How to OVH Firewall and VPN
BMPCreated with Sketch.BMPZIPCreated with Sketch.ZIPXLSCreated with Sketch.XLSTXTCreated with Sketch.TXTPPTCreated with Sketch.PPTPNGCreated with Sketch.PNGPDFCreated with Sketch.PDFJPGCreated with Sketch.JPGGIFCreated with Sketch.GIFDOCCreated with Sketch.DOC Error Created with Sketch.
Question

How to OVH Firewall and VPN

by
ThomasS
Created on 2019-10-29 12:16:15 (edited on 2024-09-04 14:23:34) in Virtual Private Servers

I have a OpenVPN Server running on a OVH VPS and can not conect, as soon as the firewall is activated. Port rules are defined for the used udp port on vpn and the ssh still works. What I am doing wrong from there on?
I appreciate your help!
!Capture|690x97


4 Replies ( Latest reply on 2021-07-15 07:24:19 by
didarali
)

I have added the Log file and it states a TLS handshake error. I' have been searching many threads on different forums via google serarch, and the solution seems to be just the right rule. What am I missing, since the firewall should be configured right?


Wed Oct 30 13:39:15 2019 OpenVPN 2.4.7 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Apr 25 2019
Wed Oct 30 13:39:15 2019 Windows version 6.2 (Windows 8 or greater) 64bit
Wed Oct 30 13:39:15 2019 library versions: OpenSSL 1.1.0j 20 Nov 2018, LZO 2.10
Enter Management Password:
Wed Oct 30 13:39:15 2019 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Wed Oct 30 13:39:15 2019 Need hold release from management interface, waiting...
Wed Oct 30 13:39:15 2019 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'state on'
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'log all on'
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'echo all on'
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'bytecount 5'
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'hold off'
Wed Oct 30 13:39:15 2019 MANAGEMENT: CMD 'hold release'
Wed Oct 30 13:39:15 2019 Outgoing Control Channel Encryption: Cipher 'AES-256-CTR' initialized with 256 bit key
Wed Oct 30 13:39:15 2019 Outgoing Control Channel Encryption: Using 256 bit message hash 'SHA256' for HMAC authentication
Wed Oct 30 13:39:15 2019 Incoming Control Channel Encryption: Cipher 'AES-256-CTR' initialized with 256 bit key
Wed Oct 30 13:39:15 2019 Incoming Control Channel Encryption: Using 256 bit message hash 'SHA256' for HMAC authentication
Wed Oct 30 13:39:15 2019 TCP/UDP: Preserving recently used remote address: [AF_INET]xx.xx.xx.xx:443
Wed Oct 30 13:39:15 2019 Socket Buffers: R=[65536->65536] S=[65536->65536]
Wed Oct 30 13:39:15 2019 UDP link local: (not bound)
Wed Oct 30 13:39:15 2019 UDP link remote: [AF_INET]xx.xx.xx.xx.:443
Wed Oct 30 13:39:15 2019 MANAGEMENT: >STATE:1572439155,WAIT,,,,,,
Wed Oct 30 13:40:15 2019 **TLS Error: TLS key negotiation failed to occur within 60 seconds** (check your network connectivity)
Wed Oct 30 13:40:15 2019 TLS Error: TLS handshake failed
Wed Oct 30 13:40:15 2019 SIGUSR1[soft,tls-error] received, process restarting
Wed Oct 30 13:40:15 2019 MANAGEMENT: >STATE:1572439215,RECONNECTING,tls-error,,,,,
Wed Oct 30 13:40:15 2019 Restart pause, 5 second(s)
Wed Oct 30 13:40:20 2019 TCP/UDP: Preserving recently used remote address: [AF_INET]xx.xx.xx.xx:443
Wed Oct 30 13:40:20 2019 Socket Buffers: R=[65536->65536] S=[65536->65536]
Wed Oct 30 13:40:20 2019 UDP link local: (not bound)
Wed Oct 30 13:40:20 2019 UDP link remote: [AF_INET]xx.xx.xx.xx:443
Wed Oct 30 13:40:20 2019 MANAGEMENT: >STATE:1572439220,WAIT,,,,,,
Wed Oct 30 13:40:42 2019 SIGTERM[hard,] received, process exiting
Wed Oct 30 13:40:42 2019 MANAGEMENT: >STATE:1572439242,EXITING,SIGTERM,,,,,

seems i have the same problem - any solution ?

I have the same kind of trouble but I see that you have not received any answer yet.

Did you change service supplier?

Replies are currently disabled for this question.