RB951b-2HnD設置OVPN問題

買了RB951b-2HnD,想設置OVPN,看網上教程導入證書後會顯示KR,但我導入後總是顯示KT,最後也聯不到線,請問有大知是什麼原因嗎?

http://www.mobile01.com/topicdetail.php?f=110&t=2631860

跟這裏教的去做,但不行
RB951b-2HnD設置OVPN問題
2014-05-29 22:06 發佈
CBR954 wrote:
買了RB951b-2...(恕刪)


我的證書也是顯示KT ,但用戶是可以連線的.
這是我的ovpn server設定,參考看看:





client.ovpn
client
dev tap
remote 220.134.45.123 1195 #遠端Server-IP及連接埠
proto tcp
auth-user-pass pw.txt #讀取pw.txt帳號/密碼
redirect-gateway

<ca>
將證書ca.crt文字內容複製至此
</ca>

pw.txt
abc
123456

gfx wrote:
這是我的ovpn s...(恕刪)


還是一樣,大大幫我看看什麼問題
CBR954 wrote:
還是一樣,大大幫我看...(恕刪)


問題應該還是在ca.crt /ca.key上,我提供一組證書您再重新匯入RB951b-2HnD試試.
另外請記得client.ovpn也要修改

ca.crt
-----BEGIN CERTIFICATE-----
MIIDBDCCAm2gAwIBAgIJAM8oNFlxL3rSMA0GCSqGSIb3DQEBBAUAMGAxCzAJBgNV
BAYTAlRXMQswCQYDVQQIEwJUVzEPMA0GA1UEBxMGVGFpcGVpMQ0wCwYDVQQKEwRo
b21lMSQwIgYJKoZIhvcNAQkBFhV4eHh4eHh4eEB5YWhvby5jb20udHcwHhcNMTIx
MjExMTYyNDIzWhcNMjIxMjA5MTYyNDIzWjBgMQswCQYDVQQGEwJUVzELMAkGA1UE
CBMCVFcxDzANBgNVBAcTBlRhaXBlaTENMAsGA1UEChMEaG9tZTEkMCIGCSqGSIb3
DQEJARYVeHh4eHh4eHhAeWFob28uY29tLnR3MIGfMA0GCSqGSIb3DQEBAQUAA4GN
ADCBiQKBgQDTIffwLYBebqwQBSGb8K9wIF4b5HRVoTqfS8ZTc07TB07DZkGcTOX4
HhEnW093KggwVfzRLXk+xzw2uK6iQjJo+9DJqsVviw8sQivs+ZtxAgiZSEeMfsY+
03YRXgYm6N684qt25ge/EyhuO6peWNRIcS3nW1FXPJ736e1+l/yVQQIDAQABo4HF
MIHCMB0GA1UdDgQWBBQAirU2p0HRWb6DBzGl+UpFzghiAzCBkgYDVR0jBIGKMIGH
gBQAirU2p0HRWb6DBzGl+UpFzghiA6FkpGIwYDELMAkGA1UEBhMCVFcxCzAJBgNV
BAgTAlRXMQ8wDQYDVQQHEwZUYWlwZWkxDTALBgNVBAoTBGhvbWUxJDAiBgkqhkiG
9w0BCQEWFXh4eHh4eHh4QHlhaG9vLmNvbS50d4IJAM8oNFlxL3rSMAwGA1UdEwQF
MAMBAf8wDQYJKoZIhvcNAQEEBQADgYEAP/rusq6/L1Ju0F8yJPUtvqq7i2WevRUW
b0s0uy076XX/njvY16QnGeqZSw7mi59TSa2kEkO/nDPcCE88y6Q2yCl+CHx3hZLe
2zBuxZ4kCaVlAVks8XI2PbqYxASAH8INzDrqfY0ISsGiIVACGnIS9O3DmUtV93De
NLzt4kDBET0=
-----END CERTIFICATE-----

ca.key
-----BEGIN RSA PRIVATE KEY-----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-----END RSA PRIVATE KEY-----

gfx wrote:
問題應該還是在ca....(恕刪)

Fri May 30 16:22:55 2014 us=993468 Current Parameter Settings:
Fri May 30 16:22:55 2014 us=993502 config = 'ovpn.ovpn'
Fri May 30 16:22:55 2014 us=993509 mode = 0
Fri May 30 16:22:55 2014 us=993516 show_ciphers = DISABLED
Fri May 30 16:22:55 2014 us=993523 show_digests = DISABLED
Fri May 30 16:22:55 2014 us=993530 show_engines = DISABLED
Fri May 30 16:22:55 2014 us=993537 genkey = DISABLED
Fri May 30 16:22:55 2014 us=993544 key_pass_file = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993551 show_tls_ciphers = DISABLED
Fri May 30 16:22:55 2014 us=993558 proto = 2
Fri May 30 16:22:55 2014 us=993565 local = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993572 remote_list[0] = {'218.250.240.246:443', 1194}
Fri May 30 16:22:55 2014 us=993579 remote_random = DISABLED
Fri May 30 16:22:55 2014 us=993586 local_port = 1194
Fri May 30 16:22:55 2014 us=993593 remote_port = 1194
Fri May 30 16:22:55 2014 us=993600 remote_float = DISABLED
Fri May 30 16:22:55 2014 us=993607 ipchange = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993614 bind_local = ENABLED
Fri May 30 16:22:55 2014 us=993621 dev = 'tap'
Fri May 30 16:22:55 2014 us=993628 dev_type = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993634 dev_node = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993645 tun_ipv6 = DISABLED
Fri May 30 16:22:55 2014 us=993652 ifconfig_local = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993659 ifconfig_remote_netmask = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993666 ifconfig_noexec = DISABLED
Fri May 30 16:22:55 2014 us=993673 ifconfig_nowarn = DISABLED
Fri May 30 16:22:55 2014 us=993680 shaper = 0
Fri May 30 16:22:55 2014 us=993686 tun_mtu = 1500
Fri May 30 16:22:55 2014 us=993693 tun_mtu_defined = ENABLED
Fri May 30 16:22:55 2014 us=993700 link_mtu = 1500
Fri May 30 16:22:55 2014 us=993707 link_mtu_defined = DISABLED
Fri May 30 16:22:55 2014 us=993714 tun_mtu_extra = 32
Fri May 30 16:22:55 2014 us=993721 tun_mtu_extra_defined = ENABLED
Fri May 30 16:22:55 2014 us=993727 fragment = 0
Fri May 30 16:22:55 2014 us=993734 mtu_discover_type = -1
Fri May 30 16:22:55 2014 us=993741 mtu_test = 0
Fri May 30 16:22:55 2014 us=993748 mlock = DISABLED
Fri May 30 16:22:55 2014 us=993754 keepalive_ping = 10
Fri May 30 16:22:55 2014 us=993761 keepalive_timeout = 120
Fri May 30 16:22:55 2014 us=993768 inactivity_timeout = 0
Fri May 30 16:22:55 2014 us=993775 ping_send_timeout = 10
Fri May 30 16:22:55 2014 us=993782 ping_rec_timeout = 120
Fri May 30 16:22:55 2014 us=993789 ping_rec_timeout_action = 2
Fri May 30 16:22:55 2014 us=993796 ping_timer_remote = DISABLED
Fri May 30 16:22:55 2014 us=993803 remap_sigusr1 = 0
Fri May 30 16:22:55 2014 us=993809 explicit_exit_notification = 0
Fri May 30 16:22:55 2014 us=993816 persist_tun = DISABLED
Fri May 30 16:22:55 2014 us=993823 persist_local_ip = DISABLED
Fri May 30 16:22:55 2014 us=993830 persist_remote_ip = DISABLED
Fri May 30 16:22:55 2014 us=993837 persist_key = DISABLED
Fri May 30 16:22:55 2014 us=993844 mssfix = 1450
Fri May 30 16:22:55 2014 us=993851 resolve_retry_seconds = 1000000000
Fri May 30 16:22:55 2014 us=993858 connect_retry_seconds = 5
Fri May 30 16:22:55 2014 us=993865 username = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993871 groupname = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993878 chroot_dir = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993885 cd_dir = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993892 writepid = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993899 up_script = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993906 down_script = '[UNDEF]'
Fri May 30 16:22:55 2014 us=993913 down_pre = DISABLED
Fri May 30 16:22:55 2014 us=993919 up_restart = DISABLED
Fri May 30 16:22:55 2014 us=993926 up_delay = DISABLED
Fri May 30 16:22:55 2014 us=993933 daemon = DISABLED
Fri May 30 16:22:55 2014 us=993940 inetd = 0
Fri May 30 16:22:55 2014 us=993946 log = DISABLED
Fri May 30 16:22:55 2014 us=993953 suppress_timestamps = DISABLED
Fri May 30 16:22:55 2014 us=993960 nice = 0
Fri May 30 16:22:55 2014 us=993966 verbosity = 5
Fri May 30 16:22:56 2014 us=146060 mute = 0
Fri May 30 16:22:56 2014 us=146074 gremlin = 0
Fri May 30 16:22:56 2014 us=146081 status_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=146088 status_file_version = 1
Fri May 30 16:22:56 2014 us=146095 status_file_update_freq = 60
Fri May 30 16:22:56 2014 us=146101 occ = ENABLED
Fri May 30 16:22:56 2014 us=146108 rcvbuf = 0
Fri May 30 16:22:56 2014 us=146114 sndbuf = 0
Fri May 30 16:22:56 2014 us=146121 socks_proxy_server = '[UNDEF]'
Fri May 30 16:22:56 2014 us=146134 socks_proxy_port = 0
Fri May 30 16:22:56 2014 us=146142 socks_proxy_retry = DISABLED
Fri May 30 16:22:56 2014 us=146148 fast_io = DISABLED
Fri May 30 16:22:56 2014 us=146155 comp_lzo = DISABLED
Fri May 30 16:22:56 2014 us=146162 comp_lzo_adaptive = ENABLED
Fri May 30 16:22:56 2014 us=146168 route_script = '[UNDEF]'
Fri May 30 16:22:56 2014 us=146175 route_default_gateway = '[UNDEF]'
Fri May 30 16:22:56 2014 us=146182 route_noexec = DISABLED
Fri May 30 16:22:56 2014 us=161573 route_delay = 0
Fri May 30 16:22:56 2014 us=161586 route_delay_window = 30
Fri May 30 16:22:56 2014 us=161595 route_delay_defined = ENABLED
Fri May 30 16:22:56 2014 us=161610 [redirect_default_gateway local=0]
Fri May 30 16:22:56 2014 us=161618 management_addr = '[UNDEF]'
Fri May 30 16:22:56 2014 us=161625 management_port = 0
Fri May 30 16:22:56 2014 us=161631 management_user_pass = '[UNDEF]'
Fri May 30 16:22:56 2014 us=161638 management_log_history_cache = 250
Fri May 30 16:22:56 2014 us=161646 management_echo_buffer_size = 100
Fri May 30 16:22:56 2014 us=161653 management_query_passwords = DISABLED
Fri May 30 16:22:56 2014 us=161660 management_hold = DISABLED
Fri May 30 16:22:56 2014 us=161667 shared_secret_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=161674 key_direction = 0
Fri May 30 16:22:56 2014 us=161680 ciphername_defined = ENABLED
Fri May 30 16:22:56 2014 us=161742 ciphername = 'AES-256-CBC'
Fri May 30 16:22:56 2014 us=177422 authname_defined = ENABLED
Fri May 30 16:22:56 2014 us=177436 authname = 'SHA1'
Fri May 30 16:22:56 2014 us=177443 keysize = 0
Fri May 30 16:22:56 2014 us=177450 engine = DISABLED
Fri May 30 16:22:56 2014 us=177457 replay = ENABLED
Fri May 30 16:22:56 2014 us=177464 mute_replay_warnings = DISABLED
Fri May 30 16:22:56 2014 us=177471 replay_window = 0
Fri May 30 16:22:56 2014 us=177477 replay_time = 0
Fri May 30 16:22:56 2014 us=177484 packet_id_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=177491 use_iv = ENABLED
Fri May 30 16:22:56 2014 us=177498 test_crypto = DISABLED
Fri May 30 16:22:56 2014 us=177505 tls_server = DISABLED
Fri May 30 16:22:56 2014 us=177512 tls_client = ENABLED
Fri May 30 16:22:56 2014 us=177527 key_method = 2
Fri May 30 16:22:56 2014 us=177537 ca_file = 'ca.ctr'
Fri May 30 16:22:56 2014 us=177545 dh_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194243 cert_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194257 priv_key_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194264 pkcs12_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194271 cryptoapi_cert = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194278 cipher_list = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194285 tls_verify = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194292 tls_remote = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194298 crl_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=194305 ns_cert_type = 0
Fri May 30 16:22:56 2014 us=194311 tls_timeout = 2
Fri May 30 16:22:56 2014 us=194317 renegotiate_bytes = 0
Fri May 30 16:22:56 2014 us=194324 renegotiate_packets = 0
Fri May 30 16:22:56 2014 us=194331 renegotiate_seconds = 3600
Fri May 30 16:22:56 2014 us=194337 handshake_window = 60
Fri May 30 16:22:56 2014 us=194349 transition_window = 3600
Fri May 30 16:22:56 2014 us=194356 single_session = DISABLED
Fri May 30 16:22:56 2014 us=211255 tls_exit = DISABLED
Fri May 30 16:22:56 2014 us=211266 tls_auth_file = '[UNDEF]'
Fri May 30 16:22:56 2014 us=211282 server_network = 0.0.0.0
Fri May 30 16:22:56 2014 us=211291 server_netmask = 0.0.0.0
Fri May 30 16:22:56 2014 us=211299 server_bridge_ip = 0.0.0.0
Fri May 30 16:22:56 2014 us=211306 server_bridge_netmask = 0.0.0.0
Fri May 30 16:22:56 2014 us=211314 server_bridge_pool_start = 0.0.0.0
Fri May 30 16:22:56 2014 us=211321 server_bridge_pool_end = 0.0.0.0
Fri May 30 16:22:56 2014 us=211328 ifconfig_pool_defined = DISABLED
Fri May 30 16:22:56 2014 us=211336 ifconfig_pool_start = 0.0.0.0
Fri May 30 16:22:56 2014 us=211343 ifconfig_pool_end = 0.0.0.0
Fri May 30 16:22:56 2014 us=211362 ifconfig_pool_netmask = 0.0.0.0
Fri May 30 16:22:56 2014 us=211372 ifconfig_pool_persist_filename = '[UNDEF]'
Fri May 30 16:22:56 2014 us=211379 ifconfig_pool_persist_refresh_freq = 600
Fri May 30 16:22:56 2014 us=211386 ifconfig_pool_linear = DISABLED
Fri May 30 16:22:56 2014 us=229048 n_bcast_buf = 256
Fri May 30 16:22:56 2014 us=229060 tcp_queue_limit = 64
Fri May 30 16:22:56 2014 us=229067 real_hash_size = 256
Fri May 30 16:22:56 2014 us=229074 virtual_hash_size = 256
Fri May 30 16:22:56 2014 us=229081 client_connect_script = '[UNDEF]'
Fri May 30 16:22:56 2014 us=229088 learn_address_script = '[UNDEF]'
Fri May 30 16:22:56 2014 us=229095 client_disconnect_script = '[UNDEF]'
Fri May 30 16:22:56 2014 us=229102 client_config_dir = '[UNDEF]'
Fri May 30 16:22:56 2014 us=229109 ccd_exclusive = DISABLED
Fri May 30 16:22:56 2014 us=229115 tmp_dir = '[UNDEF]'
Fri May 30 16:22:56 2014 us=229122 push_ifconfig_defined = DISABLED
Fri May 30 16:22:56 2014 us=229131 push_ifconfig_local = 0.0.0.0
Fri May 30 16:22:56 2014 us=229138 push_ifconfig_remote_netmask = 0.0.0.0
Fri May 30 16:22:56 2014 us=229145 enable_c2c = DISABLED
Fri May 30 16:22:56 2014 us=229157 duplicate_cn = DISABLED
Fri May 30 16:22:56 2014 us=244767 cf_max = 0
Fri May 30 16:22:56 2014 us=244781 cf_per = 0
Fri May 30 16:22:56 2014 us=244789 max_clients = 1024
Fri May 30 16:22:56 2014 us=244796 max_routes_per_client = 256
Fri May 30 16:22:56 2014 us=244803 client_cert_not_required = DISABLED
Fri May 30 16:22:56 2014 us=244810 username_as_common_name = DISABLED
Fri May 30 16:22:56 2014 us=244818 auth_user_pass_verify_script = '[UNDEF]'
Fri May 30 16:22:56 2014 us=244825 auth_user_pass_verify_script_via_file = DISABLED
Fri May 30 16:22:56 2014 us=244832 client = ENABLED
Fri May 30 16:22:56 2014 us=244839 pull = ENABLED
Fri May 30 16:22:56 2014 us=244846 auth_user_pass_file = 'stdin'
Fri May 30 16:22:56 2014 us=244855 show_net_up = DISABLED
Fri May 30 16:22:56 2014 us=244862 route_method = 0
Fri May 30 16:22:56 2014 us=244897 ip_win32_defined = DISABLED
Fri May 30 16:22:56 2014 us=244908 ip_win32_type = 3
Fri May 30 16:22:56 2014 us=262760 dhcp_masq_offset = 0
Fri May 30 16:22:56 2014 us=262773 dhcp_lease_time = 31536000
Fri May 30 16:22:56 2014 us=262780 tap_sleep = 0
Fri May 30 16:22:56 2014 us=262787 dhcp_options = DISABLED
Fri May 30 16:22:56 2014 us=262794 dhcp_renew = DISABLED
Fri May 30 16:22:56 2014 us=262800 dhcp_pre_release = DISABLED
Fri May 30 16:22:56 2014 us=262807 dhcp_release = DISABLED
Fri May 30 16:22:56 2014 us=262813 domain = '[UNDEF]'
Fri May 30 16:22:56 2014 us=262819 netbios_scope = '[UNDEF]'
Fri May 30 16:22:56 2014 us=262826 netbios_node_type = 0
Fri May 30 16:22:56 2014 us=262832 disable_nbt = DISABLED
Fri May 30 16:22:56 2014 us=262846 OpenVPN 2.0.9 Win32-MinGW [SSL] [LZO] built on Oct 1 2006
Fri May 30 16:23:07 2014 us=465460 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Fri May 30 16:23:07 2014 us=465475 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Fri May 30 16:23:07 2014 us=465736 Cannot load CA certificate file ca.ctr (SSL_CTX_load_verify_locations): error:02001002:system library:fopen:No such file or directory: error:2006D080:BIO routines:BIO_new_file:no such file: error:0B084002:x509 certificate routines:X509_load_cert_crl_file:system lib
Fri May 30 16:23:07 2014 us=465748 Exiting


真沒辦法了
CBR954 wrote:
remote_list[0] = {'218.250.240.246:443', 1194}

這裡怪怪的,您的server port是開443 ,還是1194

另外您電腦的OpenVPN GUI是那一版的? 我的是v1.0.3
內文搜尋
X
評分
評分
複製連結
Mobile01提醒您
您目前瀏覽的是行動版網頁
是否切換到電腦版網頁呢?