Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Kernel: sonewconn: Listen queue overflow

    OpenVPN
    1
    1
    756
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      isiroshtan last edited by

      Hi all. I'm new here and English not my native language, so sorry for any mistakes both in grammar and in full understanding of logs/problem.

      I have pfsense 2.2.1-RELEASE and ovpn servers configured on  it. Yesterday it started to behave strangely. Server randomly drops all connected users, and on immediate  reconnect attempt it gives tls erorr. Server log as follows:

      May 14 14:43:46 openvpn[98124]: 85.198.173.63:62078 TLS Error: TLS handshake failed
      May 14 14:43:46 openvpn[98124]: 85.198.173.63:62078 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)


      May 14 14:40:03 openvpn[98124]: ynychyporchuk/85.198.173.63:64476 [ynychyporchuk] Inactivity timeout (–ping-restart), restarting

      Studying logs spotted in system logs next error:

      kernel: sonewconn: pcb 0xfffff80117812870: Listen queue overflow: 2 already in queue awaiting acceptance (1 occurrences)

      [2.2.1-RELEASE][**]/home/(13): netstat -An | grep fffff80117812870
      fffff80117812870 stream      0      0 fffff800287423b0        0        0        0 /var/etc/openvpn/server5.sock

      Server5 is exactly server where all users are dropped from. After some time connections are possible again and all works fine for some time. Today same behavior was spotted on another ovpn server on same machine.

      I planing on rebooting machine and see if it fixes anything, as 45 days before it was working flawlessly, but was wondering if anyone can point me on reason of such behavior.

      1 Reply Last reply Reply Quote 0
      • First post
        Last post

      Products

      • Platform Overview
      • TNSR
      • pfSense Plus
      • Appliances

      Services

      • Training
      • Professional Services

      Support

      • Subscription Plans
      • Contact Support
      • Product Lifecycle
      • Documentation

      News

      • Media Coverage
      • Press
      • Events

      Resources

      • Blog
      • FAQ
      • Find a Partner
      • Resource Library
      • Security Information

      Company

      • About Us
      • Careers
      • Partners
      • Contact Us
      • Legal
      Our Mission

      We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

      Subscribe to our Newsletter

      Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

      © 2021 Rubicon Communications, LLC | Privacy Policy