• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Need Help Open Vpn Client fail to connect.

Scheduled Pinned Locked Moved OpenVPN
6 Posts 4 Posters 1.9k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G
    gunan
    last edited by May 6, 2013, 6:29 AM

    I m using Version 2.2.1

    Error msg : TLS Error : TLS Key negotiation failed to occur within 60 sec
                    TLS Error: TLS Handshake Failed..

    All my Client Machine having same issue.

    NeED HElp

    1 Reply Last reply Reply Quote 0
    • P
      phil.davis
      last edited by May 6, 2013, 7:52 AM

      I guess you mean 2.2.1 OpenVPN client export package installed on the client PCs.
      The error really just means that the client got no response from the server. That can be due to a heap of causes:

      • Server port is blocked on pfSense
      • Server DNS name doesn't translate to the correct IP address (or a hard-coded IP address is wrong)
      • The network the client is on is blocking traffic to the standard OpenVPN well-known port 1194 (use a different port)
      • Some routing issue means the initial packet/s from the client never reach the server
      • The client is being tested from within your network - test from a real network outside.
        …

      If the above thoughts don't result in spotting the issue/error then post more info and we can try to help:
      What pfSense version is the server?
      What interface and port is the OpenVPN server listening on?
      UDP or TCP?
      TUN or TAP?
      What firewall rules have been added to allow the incoming connects from clients?

      As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
      If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

      1 Reply Last reply Reply Quote 0
      • R
        Reiner030
        last edited by May 6, 2013, 1:41 PM

        perhaps it helps to increase verbose logging:

        advanced options: "verb 3" should be enough (or "verb 5" for even more)

        1 Reply Last reply Reply Quote 0
        • M
          marvosa
          last edited by May 6, 2013, 9:00 PM

          Post network map.

          Post server1.conf

          Post firewall rules.

          Post client config.

          1 Reply Last reply Reply Quote 0
          • G
            gunan
            last edited by May 7, 2013, 2:52 AM

            Dear,

            I try to upload fail due to the file size.. I try zip also cannot..

            Any idea>?

            1 Reply Last reply Reply Quote 0
            • M
              marvosa
              last edited by May 8, 2013, 3:12 PM

              For the configs, just post the text.  For the firewall rules… take screen shots, upload them to photobucket and post using img tags.

              1 Reply Last reply Reply Quote 0
              6 out of 6
              • First post
                6/6
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                This community forum collects and processes your personal information.
                consent.not_received