|
|
Hello Don, Where have you create your client certificates. It seems that your key-files are not related to the server files. Regards, John Kuiper Don Parris wrote: > Greetings all, > > I'm a VPN newbie. I'm running a Debian Etch box (fresh, vanilla > install) and openvpn 2.0.9-11. I successfully created my > certificates, and got the server and client to recognize them. I > tried connecting my laptop client to my server, only to run into a TLS > handshake error: > > Mon Dec 11 03:50:01 2006 TLS: Initial packet from 71.68.100.187:443 > <http://71.68.100.187:443>, sid=c912ec05 45db03c6 > Mon Dec 11 03:50:06 2006 VERIFY OK: depth=1, > /C=US/ST=North_Carolina/L=Charlotte/O=MyOrg/emailAddress= me@xxxxxx > <mailto:me@xxxxxx> > Mon Dec 11 03:50:06 2006 VERIFY OK: nsCertType=SERVER > Mon Dec 11 03:50:06 2006 VERIFY OK: depth=0, > /C=US/ST=North_Carolina/O=MyOrg/emailAddress=me@xxxxxx <mailto:me@xxxxxx> > Mon Dec 11 03:51:00 2006 TLS Error: TLS key negotiation failed to > occur within 60 seconds (check your network connectivity) > Mon Dec 11 03:51:00 2006 TLS Error: TLS handshake failed > Mon Dec 11 03:51:00 2006 TCP/UDP: Closing socket > Mon Dec 11 03:51:00 2006 SIGUSR1[soft,tls-error] received, process > restarting > Mon Dec 11 03:51:00 2006 Restart pause, 2 second(s) > > So far, I have resolved my own questions without bothering anyone. It > appears that the TLS handshake is failing, but why I don't know. Much > less how to solve it. How do I figure out what's going wrong? If I > know that, I might be able to solve it myself. > > I'm using 192.168.1.0 <http://192.168.1.0> as my local network, and > accepted the default tunnel IP of 10.8.0.0 <http://10.8.0.0>. I have > not yet set the routing, which doesn't seem to come into play here. > There is a second issue, but I'll wait until I can resolve this one. > > I don't know if this makes any difference, but my laptop _is_currently > using the same local IP address as the server, since both get their > IPs from the router. > > Regards, > Don > -- ______________________ OpenVPN mailing lists https://lists.sourceforge.net/lists/listinfo/openvpn-users |