• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

P2P SSL/TLS TAP mode, second client disconnects the first causing ping-pong effect

OpenVPN
tap
1
2
476
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P
    PCooper
    last edited by Dec 28, 2020, 5:24 PM

    I normally don't use TAP mode however this situation requires it, split DNS isn't an option as no DNS is involved all IOT type devices that I cannot change.

    With only one client connected everything works fine. When the second one connect I get errors and interrupted traffic on the first connection. then the cycle starts over again.

    Server Logs

    Dec 28 11:13:24 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
    Dec 28 11:13:34 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
    Dec 28 11:13:44 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
    Dec 28 11:13:55 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:56666 [0]
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_VER=2.4.6
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_PLAT=freebsd
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_PROTO=2
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_NCP=2
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZ4=1
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZ4v2=1
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_LZO=1
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_COMP_STUB=1
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
    Dec 28 11:14:08 	openvpn 	39098 	peer info: IV_TCPNL=1
    Dec 28 11:14:08 	openvpn 	39098 	[StationOne] Peer Connection Initiated with [AF_INET]172.20.9.254:32918
    Dec 28 11:14:17 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
    Dec 28 11:14:28 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
    Dec 28 11:14:38 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
    Dec 28 11:14:48 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
    Dec 28 11:14:59 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:1102 [0]
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_VER=2.4.6
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_PLAT=freebsd
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_PROTO=2
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_NCP=2
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZ4=1
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZ4v2=1
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_LZO=1
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_COMP_STUB=1
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
    Dec 28 11:15:12 	openvpn 	39098 	peer info: IV_TCPNL=1
    Dec 28 11:15:12 	openvpn 	39098 	[StationTwo] Peer Connection Initiated with [AF_INET]172.20.10.254:32691
    Dec 28 11:15:20 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
    Dec 28 11:15:30 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
    Dec 28 11:15:40 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
    Dec 28 11:15:50 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
    Dec 28 11:16:01 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.9.254:32918 [0]
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_VER=2.4.6
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_PLAT=freebsd
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_PROTO=2
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_NCP=2
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZ4=1
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZ4v2=1
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_LZO=1
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_COMP_STUB=1
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_COMP_STUBv2=1
    Dec 28 11:16:18 	openvpn 	39098 	peer info: IV_TCPNL=1
    Dec 28 11:16:18 	openvpn 	39098 	[StationOne] Peer Connection Initiated with [AF_INET]172.20.9.254:9535
    Dec 28 11:16:25 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
    Dec 28 11:16:35 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
    Dec 28 11:16:45 	openvpn 	39098 	TLS Error: local/remote TLS keys are out of sync: [AF_INET]172.20.10.254:32691 [0]
    
    P 1 Reply Last reply Dec 28, 2020, 5:27 PM Reply Quote 0
    • P
      PCooper @PCooper
      last edited by Dec 28, 2020, 5:27 PM

      @pcooper I have client logs but the forum will not let me post them.

      1 Reply Last reply Reply Quote 0
      1 out of 2
      • First post
        1/2
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.