Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - MUD

#1
Quote from: mschaeffler on September 12, 2022, 06:00:58 PM
I also had such an issue with 22.7.4.
Please check if the OpenVPN baemon is running; at my setup it crashed at startup!
Removing the CRL from the OpenVPN config seems to fix the issue.
Once again thank you for the quick replies.

* OpenVPN daemon is running
- Yes

* Removing the CRL from the OpenVPN config
- I'm assuming you mean "Peer Certificate Revocation List" in the server config?  It is set to none

These have been set and running and the issue still remains.
#2
Thanks for the quick reply... This did not resolve the issue.

no changes where made and was working fine from (apx 1 year) >22.7.0 till 22.7.2 and seem to break after the 22.7.3 update and continued openvpn disconnects after the 22.7.4 update.

Still not resolved.    Any solution will be much appreciated =)
#3
Hey all,

Like most I was effected by the 22.7.3 issue with OpenVPN...

Most issues where resolve and I can connect with VPN, but not for a long period of time then no data is transmitted via openvpn.

This happens with all clients.

Seeing:
99.XXX.XXX.XXX:51444 TLS Error: incoming packet authentication failed from [AF_INET6]::ffff:99.XXX.XXX.XXX:51444 (via ::ffff:72.XXX.XXX.XXX%em0)

Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #1 / time = (1662934470) 2022-09-11 18:14:30 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings

If not how can I revert to 22.7.2 before these issues began using opnsense-revert  ?
#4
I came across with an issue, I have a tunnel with 5 remote locations.  Phase 1 and 2 are up and allowing all traffic in the firewall rules in IPSEC.  I do have remote access to all 5 locations.    Running OPN 19.1.1

The issue that I'm having is when I request a https website from behind OPNsense of these tunnels at stalls on the TLS handshake from OPNsence -> pfSense.   But https works from the remote location accessing https to the local thats behind OPNsense.

Any help would be appreciated Thanks.