Hi Hans,

j.witvl...@mindef.nl wrote:
>
> Hi all,
>
> Before delving deeper into it, perhaps someone seen this behavior before….
>
> What I seem (..) to see, is this:
>
> 1) doing a DNS-push towards the client
>
> 2) new dns-server gets into /etc/resolv.conf
>
> 3) all works OK ;-)
>
> 4) stop the vpn
>
> 5) the pushed dns-server is still in resolv.conf
>
> 6) client try to query an unreachable DNS-server (long delays)
>
> Seems that the if-down is not executed
>
> Could be mistaken though…
>
> Still on an old 2.1.4-based version on Ubuntu-12.10
>
> (yeah, we struggling towards 2.3.2)
>

if you're running openvpn using
user nobody
group nobody
(or any other user) then the if-down script will not successfull run ; 
you could use the 'down-root' plugin to switch back to user 'root' 
before running the 'restore' script.

HTH,

JJK


------------------------------------------------------------------------------
Android is increasing in popularity, but the open development platform that
developers love is also attractive to malware creators. Download this white
paper to learn more about secure code signing practices that can help keep
Android apps secure.
http://pubads.g.doubleclick.net/gampad/clk?id=65839951&iu=/4140/ostg.clktrk
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to