Helios210 3 Posted ... Hi all, So recently I've started having issues running qBittorrent and remaining connected to AiVPN. If I connect to AirVPN (through the OpenVPN GUI) and just browse then there is no problem, speeds are good and the connection remains constant. If however I launch qBittorrent and download anything, within 3-4 minutes AirVPN drops. I can think of no explanation as to why this is happening - hence this post. I'm running Windows 8, tunneling through a Uni firewall on TCP 443, I've tried routing qBittorrent over a port explicitly opened in the Forward Ports section of AirVPN and through a randomly generated one, in both cases the results are the same. The only other thing to note is that I have modified the connection script slightly to change my DNS server to 10.5.0.1 (AirVPN's DNS) to prevent DNS leaks however like I say when I'm not running qBittorrent the connection doesn't drop, so I don't think this is the problem. It has only appeared in the last 2 weeks or so, prior to that there were no problems at all and I would quite like to get this fixed. Cheers, H. Log Below: Sat Nov 09 13:12:24 2013 OpenVPN 2.3.2 x86_64-w64-mingw32 [sSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [iPv6] built on Aug 22 2013Sat Nov 09 13:12:24 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25342Sat Nov 09 13:12:24 2013 Need hold release from management interface, waiting...Sat Nov 09 13:12:25 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25342Sat Nov 09 13:12:25 2013 MANAGEMENT: CMD 'state on'Sat Nov 09 13:12:25 2013 MANAGEMENT: CMD 'log all on'Sat Nov 09 13:12:25 2013 MANAGEMENT: CMD 'hold off'Sat Nov 09 13:12:25 2013 MANAGEMENT: CMD 'hold release'Sat Nov 09 13:12:25 2013 NOTE: the current --script-security setting may allow this configuration to call user-defined scriptsSat Nov 09 13:12:25 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]Sat Nov 09 13:12:25 2013 Attempting to establish TCP connection with [AF_INET]119.81.1.126:443Sat Nov 09 13:12:25 2013 MANAGEMENT: >STATE:1383973945,TCP_CONNECT,,,Sat Nov 09 13:12:25 2013 TCP connection established with [AF_INET]119.81.1.126:443Sat Nov 09 13:12:25 2013 TCPv4_CLIENT link local: [undef]Sat Nov 09 13:12:25 2013 TCPv4_CLIENT link remote: [AF_INET]119.81.1.126:443Sat Nov 09 13:12:25 2013 MANAGEMENT: >STATE:1383973945,WAIT,,,Sat Nov 09 13:12:25 2013 MANAGEMENT: >STATE:1383973945,AUTH,,,Sat Nov 09 13:12:25 2013 TLS: Initial packet from [AF_INET]119.81.1.126:443, sid=01bab8df 8c0287c2Sat Nov 09 13:12:25 2013 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.orgSat Nov 09 13:12:25 2013 VERIFY OK: nsCertType=SERVERSat Nov 09 13:12:25 2013 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.orgSat Nov 09 13:12:26 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:12:26 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:12:26 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:12:26 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:12:26 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSASat Nov 09 13:12:26 2013 [server] Peer Connection Initiated with [AF_INET]119.81.1.126:443Sat Nov 09 13:12:27 2013 MANAGEMENT: >STATE:1383973947,GET_CONFIG,,,Sat Nov 09 13:12:28 2013 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)Sat Nov 09 13:12:28 2013 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.5.0.1,comp-lzo no,route 10.5.0.1,topology net30,ping 10,ping-restart 60,ifconfig 10.5.0.230 10.5.0.229'Sat Nov 09 13:12:28 2013 OPTIONS IMPORT: timers and/or timeouts modifiedSat Nov 09 13:12:28 2013 OPTIONS IMPORT: LZO parms modifiedSat Nov 09 13:12:28 2013 OPTIONS IMPORT: --ifconfig/up options modifiedSat Nov 09 13:12:28 2013 OPTIONS IMPORT: route options modifiedSat Nov 09 13:12:28 2013 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modifiedSat Nov 09 13:12:28 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0Sat Nov 09 13:12:28 2013 MANAGEMENT: >STATE:1383973948,ASSIGN_IP,,10.5.0.230,Sat Nov 09 13:12:28 2013 open_tun, tt->ipv6=0Sat Nov 09 13:12:28 2013 TAP-WIN32 device [Local Area Connection] opened: \\.\Global\{2F2AC670-1C48-46EF-84D6-58E32F7205FC}.tapSat Nov 09 13:12:28 2013 TAP-Windows Driver Version 9.9 Sat Nov 09 13:12:28 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.5.0.230/255.255.255.252 on interface {2F2AC670-1C48-46EF-84D6-58E32F7205FC} [DHCP-serv: 10.5.0.229, lease-time: 31536000]Sat Nov 09 13:12:28 2013 Successful ARP Flush on interface [16] {2F2AC670-1C48-46EF-84D6-58E32F7205FC}Sat Nov 09 13:12:28 2013 _up.bat Local Area Connection 1500 1560 10.5.0.230 10.5.0.229 initSat Nov 09 13:12:28 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\WbemSat Nov 09 13:12:45 2013 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=upSat Nov 09 13:12:45 2013 C:\Windows\system32\route.exe ADD 119.81.1.126 MASK 255.255.255.255 172.20.167.250Sat Nov 09 13:12:45 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=10 and dwForwardType=4Sat Nov 09 13:12:45 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:12:45 2013 C:\Windows\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:12:45 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:12:45 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:12:45 2013 C:\Windows\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:12:45 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:12:45 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:12:45 2013 MANAGEMENT: >STATE:1383973965,ADD_ROUTES,,,Sat Nov 09 13:12:45 2013 C:\Windows\system32\route.exe ADD 10.5.0.1 MASK 255.255.255.255 10.5.0.229Sat Nov 09 13:12:45 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:12:45 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:12:45 2013 Initialization Sequence CompletedSat Nov 09 13:12:45 2013 MANAGEMENT: >STATE:1383973965,CONNECTED,SUCCESS,10.5.0.230,119.81.1.126 Here is where I turn on qBittorrent (about 13:13:00)Then as you can see at 13:16:52 the connection is reset... Sat Nov 09 13:16:52 2013 Connection reset, restarting [-1]Sat Nov 09 13:16:52 2013 C:\Windows\system32\route.exe DELETE 10.5.0.1 MASK 255.255.255.255 10.5.0.229Sat Nov 09 13:16:52 2013 Route deletion via IPAPI succeeded [adaptive]Sat Nov 09 13:16:52 2013 C:\Windows\system32\route.exe DELETE 119.81.1.126 MASK 255.255.255.255 172.20.167.250Sat Nov 09 13:16:52 2013 Route deletion via IPAPI succeeded [adaptive]Sat Nov 09 13:16:52 2013 C:\Windows\system32\route.exe DELETE 0.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:16:52 2013 Route deletion via IPAPI succeeded [adaptive]Sat Nov 09 13:16:52 2013 C:\Windows\system32\route.exe DELETE 128.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:16:52 2013 Route deletion via IPAPI succeeded [adaptive]Sat Nov 09 13:16:52 2013 Closing TUN/TAP interfaceSat Nov 09 13:16:52 2013 _down.bat Local Area Connection 1500 1560 10.5.0.230 10.5.0.229 initSat Nov 09 13:16:52 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\WbemSat Nov 09 13:16:57 2013 SIGUSR1[soft,connection-reset] received, process restartingSat Nov 09 13:16:57 2013 MANAGEMENT: >STATE:1383974217,RECONNECTING,connection-reset,,Sat Nov 09 13:16:57 2013 Restart pause, 5 second(s)Sat Nov 09 13:17:02 2013 NOTE: the current --script-security setting may allow this configuration to call user-defined scriptsSat Nov 09 13:17:02 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]Sat Nov 09 13:17:02 2013 Attempting to establish TCP connection with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:02 2013 MANAGEMENT: >STATE:1383974222,TCP_CONNECT,,,Sat Nov 09 13:17:02 2013 TCP connection established with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:02 2013 TCPv4_CLIENT link local: [undef]Sat Nov 09 13:17:02 2013 TCPv4_CLIENT link remote: [AF_INET]119.81.1.126:443Sat Nov 09 13:17:02 2013 MANAGEMENT: >STATE:1383974222,WAIT,,,Sat Nov 09 13:17:02 2013 MANAGEMENT: >STATE:1383974222,AUTH,,,Sat Nov 09 13:17:02 2013 TLS: Initial packet from [AF_INET]119.81.1.126:443, sid=397dc156 e530db5fSat Nov 09 13:17:02 2013 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.orgSat Nov 09 13:17:02 2013 VERIFY OK: nsCertType=SERVERSat Nov 09 13:17:02 2013 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.orgSat Nov 09 13:17:02 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:17:02 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:17:02 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:17:02 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:17:02 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSASat Nov 09 13:17:02 2013 [server] Peer Connection Initiated with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:04 2013 MANAGEMENT: >STATE:1383974224,GET_CONFIG,,,Sat Nov 09 13:17:05 2013 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)Sat Nov 09 13:17:05 2013 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.5.0.1,comp-lzo no,route 10.5.0.1,topology net30,ping 10,ping-restart 60,ifconfig 10.5.0.230 10.5.0.229'Sat Nov 09 13:17:05 2013 OPTIONS IMPORT: timers and/or timeouts modifiedSat Nov 09 13:17:05 2013 OPTIONS IMPORT: LZO parms modifiedSat Nov 09 13:17:05 2013 OPTIONS IMPORT: --ifconfig/up options modifiedSat Nov 09 13:17:05 2013 OPTIONS IMPORT: route options modifiedSat Nov 09 13:17:05 2013 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modifiedSat Nov 09 13:17:05 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0Sat Nov 09 13:17:05 2013 MANAGEMENT: >STATE:1383974225,ASSIGN_IP,,10.5.0.230,Sat Nov 09 13:17:05 2013 open_tun, tt->ipv6=0Sat Nov 09 13:17:05 2013 TAP-WIN32 device [Local Area Connection] opened: \\.\Global\{2F2AC670-1C48-46EF-84D6-58E32F7205FC}.tapSat Nov 09 13:17:05 2013 TAP-Windows Driver Version 9.9 Sat Nov 09 13:17:05 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.5.0.230/255.255.255.252 on interface {2F2AC670-1C48-46EF-84D6-58E32F7205FC} [DHCP-serv: 10.5.0.229, lease-time: 31536000]Sat Nov 09 13:17:05 2013 Successful ARP Flush on interface [16] {2F2AC670-1C48-46EF-84D6-58E32F7205FC}Sat Nov 09 13:17:05 2013 _up.bat Local Area Connection 1500 1560 10.5.0.230 10.5.0.229 initSat Nov 09 13:17:05 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\WbemSat Nov 09 13:17:17 2013 MANAGEMENT: CMD 'signal SIGHUP'Sat Nov 09 13:17:17 2013 Closing TUN/TAP interfaceSat Nov 09 13:17:17 2013 _down.bat Local Area Connection 1500 1560 10.5.0.230 10.5.0.229 initSat Nov 09 13:17:17 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\WbemSat Nov 09 13:17:21 2013 SIGHUP[hard,] received, process restartingSat Nov 09 13:17:21 2013 MANAGEMENT: >STATE:1383974241,RECONNECTING,SIGHUP,,Sat Nov 09 13:17:21 2013 OpenVPN 2.3.2 x86_64-w64-mingw32 [sSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [iPv6] built on Aug 22 2013Sat Nov 09 13:17:21 2013 Restart pause, 5 second(s)Sat Nov 09 13:17:26 2013 NOTE: the current --script-security setting may allow this configuration to call user-defined scriptsSat Nov 09 13:17:26 2013 Socket Buffers: R=[65536->65536] S=[65536->65536]Sat Nov 09 13:17:26 2013 Attempting to establish TCP connection with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:26 2013 MANAGEMENT: >STATE:1383974246,TCP_CONNECT,,,Sat Nov 09 13:17:26 2013 TCP connection established with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:26 2013 TCPv4_CLIENT link local: [undef]Sat Nov 09 13:17:26 2013 TCPv4_CLIENT link remote: [AF_INET]119.81.1.126:443Sat Nov 09 13:17:26 2013 MANAGEMENT: >STATE:1383974246,WAIT,,,Sat Nov 09 13:17:26 2013 MANAGEMENT: >STATE:1383974246,AUTH,,,Sat Nov 09 13:17:26 2013 TLS: Initial packet from [AF_INET]119.81.1.126:443, sid=b7f11659 f2c55d2dSat Nov 09 13:17:26 2013 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.orgSat Nov 09 13:17:26 2013 VERIFY OK: nsCertType=SERVERSat Nov 09 13:17:26 2013 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.orgSat Nov 09 13:17:27 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:17:27 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:17:27 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySat Nov 09 13:17:27 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSat Nov 09 13:17:27 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSASat Nov 09 13:17:27 2013 [server] Peer Connection Initiated with [AF_INET]119.81.1.126:443Sat Nov 09 13:17:28 2013 MANAGEMENT: >STATE:1383974248,GET_CONFIG,,,Sat Nov 09 13:17:29 2013 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)Sat Nov 09 13:17:29 2013 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.5.0.1,comp-lzo no,route 10.5.0.1,topology net30,ping 10,ping-restart 60,ifconfig 10.5.0.230 10.5.0.229'Sat Nov 09 13:17:29 2013 OPTIONS IMPORT: timers and/or timeouts modifiedSat Nov 09 13:17:29 2013 OPTIONS IMPORT: LZO parms modifiedSat Nov 09 13:17:29 2013 OPTIONS IMPORT: --ifconfig/up options modifiedSat Nov 09 13:17:29 2013 OPTIONS IMPORT: route options modifiedSat Nov 09 13:17:29 2013 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modifiedSat Nov 09 13:17:29 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0Sat Nov 09 13:17:29 2013 MANAGEMENT: >STATE:1383974249,ASSIGN_IP,,10.5.0.230,Sat Nov 09 13:17:29 2013 open_tun, tt->ipv6=0Sat Nov 09 13:17:29 2013 TAP-WIN32 device [Local Area Connection] opened: \\.\Global\{2F2AC670-1C48-46EF-84D6-58E32F7205FC}.tapSat Nov 09 13:17:29 2013 TAP-Windows Driver Version 9.9 Sat Nov 09 13:17:29 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.5.0.230/255.255.255.252 on interface {2F2AC670-1C48-46EF-84D6-58E32F7205FC} [DHCP-serv: 10.5.0.229, lease-time: 31536000]Sat Nov 09 13:17:29 2013 Successful ARP Flush on interface [16] {2F2AC670-1C48-46EF-84D6-58E32F7205FC}Sat Nov 09 13:17:29 2013 _up.bat Local Area Connection 1500 1560 10.5.0.230 10.5.0.229 initSat Nov 09 13:17:29 2013 env_block: add PATH=C:\Windows\System32;C:\WINDOWS;C:\WINDOWS\System32\WbemSat Nov 09 13:17:46 2013 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=upSat Nov 09 13:17:46 2013 C:\Windows\system32\route.exe ADD 119.81.1.126 MASK 255.255.255.255 172.20.167.250Sat Nov 09 13:17:46 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=10 and dwForwardType=4Sat Nov 09 13:17:46 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:17:46 2013 C:\Windows\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:17:46 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:17:46 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:17:46 2013 C:\Windows\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.5.0.229Sat Nov 09 13:17:46 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:17:46 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:17:46 2013 MANAGEMENT: >STATE:1383974266,ADD_ROUTES,,,Sat Nov 09 13:17:46 2013 C:\Windows\system32\route.exe ADD 10.5.0.1 MASK 255.255.255.255 10.5.0.229Sat Nov 09 13:17:46 2013 ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=30 and dwForwardType=4Sat Nov 09 13:17:46 2013 Route addition via IPAPI succeeded [adaptive]Sat Nov 09 13:17:46 2013 Initialization Sequence CompletedSat Nov 09 13:17:46 2013 MANAGEMENT: >STATE:1383974266,CONNECTED,SUCCESS,10.5.0.230,119.81.1.126 Quote Share this post Link to post
Staff 9972 Posted ... Hello, puzzling. The first thing that would come to mind is an RST packet from your ISP (see https://grepular.com/Punching_through_The_Great_Firewall_of_TMobile just out of curiosity) but we think it's unlikely (the ISP would send an RST packet only when the data throughput gets higher thanks to p2p...?). What happens if you try UDP? Kind regards Quote Share this post Link to post
Helios210 3 Posted ... Hi, thanks for your quick reply! Sorry it took me a while, I've been busy with exams. Unfortunately the University blocks UDP traffic on all ports so I'm limited to TCP, after having read the article on the "Great firewall of T-Mobile" I was intrigued to see that he could modify his routing table to drop RST packets, is there a way this can be done in Windows? I would normally investigate such an issue by myself however the complexities of networking is an area where my knowledge needs improving and I do not have the time just now. Many thanks, Quote Share this post Link to post
Helios210 3 Posted ... Hi guys, any suggestions? The problem has now started occuring when I'm doing reasonably large HTTP downloads, the client will cut-out and then reconnect every few minutes, if it wasn't for DownThemAll!'s flexibility I'd have 100 corrupt downloads by now and it's getting really annoying. Cheers, Quote Share this post Link to post
Staff 9972 Posted ... Hello, have you inquired your university network administrators about that? If you can't do that, can you please try OpenVPN over SSL for testing purposes? Performance will be lower, but it is a good test to discern whether it's the university network the one that disrupts OpenVPN or not. https://airvpn.org/ssl Kind regards Quote Share this post Link to post
st4r 1 Posted ... Hi, I have similar experiences in the last couple of days - independent of whichever server. My configuration never changed and before this problem it was good.As long as I am surfing only speed is good and connection stable. However if I open you-torrrent client downloads start for some seconds then connection drops to 0. Browsing is also not possible anymore. If I turn off the client browsing is possible after a while.I cannot seem to detect anything registered in the log file either showing this "hick-up". Can you help: Sun Dec 01 23:05:50 2013 OpenVPN 2.3.2 i686-w64-mingw32 [sSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [iPv6] built on Aug 22 2013Enter Management Password:Sun Dec 01 23:05:50 2013 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25350Sun Dec 01 23:05:50 2013 Need hold release from management interface, waiting...Sun Dec 01 23:05:50 2013 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25350Sun Dec 01 23:05:51 2013 MANAGEMENT: CMD 'state on'Sun Dec 01 23:05:51 2013 MANAGEMENT: CMD 'log all on'Sun Dec 01 23:05:51 2013 MANAGEMENT: CMD 'hold off'Sun Dec 01 23:05:51 2013 MANAGEMENT: CMD 'hold release'Sun Dec 01 23:05:51 2013 Socket Buffers: R=[8192->8192] S=[49152->49152]Sun Dec 01 23:05:51 2013 UDPv4 link local: [undef]Sun Dec 01 23:05:51 2013 UDPv4 link remote: [AF_INET]95.211.191.33:443Sun Dec 01 23:05:51 2013 MANAGEMENT: >STATE:1385935551,WAIT,,,Sun Dec 01 23:05:51 2013 MANAGEMENT: >STATE:1385935551,AUTH,,,Sun Dec 01 23:05:51 2013 TLS: Initial packet from [AF_INET]95.211.191.33:443, sid=38cd8404 090c239aSun Dec 01 23:05:51 2013 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.orgSun Dec 01 23:05:51 2013 VERIFY OK: nsCertType=SERVERSun Dec 01 23:05:51 2013 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.orgSun Dec 01 23:05:54 2013 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySun Dec 01 23:05:54 2013 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSun Dec 01 23:05:54 2013 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit keySun Dec 01 23:05:54 2013 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationSun Dec 01 23:05:54 2013 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSASun Dec 01 23:05:54 2013 [server] Peer Connection Initiated with [AF_INET]95.211.191.33:443Sun Dec 01 23:05:55 2013 MANAGEMENT: >STATE:1385935555,GET_CONFIG,,,Sun Dec 01 23:05:57 2013 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)Sun Dec 01 23:05:57 2013 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.4.0.1,comp-lzo no,route 10.4.0.1,topology net30,ping 10,ping-restart 60,ifconfig 10.4.54.106 10.4.54.105'Sun Dec 01 23:05:57 2013 OPTIONS IMPORT: timers and/or timeouts modifiedSun Dec 01 23:05:57 2013 OPTIONS IMPORT: LZO parms modifiedSun Dec 01 23:05:57 2013 OPTIONS IMPORT: --ifconfig/up options modifiedSun Dec 01 23:05:57 2013 OPTIONS IMPORT: route options modifiedSun Dec 01 23:05:57 2013 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modifiedSun Dec 01 23:05:57 2013 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0Sun Dec 01 23:05:57 2013 MANAGEMENT: >STATE:1385935557,ASSIGN_IP,,10.4.54.106,Sun Dec 01 23:05:57 2013 open_tun, tt->ipv6=0Sun Dec 01 23:05:57 2013 TAP-WIN32 device [LAN-Verbindung 7] opened: \\.\Global\{45008644-13A4-4A84-99D5-86932AACF4CA}.tapSun Dec 01 23:05:57 2013 TAP-Windows Driver Version 9.9Sun Dec 01 23:05:57 2013 Notified TAP-Windows driver to set a DHCP IP/netmask of 10.4.54.106/255.255.255.252 on interface {45008644-13A4-4A84-99D5-86932AACF4CA} [DHCP-serv: 10.4.54.105, lease-time: 31536000]Sun Dec 01 23:05:57 2013 Successful ARP Flush on interface [2] {45008644-13A4-4A84-99D5-86932AACF4CA}Sun Dec 01 23:06:02 2013 TEST ROUTES: 2/2 succeeded len=1 ret=1 a=0 u/d=upSun Dec 01 23:06:02 2013 C:\WINDOWS\system32\route.exe ADD 95.211.191.33 MASK 255.255.255.255 192.168.1.1Sun Dec 01 23:06:02 2013 Route addition via IPAPI succeeded [adaptive]Sun Dec 01 23:06:02 2013 C:\WINDOWS\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.4.54.105Sun Dec 01 23:06:02 2013 Route addition via IPAPI succeeded [adaptive]Sun Dec 01 23:06:02 2013 C:\WINDOWS\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.4.54.105Sun Dec 01 23:06:02 2013 Route addition via IPAPI succeeded [adaptive]Sun Dec 01 23:06:02 2013 MANAGEMENT: >STATE:1385935562,ADD_ROUTES,,,Sun Dec 01 23:06:02 2013 C:\WINDOWS\system32\route.exe ADD 10.4.0.1 MASK 255.255.255.255 10.4.54.105Sun Dec 01 23:06:02 2013 Route addition via IPAPI succeeded [adaptive]Sun Dec 01 23:06:02 2013 Initialization Sequence CompletedSun Dec 01 23:06:02 2013 MANAGEMENT: >STATE:1385935562,CONNECTED,SUCCESS,10.4.54.106,95.211.191.33Sun Dec 01 23:09:29 2013 SIGTERM received, sending exit notification to peerSun Dec 01 23:09:34 2013 C:\WINDOWS\system32\route.exe DELETE 10.4.0.1 MASK 255.255.255.255 10.4.54.105Sun Dec 01 23:09:34 2013 Route deletion via IPAPI succeeded [adaptive]Sun Dec 01 23:09:34 2013 C:\WINDOWS\system32\route.exe DELETE 95.211.191.33 MASK 255.255.255.255 192.168.1.1Sun Dec 01 23:09:34 2013 Route deletion via IPAPI succeeded [adaptive]Sun Dec 01 23:09:34 2013 C:\WINDOWS\system32\route.exe DELETE 0.0.0.0 MASK 128.0.0.0 10.4.54.105Sun Dec 01 23:09:34 2013 Route deletion via IPAPI succeeded [adaptive]Sun Dec 01 23:09:34 2013 C:\WINDOWS\system32\route.exe DELETE 128.0.0.0 MASK 128.0.0.0 10.4.54.105Sun Dec 01 23:09:34 2013 Route deletion via IPAPI succeeded [adaptive]Sun Dec 01 23:09:34 2013 Closing TUN/TAP interfaceSun Dec 01 23:09:34 2013 SIGTERM[soft,exit-with-notification] received, process exitingSun Dec 01 23:09:34 2013 MANAGEMENT: >STATE:1385935774,EXITING,exit-with-notification,, Quote Share this post Link to post
Staff 9972 Posted ... @st4r Hello, are you running any firewall or security program that might "think" that a sustained UDP flow is an UDP flood attack? When you connect OpenVPN in UDP, all the incoming and outgoing traffic is UDP only. We have seen in the past that mis-configured firewall or packet inspection programs (especially on Windows, but sometimes on routers too) wrongly identify the regular UDP flow as a flood, and start dropping packets, effectively causing the system to disconnect from the VPN. Kind regards Quote Share this post Link to post
st4r 1 Posted ... Hmm, sounds big time like that.I am running comodo firewall configured as you described here:https://airvpn.org/topic/3405-windows-comodo-prevent-leaks/and I have peerblock running as well. However before a couple of days everything downloaded smoothly even with comodo and peerblock running as described. Nothing changes if I turn off peerblock. I did not turn off comodo while the t0rrent client is on to prevent leaks. Would using a different config file with TCP for openvpn do? Or what could I do? Quote Share this post Link to post
st4r 1 Posted ... Unfortunately the problem still persists.Firewall logs in comodo do not report anything related to a possible packet drop at all (nothing at all at the time). I have disabled peerblock and besides latest avast I have no further "security" program running. I will test on another computer to see whether I have the same effect. So, what is the next step? Shall I post any more details? TCP config? Quote Share this post Link to post