Openvpn stop forwarding trough tunnel after some time



  • Hi!

    Sorry my poor english.

    I have 2 pfsense (site to site) linked with openvpn.

    First PfSense is a 2.2.6-RELASE this is the server.
    The second PfSense is a 2.3.2-RELEASE-p1 this is the client.

    The second can connect the first, and all working as expected. For a time. After 10~20 minutes, the forwarding between sites has stopping. The tcpdump on both ends show the packets go in the tunnel. But nothing go out the other side. After 5~10 minutes, the forwarding working again. If i restart the client manually the forwarding work again.

    The server conf:

    dev ovpns5
    verb 4
    dev-type tun
    dev-node /dev/tun5
    writepid /var/run/openvpn_server5.pid
    #user nobody
    #group nobody
    script-security 3
    daemon
    keepalive 10 60
    ping-timer-rem
    persist-tun
    persist-key
    proto udp
    cipher AES-128-CBC
    auth SHA1
    up /usr/local/sbin/ovpn-linkup
    down /usr/local/sbin/ovpn-linkdown
    local 127.0.0.1
    engine rdrand
    tls-server
    server 10.168.241.0 255.255.255.0
    client-config-dir /var/etc/openvpn-csc
    ifconfig 10.168.241.1 10.168.241.2
    tls-verify "/usr/local/sbin/ovpn_auth_verify tls 'bors-pfsense' 1 "
    lport 10004
    management /var/etc/openvpn/server5.sock unix
    ca /var/etc/openvpn/server5.ca
    cert /var/etc/openvpn/server5.cert
    key /var/etc/openvpn/server5.key
    dh /etc/dh-parameters.1024
    tls-auth /var/etc/openvpn/server5.tls-auth 0
    comp-lzo no
    keepalive 10 600
    
    route 192.168.242.0 255.255.255.0 vpn_gateway
    route 192.168.245.0 255.255.255.0 vpn_gateway
    route 192.168.244.0 255.255.255.0 vpn_gateway
    route 192.168.72.0 255.255.255.0 vpn_gateway
    route 192.168.73.0 255.255.255.0 vpn_gateway
    route 192.168.74.0 255.255.255.0 vpn_gateway
    route 10.160.72.0 255.255.255.0 vpn_gateway
    route 192.168.96.0 255.255.255.0 vpn_gateway
    route 192.168.80.0 255.255.255.0 vpn_gateway
    route 10.255.253.0 255.255.255.0 vpn_gateway
    route 10.255.254.0 255.255.255.0 vpn_gateway
    route 10.255.255.0 255.255.255.0 vpn_gateway
    route 10.160.72.0 255.255.255.0 vpn_gateway
    route 10.251.242.0 255.255.255.0 vpn_gateway
    route 10.168.253.0 255.255.255.248 vpn_gateway
    route 10.80.81.0 255.255.255.0 vpn_gateway
    
    log-append /var/log/openvpn-belsoszerver.log
    

    The client conf:

    dev ovpnc5
    verb 4
    dev-type tun
    dev-node /dev/tun5
    writepid /var/run/openvpn_client5.pid
    #user nobody
    #group nobody
    script-security 3
    daemon
    keepalive 10 60
    ping-timer-rem
    persist-tun
    persist-key
    proto udp
    cipher AES-128-CBC
    auth SHA1
    up /usr/local/sbin/ovpn-linkup
    down /usr/local/sbin/ovpn-linkdown
    local 192.168.253.33
    tls-client
    client
    lport 0
    management /var/etc/openvpn/client5.sock unix
    remote 192.168.253.1 10004
    ca /var/etc/openvpn/client5.ca
    cert /var/etc/openvpn/client5.cert
    key /var/etc/openvpn/client5.key
    tls-auth /var/etc/openvpn/client5.tls-auth 1
    comp-lzo no
    resolv-retry infinite
    remote xx.xx.xx.xx 10004
    max-routes 500
    

    The Client log while stopping forward:

    Mon Nov 19 14:59:44 2018 us=352172 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 14:59:44 2018 us=352219 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 14:59:44 2018 us=352338 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 14:59:44 2018 us=352546 MANAGEMENT: Client disconnected
    Mon Nov 19 14:59:54 2018 us=482130 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 14:59:54 2018 us=482206 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 14:59:54 2018 us=482359 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 14:59:54 2018 us=482584 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:04 2018 us=583204 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:04 2018 us=583260 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:04 2018 us=583392 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:04 2018 us=583603 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:14 2018 us=677384 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:14 2018 us=677436 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:14 2018 us=677552 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:14 2018 us=677752 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:24 2018 us=791676 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:24 2018 us=791744 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:24 2018 us=791863 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:24 2018 us=792077 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:34 2018 us=879021 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:34 2018 us=879094 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:34 2018 us=879248 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:34 2018 us=879506 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:45 2018 us=52559 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:45 2018 us=52634 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:45 2018 us=52758 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:45 2018 us=52980 MANAGEMENT: Client disconnected
    Mon Nov 19 15:00:55 2018 us=156281 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:00:55 2018 us=156355 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:00:55 2018 us=156490 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:00:55 2018 us=156758 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:05 2018 us=250417 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:05 2018 us=250466 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:05 2018 us=250594 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:05 2018 us=250802 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:15 2018 us=345420 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:15 2018 us=345470 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:15 2018 us=345592 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:15 2018 us=345805 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:25 2018 us=432931 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:25 2018 us=432999 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:25 2018 us=433147 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:25 2018 us=433378 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:35 2018 us=816294 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:35 2018 us=816349 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:35 2018 us=816480 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:35 2018 us=816701 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:45 2018 us=902425 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:45 2018 us=902496 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:45 2018 us=902614 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:45 2018 us=902835 MANAGEMENT: Client disconnected
    Mon Nov 19 15:01:55 2018 us=990291 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:01:55 2018 us=990367 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:01:55 2018 us=990510 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:01:55 2018 us=990738 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:06 2018 us=84084 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:06 2018 us=84133 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:06 2018 us=84252 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:06 2018 us=84459 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:16 2018 us=338609 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:16 2018 us=338684 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:16 2018 us=338814 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:16 2018 us=339033 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:26 2018 us=423410 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:26 2018 us=423477 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:26 2018 us=423628 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:26 2018 us=423858 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:36 2018 us=508080 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:36 2018 us=508151 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:36 2018 us=508292 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:36 2018 us=508518 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:46 2018 us=595390 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:46 2018 us=595459 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:46 2018 us=595590 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:46 2018 us=595811 MANAGEMENT: Client disconnected
    Mon Nov 19 15:02:56 2018 us=693773 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:02:56 2018 us=693826 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:02:56 2018 us=693939 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:02:56 2018 us=694147 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:06 2018 us=813982 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:06 2018 us=814052 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:06 2018 us=814180 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:06 2018 us=814415 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:16 2018 us=901621 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:16 2018 us=901692 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:16 2018 us=901820 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:16 2018 us=902042 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:27 2018 us=65457 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:27 2018 us=65511 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:27 2018 us=65647 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:27 2018 us=65854 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:37 2018 us=152247 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:37 2018 us=152321 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:37 2018 us=152481 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:37 2018 us=152714 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:47 2018 us=242398 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:47 2018 us=242476 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:47 2018 us=242621 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:47 2018 us=242854 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:57 2018 us=404890 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:03:57 2018 us=404939 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:03:57 2018 us=405053 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:57 2018 us=405253 MANAGEMENT: Client disconnected
    Mon Nov 19 15:04:07 2018 us=492238 MANAGEMENT: Client connected from /var/etc/openvpn/client5.sock
    Mon Nov 19 15:04:07 2018 us=492290 MANAGEMENT: CMD 'state 1'
    Mon Nov 19 15:04:07 2018 us=492424 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:04:07 2018 us=492642 MANAGEMENT: Client disconnected
    

    The server's log while stop forwarding:

    Mon Nov 19 15:03:13 2018 us=810855 MULTI: internal route 192.168.245.0/24 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:13 2018 us=810864 MULTI: Learn: 192.168.245.0/24 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:13 2018 us=810873 MULTI: internal route 192.168.242.0/24 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:13 2018 us=810898 MULTI: Learn: 192.168.242.0/24 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:13 2018 us=834093 MULTI: Learn: 192.168.242.93 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=72845 MULTI: Learn: 192.168.242.231 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=133026 MULTI: Learn: 192.168.242.207 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=224958 MULTI: Learn: 192.168.242.10 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=274483 MULTI: Learn: 192.168.242.144 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=475303 MULTI: Learn: 192.168.242.8 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:14 2018 us=616490 MULTI: Learn: 192.168.242.201 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:15 2018 us=72350 deporouter/yyy.yyy.yyy.yyy:28034 PUSH: Received control message: 'PUSH_REQUEST'
    Mon Nov 19 15:03:15 2018 us=72366 deporouter/yyy.yyy.yyy.yyy:28034 send_push_reply(): safe_cap=940
    Mon Nov 19 15:03:15 2018 us=72394 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.168.241.1,topology net30,ping 10,ping-restart 600,route 192.168.2.0 255.255.255.0,route 192.168.3.0 255.255.255.0,route 192.168.4.0 255.255.255.0,route 192.168.5.0 255.255.255.0,route 192.168.7.0 255.255.255.0,route 192.168.8.0 255.255.255.0,route 192.168.10.0 255.255.255.0,route 192.168.11.0 255.255.255.0,route 192.168.12.0 255.255.255.0,route 192.168.13.0 255.255.255.0,route 192.168.14.0 255.255.255.0,route 192.168.15.0 255.255.255.0,route 192.168.16.0 255.255.255.0,route 192.168.17.0 255.255.255.0,route 192.168.18.0 255.255.255.0,route 192.168.19.0 255.255.255.0,route 192.168.20.0 255.255.255.0,route 192.168.21.0 255.255.255.0,route 192.168.24.0 255.255.255.0,route 192.168.32.0 255.255.255.0,route 192.168.48.0 255.255.255.0,route 192.168.56.0 255.255.255.0,route 192.168.64.0 255.255.255.0,route 192.168.65.0 255.255.255.0,route 10.168.2.0 255.255.255.0,route 10.168.3.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72415 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.168.4.0 255.255.255.0,route 10.168.7.0 255.255.255.0,route 10.168.8.0 255.255.255.0,route 10.168.10.0 255.255.255.0,route 10.168.11.0 255.255.255.0,route 10.168.12.0 255.255.255.0,route 10.168.13.0 255.255.255.0,route 10.168.14.0 255.255.255.0,route 10.168.15.0 255.255.255.0,route 10.168.16.0 255.255.255.0,route 10.168.17.0 255.255.255.0,route 10.168.18.0 255.255.255.0,route 10.168.19.0 255.255.255.0,route 10.168.20.0 255.255.255.0,route 10.168.21.0 255.255.255.0,route 10.168.24.0 255.255.255.0,route 10.168.32.0 255.255.255.0,route 10.168.48.0 255.255.255.0,route 10.168.56.0 255.255.255.0,route 10.168.64.0 255.255.255.0,route 10.168.65.0 255.255.255.0,route 10.169.2.0 255.255.255.0,route 10.169.3.0 255.255.255.0,route 10.169.4.0 255.255.255.0,route 10.169.7.0 255.255.255.0,route 10.169.8.0 255.255.255.0,route 10.169.10.0 255.255.255.0,route 10.169.11.0 255.255.255.0,route 10.169.12.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72435 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.169.13.0 255.255.255.0,route 10.169.14.0 255.255.255.0,route 10.169.15.0 255.255.255.0,route 10.169.16.0 255.255.255.0,route 10.169.17.0 255.255.255.0,route 10.169.18.0 255.255.255.0,route 10.169.19.0 255.255.255.0,route 10.169.20.0 255.255.255.0,route 10.169.21.0 255.255.255.0,route 10.169.24.0 255.255.255.0,route 10.169.32.0 255.255.255.0,route 10.169.48.0 255.255.255.0,route 10.169.56.0 255.255.255.0,route 10.169.64.0 255.255.255.0,route 10.169.65.0 255.255.255.0,route 10.140.2.0 255.255.255.0,route 10.140.3.0 255.255.255.0,route 10.140.4.0 255.255.255.0,route 10.140.7.0 255.255.255.0,route 10.140.8.0 255.255.255.0,route 10.140.10.0 255.255.255.0,route 10.140.11.0 255.255.255.0,route 10.140.12.0 255.255.255.0,route 10.140.13.0 255.255.255.0,route 10.140.14.0 255.255.255.0,route 10.140.15.0 255.255.255.0,route 10.140.16.0 255.255.255.0,route 10.140.17.0 255.255.255.0,route 10.140.18.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72455 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.140.19.0 255.255.255.0,route 10.140.20.0 255.255.255.0,route 10.140.21.0 255.255.255.0,route 10.140.24.0 255.255.255.0,route 10.140.32.0 255.255.255.0,route 10.140.48.0 255.255.255.0,route 10.140.56.0 255.255.255.0,route 10.140.64.0 255.255.255.0,route 10.140.65.0 255.255.255.0,route 10.150.2.0 255.255.255.0,route 10.150.3.0 255.255.255.0,route 10.150.4.0 255.255.255.0,route 10.150.7.0 255.255.255.0,route 10.150.8.0 255.255.255.0,route 10.150.10.0 255.255.255.0,route 10.150.11.0 255.255.255.0,route 10.150.12.0 255.255.255.0,route 10.150.13.0 255.255.255.0,route 10.150.14.0 255.255.255.0,route 10.150.15.0 255.255.255.0,route 10.150.16.0 255.255.255.0,route 10.150.17.0 255.255.255.0,route 10.150.18.0 255.255.255.0,route 10.150.19.0 255.255.255.0,route 10.150.20.0 255.255.255.0,route 10.150.21.0 255.255.255.0,route 10.150.24.0 255.255.255.0,route 10.150.32.0 255.255.255.0,route 10.150.48.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72479 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.150.56.0 255.255.255.0,route 10.150.64.0 255.255.255.0,route 10.150.65.0 255.255.255.0,route 10.200.2.0 255.255.255.0,route 10.200.3.0 255.255.255.0,route 10.200.4.0 255.255.255.0,route 10.200.7.0 255.255.255.0,route 10.200.8.0 255.255.255.0,route 10.200.10.0 255.255.255.0,route 10.200.11.0 255.255.255.0,route 10.200.12.0 255.255.255.0,route 10.200.13.0 255.255.255.0,route 10.200.14.0 255.255.255.0,route 10.200.15.0 255.255.255.0,route 10.200.16.0 255.255.255.0,route 10.200.17.0 255.255.255.0,route 10.200.18.0 255.255.255.0,route 10.200.19.0 255.255.255.0,route 10.200.20.0 255.255.255.0,route 10.200.21.0 255.255.255.0,route 10.200.24.0 255.255.255.0,route 10.200.32.0 255.255.255.0,route 10.200.48.0 255.255.255.0,route 10.200.56.0 255.255.255.0,route 10.200.64.0 255.255.255.0,route 10.200.65.0 255.255.255.0,route 10.195.2.0 255.255.255.0,route 10.195.3.0 255.255.255.0,route 10.195.4.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72523 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.195.7.0 255.255.255.0,route 10.195.8.0 255.255.255.0,route 10.195.10.0 255.255.255.0,route 10.195.11.0 255.255.255.0,route 10.195.12.0 255.255.255.0,route 10.195.13.0 255.255.255.0,route 10.195.14.0 255.255.255.0,route 10.195.15.0 255.255.255.0,route 10.195.16.0 255.255.255.0,route 10.195.17.0 255.255.255.0,route 10.195.18.0 255.255.255.0,route 10.195.19.0 255.255.255.0,route 10.195.20.0 255.255.255.0,route 10.195.21.0 255.255.255.0,route 10.195.24.0 255.255.255.0,route 10.195.32.0 255.255.255.0,route 10.195.48.0 255.255.255.0,route 10.195.56.0 255.255.255.0,route 10.195.64.0 255.255.255.0,route 10.195.65.0 255.255.255.0,route 10.0.2.0 255.255.255.0,route 10.0.3.0 255.255.255.0,route 10.0.4.0 255.255.255.0,route 10.0.7.0 255.255.255.0,route 10.0.8.0 255.255.255.0,route 10.0.10.0 255.255.255.0,route 10.0.11.0 255.255.255.0,route 10.0.12.0 255.255.255.0,route 10.0.13.0 255.255.255.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72757 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.0.14.0 255.255.255.0,route 10.0.15.0 255.255.255.0,route 10.0.16.0 255.255.255.0,route 10.0.17.0 255.255.255.0,route 10.0.18.0 255.255.255.0,route 10.0.19.0 255.255.255.0,route 10.0.20.0 255.255.255.0,route 10.0.21.0 255.255.255.0,route 10.0.24.0 255.255.255.0,route 10.0.32.0 255.255.255.0,route 10.0.48.0 255.255.255.0,route 10.0.56.0 255.255.255.0,route 10.0.64.0 255.255.255.0,route 10.0.65.0 255.255.255.0,route 10.2.0.0 255.255.0.0,route 10.3.0.0 255.255.0.0,route 10.4.0.0 255.255.0.0,route 10.7.0.0 255.255.0.0,route 10.8.0.0 255.255.0.0,route 10.10.0.0 255.255.0.0,route 10.11.0.0 255.255.0.0,route 10.12.0.0 255.255.0.0,route 10.13.0.0 255.255.0.0,route 10.14.0.0 255.255.0.0,route 10.15.0.0 255.255.0.0,route 10.16.0.0 255.255.0.0,route 10.17.0.0 255.255.0.0,route 10.18.0.0 255.255.0.0,route 10.19.0.0 255.255.0.0,route 10.20.0.0 255.255.0.0,route 10.21.0.0 255.255.0.0,route 10.24.0.0 255.255.0.0,push-continuation 2' (status=1)
    Mon Nov 19 15:03:15 2018 us=72773 deporouter/yyy.yyy.yyy.yyy:28034 SENT CONTROL [deporouter]: 'PUSH_REPLY,route 10.32.0.0 255.255.0.0,route 10.48.0.0 255.255.0.0,route 10.56.0.0 255.255.0.0,route 10.64.0.0 255.255.0.0,route 10.65.0.0 255.255.0.0,route 192.168.249.0 255.255.255.0,ifconfig 10.168.241.10 10.168.241.9,push-continuation 1' (status=1)
    Mon Nov 19 15:03:16 2018 us=438021 MULTI: Learn: 192.168.242.180 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:18 2018 us=160812 MULTI: Learn: 192.168.242.30 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:19 2018 us=238304 MULTI: Learn: 192.168.242.254 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:19 2018 us=643139 MULTI: Learn: 192.168.242.195 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:19 2018 us=643256 MULTI: Learn: 10.160.72.195 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:36 2018 us=134269 MULTI: Learn: 192.168.242.12 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:38 2018 us=948769 MULTI: Learn: 192.168.242.200 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:45 2018 us=344443 MANAGEMENT: Client connected from /var/etc/openvpn/server5.sock
    Mon Nov 19 15:03:45 2018 us=353780 MULTI: Learn: 10.255.254.12 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:45 2018 us=545105 MANAGEMENT: CMD 'status 2'
    Mon Nov 19 15:03:45 2018 us=745576 MANAGEMENT: CMD 'quit'
    Mon Nov 19 15:03:45 2018 us=745594 MANAGEMENT: Client disconnected
    Mon Nov 19 15:03:48 2018 us=171253 MULTI: Learn: 10.255.254.2 -> deporouter/yyy.yyy.yyy.yyy:28034
    Mon Nov 19 15:03:56 2018 us=543188 MULTI: Learn: xxx.xxx.xxx.xxx -> deporouter/yyy.yyy.yyy.yyy:28034
    

    The forwardig problem starts 15:03:15.

    After 5~10 minutes after an another push request, the forwarding work again.

    edit:
    An observation... Before the stop forwarding, the client's log not showing a PUSH REQUEST. but the server shows, an incoming PUSH REQUEST and pushing datas. But the client's log not show the incoming data unlike the normal disconnect-reconnect pair.

    Somebody have an idea?

    Laszlo