Trying to configure openVPN and got this error TLS Error



  • Wed Sep 26 15:06:07 2012 OpenVPN 2.2.2 Win32-MSVC++ [SSL] [LZO2] [PKCS11] built on Dec 15 2011
    Wed Sep 26 15:06:15 2012 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA.  OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
    Wed Sep 26 15:06:15 2012 WARNING: Make sure you understand the semantics of –tls-remote before using it (see the man page).
    Wed Sep 26 15:06:15 2012 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
    Wed Sep 26 15:06:16 2012 Control Channel Authentication: using 'pfsense-udp-1194-tls.key' as a OpenVPN static key file
    Wed Sep 26 15:06:16 2012 LZO compression initialized
    Wed Sep 26 15:06:16 2012 UDPv4 link local (bound): [undef]:1194
    Wed Sep 26 15:06:16 2012 UDPv4 link remote: 192.168.2.187:1194
    Wed Sep 26 15:07:16 2012 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
    Wed Sep 26 15:07:16 2012 TLS Error: TLS handshake failed
    Wed Sep 26 15:07:16 2012 SIGUSR1[soft,tls-error] received, process restarting
    Wed Sep 26 15:07:18 2012 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA.  OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
    Wed Sep 26 15:07:18 2012 WARNING: Make sure you understand the semantics of –tls-remote before using it (see the man page).
    Wed Sep 26 15:07:18 2012 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
    Wed Sep 26 15:07:18 2012 Re-using SSL/TLS context
    Wed Sep 26 15:07:18 2012 LZO compression initialized

    ---- Kindly help to figure out what is this error all about.. thanks alot


  • Rebel Alliance Developer Netgate

    Check the logs on the other side.

    The 60 second timeout just means it failed to contact the server, so no connectivity. The other side would be more helpful.


Locked