Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN not working

    Scheduled Pinned Locked Moved OpenVPN
    47 Posts 3 Posters 8.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • manjotscM
      manjotsc
      last edited by

      But sometimes is up, but it doesn't obtain ip address.
      Annotation 2019-10-15 233721.png

      Vendor: HP
      Version: P01 Ver. 02.50
      Release Date: Wed Jul 17 2024
      Boot Method: UEFI
      24.11-RELEASE (amd64)
      FreeBSD 15.0-CURRENT
      CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
      Current: 3606 MHz, Max: 3400 MHz
      4 CPUs : 1 package(s) x 4 core(s)

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        Your image shows you have two servers and neither has any clients connected. Your client connection is down and ha ssent 0 bytes, which ctells me it didn't even try to connect.

        What happens when you click that little blue Start button?

        1 Reply Last reply Reply Quote 0
        • manjotscM
          manjotsc
          last edited by

          Yes that's what happens, but just to clarify, I not trying to connect to the VPN server hosted on pfsense, I trying connect to PureVpn and Fastest VPN servers.

          Thanks

          Vendor: HP
          Version: P01 Ver. 02.50
          Release Date: Wed Jul 17 2024
          Boot Method: UEFI
          24.11-RELEASE (amd64)
          FreeBSD 15.0-CURRENT
          CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
          Current: 3606 MHz, Max: 3400 MHz
          4 CPUs : 1 package(s) x 4 core(s)

          1 Reply Last reply Reply Quote 0
          • KOMK
            KOM
            last edited by

            Yes, I get it. Post screens of your client config.

            1 Reply Last reply Reply Quote 0
            • manjotscM
              manjotsc
              last edited by manjotsc

              20191016_103514.jpg Screenshot_20191016-102817_Chrome.jpg Screenshot_20191016-102842_Chrome.jpg Screenshot_20191016-102901_Chrome.jpg Screenshot_20191016-102906_Chrome.jpg Screenshot_20191016-102911_Chrome.jpg ![Screenshot_20191016-102801_Chrome.jpg](/assets/uploads/files/1571236212574-screenshot_20191016-102801_ch Screenshot_20191016-102916_Chrome.jpg rome.jpg)

              Vendor: HP
              Version: P01 Ver. 02.50
              Release Date: Wed Jul 17 2024
              Boot Method: UEFI
              24.11-RELEASE (amd64)
              FreeBSD 15.0-CURRENT
              CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
              Current: 3606 MHz, Max: 3400 MHz
              4 CPUs : 1 package(s) x 4 core(s)

              1 Reply Last reply Reply Quote 0
              • KOMK
                KOM
                last edited by KOM

                Your settings closely match the FastestVPN pfSense guide:

                https://support.fastestvpn.com/tutorials/more-devices/pfsense

                Notable differences are you've added the Fast I/O to Custom Options when there is a checkbox for it, and they tell you to use a Send/Receive buffer of 512 while you left it at default. Fix those two issues and then try again.

                1 Reply Last reply Reply Quote 0
                • manjotscM
                  manjotsc
                  last edited by

                  Just did, but same error

                  Screenshot_20191016-104838_Chrome.jpg

                  Vendor: HP
                  Version: P01 Ver. 02.50
                  Release Date: Wed Jul 17 2024
                  Boot Method: UEFI
                  24.11-RELEASE (amd64)
                  FreeBSD 15.0-CURRENT
                  CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                  Current: 3606 MHz, Max: 3400 MHz
                  4 CPUs : 1 package(s) x 4 core(s)

                  1 Reply Last reply Reply Quote 0
                  • RicoR
                    Rico LAYER 8 Rebel Alliance
                    last edited by Rico

                    The reason for the fatal error is clearly in the logs

                    Oct 14 21:27:45 openvpn 71849 neither stdin nor stderr are a tty device and you have neither a controlling tty nor systemd - can't ask for 'Enter Auth Username:'. If you used --daemon, you need to use --askpass to make passphrase-protected keys work, and you can not use --auth-nocache.
                    

                    -Rico

                    1 Reply Last reply Reply Quote 0
                    • KOMK
                      KOM
                      last edited by

                      Hmmm. Anything in your log file just before this line?

                      Oct 14 21:27:45 openvpn 71849 Exiting due to fatal error
                      

                      @Rico That might just be a warning and not the actual cause of the fatal exit. His settings look good and I can't imagine how he would get into this situation.

                      manjotscM 1 Reply Last reply Reply Quote 0
                      • manjotscM
                        manjotsc @KOM
                        last edited by

                        @KOM so any solution?

                        Vendor: HP
                        Version: P01 Ver. 02.50
                        Release Date: Wed Jul 17 2024
                        Boot Method: UEFI
                        24.11-RELEASE (amd64)
                        FreeBSD 15.0-CURRENT
                        CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                        Current: 3606 MHz, Max: 3400 MHz
                        4 CPUs : 1 package(s) x 4 core(s)

                        1 Reply Last reply Reply Quote 0
                        • KOMK
                          KOM
                          last edited by

                          I'm waiting for you to answer my question.

                          manjotscM 1 Reply Last reply Reply Quote 0
                          • manjotscM
                            manjotsc @KOM
                            last edited by

                            @KOM
                            Oct 16 10:47:49 openvpn 86796 Exiting due to fatal error
                            Oct 16 10:47:49 openvpn 86796 neither stdin nor stderr are a tty device and you have neither a controlling tty nor systemd - can't ask for 'Enter Auth Username:'. If you used --daemon, you need to use --askpass to make passphrase-protected keys work, and you can not use --auth-nocache.
                            Oct 16 10:47:49 openvpn 86796 library versions: OpenSSL 1.0.2o-freebsd 27 Mar 2018, LZO 2.10
                            Oct 16 10:47:49 openvpn 86796 OpenVPN 2.4.6 amd64-portbld-freebsd11.2 [SSL (OpenSSL)] [LZO] [LZ4] [MH/RECVDA] [AEAD] built on Oct 3 2018
                            Oct 16 10:47:49 openvpn 86796 auth_user_pass_file = 'stdin'
                            Oct 16 10:47:49 openvpn 86796 pull = ENABLED
                            Oct 16 10:47:49 openvpn 86796 client = ENABLED
                            Oct 16 10:47:49 openvpn 86796 port_share_port = '[UNDEF]'
                            Oct 16 10:47:49 openvpn 86796 port_share_host = '[UNDEF]'
                            Oct 16 10:47:49 openvpn 86796 auth_token_lifetime = 0
                            Oct 16 10:47:49 openvpn 86796 auth_token_generate = DISABLED
                            Oct 16 10:47:49 openvpn 86796 auth_user_pass_verify_script_via_file = DISABLED
                            Oct 16 10:47:49 openvpn 86796 auth_user_pass_verify_script = '[UNDEF]'
                            Oct 16 10:47:49 openvpn 86796 max_routes_per_client = 256
                            Oct 16 10:47:49 openvpn 86796 max_clients = 1024
                            Oct 16 10:47:49 openvpn 86796 cf_per = 0
                            Oct 16 10:47:49 openvpn 86796 cf_max = 0
                            Oct 16 10:47:49 openvpn 86796 duplicate_cn = DISABLED
                            Oct 16 10:47:49 openvpn 86796 enable_c2c = DISABLED
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_ipv6_remote = ::
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_ipv6_local = ::/0
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_ipv6_defined = DISABLED
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_remote_netmask = 0.0.0.0
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_local = 0.0.0.0
                            Oct 16 10:47:49 openvpn 86796 push_ifconfig_defined = DISABLED
                            Oct 16 10:47:49 openvpn 86796 tmp_dir = '/tmp'
                            Oct 16 10:47:49 openvpn 86796 ccd_exclusive = DISABLED
                            Oct 16 10:47:49 openvpn 86796 client_config_dir = '[UNDEF]'

                            Vendor: HP
                            Version: P01 Ver. 02.50
                            Release Date: Wed Jul 17 2024
                            Boot Method: UEFI
                            24.11-RELEASE (amd64)
                            FreeBSD 15.0-CURRENT
                            CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                            Current: 3606 MHz, Max: 3400 MHz
                            4 CPUs : 1 package(s) x 4 core(s)

                            1 Reply Last reply Reply Quote 0
                            • KOMK
                              KOM
                              last edited by

                              That doesn't answer my question. Were there any events that happened BEFORE the fatal error message? I can't tell if that log shows old events first or new events since they're all at the same timestamp.

                              1 Reply Last reply Reply Quote 0
                              • manjotscM
                                manjotsc
                                last edited by

                                Ok let me check the order

                                Vendor: HP
                                Version: P01 Ver. 02.50
                                Release Date: Wed Jul 17 2024
                                Boot Method: UEFI
                                24.11-RELEASE (amd64)
                                FreeBSD 15.0-CURRENT
                                CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                                Current: 3606 MHz, Max: 3400 MHz
                                4 CPUs : 1 package(s) x 4 core(s)

                                1 Reply Last reply Reply Quote 0
                                • manjotscM
                                  manjotsc
                                  last edited by

                                  It's newest entry on top, followed by old ones

                                  Screenshot_20191016-124249_Chrome.jpg

                                  Vendor: HP
                                  Version: P01 Ver. 02.50
                                  Release Date: Wed Jul 17 2024
                                  Boot Method: UEFI
                                  24.11-RELEASE (amd64)
                                  FreeBSD 15.0-CURRENT
                                  CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                                  Current: 3606 MHz, Max: 3400 MHz
                                  4 CPUs : 1 package(s) x 4 core(s)

                                  1 Reply Last reply Reply Quote 0
                                  • KOMK
                                    KOM
                                    last edited by KOM

                                    OK, so @Rico was bang on the money.

                                    Some Google-Fu shows that this error can happen if you give it a password-protected private key to use. The suggested fix is to run your key through openssl like this:

                                    openssl rsa -in YourPrivateKey.pem -out NewPrivateKey.pem
                                    
                                    manjotscM 1 Reply Last reply Reply Quote 0
                                    • manjotscM
                                      manjotsc @KOM
                                      last edited by

                                      @KOM how do I do that?

                                      Vendor: HP
                                      Version: P01 Ver. 02.50
                                      Release Date: Wed Jul 17 2024
                                      Boot Method: UEFI
                                      24.11-RELEASE (amd64)
                                      FreeBSD 15.0-CURRENT
                                      CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                                      Current: 3606 MHz, Max: 3400 MHz
                                      4 CPUs : 1 package(s) x 4 core(s)

                                      1 Reply Last reply Reply Quote 0
                                      • KOMK
                                        KOM
                                        last edited by

                                        Never mind. That advice only applies if you were making a private key with password-protection. It doesn't apply for a client-connection to a public VPN where you don't use a client cert.

                                        This is really weird. The error message is complaining as if either you need a user/pass and didn't supply one, or it doesn't want a user/pass and you did supply one.

                                        What version of pfSense is this?

                                        manjotscM 1 Reply Last reply Reply Quote 0
                                        • manjotscM
                                          manjotsc @KOM
                                          last edited by

                                          @KOM 2.4.4-RELEASE-p3 (amd64)
                                          built on Wed May 15 18:53:44 EDT 2019
                                          FreeBSD 11.2-RELEASE-p10

                                          Vendor: HP
                                          Version: P01 Ver. 02.50
                                          Release Date: Wed Jul 17 2024
                                          Boot Method: UEFI
                                          24.11-RELEASE (amd64)
                                          FreeBSD 15.0-CURRENT
                                          CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
                                          Current: 3606 MHz, Max: 3400 MHz
                                          4 CPUs : 1 package(s) x 4 core(s)

                                          1 Reply Last reply Reply Quote 0
                                          • KOMK
                                            KOM
                                            last edited by

                                            Strange. And what happens when you delete all that and try with your other provider, PureVPN? Exact same symptoms and error?

                                            manjotscM 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.