PfSense-Mikrotik
-
Hello, friends!
I just can’t make a vpn server on Pfsense with Mikrotik.
I import certificates, configure the client - there is an error from the Pfsense side:
Dec 8 15:53:24 openvpn 73912 xxx.xxx.xxx.xxx: TLS Error: cannot locate HMAC in incoming packet from [AF_INET]xxx.xxx.xxx.xxx:
Dec 8 15:53:24 openvpn 73912 xxx.xxx.xxx.xxx: Fatal TLS error (check_tls_errors_co), restarting
Dec 8 15:53:24 openvpn 73912 TCP connection established with [AF_INET]xxx.xxx.xxx.xxx:
Help me, please) -
@ilya-v said in PfSense-Mikrotik:
cannot locate HMAC in incoming packet from
This screams mismatch in tls auth and encryption setting.
-
@johnpoz said in PfSense-Mikrotik:
This screams mismatch in tls auth and encryption setting.
What do I need to do to get the client to connect?
There are two options in the dropdown list - "TLS Authentification" and "TLS Encryption and Authentification"
If I choose the second one, all clients fall off. -
The client setting and server setting need to match..
-
@johnpoz said in PfSense-Mikrotik:
The client setting and server setting need to match..
I made a new vpn server without tls authentication. Everything is working)
Thanks. -
@ilya-v authentication and encryption is better setting. Your clients just need to know to use it as well.