Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    openvpn server fails after openvpn-client-export update

    Scheduled Pinned Locked Moved OpenVPN
    1 Posts 1 Posters 340 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dave.opc
      last edited by dave.opc

      So i got several pfsense instances version 23.05 and 23.05.1
      on all of them i got openvpn-client-export package installed (ver 1.9_1)
      if i upgrade 1.9_1 to 1.9.2 (openvpn also upgrades with this package) my openvpn server becomes broken (Data encryption Algorithms are lost/gone)

      >>> Upgrading pfSense-pkg-openvpn-client-export... 
      Updating pfSense-core repository catalogue...
      Fetching meta.conf: 
      pfSense-core repository is up to date.
      Updating pfSense repository catalogue...
      Fetching meta.conf: 
      pfSense repository is up to date.
      All repositories are up to date.
      The following 3 package(s) will be affected (of 0 checked):
      
      Installed packages to be UPGRADED:
      	openvpn: 2.6.2 -> 2.6.7_1 [pfSense]
      	openvpn-client-export: 2.6.5 -> 2.6.7 [pfSense]
      	pfSense-pkg-openvpn-client-export: 1.9_1 -> 1.9.2 [pfSense]
      

      i 'am unable to make any changes to openvpn server
      pic
      the openvpn server itself keeps working and accepts connection until rebooted.
      if i reboot my pfsense, openvpn server will not start at all, so i have to upgrade my pfsense from 23.05 to 23.09 which bring all algorithms back and openvpn server back online.
      strange thing is that i got selected chachapoly20, aes256-gcm, aes128-gcm and if upgrade my 23.05 to 23.09 they all remain in place.

      p.s. on 23.05 (and .1) with pkg-openvpn-client-export: 1.9_1 the system was running for a long time, and changes to openvpn server were possible (no issues).

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.