Главная страница


ru.linux

 
 - RU.LINUX ---------------------------------------------------------------------
 From : Andrey Ovchinnikov                   2:467/70.49    13 Jan 2005  00:16:07
 To : All
 Subject : странности OpenVPN
 -------------------------------------------------------------------------------- 
 
 
 Hа одном из роутеров с недавнего времени стали происходить странные
 вещи с OpenVPN. Приходишь утром на работу - туннель лежит. Hаписал
 скрипт, пингующий удаленную сторону и перезапускающий туннель в случае
 отсутствия связи - не помогает. Туннель не стартует, в логи при этом
 пишется не совсем понятное мне: "Linux ifconfig failed: could not execute
 shell command". Hо стоит перезагрузить роутер, как все моментально
 начинает работать... Hо на следующий день ситуация повторяется.
 Возможно, кто-нибудь уже встречался с подобным? В чем может быть
 причина? Почему могут возникать проблемы с запуском ifconfig?
 Дистр. Debian Woody.
 
 Лог. Попытка перезапустить туннель скриптом:
 -------------------------------------------------------------------
 Jan 10 07:10:15 throuter openvpn[878]: Current Parameter Settings:
 Jan 10 07:10:15 throuter openvpn[878]:   persist_config = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   persist_mode = 1
 Jan 10 07:10:15 throuter openvpn[878]:   show_ciphers = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   show_digests = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   genkey = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   askpass = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   show_tls_ciphers = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   local = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   remote = 'remote.no-ip.com'
 Jan 10 07:10:15 throuter openvpn[878]:   local_port = 5098
 Jan 10 07:10:15 throuter openvpn[878]:   remote_port = 5002
 Jan 10 07:10:15 throuter openvpn[878]:   remote_float = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   ipchange = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   bind_local = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   dev = 'tun'
 Jan 10 07:10:15 throuter openvpn[878]:   dev_type = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   dev_node = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   tun_ipv6 = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   ifconfig_local = '192.168.33.254'
 Jan 10 07:10:15 throuter openvpn[878]:   ifconfig_remote = '192.168.1.254'
 Jan 10 07:10:15 throuter openvpn[878]:   shaper = 0
 Jan 10 07:10:15 throuter openvpn[878]:   tun_mtu = 1300
 Jan 10 07:10:15 throuter openvpn[878]:   tun_mtu_defined = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   udp_mtu = 1200
 Jan 10 07:10:15 throuter openvpn[878]:   udp_mtu_defined = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   mlock = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   inactivity_timeout = 0
 Jan 10 07:10:15 throuter openvpn[878]:   ping_send_timeout = 15
 Jan 10 07:10:15 throuter openvpn[878]:   ping_rec_timeout = 0
 Jan 10 07:10:15 throuter openvpn[878]:   ping_rec_timeout_action = 0
 Jan 10 07:10:15 throuter openvpn[878]:   ping_timer_remote = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   persist_tun = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   persist_local_ip = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   persist_remote_ip = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   persist_key = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   resolve_retry_seconds = 60
 Jan 10 07:10:15 throuter openvpn[878]:   username = 'nobody'
 Jan 10 07:10:15 throuter openvpn[878]:   groupname = 'nogroup'
 Jan 10 07:10:15 throuter openvpn[878]:   chroot_dir = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   cd_dir = '/etc/openvpn'
 Jan 10 07:10:15 throuter openvpn[878]:   writepid =
 '/var/run/openvpn.th-slave.pid'
 Jan 10 07:10:15 throuter openvpn[878]:   up_script = './th-slave.up'
 Jan 10 07:10:15 throuter openvpn[878]:   down_script = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   daemon = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   inetd = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   nice = 0
 Jan 10 07:10:15 throuter openvpn[878]:   verbosity = 5
 Jan 10 07:10:15 throuter openvpn[878]:   mute = 0
 Jan 10 07:10:15 throuter openvpn[878]:   gremlin = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   shared_secret_file = 'th-slave.key'
 Jan 10 07:10:15 throuter openvpn[878]:   ciphername_defined = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   ciphername = 'BF-CBC'
 Jan 10 07:10:15 throuter openvpn[878]:   authname_defined = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   authname = 'SHA1'
 Jan 10 07:10:15 throuter openvpn[878]:   keysize = 0
 Jan 10 07:10:15 throuter openvpn[878]:   packet_id = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   iv = ENABLED
 Jan 10 07:10:15 throuter openvpn[878]:   test_crypto = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   tls_server = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   tls_client = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   ca_file = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   dh_file = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   cert_file = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   priv_key_file = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   cipher_list = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   tls_verify = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]:   tls_timeout = 5
 Jan 10 07:10:15 throuter openvpn[878]:   renegotiate_bytes = 0
 Jan 10 07:10:15 throuter openvpn[878]:   renegotiate_packets = 0
 Jan 10 07:10:15 throuter openvpn[878]:   renegotiate_seconds = 3600
 Jan 10 07:10:15 throuter openvpn[878]:   handshake_window = 60
 Jan 10 07:10:15 throuter openvpn[878]:   transition_window = 3600
 Jan 10 07:10:15 throuter openvpn[878]:   single_session = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   disable_occ = DISABLED
 Jan 10 07:10:15 throuter openvpn[878]:   tls_auth_file = '[UNDEF]'
 Jan 10 07:10:15 throuter openvpn[878]: OpenVPN 1.3.2 i386-pc-linux-gnu built on 
 Feb  6 2003
 Jan 10 07:10:15 throuter openvpn[878]: PTHREAD support initialized
 Jan 10 07:10:15 throuter openvpn[878]: UDP link local (bound): [undef]:5098
 Jan 10 07:10:15 throuter openvpn[878]: UDP link remote: 217.226.47.75:5002
 Jan 10 07:10:15 throuter openvpn[878]: Static Encrypt: Cipher 'BF-CBC'
 initialized with 128 bit key
 Jan 10 07:10:15 throuter openvpn[878]: Static Encrypt: Using 160 bit message
 digest 'SHA1' for HMAC authentication
 Jan 10 07:10:15 throuter openvpn[878]: Static Decrypt: Cipher 'BF-CBC'
 initialized with 128 bit key
 Jan 10 07:10:15 throuter openvpn[878]: Static Decrypt: Using 160 bit message
 digest 'SHA1' for HMAC authentication
 Jan 10 07:10:15 throuter openvpn[878]: Data Channel MTU parms: mtu=1156
 extra_frame=44 extra_buffer=44 extra_tun=0
 Jan 10 07:10:15 throuter openvpn[878]: tun/tap device tun0 opened
 Jan 10 07:10:15 throuter openvpn[878]: ifconfig tun0 192.168.33.254 pointopoint 
 192.168.1.254 mtu 1156
 Jan 10 07:10:15 throuter openvpn[878]: Linux ifconfig failed: could not execute 
 shell command
 Jan 10 07:10:15 throuter openvpn[878]: Exiting
 А вот так он стартует после перезагрузки системы (окончание лога):
 ----------------------------------------------------------------------
 Jan 10 07:56:03 throuter openvpn[211]: ifconfig tun0 192.168.33.254 pointopoint 
 192.168.1.254 mtu 1156
 Jan 10 07:56:03 throuter openvpn[211]: ./th-slave.up tun0 1156 1200
 192.168.33.254 192.168.1.254
 Jan 10 07:56:03 throuter openvpn[211]: GID set to nogroup
 Jan 10 07:56:03 throuter openvpn[211]: UID set to nobody
 Jan 10 07:56:07 throuter openvpn[211]: Peer Connection Initiated with
 217.82.30.239:5002
 -----------------------------------------------------------------------
 
 -- 
 powered by Saicat Linux 2:467/70.49
 --- tin/1.5.16-20030125 ("Bubbles") (UNIX) (Linux/2.4.27 (i686))
  * Origin: //Born to run Unix... (2:467/70.49)
 
 

Вернуться к списку тем, сортированных по: возрастание даты  уменьшение даты  тема  автор 

 Тема:    Автор:    Дата:  
 странности OpenVPN   Andrey Ovchinnikov   13 Jan 2005 00:16:07 
 Re: странности OpenVPN   Oleg Lisovsky   13 Jan 2005 19:29:46 
 Re: странности OpenVPN   Andrey Ovchinnikov   13 Jan 2005 21:51:23 
Архивное /ru.linux/350551cee341f.html, оценка 1 из 5, голосов 10
Яндекс.Метрика
Valid HTML 4.01 Transitional