forum.xda-developers.com/fire-tv/help/vpn-rooted-fire-tv-t3370488
However, OpenVPN Settings still wouldn't work properly (even with correct binaries installed). Then tried Open VPN for Android with much more success (without need of root). Discussed here: http://forum.xda-developers.com/fire-tv/help/openvpn-android-rooted-fire-tv-t3373088

need held building LOS16 with docker for unsupported device

Hi, I'm trying to build lineage 16 for my oxygen device. But after repo sync I'm getting this error:
/root/build.sh: line 141: [: $(PLATFORM_VERSION
$(TARGET_PLATFORM_VERSION): integer expression expected
>> [Sun Apr 7 06:12:21 UTC 2019] Missing "vendor/cm", abort
I can't find /root/build.sh and why is "vendor/cm" missing ??
why do I need this "cm" folder ?
I have the same problem as you.
Set cache size limit to 50.0 GB
>> [Fri Apr 12 18:47:02 UTC 2019] Branch: lineage-16.0
>> [Fri Apr 12 18:47:02 UTC 2019] Devices: herolte,hero2lte,
>> [Fri Apr 12 18:47:05 UTC 2019] (Re)initializing branch repository
>> [Fri Apr 12 18:47:07 UTC 2019] Copying '/srv/local_manifests/*.xml' to '.repo/local_manifests/'
>> [Fri Apr 12 18:47:07 UTC 2019] Syncing branch repository
/root/build.sh: line 141: [: $(PLATFORM_VERSION
$(TARGET_PLATFORM_VERSION): integer expression expected
>> [Fri Apr 12 18:49:54 UTC 2019] Missing "vendor/cm", aborting
~/LineageOS/16.0_microG $

Categories

Resources