Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    P2P SSL/TLS TAP mode, second client disconnects the first causing ping-pong effect

    Scheduled Pinned Locked Moved OpenVPN
    tap
    2 Posts 1 Posters 597 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      PCooper
      last edited by

      I normally don't use TAP mode however this situation requires it, split DNS isn't an option as no DNS is involved all IOT type devices that I cannot change.

      With only one client connected everything works fine. When the second one connect I get errors and interrupted traffic on the first connection. then the cycle starts over again.

      Server Logs

      Dec 28 11:13:24 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
      Dec 28 11:13:34 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
      Dec 28 11:13:44 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
      Dec 28 11:13:55 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_VER=2.4.6
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_PLAT=freebsd
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_PROTO=2
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_NCP=2
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZ4=1
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZ4v2=1
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZO=1
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_COMP_STUB=1
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
      Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_TCPNL=1
      Dec 28 11:14:08 	openvpn 	39098 	[StationOne] Peer Connection Initiated with [AF_INET]172.20.9.254:32918
      Dec 28 11:14:17 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
      Dec 28 11:14:28 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
      Dec 28 11:14:38 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
      Dec 28 11:14:48 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
      Dec 28 11:14:59 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_VER=2.4.6
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_PLAT=freebsd
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_PROTO=2
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_NCP=2
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZ4=1
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZ4v2=1
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZO=1
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_COMP_STUB=1
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
      Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_TCPNL=1
      Dec 28 11:15:12 	openvpn 	39098 	[StationTwo] Peer Connection Initiated with [AF_INET]172.20.10.254:32691
      Dec 28 11:15:20 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
      Dec 28 11:15:30 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
      Dec 28 11:15:40 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
      Dec 28 11:15:50 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
      Dec 28 11:16:01 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_VER=2.4.6
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_PLAT=freebsd
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_PROTO=2
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_NCP=2
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZ4=1
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZ4v2=1
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZO=1
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_COMP_STUB=1
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
      Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_TCPNL=1
      Dec 28 11:16:18 	openvpn 	39098 	[StationOne] Peer Connection Initiated with [AF_INET]172.20.9.254:9535
      Dec 28 11:16:25 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
      Dec 28 11:16:35 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
      Dec 28 11:16:45 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
      
      P 1 Reply Last reply Reply Quote 0
      • P
        PCooper @PCooper
        last edited by

        @pcooper I have client logs but the forum will not let me post them.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.