• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How restart OpenVPN server

Scheduled Pinned Locked Moved OpenVPN
41 Posts 14 Posters 76.3k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    sullrich
    last edited by Nov 28, 2006, 4:50 PM

    At this point I am at a loss.  Will have to discuss it with the other devs.  We are all really confused on this one.

    1 Reply Last reply Reply Quote 0
    • T
      tpepels
      last edited by Nov 29, 2006, 8:40 PM

      Same problem on my box ???.

      root    lighttpd  1785  10 tcp4  *:1194                :
      root    check_relo 339  10 tcp4  *:1194                :

      Hope you find the problem soon, good luck anyway!

      1 Reply Last reply Reply Quote 0
      • B
        Bredys
        last edited by Jan 4, 2007, 2:49 PM

        Still nothing new about this problem ? I try every snapshot but without any progress :(

        1 Reply Last reply Reply Quote 0
        • S
          Selective
          last edited by Jan 5, 2007, 12:16 PM

          The only thing you can do is to make your changes and save, click the disable box to disable tunnel and then restart pf, and when its up again, click box to enable tunnel again.

          1 Reply Last reply Reply Quote 0
          • T
            trendchiller
            last edited by Jan 5, 2007, 10:03 PM

            Same problem here and at a friends system and at work, too… even switching to another port did not work (only for one day - using 1195 now) and the system at work... still no changes  :'(

            1 Reply Last reply Reply Quote 0
            • T
              thinair
              last edited by Jan 8, 2007, 4:50 AM

              I have the same issue (and have had for a while now), the OpenVPN server tells me whatever port number I'm using is already in use.  I've tried with the latest snapshot (Jan 7/06), same issue.

              Nelson Papel

              1 Reply Last reply Reply Quote 0
              • S
                sullrich
                last edited by Jan 8, 2007, 4:51 AM

                Known issue. It's covered in 3-4 other threads but there is no solution as of yet.

                1 Reply Last reply Reply Quote 0
                • W
                  wdbacker
                  last edited by Jan 8, 2007, 4:37 PM

                  I'm having the same problem with my server in UDP mode. TCP mode works perfectly for me. Looking at the listening server processes with "sockstat -l" reveals:

                  _dhcp    dhclient  794  10 udp4  *:1194                :
                  root    dhclient  697  10 udp4  *:1194                :

                  Apparently, the dhclient process is listening on UDP port 1194 …  ???

                  FYI, my box is connected at the WAN side through DHCP to my ISP. In the OpenVPN server, I enabled dynamic dns clients.

                  1 Reply Last reply Reply Quote 0
                  • S
                    sullrich
                    last edited by Jan 8, 2007, 6:13 PM

                    There is some kind of bug where processes are inheriting other socket descriptors.

                    1 Reply Last reply Reply Quote 0
                    • W
                      wdbacker
                      last edited by Jan 13, 2007, 8:34 AM

                      Thanks for the information Scott!

                      I did some more testing and I saw the same problem now with the OpenVPN server in TCP mode. Hence I think it doesn't matter if the connection is through TCP or UDP, the same problem shows up. Rebooting solves the problem. The problem also seems to happen at random.

                      If there is anything I can do to help you finding the problem (socket descriptors being reused?), I'll be happy to do more testing!

                      1 Reply Last reply Reply Quote 0
                      • W
                        wdbacker
                        last edited by Jan 22, 2007, 2:32 PM

                        Hi Scott,

                        I noticed your Check-In 16202 on the CVS trac and I modified my /etc/inc/filter.inc as shown. Now in my case, OpenVPN is again (re)starting normally without the socket descriptors being reused by other processes! It works in both TCP and UDP server mode now (I use TCP for roadwarriors and UDP for site to site).

                        I will do some more extensive testing one of these days.

                        Thanks for the nice solution! :)

                        1 Reply Last reply Reply Quote 0
                        • S
                          sullrich
                          last edited by Jan 22, 2007, 4:48 PM

                          Great!  Glad to hear that it has solved the issues.

                          1 Reply Last reply Reply Quote 0
                          • T
                            thinair
                            last edited by Jan 22, 2007, 7:05 PM

                            I'm testing the updated filter.inc file as well.  I'll let you know in 24h if the OpenVPN tunnel is still up.  It usually dies after a couple hours for me.

                            Nelson Papel

                            1 Reply Last reply Reply Quote 0
                            • B
                              Bredys
                              last edited by Jan 23, 2007, 10:21 AM

                              I tried last snapshot from 22.01.07 and openVPN work great !

                              Thanks for this fix !

                              1 Reply Last reply Reply Quote 0
                              • S
                                Selective
                                last edited by Jan 23, 2007, 12:53 PM

                                it´s working for me aswell !!! :D

                                1 Reply Last reply Reply Quote 0
                                • T
                                  trendchiller
                                  last edited by Jan 23, 2007, 12:56 PM

                                  Y E A H

                                  Scott you rule !

                                  Happy to see this bug to be gone  ;D

                                  1 Reply Last reply Reply Quote 0
                                  • T
                                    thinair
                                    last edited by Jan 23, 2007, 5:39 PM

                                    Yep, everything is A-OK for me too.  The tunnel didn't go down once.  I guess I'll just install the 1-22-07 snapshot now.

                                    Nelson Papel

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      sh_man
                                      last edited by Mar 9, 2007, 10:25 AM

                                      I need to implement this solution for a couple of temporary sites I am setting up for a weeks time :(.

                                      I need to run them from a LiveCD.

                                      How can I create a LiveCD with this fix in.

                                      Please note that I am predominately a windows man, don't have much BSD/Linux experience and no machines other than a production firewall running pfSense :).

                                      1 Reply Last reply Reply Quote 0
                                      • H
                                        hoba
                                        last edited by Mar 9, 2007, 11:29 AM

                                        Just fetch a new livecd from the snapshotserver instead a 1.0.1 release from the mirrors that has this bug fixed: http://snapshots.pfsense.org/FreeBSD6/RELENG_1/

                                        1 Reply Last reply Reply Quote 0
                                        • S
                                          sh_man
                                          last edited by Mar 9, 2007, 12:13 PM

                                          Thanks - I'll see how I get on with that.

                                          1 Reply Last reply Reply Quote 0
                                          • First post
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                            This community forum collects and processes your personal information.
                                            consent.not_received