[Openvpn-users] Scripts initiated by Windows GUI DO pass data over VPN

2021-04-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, I have had to test this myself because I am a little shocked .. Using the Windows GUI and an up script named like so: 'my_vpn_01_up.bat' which is kept in the openvpn\config folder of the users home, DOES allow data to be passed over the newly e

Re: [Openvpn-users] Scripts initiated by Windows GUI DO pass data over VPN

2021-04-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 2 April 2021 21:59, Gert Doering wrote: > Hi, > > On Fri, Apr 02, 2021 at 03:51:09PM -0400, Selva Nair wrote: > > > As for sending data over the link, not sure I follow. Anything run > > with user's

Re: [Openvpn-users] Scripts initiated by Windows GUI DO pass data over VPN

2021-04-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 2 April 2021 20:51, Selva Nair wrote: > Hi, > > On Fri, Apr 2, 2021 at 3:21 PM tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > -BEG

Re: [Openvpn-users] Scripts initiated by Windows GUI DO pass data over VPN

2021-04-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Saturday, 3 April 2021 01:12, Selva Nair wrote: > Hi, > > > If I distribute my VPN client as a Zip file then what ever name I give the > > VPN config file, I will obviously

Re: [Openvpn-users] Scripts initiated by Windows GUI DO pass data over VPN

2021-04-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Saturday, 3 April 2021 01:24, tincantech via Openvpn-users wrote: > Sent with ProtonMail Secure Email. > > ‐‐‐ Original Message ‐‐‐ > On Saturday, 3 A

[Openvpn-users] Compression problems

2021-04-05 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Ref: https://forums.openvpn.net/viewtopic.php?f=4&t=32100 Regarding compression, it is unclear what the best options are. The server config above uses {{{ allow-compression no compress comp-lzo no push "comp-lzo no" }}} However the manual states:

Re: [Openvpn-users] Compression problems

2021-04-05 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Monday, 5 April 2021 18:34, Gert Doering wrote: > Hi, > > On Mon, Apr 05, 2021 at 02:51:23PM +, tincantech via Openvpn-users wrote: > > > -BEGIN

Re: [Openvpn-users] Compression problems

2021-04-05 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Monday, 5 April 2021 20:00, Gert Doering wrote: > Hi, > > On Mon, Apr 05, 2021 at 06:31:30PM +, tincantech wrote: > > > > compress migrate > > > this will push whatever

[Openvpn-users] --tls-verify certificate_depth=1

2021-04-06 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, can somebody please explain why --tls-verify is run for the server certificate ? EG: certificate_depth=1 I cannot find a reason to drop a remote client based on the server certificate. Calling --tls-verify to verify my server certificate seems

Re: [Openvpn-users] --tls-verify certificate_depth=1

2021-04-06 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 My mistake, the first call is for the CA not the server. -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJgbJG9ACEJEE+XnPZrkLidFiEECbw9RGejjXJ5xVVVT5ec 9muQuJ1Nngf+O4FynHZXzxt2OpNfF7TEpBVWiG7k7vrbQZJyjrLwWJ2SaiK5 U3EsVwKebB3S88Ilmx5h

Re: [Openvpn-users] --tls-verify certificate_depth=1

2021-04-06 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Tuesday, 6 April 2021 18:14, Gert Doering wrote: > Hi, > > On Tue, Apr 06, 2021 at 04:39:06PM +, tincantech via Openvpn-users wrote: > > > can someb

Re: [Openvpn-users] Compression problems

2021-04-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, there has been some updates here: https://forums.openvpn.net/viewtopic.php?f=4&t=32100 I have no idea how to diagnose this problem but if anybody gives me some hints or tips then I will pass them onto the forum. The version of openvpn which cr

Re: [Openvpn-users] CLI for

2021-04-16 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Wednesday, 7 April 2021 22:36, senrabdet--- via Openvpn-users wrote: > Hi All: > > Hoping to get an overview of how to pipe passwords in for "./easyrsa > set-rsa-pass" in a bash script for openvpn. > > I a

Re: [Openvpn-users] Help with easy-rsa 3 for windows 10 pro boxes

2021-04-19 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Forum: https://forums.openvpn.net/viewtopic.php?f=22&t=32171 ‐‐‐ Original Message ‐‐‐ On Monday, 19 April 2021 14:54, senrabdet--- via Openvpn-users wrote: > Hi All: > > Can anyone share for windows 10 pro (both for client and server) a

[Openvpn-users] --socks-proxy and --redirect-gateway def1

2021-04-30 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Ref: https://forums.openvpn.net/viewtopic.php?f=6&t=32193#p99021 (This also applies to --http-proxy) The question is, how/what does openvpn do in the case that the client is connecting via a proxy server when using --redirect-gateway def1 ? >

Re: [Openvpn-users] --socks-proxy and --redirect-gateway def1

2021-04-30 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 30 April 2021 22:15, tincantech via Openvpn-users wrote: > Hi, > > Ref: https://forums.openvpn.net/viewtopic.php?f=6&t=32193#p99021 > > (This also applies to --http-proxy) >

Re: [Openvpn-users] --socks-proxy and --redirect-gateway def1

2021-05-01 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Saturday, 1 May 2021 10:03, Gert Doering wrote: > Hi, > > On Fri, Apr 30, 2021 at 09:15:07PM +, tincantech via Openvpn-users wrote: > &g

Re: [Openvpn-users] --socks-proxy and --redirect-gateway def1

2021-05-03 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Monday, 3 May 2021 11:43, Gert Doering wrote: > HI, > > On Mon, May 03, 2021 at 12:38:21PM +0200, Jan Just Keijser wrote: > > > > > and that does not seem to take any proxy hosts into account. > > > > But "l

Re: [Openvpn-users] firewalling TUN iface - how?

2021-05-03 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Monday, 3 May 2021 11:39, lejeczek via Openvpn-users wrote: > On 03/05/2021 02:35, Kenneth Porter wrote: > > > --On Sunday, May 02, 2021 4:02 PM +0100 lejeczek via > > Open

Re: [Openvpn-users] --socks-proxy and --redirect-gateway def1

2021-05-03 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Monday, 3 May 2021 14:00, Gert Doering wrote: > Hi, > > On Mon, May 03, 2021 at 12:52:22PM +, tincantech wrote: > > > My initial question was: > > Does --redirect-gateway do the same for --socks-proxy/--

[Openvpn-users] Tunnelblick and --tls-crypt-v2

2021-05-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, does Tunnelblick support --tls-crypt-v2 yet ? Also, can/will Tunnelblick be able to create --tls-crypt-v2 keys ? Thanks R -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJglagyACEJEE+XnPZrkLidFiEECbw9RGejjXJ5xVVVT5ec 9muQuJ3Bp

Re: [Openvpn-users] How to disconnect a user from the server?

2021-05-11 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Tuesday, 11 May 2021 15:07, Houman wrote: > Hello, > > I have been struggling to find a way to disconnect a specific user from the > OpenVPN server. > I believe there is one way to kill the user's connectio

Re: [Openvpn-users] How to disconnect a user from the server?

2021-05-11 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Tuesday, 11 May 2021 19:50, Selva Nair wrote: > On Tue, May 11, 2021 at 2:04 PM tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > -BEGIN PGP SIGNED MESSAG

[Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, in Openvpn master branch there now exists Peer-Fingerprint mode. This allows establishing a VPN by simply using self signed certificates, which are identified by their fingerprint. This is very simple to setup, especially if you use Easy-PFP: h

Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Saturday, 15 May 2021 20:04, tincantech via Openvpn-users wrote: > Hi, > > in Openvpn master branch there now exists Peer-Fingerprint mode. > This allows establishing a VPN by simply using

Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
least, none that I can see. Thanks R ‐‐‐ Original Message ‐‐‐ On Saturday, 15 May 2021 20:04, tincantech via Openvpn-users wrote: > Hi, > > in Openvpn master branch there now exists Peer-Fingerprint mode. > This allows establishing a VPN by simply using self signed

Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
one > that I can see. > > Thanks > R > > ‐‐‐ Original Message ‐‐‐ > On Saturday, 15 May 2021 20:04, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > Hi, > > in Openvpn master branch there now exists Peer-Fingerprint m

[Openvpn-users] Reneg-sec in peer-fingerprint mode

2021-05-16 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, in peer-fingerprint mode during --reneg-sec cycle, there appears to be an uneven round of TLS-Verify taking place. On the server I see two rounds of verify, on the client I see three rounds. The configs are more or less generic, the only except

Re: [Openvpn-users] Reneg-sec in peer-fingerprint mode

2021-05-19 Thread tincantech via Openvpn-users
if there is interest I'll trac it .. maybe add it to https://community.openvpn.net/openvpn/ticket/1310 Thanks R ‐‐‐ Original Message ‐‐‐ On Sunday, 16 May 2021 10:35, tincantech via Openvpn-users wrote: > Hi, > > in peer-fingerprint mode during --reneg-sec cycle, there appea

Re: [Openvpn-users] Reneg-sec in peer-fingerprint mode

2021-05-19 Thread tincantech via Openvpn-users
1558' > > Verified both setups are using peer-fingerprint mode, No CA. > > if there is interest I'll trac it .. maybe add it to > https://community.openvpn.net/openvpn/ticket/1310 > > Thanks > R > > ‐‐‐ Original Message ‐‐‐ > On Sunday, 16 May 2021 1

[Openvpn-users] Trac - No email notifications at all

2021-05-19 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, if you have ever reported a bug to openvpn on trac then manually check to see if you have had a reply. I am not receiving any notifications of updates from trac. Most recent missed update: https://community.openvpn.net/openvpn/ticket/1389#comm

[Openvpn-users] --show-curves

2021-05-19 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, curve-ball anomaly .. $ openvpn --show-curves Consider using openssl 'ecparam -list_curves' as alternative to running this command. Available Elliptic curves/groups: secp112r1 .. etc Is the command that openvpn is passing to openssl not corre

[Openvpn-users] GUI auto-disconnect option

2021-05-20 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 HI, the OP did not follow up, so here it is: https://forums.openvpn.net/viewtopic.php?f=10&t=32300 I guess it could be a useful switch ? Thanks R -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJgpmiMACEJEE+XnPZrkLidFiEECbw9RGejjX

Re: [Openvpn-users] GUI auto-disconnect option

2021-05-20 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Thursday, 20 May 2021 17:04, Selva Nair wrote: > Hi, > > > HI, > > the OP did not follow up, so here it is: > > https://forums.openvpn.net/viewtopic.php?f=10&t=32300 > > The user wants to automatically disco

[Openvpn-users] Windows install 2.5.2 failed OpenVPNMSICA

2021-05-24 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Ref: https://forums.openvpn.net/viewtopic.php?f=6&t=32347#p99551 I know it is only one user but it could be useful to debug. Any comments welcome, thanks R -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJgq9rYACEJEE+XnPZrkLi

Re: [Openvpn-users] GUI auto-disconnect option

2021-05-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Thursday, 27 May 2021 16:25, Gert Doering wrote: > Hi, > > On Thu, May 27, 2021 at 04:33:54PM +0200, Bo Berglund wrote: > > > > In c:\program files\openvpn\bin\ there is a "tapctl.exe" which you > > > need t

Re: [Openvpn-users] GUI auto-disconnect option

2021-05-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 See: https://community.openvpn.net/openvpn/wiki/OpenvpnSoftwareRepos -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJgr8jaACEJEE+XnPZrkLidFiEECbw9RGejjXJ5xVVVT5ec 9muQuJ3XUAgAsjCw1/pV8TakkEDP77z6+/1ngpU7rLqP0XUzqYUIs6P8LrHC YRBFyI51

Re: [Openvpn-users] Server starts without configuration as a service...

2021-05-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Thursday, 27 May 2021 23:35, Bo Berglund wrote: > I have just configured my new OpenVPN server running on a RaspberryPi3B+ with > the latest release of the operating syst

Re: [Openvpn-users] Server starts without configuration as a service...

2021-05-28 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 28 May 2021 07:58, Bo Berglund wrote: > On Thu, 27 May 2021 23:26:00 +0000, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > I have looked a

Re: [Openvpn-users] Server starts without configuration as a service...

2021-05-28 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 There are scripts, such as Nyr and Angristan. And, for Pi users there is pivpn.io ‐‐‐ Original Message ‐‐‐ On Friday, 28 May 2021 11:26, tincantech via Openvpn-users wrote: > Hi, > > ‐‐‐ Original Message ‐‐‐ > On Fr

Re: [Openvpn-users] Openvpn install ubuntu 20.04 compile

2021-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 4 June 2021 16:04, Gokan Atmaca wrote: > Hello > > I am getting an error as below in openvpn installation. what would be > the reason ? > > make[5]: Leaving directory '/root/tmp1/openvpn/src/plugins/

Re: [Openvpn-users] Client-to-client setup fails mysteriously...

2021-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 4 June 2021 19:17, Bo Berglund wrote: > I have set up an Openvpn server on a Raspberry Pi at a remote location I can > access through another OpenVPN server. So: HOST:Client -> Server:HOST:Client ->

Re: [Openvpn-users] Client-to-client setup fails mysteriously...

2021-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Correction: ‐‐‐ Original Message ‐‐‐ On Friday, 4 June 2021 20:49, tincantech via Openvpn-users wrote: > Hi, > > ‐‐‐ Original Message ‐‐‐ > On Friday, 4 June 2021 19:17, Bo Berglund bo.bergl...@gmail.com wrote: >

Re: [Openvpn-users] Client-to-client setup fails mysteriously...

2021-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, 4 June 2021 21:23, Bo Berglund wrote: > On Fri, 04 Jun 2021 19:49:36 +0000, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > I have set up an O

Re: [Openvpn-users] The preferred way to run a client on linux?

2021-06-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Monday, 7 June 2021 20:54, Bo Berglund wrote: > On Mon, 7 Jun 2021 11:46:02 +0200, David Sommerseth > open...@sf.lists.topphemmelig.net wrote: > > Thanks for your reply and information! > I am still confused

Re: [Openvpn-users] The preferred way to run a client on linux?

2021-06-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Silly typo correction: ‐‐‐ Original Message ‐‐‐ On Monday, 7 June 2021 21:34, tincantech via Openvpn-users wrote: > Hi, > > ‐‐‐ Original Message ‐‐‐ > On Monday, 7 June 2021 20:54, Bo Berglund bo.bergl...@gma

Re: [Openvpn-users] figuring out connection interface

2021-06-08 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Tuesday, 8 June 2021 22:31, Aleksandar Ivanisevic wrote: > I looked around a bit and haven’t found a way for a non commercial user to > open a change request with openvpn team, please point me out if I’m w

Re: [Openvpn-users] On-demand OVPN connection from Windows 10?

2021-06-12 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Saturday, 12 June 2021 18:51, Bo Berglund wrote: > I am using the OpenVPN Gui application on my Windows 10 laptop to connect to a > variety of locations where I have put OpenVPN servers. > This has always un

[Openvpn-users] MULTI_sva: pool returned IPv4

2021-06-17 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, in the past I have heard of people grepping the log file for: 'MULTI_sva: pool returned IPv4' to keep some sort of log regarding connections/disconnections. The idea is that 'pool returned IPv4' is believed to be logged when the client disconne

Re: [Openvpn-users] Setting up a tighter OpenVPN configuration setup

2021-07-01 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, all you basically need can be found at pivpn.io ‐‐‐ Original Message ‐‐‐ On Saturday, June 26th, 2021 at 19:49, David Mehler wrote: > Hello, > > I'm wanting to set up an OpenVPN external client to an internal > > OpenVPN server. I'

Re: [Openvpn-users] How to use config file requiring a private key with systemctl?

2021-07-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Your openvpn config file needs to have --askpass. You can read more about it in the manual. ‐‐‐ Original Message ‐‐‐ On Friday, July 2nd, 2021 at 05:52, Austin Witmer wrote: > I am wondering how to start a service that requires a private

Re: [Openvpn-users] Setting up a tighter OpenVPN configuration setup

2021-07-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, we don't provide support for PiVPN here, you should start with: https://github.com/pivpn/pivpn#readme WRT a 512bit elliptic curve, I don't believe there is one, at least not one that Openvpn supports. The closest is maybe secp521r1 but you ser

Re: [Openvpn-users] OpenVPN freezes few seconds after each connection

2021-07-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, there is very little, if anything at all, which can be done from the client side alone. You will require the assistance of your server admin. Regards R ‐‐‐ Original Message ‐‐‐ On Sunday, July 4th, 2021 at 19:43, Thibault JY Derrien

Re: [Openvpn-users] OpenVPN freezes few seconds after each connection

2021-07-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 ‐‐‐ Original Message ‐‐‐ On Sunday, July 4th, 2021 at 20:50, Antonio Quartulli wrote: > Hi, > > On 04/07/2021 20:43, Thibault JY Derrien wrote: > > > ... but the delays are imposed by the server, as indicated below. > > I haven't dived

Re: [Openvpn-users] TLS version

2021-07-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email, which cannot handle a simple reply properly. ‐‐‐ Original Message ‐‐‐ On Thursday, July 15th, 2021 at 11:17, Ralf Hildebrandt wrote: > I have quite a few users with old openvpn versions out there w

[Openvpn-users] Easy-TLS v2.3

2021-07-20 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, for those of you who are interested in such things, Easy-TLS v2.3 is now released. v2.3 allows a server to shut-down a client. https://github.com/TinCanTech/easy-tls Try a google search and see.. To use Easy-TLS, simply use the inter-active

Re: [Openvpn-users] TLS version

2021-07-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, On Tuesday, July 27th, 2021 at 14:16, Gert Doering wrote: > Hi, > > On Thu, Jul 15, 2021 at 12:17:45PM +0200, Ralf Hildebrandt wrote: > > > I have quite a few users with old openvpn versions out there which are > > still using TLSv1.0. > > >

Re: [Openvpn-users] On-demand OVPN connection from Windows 10?

2021-09-21 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Tuesday, September 21st, 2021 at 13:39, Bo Berglund wrote: > I have noted that the OpenVPN GUI application runs a very long time (maybe > > forever) if there is no conne

Re: [Openvpn-users] On-demand OVPN connection from Windows 10?

2021-09-22 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Wednesday, September 22nd, 2021 at 17:53, Gert Doering wrote: > Hi, > > On Wed, Sep 22, 2021 at 06:22:15PM +0200, Bo Berglund wrote: > > > - send a silent_connection 1

Re: [Openvpn-users] push-reset / override defaults in ccd files ?

2021-11-16 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Tuesday, November 16th, 2021 at 19:55, mike tancsa wrote: > Hi all, > >     I have a number of vpn endpoints where I push a set of routes > > through the server's config.

Re: [Openvpn-users] push-reset / override defaults in ccd files ?

2021-11-16 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Tuesday, November 16th, 2021 at 20:43, Selva Nair wrote: > "keepalive 5 30"  on server leads to >   > push "ping 5" > push "ping-restart 30" > > So try adding those two l

Re: [Openvpn-users] Multiple IPs on one client

2021-11-29 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Monday, November 29th, 2021 at 12:12, Alexander Franklin wrote: > Possible Solutions > > 1. Is it possible for client configs to have/Server configs to push out > multi

Re: [Openvpn-users] topology subnet and ifconfig-push

2021-12-01 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 You should read about option --duplicate-cn in the manual. Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Wednesday, December 1st, 2021 at 16:10, Aleksandar Ivanisevic wrote: > Hi, > > for years I had > > dev tun0 > > se

Re: [Openvpn-users] (no subject)

2021-12-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Thursday, December 2nd, 2021 at 22:44, Stella Ashburne wrote: > Hi Gert > > Thanks for your reply. > > > OK. I surfed to https://build.openvpn.net/man/openvpn-2.5/openvpn.8.html > which I guess is the

Re: [Openvpn-users] (no subject)

2021-12-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Friday, December 3rd, 2021 at 05:49, Nathan Stratton Treadway wrote: > On Thu, Dec 02, 2021 at 23:42:04 +0000, tincantech via Openvpn-users wrote: > > > On Thursday, December 2nd, 2021 at 2

Re: [Openvpn-users] replay warnings not muted?

2021-12-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Tuesday, December 7th, 2021 at 08:55, Aleksandar Ivanisevic wrote: > Hi, > > I still see this in the server log, although I have mute-replay-warnings in > the server conf. > > Dec 6 08:39:58 xxx01 openvpn

Re: [Openvpn-users] replay warnings not muted?

2021-12-08 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Wednesday, December 8th, 2021 at 16:31, Aleksandar Ivanisevic wrote: > > On 7. Dec 2021, at 15:46, tincantech tincant...@protonmail.com wrote: > > > > On Tuesday, Decemb

Re: [Openvpn-users] OpenVPN 2.5.5 released

2021-12-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 It seems only fair to warn the OpenVPN community that Version 2.5.5 has had bugs identified. A new release v2.5.6 is planned for the coming week, or so.. Regards Richard Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Wedn

Re: [Openvpn-users] OpenVPN 2.5.5 released

2021-12-15 Thread tincantech via Openvpn-users
‐‐‐ On Wednesday, December 15th, 2021 at 16:30, tincantech via Openvpn-users wrote: > It seems only fair to warn the OpenVPN community that Version 2.5.5 has had > bugs identified. > > A new release v2.5.6 is planned for the coming week, or so.. > > Regards > &g

Re: [Openvpn-users] LAN-LAN connection via ASUS Router OpenVPN?

2022-01-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 cc'ing list Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Saturday, January 15th, 2022 at 17:56, tincantech wrote: > Hi Bo, > > FYI, we don't support routers; you will need to consult the router > manual/support channe

Re: [Openvpn-users] LAN-LAN connection via ASUS Router OpenVPN?

2022-01-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Saturday, January 15th, 2022 at 19:21, Bo Berglund wrote: > Thanks for your help Tincantech! > > I do have a Linux Ubuntu server now running 20.04.3 where I have my main

Re: [Openvpn-users] How to modify old OpenVPN installation to new way of operation?

2022-01-16 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Some help found here: https://github.com/OpenVPN/openvpn/blob/master/distro/systemd/README.systemd https://community.openvpn.net/openvpn/wiki/OpenVPN-systemd-use To get started.. -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJh5K

Re: [Openvpn-users] How to modify old OpenVPN installation to new way of operation?

2022-01-17 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 You could also stop and disable openvpn.service If you simply use `systemctl` then all systemd "panorama" is listed for you. Regards -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJh5fb0ACEJEE+XnPZrkLidFiEECbw9RGejjXJ5xVVVT5ec 9m

Re: [Openvpn-users] How to modify old OpenVPN installation to new way of operation?

2022-01-17 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Monday, January 17th, 2022 at 23:08, tincantech wrote: > You could also stop and disable openvpn.service Looks like you did that :-) > > If you simply use `systemctl`

Re: [Openvpn-users] services on vpn server and client

2022-01-28 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Friday, January 28th, 2022 at 14:10, openvpn wrote: > Hi folks :-) > > I've my office lan with one server (1) linux lamp 192.168.1.100 and wan > > interface (static IP) f

Re: [Openvpn-users] Expected transfer speed LAN-LAN using OpenVPN?

2022-01-30 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail Secure Email. * Which now seems to edit your text out .. ? To test your speed use iperf3 Remember, the upload speed is the usual bottle-neck. BR ‐‐‐ Original Message ‐‐‐ On Sunday, January 30th, 2022 at 16:40,

Re: [Openvpn-users] Expected transfer speed LAN-LAN using OpenVPN?

2022-02-20 Thread tincantech via Openvpn-users
manual. > > Sent with ProtonMail Secure Email. > > --- Original Message --- > > On Sunday, February 20th, 2022 at 22:23, Bo Berglund bo.bergl...@gmail.com > wrote: > > > On Sun, 20 Feb 2022 21:51:20 +, tincantech via Openvpn-users > > > > openvpn-users@

Re: [Openvpn-users] Authenticate/Decrypt packet error: bad packet ID (may be a replay)

2022-04-19 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Thursday, April 14th, 2022 at 08:09, Ml Ml via Openvpn-users wrote: > Hello, > > from time to time i get flooded this in my Logs: > > 2022-04-14T07:28:28 Error openvpn Authenticate/Decrypt packet error: >

Re: [Openvpn-users] How do I prevent IPv6 routes from being added to my connection?

2022-04-29 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail secure email. --- Original Message --- On Friday, April 29th, 2022 at 16:52, Stella Ashburne wrote: > Any tips as to how I can configure my client-side config file to prevent IPv6 > routes from being added durin

Re: [Openvpn-users] How do I prevent IPv6 routes from being added to my connection?

2022-04-30 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with ProtonMail secure email. --- Original Message --- On Saturday, April 30th, 2022 at 13:47, Stella Ashburne wrote: > Hi > > Thanks for your tip. > > > -BEGIN PGP SIGNED MESSAGE- > > Hash: SHA256 > > > > Hi, > > > > Sen

Re: [Openvpn-users] UDPv4 link local?

2022-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with Proton Mail secure email. --- Original Message --- On Saturday, June 4th, 2022 at 16:02, Matthew Guberman-Pfeffer wrote: > Dear OpenVPN community, > I'm trying to setup a VPN on a linux computer that I log into from my int

Re: [Openvpn-users] UDPv4 link local?

2022-06-04 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Your server log shows that your client cannot reach your server. Perhaps you forgot to open/forward a port at your firewall. Sent with Proton Mail secure email. --- Original Message --- On Saturday, June 4th, 2022 at 17:18, Matthew Guberm

Re: [Openvpn-users] CA private key: password vs. passphrase?

2022-06-08 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Wednesday, June 8th, 2022 at 16:01, Micio Lampo wrote: > Hi all. > About the CA private key, could someone please kindly explain me the > difference between > the password, which is not asked if the option

Re: [Openvpn-users] CA private key: password vs. passphrase?

2022-06-08 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Wednesday, June 8th, 2022 at 20:42, Micio Lampo wrote: > Hi, > thanks again for your kind reply, but there is a misunderstanding (it's > my fault!); > therefore I try to be more clear: > > The only execut

Re: [Openvpn-users] CA private key: password vs. passphrase?

2022-06-08 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Please let me know the version of Easy-RSA that you are using. Thanks. -- -BEGIN PGP SIGNATURE- Version: ProtonMail wsBzBAEBCAAGBQJioQlSACEJEE+XnPZrkLidFiEECbw9RGejjXJ5xVVVT5ec 9muQuJ03cwf/e79iGTmXS7ecGZabDjMBT4fsftGV8G7Umo6D30C2KHXC0wMi o

Re: [Openvpn-users] CA private key: password vs. passphrase?

2022-06-09 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Thursday, June 9th, 2022 at 06:31, Micio Lampo wrote: > Thanks a lot for your immense patience! > Easy-RSA 3 license: GPLv2 > > I repeated some checks, and the results are: > > build-ca: > --- > )

Re: [Openvpn-users] CA private key: password vs. passphrase?

2022-06-09 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, Sent with Proton Mail secure email. --- Original Message --- On Thursday, June 9th, 2022 at 16:28, Micio Lampo wrote: > Hi, > thanks a lot for your detailed explanation. > Just a last question: > Once the CA key's passphrase is chosen

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, this is a setting in the openvpn systemd unit file. The setting to remove is --suppress-timestamps from the 'ExecStart=' line. Regards Sent with Proton Mail secure email. --- Original Message --- On Wednesday, June 15th, 2022 at 14:5

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, alternatively, you can view the log file with `journalctl`. This will then include timestamps from the journal. Something like `journalctl -u openvpn-server01` Regards Sent with Proton Mail secure email. --- Original Message --- On W

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-18 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Saturday, June 18th, 2022 at 09:26, Bo Berglund wrote: > The way I did that: > > 1) sudo systemctl stop openvpn > sudo systemctl stop openvpn@server.service > sudo systemctl stop openvpn@serverlocal.servi

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-18 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Saturday, June 18th, 2022 at 18:03, Bo Berglund wrote: > On Sat, 18 Jun 2022 13:46:09 +0000, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > -BEGIN PGP

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-18 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Saturday, June 18th, 2022 at 22:20, Bo Berglund wrote: > On Sat, 18 Jun 2022 20:01:10 +0000, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > > If y

Re: [Openvpn-users] How to enable timestamps in server logfile?

2022-06-19 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, --- Original Message --- On Sunday, June 19th, 2022 at 06:35, Bo Berglund wrote: > On Sat, 18 Jun 2022 22:00:20 +0000, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > You haven't

Re: [Openvpn-users] Problem with service on windows server

2022-06-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, I must point this out: > > > > I am setting up an OpenVPN server on a windows server for a > > > > client, but ran into the problem where the openvpn service in > > > > services doesn’t pick up the config files I placed into the > > > > C:\Pro

Re: [Openvpn-users] Problem with service on windows server

2022-06-27 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Correction: 2.5.7-I602 not 2.5.5 --- Original Message --- On Monday, June 27th, 2022 at 22:35, tincantech via Openvpn-users wrote: > Hi, > > I must point this out: > > > > > > > > I am setting up an O

Re: [Openvpn-users] Problem with service on windows server

2022-06-27 Thread tincantech via Openvpn-users
- Original Message --- > On Monday, June 27th, 2022 at 22:35, tincantech via Openvpn-users > openvpn-users@lists.sourceforge.net wrote: > > > > > Hi, > > > > I must point this out: > > > > > > > > > > > > I am setting up

[Openvpn-users] Fw: Re: Problem with service on windows server

2022-06-28 Thread tincantech via Openvpn-users
t; to see from a well behaved .msi installer. > > > > my2c > > > > > > > > --- Original Message --- > > On Monday, June 27th, 2022 at 22:49, tincantech > > wrote: > > > > > > > Correction: 2.5.7-I602 not 2.5.5 > > >

Re: [Openvpn-users] How to block clients access to local LAN?

2022-09-02 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, either your netmask is incorrect or your calculation is. Try `ipcalc 10.8.0.136/29` I think you meant /28 Regards Sent with Proton Mail secure email. --- Original Message --- On Friday, September 2nd, 2022 at 06:56, Bo Berglund wr

Re: [Openvpn-users] Commanding remote client to reconnect following server reboot?

2022-09-05 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi Bo, your best bet is to get the remote office admin to email you the router log, after setting --verb 4 in the config. Unless you prefer the _wild stab in the dark_ approach. Sent with Proton Mail secure email. --- Original Message ---

Re: [Openvpn-users] Commanding remote client to reconnect following server reboot?

2022-09-07 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Sent with Proton Mail secure email. --- Original Message --- On Wednesday, September 7th, 2022 at 16:46, Bonno Bloksma wrote: > Hi, > > > > > But doing it without VPN is hard when the ISP is not providing a > > > > public IP addres

  1   2   3   >