Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Errors on OpenVPN logs server

    OpenVPN
    2
    3
    114
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      Grif49 last edited by

      Hello,

      I have a pfsense 2.4.5 server as a OpenVPN server. All seems to be good because, Windows and Linux clients connects with no issue et no error. But when i go to the OpenVPN logs on pfsense server i have these errors :

      Apr 8 10:51:19 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):58039
      Apr 8 10:51:19 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:19 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):10538
      Apr 8 10:51:19 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:19 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):23125
      Apr 8 10:51:20 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:20 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):59269
      Apr 8 10:51:20 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:20 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):15063
      Apr 8 10:51:20 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:20 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):44190
      Apr 8 10:51:20 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:20 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):10862
      Apr 8 10:51:21 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:21 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):12606
      Apr 8 10:51:21 openvpn 33418 Authenticate/Decrypt packet error: packet HMAC authentication failed
      Apr 8 10:51:21 openvpn 33418 TLS Error: incoming packet authentication failed from [AF_INET](MY PUBLIC IP):64087

      Have you any idea of what these errors means?

      Thanks for your responses

      1 Reply Last reply Reply Quote 0
      • jimp
        jimp Rebel Alliance Developer Netgate last edited by

        It means what it says, a packet came in and it didn't have the correct authentication information (as in TLS authentication, not username/password).

        Could be a variety of reasons for that happening, like a non-OpenVPN client trying to hit that port (port scanners, etc), a misconfigured client, and so on.

        If all of your clients are connecting and operating as expected, then you probably do not have anything to worry about.

        If the 'client' in this case really is the public IP address of your own router, then check that you don't have anything on the OpenVPN client tab set to connect to the server instance on the same firewall. I've seen a couple people do that over the years not knowing it wasn't necessary.

        1 Reply Last reply Reply Quote 1
        • G
          Grif49 last edited by

          The last solution resolve my problem.

          Thanks a lot !

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense Plus
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy