[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

[Err] Re: [Openvpn-users] TLS Error: TLS key negotiation failed to occur within 60 seconds - configuration problem


  • Subject: [Err] Re: [Openvpn-users] TLS Error: TLS key negotiation failed to occur within 60 seconds - configuration problem
  • From: postmaster@xxxxxxxx
  • Date: Tue, 04 Apr 2006 05:00:09 +0900
  • Auto-submitted: auto-generated

Transmit Report:

iryna7@xxxxxxxx¿¡°Ô ¸ÞÀÏ ¹ß¼ÛÀ» 3¹ø ½ÃµµÇßÁö¸¸ ½ÇÆÐÇÏ¿´½À´Ï´Ù.
(½ÇÆÐ ÀÌÀ¯ : 550 <iryna7@xxxxxxxx>: Recipient address rejected: User unknown in local recipient table(211.232.190.7))

<Âü°í> ½ÇÆÐ ÀÌÀ¯¿¡ ´ëÇÑ ¼³¸í
User unknown       :¸ÞÀÏÀ» ¼ö½ÅÇÒ »ç¿ëÀÚ°¡ Á¸ÀçÇÏÁö ¾ÊÀ½
Socket connect fail:¼ö½Å ¸ÞÀÏ ¼­¹ö¿Í ¿¬°á ½ÇÆÐ
DATA write fail    :¼ö½Å ¸ÞÀÏ ¼­¹ö·Î ¸Þ¼¼Áö ¼Û½Å ½ÇÆÐ
DATA reponse fail  :¼ö½Å ¸ÞÀÏ ¼­¹ö·ÎºÎÅÍ ¸Þ¼¼Áö ¼ö½Å ½ÇÆÐ
Reporting-MTA: dns; nexg.net

Final-Recipient: rfc822;iryna7@nexg.net
Diagnostic-Code: smtp; 550 error - <iryna7@nexg.net>: Recipient address rejected: User unknown in local recipient table(211.232.190.7)
Action: failed
Status: 5.0.0
--- Begin Message ---
  • Subject: Re: [Openvpn-users] TLS Error: TLS key negotiation failed to occur within 60 seconds - configuration problem
  • From: Jon Bendtsen <jon.bendtsen@xxxxxxxxxx>
  • Date: Mon, 3 Apr 2006 21:58:40 +0200
Den torsdag 30.mar kl. 18:00 skrev ... ...:

JonB;

I tried commenting out a single line in both server
and client configuration files and I found out that
when I comment out the "nobind" in client
configuration the client is able to connect to the
server (the client indicates that there is a
connection, also there's no TLS error).

[cuuuut]

So, my guess would be a firewall?
Or that the client and server does not agree on the
--tls-auth option
or the
--port option. Maybe TCP/UDP as well.

The explination is that nobind makes the client choose a random port. Since the server expects the client to use the same port as the server does, it gave trouble. --float on the server will make the server accept openvpn connections from any port number (and ip address).



JonB

____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users

--- End Message ---
____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users