Setting OpenVpn on Pfsense B4 Please Help (Road warrior)



  • Hello All,

    we are trying  to set OpenVpn for client  to be able to connect remote access.
    I am using Pfsense  2.0 B4 14 Nov version i have set Openvpn server with the wizard and also tried to implement sticky doc on forum but i don't really understand it since there are some settings that are different.

    What i did is export my user key,crt also CAs crt and file config to OpenVpn client but i get error as following below should i do something else?.
    i did also attached my current settings  ,
    Please advice
    Thanks in advanced

    
    Nov 22 11:30:37 	openvpn[36779]: Re-using SSL/TLS context
    Nov 22 11:30:37 	openvpn[36779]: TCP connection established with [AF_INET]79.176.3.2:6233
    Nov 22 11:30:37 	openvpn[36779]: TCPv4_SERVER link local: [undef]
    Nov 22 11:30:37 	openvpn[36779]: TCPv4_SERVER link remote: [AF_INET]79.176.3.2:6233
    Nov 22 11:30:37 	openvpn[36779]: 79.176.3.2:6233 TLS Error: cannot locate HMAC in incoming packet from [AF_INET]79.176.3.2:6233
    Nov 22 11:30:37 	openvpn[36779]: 79.176.3.2:6233 Fatal TLS error (check_tls_errors_co), restarting
    Nov 22 11:30:42 	openvpn[36779]: Re-using SSL/TLS context
    Nov 22 11:30:42 	openvpn[36779]: TCP connection established with [AF_INET]79.176.3.2:6235
    Nov 22 11:30:42 	openvpn[36779]: TCPv4_SERVER link local: [undef]
    Nov 22 11:30:42 	openvpn[36779]: TCPv4_SERVER link remote: [AF_INET]79.176.3.2:6235
    Nov 22 11:30:42 	openvpn[36779]: 79.176.3.2:6235 TLS Error: cannot locate HMAC in incoming packet from [AF_INET]79.176.3.2:6235
    Nov 22 11:30:42 	openvpn[36779]: 79.176.3.2:6235 Fatal TLS error (check_tls_errors_co), restarting
    Nov 22 11:30:50 	openvpn[36779]: Re-using SSL/TLS context
    Nov 22 11:30:50 	openvpn[36779]: TCP connection established with [AF_INET]79.176.3.2:6236
    Nov 22 11:30:50 	openvpn[36779]: TCPv4_SERVER link local: [undef]
    Nov 22 11:30:50 	openvpn[36779]: TCPv4_SERVER link remote: [AF_INET]79.176.3.2:6236
    
    










  • "TLS Error" sounds difficult but it's easy: Just take the TLS string from your server, put it into a textfile on your openvpn client.

    2048 bit OpenVPN static key


Log in to reply