Добрый день. Имеется 2 компа с Win Server Standart 2008 R2 на каждом. Серверная часть работает, а с клиентской проблемы.
Вот часть лога:
Fri Mar 21 16:22:19 2014 OpenVPN 2.3.2 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [IPv6] built on Aug 22 2013
Fri Mar 21 16:22:19 2014 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Fri Mar 21 16:22:19 2014 Need hold release from management interface, waiting...
Fri Mar 21 16:22:20 2014 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Fri Mar 21 16:22:20 2014 MANAGEMENT: CMD 'state on'
Fri Mar 21 16:22:20 2014 MANAGEMENT: CMD 'log all on'
Fri Mar 21 16:22:20 2014 MANAGEMENT: CMD 'hold off'
Fri Mar 21 16:22:20 2014 MANAGEMENT: CMD 'hold release'
Fri Mar 21 16:22:20 2014 WARNING: No server certificate verification method has been enabled. See
http://openvpn.net/howto.html#mitm for more info.
Fri Mar 21 16:22:20 2014 Socket Buffers: R=[8192->8192] S=[8192->8192]
Fri Mar 21 16:22:20 2014 Attempting to establish TCP connection with [AF_INET]xx.xx.xx.xx:1194
Fri Mar 21 16:22:20 2014 MANAGEMENT: >STATE:1395411740,TCP_CONNECT,,,
Fri Mar 21 16:22:21 2014 TCP: connect to [AF_INET]xx.xx.xx.xx:1194 failed, will try again in 5 seconds: Connection refused (WSAECONNREFUSED)
Конфиг сервера:
dev tap
proto tcp
mode server
tls-server
port 1194
server 10.10.10.0 255.255.255.0
comp-lzo
ifconfig-pool-persist C:\\OpenVPN\\config\\ccd\\ipp.txt
dh C:\\OpenVPN\\ssl\\dh1024.pem
ca C:\\OpenVPN\\ssl\\ca.crt
cert C:\\OpenVPN\\ssl\\Server.crt
key C:\\OpenVPN\\ssl\\Server.key
keepalive 10 120
status C:\\OpenVPN\\log\\openvpn-status.log
log C:\\OpenVPN\\log\\openvpn.log
verb 3
Конфиг клиента:
dev tap
proto tcp
remote xx.xx.xx.xx 1194
client
tls-client
ca C:\\OpenVPN\\ssl\\ca.crt
cert C:\\OpenVPN\\ssl\\client1.crt
key C:\\OpenVPN\\ssl\\client1.key
comp-lzo
ping-restart 60
ping 10
status C:\\OpenVPN\\log\\openvpn-status.log
log C:\\OpenVPN\\log\\openvpn.log
verb 3
Проброс порта сделал с xx.xx.xx.xx:1194 -> 10.10.10.1:1194 (роутер Mikrotik RB750). Файрволл временно отключил на обеих компах. Локальные подсети и там, и там - 192.168.0.x.
Где собака порылась? Гуру, выручайте!