Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread Selva Nair
Hi, > Fri May 17 13:23:15 2024 us=936860 SIGUSR1[soft,tls-error] received, process restarting > Fri May 17 13:23:15 2024 us=937343 Restart pause, 300 second(s) If this is the tls-server side of the p2p connection, this is weird. What version of OpenVPN is this? We fixed the backoff logic in 2.5.3

Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread shadowbladeee via Openvpn-users
Nope and btw OpenVPN does not care about the CRL unless you specifically define it in the config. I even use the same CA, client cert as on the other openvpn node on this host on other port so even that issue is excluded. The fact that it worked for years and now misbehaves with no reason the

Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread Jochen Bern
On 17.05.24 15:49, shadowbladeee via Openvpn-users wrote: Time is correct on the machines, certs expire in 2049. Any *CRLs* that might have expired? I note that the tcpdump shows only quite *small* packets. MTU issues that could lead to (persistent) loss of large ones from the other end? Ki

Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread Antonio Quartulli
On 17/05/2024 15:49, shadowbladeee wrote: Dude why do you say it is not responding when it clearly is both on the log file and tcpdump? Meh. You're right. I managed to fool myself. To make it even more annoying there is another point to point tunnel terminated there same udp on a different

Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread shadowbladeee via Openvpn-users
Dude why do you say it is not responding when it clearly is both on the log file and tcpdump? WRWrrRWWRWrWRWFri May 17 15:42:17 2024 us=59314 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) Isn't that r read so

Re: [Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread Antonio Quartulli
Hi, On 17/05/2024 14:12, shadowbladeee via Openvpn-users wrote: So here is what is interesting, packets are "sipping in" so you cannot say it's a firewall issue, especially as I said nothing changed from my side and all the components were even rebooted. Here is what I tried: 1, tried to mov

[Openvpn-users] TLS key negotiation failed to occur ISP screws up the VPN

2024-05-17 Thread shadowbladeee via Openvpn-users
Hello Folks, I have a VPN setup which works since years it's a simple peer to peer udp VPN. There was absolute zero change on the two endpoints, nothing on the routers, network equipment, servers etc. The VPN simply stopped functioning like a week ago with no reason. I have pretty much restarte

Re: [Openvpn-users] Serious mssfix compatibility issue with OpenVPN Connect

2024-05-17 Thread Antonio Quartulli
Hi, On 17/05/2024 08:33, Gert Doering wrote: Hi, On Fri, May 17, 2024 at 08:10:17AM +0200, Marian ??urkovi?? wrote: I'd like to bring to your attention serious compatibility issue with OpenVPN Connect client regarding mssfix config option. I'm afraid there are no Connect developers here. T