Hello,
 
In the meantime I've tried running it with Apparmor and the Radius plugin 
disabled.
Also with the python version of this script. The error is the same.
Maybe Synology did some magic thing, in that case I would be in the wrong place 
to ask.
> I'd  add some debug statements to the script, e.g. add on the second line. 
>   echo "[$0] [$1] [$2] [$3] [$4]"Result:***************************** Mon Oct 
>  5 19:23:14 2015 us=499434 192.168.11.32:1194 ++ Certificate has EKU (str) 
> TLS Web Client Authentication, expects TLS Web Client Authentication

Mon Oct  5 19:23:14 2015 us=499500 192.168.11.32:1194 VERIFY EKU OK
***

[/volume1/@appstore/VPNCenter/scripts/ovpnCNcheck.sh] 
[/volume1/@appstore/VPNCenter/scripts/userlist.txt] [0] [C=NL, ST=GLD, O=MMD, 
OU=OVPN-NAS, CN=admin, emailAddress=dreet...@hotmail.com] []
***^^^^^^^^^^
This line shows up extra, so I would think the admin cert arrived.
***

Mon Oct  5 19:23:14 2015 us=511255 192.168.11.32:1194 WARNING: Failed running 
command (--tls-verify script): external program exited with error status: 1

Mon Oct  5 19:23:14 2015 us=511360 192.168.11.32:1194 VERIFY SCRIPT ERROR: 
depth=0, C=NL, ST=GLD, O=MMD, OU=OVPN-NAS, CN=admin, 
emailAddress=dreet...@hotmail.com

Mon Oct  5 19:23:14 2015 us=511681 192.168.11.32:1194 TLS_ERROR: BIO read 
tls_read_plaintext error: error:140890B2:lib(20):func(137):reason(178)
****************************** 
> Also, what happens if you run the script manually 
> with the same parameters as specified via OpenVPN ?
You mean start from the CLI? It`s becoming quit a journey :) 
Thanks for trying to help this novice.
André

                                          
------------------------------------------------------------------------------
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to