OpenVPN Serverkonfiguration Instance (new)

Started by RES217AIII, August 20, 2023, 12:59:05 PM

Previous topic - Next topic
Meinst du mit altem Server den OpenVPN-Server? Läuft die neue Instanz auf Port 1199 und die alte Instanz auf Port 1194?

Kannst du bitte mal den OpenVPN Connect Client verwenden und einmal den Log vom alten Server und einmal den Log vom neuen Server zeigen?

Ja ich meine den OpenVPN Server in den man die Schnittstelle aussuchen kann.
Die Server haben jeweils unterschiedliche Ports, die selbstverständlich in den Firewallregeln definiert sind.
Gerne richte ich die beiden Clientkonfiguration in den OpenVPN Connect Client ein. Bin jedoch gerade i meiner Schwiegermutter und werde erst morgen dazu kommen. Berichte aber sobald als möglich!
Danke
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

August 27, 2023, 05:24:26 PM #32 Last Edit: August 27, 2023, 05:27:10 PM by b.unkel
Quote from: vpx23 on August 26, 2023, 03:50:54 PM
Meinst du mit altem Server den OpenVPN-Server? Läuft die neue Instanz auf Port 1199 und die alte Instanz auf Port 1194?

Kannst du bitte mal den OpenVPN Connect Client verwenden und einmal den Log vom alten Server und einmal den Log vom neuen Server zeigen?

Anbei die Logs OpenVPN Server legacy und OpenVPN Server new instance.
Scheint es nicht so zu sein, dass der Client mit dem Server der neuen Instanz keine Verbindung aufbauen kann?
Er wartet frustran auf eine Antwort. Der Server hingegen horcht zwar auf alle Schnittstellen, wie netmap ergeben hat, kann aber mit Anfrage nichts anfangen.
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Quote
OpenVPN Server Instance (new)

[Aug 27, 2023, 16:52:10] OpenVPN core 3.8 mac x86_64 64-bit built on Jul 26 2023 03:37:17
⏎[Aug 27, 2023, 16:52:10] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Aug 27, 2023, 16:52:10] NOTE: This configuration contains options that were not used:
⏎[Aug 27, 2023, 16:52:10] Feature not implemented (option ignored)
⏎[Aug 27, 2023, 16:52:10] 7 [lport]

  • ⏎[Aug 27, 2023, 16:52:10] Unsupported option (ignored)
    ⏎[Aug 27, 2023, 16:52:10] 1 [persist-tun]
    ⏎[Aug 27, 2023, 16:52:10] 2 [persist-key]
    ⏎[Aug 27, 2023, 16:52:10] 5 [resolv-retry] [infinite]
    ⏎[Aug 27, 2023, 16:52:10] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:10] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:10] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:10] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:10] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:20] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:20] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:20] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:20] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:20] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:20] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:20] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:30] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:30] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:30] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:30] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:30] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:30] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:30] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:40] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:40] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:40] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:40] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:40] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:40] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:40] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:50] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:50] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:50] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:50] Contacting 93.211.254.93:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:50] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:50] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:50] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:53:00] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:53:00] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:53:00] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:53:00] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:53:00] EVENT: WAIT ⏎[Aug 27, 2023, 16:53:00] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:53:00] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:53:10] EVENT: CONNECTION_TIMEOUT  BYTES_OUT : 3564
    PACKETS_OUT : 66
    CONNECTION_TIMEOUT : 1
    N_RECONNECT : 5
    ⏎[Aug 27, 2023, 16:53:10] EVENT: DISCONNECTED ⏎[Aug 27, 2023, 16:53:14] Raw stats on disconnect:
    BYTES_OUT : 3564
    PACKETS_OUT : 66
    CONNECTION_TIMEOUT : 1
    N_RECONNECT : 5

    ⏎[Aug 27, 2023, 16:53:14] Performance stats on disconnect:
      CPU usage (microseconds): 5891654
      Network bytes per CPU second: 604
      Tunnel bytes per CPU second: 0

Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Quote
OpenVPN Server legacy

[Aug 27, 2023, 16:52:10] OpenVPN core 3.8 mac x86_64 64-bit built on Jul 26 2023 03:37:17
⏎[Aug 27, 2023, 16:52:10] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Aug 27, 2023, 16:52:10] NOTE: This configuration contains options that were not used:
⏎[Aug 27, 2023, 16:52:10] Feature not implemented (option ignored)
⏎[Aug 27, 2023, 16:52:10] 7 [lport]

  • ⏎[Aug 27, 2023, 16:52:10] Unsupported option (ignored)
    ⏎[Aug 27, 2023, 16:52:10] 1 [persist-tun]
    ⏎[Aug 27, 2023, 16:52:10] 2 [persist-key]
    ⏎[Aug 27, 2023, 16:52:10] 5 [resolv-retry] [infinite]
    ⏎[Aug 27, 2023, 16:52:10] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:10] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:10] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:10] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:10] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:20] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:20] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:20] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:20] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:20] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:20] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:20] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:30] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:30] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:30] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:30] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:30] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:30] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:30] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:40] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:40] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:40] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:40] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:40] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:40] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:40] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:52:50] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:52:50] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:52:50] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:52:50] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:52:50] EVENT: WAIT ⏎[Aug 27, 2023, 16:52:50] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:52:50] Connecting to Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:53:00] Server poll timeout, trying next remote entry...
    ⏎[Aug 27, 2023, 16:53:00] EVENT: RECONNECTING ⏎[Aug 27, 2023, 16:53:00] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:53:00] Contacting 93.211.XXX.XX:1199 via UDP
    ⏎[Aug 27, 2023, 16:53:00] EVENT: WAIT ⏎[Aug 27, 2023, 16:53:00] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:53:00] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:53:10] EVENT: CONNECTION_TIMEOUT  BYTES_OUT : 3564
    PACKETS_OUT : 66
    CONNECTION_TIMEOUT : 1
    N_RECONNECT : 5
    ⏎[Aug 27, 2023, 16:53:10] EVENT: DISCONNECTED ⏎[Aug 27, 2023, 16:53:14] Raw stats on disconnect:
    BYTES_OUT : 3564
    PACKETS_OUT : 66
    CONNECTION_TIMEOUT : 1
    N_RECONNECT : 5

    ⏎[Aug 27, 2023, 16:53:14] Performance stats on disconnect:
      CPU usage (microseconds): 5891654
      Network bytes per CPU second: 604
      Tunnel bytes per CPU second: 0
    ⏎[Aug 27, 2023, 16:55:05] OpenVPN core 3.8 mac x86_64 64-bit built on Jul 26 2023 03:37:17
    ⏎[Aug 27, 2023, 16:55:05] Frame=512/2112/512 mssfix-ctrl=1250
    ⏎[Aug 27, 2023, 16:55:05] NOTE: This configuration contains options that were not used:
    ⏎[Aug 27, 2023, 16:55:05] Feature not implemented (option ignored)
    ⏎[Aug 27, 2023, 16:55:05] 8 [lport]

  • ⏎[Aug 27, 2023, 16:55:05] Unsupported option (ignored)
    ⏎[Aug 27, 2023, 16:55:05] 1 [persist-tun]
    ⏎[Aug 27, 2023, 16:55:05] 2 [persist-key]
    ⏎[Aug 27, 2023, 16:55:05] 3 [data-ciphers-fallback] [AES-256-CBC]
    ⏎[Aug 27, 2023, 16:55:05] 6 [resolv-retry] [infinite]
    ⏎[Aug 27, 2023, 16:55:05] EVENT: RESOLVE ⏎[Aug 27, 2023, 16:55:05] EVENT: WAIT ⏎[Aug 27, 2023, 16:55:05] Contacting 93.211.XXX.XX:1197 via UDP
    ⏎[Aug 27, 2023, 16:55:05] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
    {
       "host" : "93.211.XXX.XX",
       "ipv6" : false,
       "pid" : 25816
    }

    ⏎[Aug 27, 2023, 16:55:05] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
    ⏎[Aug 27, 2023, 16:55:05] EVENT: CONNECTING ⏎[Aug 27, 2023, 16:55:05] Tunnel Options:V4,dev-type tun,link-mtu 1585,tun-mtu 1500,proto UDPv4,cipher BF-CBC,auth SHA512,keysize 128,key-method 2,tls-client
    ⏎[Aug 27, 2023, 16:55:05] Creds: Username/Password
    ⏎[Aug 27, 2023, 16:55:05] Peer Info:
    IV_VER=3.8
    IV_PLAT=mac
    IV_NCP=2
    IV_TCPNL=1
    IV_PROTO=990
    IV_MTU=1600
    IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
    IV_GUI_VER=OCmacOS_3.4.3-4617
    IV_SSO=webauth,openurl,crtext
    IV_BS64DL=1

    ⏎[Aug 27, 2023, 16:55:05] SSL Handshake: peer certificate: CN=VPN Server Zertifikat, 4096 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

    ⏎[Aug 27, 2023, 16:55:05] Session is ACTIVE
    ⏎[Aug 27, 2023, 16:55:05] EVENT: GET_CONFIG ⏎[Aug 27, 2023, 16:55:05] Sending PUSH_REQUEST to server...
    ⏎[Aug 27, 2023, 16:55:06] Sending PUSH_REQUEST to server...
    ⏎[Aug 27, 2023, 16:55:06] OPTIONS:
    0 [route] [192.168.0] [255.255.255.0]
    1 [route] [192.168..0] [255.255.255.0]
    2 [dhcp-option] [DNS] [192.168..1]
    3 [route] [192.168..1]
    4 [topology] [net30]
    5 [ping] [10]
    6 [ping-restart] [60]
    7 [ifconfig] [192.168..14] [192.168..13]
    8 [peer-id]

  • 9 [cipher] [AES-256-GCM]
    10 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
    11 [tun-mtu] [1500]
    12 [block-ipv6]
    13 [block-ipv4]

    ⏎[Aug 27, 2023, 16:55:06] PROTOCOL OPTIONS:
      cipher: AES-256-GCM
      digest: NONE
      key-derivation: TLS Keying Material Exporter [RFC5705]
      compress: NONE
      peer ID: 0
      control channel: tls-crypt enabled
    ⏎[Aug 27, 2023, 16:55:06] TunPersist: short-term connection scope
    ⏎[Aug 27, 2023, 16:55:06] TunPersist: new tun context
    ⏎[Aug 27, 2023, 16:55:06] EVENT: ASSIGN_IP ⏎[Aug 27, 2023, 16:55:06] CAPTURED OPTIONS:
    Session Name: opnsense.unkeldomain.de
    Layer: OSI_LAYER_3
    MTU: 1500
    Remote Address: 93.211.XXX.XX
    Tunnel Addresses:
      192.168.22.14/30 -> 192.168..13 [net30]
    Reroute Gateway: IPv4=0 IPv6=0 flags=[ IPv4 ]
    Block IPv4: yes
    Block IPv6: yes
    Add Routes:
      192.168..0/24
      192.168..0/24
      192.168..1/32
    Exclude Routes:
    DNS Servers:
      192.168..1
    Search Domains:

    ⏎[Aug 27, 2023, 16:55:06] SetupClient: transmitting tun setup list to /var/run/agent_ovpnconnect.sock
    {
       "config" :
       {
          "iface_name" : "",
          "layer" : "OSI_LAYER_3",
          "tun_prefix" : false
       },
       "pid" : 25816,
       "tun" :
       {
          "adapter_domain_suffix" : "",
          "add_routes" :
          [
             {
                "address" : "192.168..0",
                "gateway" : "",
                "ipv6" : false,
                "metric" : -1,
                "net30" : false,
                "prefix_length" : 24
             },
             {
                "address" : "192.168..0",
                "gateway" : "",
                "ipv6" : false,
                "metric" : -1,
                "net30" : false,
                "prefix_length" : 24
             },
             {
                "address" : "192.168..1",
                "gateway" : "",
                "ipv6" : false,
                "metric" : -1,
                "net30" : false,
                "prefix_length" : 32
             }
          ],
          "block_ipv6" : true,
          "dns_servers" :
          [
             {
                "address" : "192.168..1",
                "ipv6" : false
             }
          ],
          "layer" : 3,
          "mtu" : 1500,
          "remote_address" :
          {
             "address" : "93.211.XXX.XX",
             "ipv6" : false
          },
          "reroute_gw" :
          {
             "flags" : 256,
             "ipv4" : false,
             "ipv6" : false
          },
          "route_metric_default" : -1,
          "session_name" : "mydomain.de",
          "tunnel_address_index_ipv4" : 0,
          "tunnel_address_index_ipv6" : -1,
          "tunnel_addresses" :
          [
             {
                "address" : "192.168..14",
                "gateway" : "192.168..13",
                "ipv6" : false,
                "metric" : -1,
                "net30" : true,
                "prefix_length" : 30
             }
          ]
       }
    }
    POST unix://[/var/run/agent_ovpnconnect.sock]/tun-setup : 200 OK
    {
       "iface_name" : "utun5",
       "layer" : "OSI_LAYER_3",
       "tun_prefix" : true
    }
    /sbin/ifconfig utun5 down
    /sbin/ifconfig utun5 192.168..14 192.168..13 netmask 255.255.255.252 mtu 1500 up
    /sbin/route add -net 192.168..12 -netmask 255.255.255.252 192.168..14
    add net 192.168..12: gateway 192.168..14
    /sbin/route add -net 192.168..0 -netmask 255.255.255.0 192.168..13
    add net 192.168..0: gateway 192.168..13
    /sbin/route add -net 192.168..0 -netmask 255.255.255.0 192.168..13
    route: writing to routing socket: File exists
    add net 192.168..0: gateway 192.168..13: File exists
    /sbin/route add -net 192.168..1 -netmask 255.255.255.255 192.168..13
    add net 192.168..1: gateway 192.168..13
    /sbin/route add -net -inet6 2000:: -prefixlen 4 -reject ::1%lo0
    add net 2000::: gateway ::1%lo0
    /sbin/route add -net -inet6 3000:: -prefixlen 4 -reject ::1%lo0
    add net 3000::: gateway ::1%lo0
    /sbin/route add -net -inet6 fc00:: -prefixlen 7 -reject ::1%lo0
    add net fc00::: gateway ::1%lo0
    MacDNSAction: FLAGS=F RD=1 SO=5000 DNS=192.168..1 DOM= ADS=
    open utun5 SUCCEEDED
    ⏎[Aug 27, 2023, 16:55:06] EVENT: CONNECTED Test.VPN@mydomain.de:1197 (93.211.XXX.XX) via /UDP on utun5/192.168..14/ gw=[192.168..13/] mtu=1500⏎[Aug 27, 2023, 16:55:06] Connected via utun5

Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Quote
{
            "address" : "192.168..1",
            "gateway" : "",
            "ipv6" : false,
            "metric" : -1,
            "net30" : false,
            "prefix_length" : 32
         }
mach doch mal bitte einen screenshot deiner openvpn konfig (nur die neue). lauf deinem post sieht das für mich sehr komisch aus
durch deine ganzen post, ist das jetzt die neue oder die alte konfig?

Internet: Willy.tel Down: 1Gbit/s, UP: 250Mbit/s Glasfaser  |
Router/Firewall: pfSense+ 23.09  |
Hardware: Netgate 6100

Er hatte im legacy-Log noch die ersten Zeilen vom new-Log. Etwas verwirrend.

Legacy-Log fängt bei 16:55 Uhr an.

Aber das kommt mir komisch vor:

Legacy
[Aug 27, 2023, 16:55:05] Contacting 93.211.XXX.XX:1197 via UDP
[Aug 27, 2023, 16:55:05] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
{
"host" : "93.211.XXX.XX",
"ipv6" : false,
"pid" : 25816
}

[Aug 27, 2023, 16:55:05] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
[Aug 27, 2023, 16:55:05] EVENT: CONNECTING


New
[Aug 27, 2023, 16:52:10] Contacting 93.211.XXX.XX:1199 via UDP
[Aug 27, 2023, 16:52:10] UnixCommandAgent: transmitting bypass route to /var/run/agent_ovpnconnect.sock
{
"host" : "93.211.XXX.XX",
"ipv6" : false,
"pid" : 25816
}

[Aug 27, 2023, 16:52:10] Connecting to [mydomain.de]:1199 (93.211.XXX.XX) via UDP
[Aug 27, 2023, 16:52:20] Server poll timeout, trying next remote entry...
[Aug 27, 2023, 16:52:20] EVENT: RECONNECTING


Bei der alten Methode kontaktiert er über Port 1197, verbindet aber über Port 1199.

Bei der neuen Methode kontaktiert er über Port 1199 und versucht auch über diesen zu verbinden.

Beides ist der gleiche Prozess, also die gleiche Instanz. Kann die gleiche Server-Instanz mehrere Ports haben oder braucht man dafür auch mehrere Instanzen? Oder ist das der Clientprozess?

Quote from: micneu on August 27, 2023, 05:42:41 PM
mach doch mal bitte einen screenshot deiner openvpn konfig (nur die neue). lauf deinem post sieht das für mich sehr komisch aus
durch deine ganzen post, ist das jetzt die neue oder die alte konfig?

Screenshot Konfiguration neuer OpenVPN Server
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Auch habe ich die Export Einstellung der Clients hinzugefügt um zu zeigendes ich mich nicht mit den Port vertan habe.
Neue Exportdatei:
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Alte Exportdatei
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Dann habe ich den Neuen Server deaktiviert.
Und trotzdem zeigt die Log Datei bei des alten OpenVPN Server eine Verbindung mit dem Port 1199 statt wie konfiguriert mit Port 1197.
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Hier läuft noch Version 23.4.2 (auf Basis 23.1.11), ich habe dieses "Instance (new)" noch nicht. Wird der parallele Betrieb von der alten Konfiguration und der neuen überhaupt unterstützt, was sagen die Programmierer dazu?

Hast du testweise mal den alten Server deaktiviert?

August 28, 2023, 12:33:13 PM #42 Last Edit: August 28, 2023, 12:36:40 PM by b.unkel
Der parallele Betrieb wird unterstützt. (https://forum.opnsense.org/index.php?topic=35110.0).

Den alten Server habe ich deaktiviert, was zu keiner Veränderung führte.

Mich interessiert, ob es jemanden schon gelungen ist, die neue Serverinstanz mit dynDNS erfolgreich zu installieren.
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

Hast du mal probiert beim alten und neuen Server den gleichen Port zu verwenden, damit wir nicht so ein durcheinander mit den Ports haben?

Soweit ich verstanden habe muss für jeden OpenVPN Dienst ein separater Port definiert werden, damit sie parallel betrieben werden können.

Das Port- Durcheinander liegt nicht in der Konfiguration, sondern scheint bei der Herstellung der Verbindung aufgetreten zu sein.
Um einen (Kopier-) Fehler meinerseits auszuschliessen habe ich das mit unterschiedlichen Szenarien getestet und es bleibt bei dem Port- Durcheinander im Log.

Server legacy 1197
Server Instance new 1199.

Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB