Jump to content
Not connected, Your IP: 3.231.228.109

Recommended Posts

I too am having this problem. I do hope a fix is quick. Air is the best, so working without the client at 100% is painful.

 

*Edit* I suppose I should give some more specific information on my problem.

 

My ISP, Charter Cable, has been trying to push me over to a DOCSIS 3 modem for years. They do this by denying a working DNS to anyone dumb enough to just use the connection as provided. So in order to connect, I have to manually force a DNS of my choosing. To do this, I use DNSCrypt and a server there I know that can be trusted.

 

So when I found I could not connect to any server, I figured the client may be the problem. First I rebooted. This changed nothing. Then I started DNSCrypt and attempted to connect to the VPN with it running. (Sometimes this can be useful to start the connection, but since Eddie switches to its own DNS later, I can kill DNSCrypt after it connects.) This again did nothing. So I disabled Network Lock and closed the client entirely. I started up DNSCrypt and came here searching for "trust relationship for the SSL TLS secure channel". (I omitted the slash since it is removed anyway if you put it in the search.) That led me here, and now I have a temporary workaround to the problem. But it is an ugly workaround. I will be very happy when the problem is resolved without this workaround.

 

Thanks for reading my wall of text. I hope you are all well.


Debugging is at least twice as hard as writing the program in the first place.

So if you write your code as clever as you can possibly make it, then by definition you are not smart enough to debug it.

Share this post


Link to post

Sorry, its late, I'm tired.

 

Meant to say:

 

Under advanced, general, uncheck "Check if the tunnel effectively works"

 

Under Advanced, DNS uncheck "check if the tunnel uses AirVPN DNS"

 

This keeps connection via server.

 

https://www.doileak.com/    and   https://ipleak.net/   seem to indicate that there are no leaks.

 

BTW, someone else found these two Options which make it maintain connection.

Thanks man, I tried that with network lock and it seems to work somehow, and no connection leaks so far. I just opened support ticket for it and thought the problem was on my end, especially after cloning my hdd to ssd, just glad to see I'm not the only one with the problem. Hopefully they'll fix this soon. Cheers.

Share this post


Link to post

I too an having the same issue on a Win 10 machine with Eddie.  On android running open vpn for android no problems.

Share this post


Link to post

I too an having the same issue on a Win 10 machine with Eddie.  On android running open vpn for android no problems.

Share this post


Link to post

I too an having the same issue on a Win 10 machine with Eddie.  On android running open vpn for android no problems.  Also this website seems very slow.

Share this post


Link to post

I 2016.07.21 09:13:57 - Session starting.
I 2016.07.21 09:13:57 - IPv6 disabled.
I 2016.07.21 09:13:57 - Checking authorization ...
! 2016.07.21 09:13:57 - Connecting to Gienah (Netherlands, Alblasserdam)
. 2016.07.21 09:13:57 - OpenVPN > OpenVPN 2.3.8 x86_64-w64-mingw32 [sSL (OpenSSL)] [LZO] [iPv6] built on Aug 13 2015
. 2016.07.21 09:13:57 - OpenVPN > library versions: OpenSSL 1.0.2d 9 Jul 2015, LZO 2.08
. 2016.07.21 09:13:57 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100
. 2016.07.21 09:13:58 - OpenVPN > Control Channel Authentication: tls-auth using INLINE static key file
. 2016.07.21 09:13:58 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2016.07.21 09:13:58 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2016.07.21 09:13:58 - OpenVPN > Socket Buffers: R=[8192->131072] S=[8192->131072]
. 2016.07.21 09:13:58 - OpenVPN > UDPv4 link local: [undef]
. 2016.07.21 09:13:58 - OpenVPN > UDPv4 link remote: [AF_INET]213.152.162.93:443
. 2016.07.21 09:13:58 - OpenVPN > TLS: Initial packet from [AF_INET]213.152.162.93:443, sid=e1935ef0 7ad5a9d4
. 2016.07.21 09:13:58 - OpenVPN > VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.org
. 2016.07.21 09:13:58 - OpenVPN > Validating certificate key usage
. 2016.07.21 09:13:58 - OpenVPN > ++ Certificate has key usage  00a0, expects 00a0
. 2016.07.21 09:13:58 - OpenVPN > VERIFY KU OK
. 2016.07.21 09:13:58 - OpenVPN > Validating certificate extended key usage
. 2016.07.21 09:13:58 - OpenVPN > ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
. 2016.07.21 09:13:58 - OpenVPN > VERIFY EKU OK
. 2016.07.21 09:13:58 - OpenVPN > VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.org
. 2016.07.21 09:13:58 - OpenVPN > Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2016.07.21 09:13:58 - OpenVPN > Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2016.07.21 09:13:58 - OpenVPN > Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2016.07.21 09:13:58 - OpenVPN > Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2016.07.21 09:13:58 - OpenVPN > Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
. 2016.07.21 09:13:58 - OpenVPN > [server] Peer Connection Initiated with [AF_INET]213.152.162.93:443
. 2016.07.21 09:14:00 - OpenVPN > SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
. 2016.07.21 09:14:00 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 10.4.0.1,comp-lzo no,route-gateway 10.4.0.1,topology subnet,ping 10,ping-restart 60,ifconfig 10.4.75.193 255.255.0.0'
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: LZO parms modified
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: route options modified
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: route-related options modified
. 2016.07.21 09:14:00 - OpenVPN > OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
. 2016.07.21 09:14:00 - OpenVPN > do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
. 2016.07.21 09:14:00 - OpenVPN > open_tun, tt->ipv6=0
. 2016.07.21 09:14:01 - OpenVPN > TAP-WIN32 device [Local Area Connection 2] opened: \\.\Global\{BD8B957D-4D10-4737-9AC6-58E8AA1FF0F6}.tap
. 2016.07.21 09:14:01 - OpenVPN > TAP-Windows Driver Version 9.21
. 2016.07.21 09:14:01 - OpenVPN > Set TAP-Windows TUN subnet mode network/local/netmask = 10.4.0.0/10.4.75.193/255.255.0.0 [sUCCEEDED]
. 2016.07.21 09:14:01 - OpenVPN > Notified TAP-Windows driver to set a DHCP IP/netmask of 10.4.75.193/255.255.0.0 on interface {BD8B957D-4D10-4737-9AC6-58E8AA1FF0F6} [DHCP-serv: 10.4.255.254, lease-time: 31536000]
. 2016.07.21 09:14:01 - OpenVPN > Successful ARP Flush on interface [14] {BD8B957D-4D10-4737-9AC6-58E8AA1FF0F6}
. 2016.07.21 09:14:05 - OpenVPN > TEST ROUTES: 1/1 succeeded len=0 ret=1 a=0 u/d=up
. 2016.07.21 09:14:05 - OpenVPN > C:\Windows\system32\route.exe ADD 213.152.162.93 MASK 255.255.255.255 192.168.1.254
. 2016.07.21 09:14:05 - OpenVPN > ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=25 and dwForwardType=4
. 2016.07.21 09:14:05 - OpenVPN > Route addition via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:05 - OpenVPN > C:\Windows\system32\route.exe ADD 192.168.1.254 MASK 255.255.255.255 192.168.1.254 IF 11
. 2016.07.21 09:14:05 - OpenVPN > ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=25 and dwForwardType=4
. 2016.07.21 09:14:05 - OpenVPN > Route addition via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:05 - OpenVPN > C:\Windows\system32\route.exe ADD 0.0.0.0 MASK 128.0.0.0 10.4.0.1
. 2016.07.21 09:14:05 - OpenVPN > ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
. 2016.07.21 09:14:05 - OpenVPN > Route addition via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:05 - OpenVPN > C:\Windows\system32\route.exe ADD 128.0.0.0 MASK 128.0.0.0 10.4.0.1
. 2016.07.21 09:14:05 - OpenVPN > ROUTE: CreateIpForwardEntry succeeded with dwForwardMetric1=20 and dwForwardType=4
. 2016.07.21 09:14:05 - OpenVPN > Route addition via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:05 - Starting Management Interface
. 2016.07.21 09:14:05 - OpenVPN > Initialization Sequence Completed
I 2016.07.21 09:14:05 - DNS of a network adapter forced (Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter)
I 2016.07.21 09:14:05 - DNS of a network adapter forced (TAP-Windows Adapter V9)
I 2016.07.21 09:14:05 - Flushing DNS
I 2016.07.21 09:14:05 - Checking route
W 2016.07.21 09:14:06 - The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.
! 2016.07.21 09:14:06 - Disconnecting
. 2016.07.21 09:14:06 - Management - Send 'signal SIGTERM'
. 2016.07.21 09:14:06 - OpenVpn Management > >INFO:OpenVPN Management Interface Version 1 -- type 'help' for more info
. 2016.07.21 09:14:06 - OpenVPN > MANAGEMENT: CMD 'signal SIGTERM'
. 2016.07.21 09:14:06 - OpenVPN > SIGTERM received, sending exit notification to peer
. 2016.07.21 09:14:11 - OpenVPN > C:\Windows\system32\route.exe DELETE 213.152.162.93 MASK 255.255.255.255 192.168.1.254
. 2016.07.21 09:14:11 - OpenVPN > Route deletion via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:11 - OpenVPN > C:\Windows\system32\route.exe DELETE 192.168.1.254 MASK 255.255.255.255 192.168.1.254
. 2016.07.21 09:14:11 - OpenVPN > Route deletion via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:11 - OpenVPN > C:\Windows\system32\route.exe DELETE 0.0.0.0 MASK 128.0.0.0 10.4.0.1
. 2016.07.21 09:14:11 - OpenVPN > Route deletion via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:11 - OpenVPN > C:\Windows\system32\route.exe DELETE 128.0.0.0 MASK 128.0.0.0 10.4.0.1
. 2016.07.21 09:14:11 - OpenVPN > Route deletion via IPAPI succeeded [adaptive]
. 2016.07.21 09:14:11 - OpenVPN > Closing TUN/TAP interface
. 2016.07.21 09:14:11 - OpenVPN > SIGTERM[soft,exit-with-notification] received, process exiting
. 2016.07.21 09:14:11 - Connection terminated.
I 2016.07.21 09:14:11 - DNS of a network adapter restored to original settings (Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter)
I 2016.07.21 09:14:11 - DNS of a network adapter restored to original settings (TAP-Windows Adapter V9)
I 2016.07.21 09:14:13 - Cancel requested.
I 2016.07.21 09:14:13 - IPv6 restored.
! 2016.07.21 09:14:13 - Session terminated.
 

Windows 7 x64. Tried reinstalling airvpn.

 

Any ideas?

 

Thanks.

Share this post


Link to post

I too an having the same issue on a Win 7 machine.  On android running open vpn for android no problems.

Share this post


Link to post

Same problem here.

 

Problem started about 1-2 months ago, for me with the SWE servers (a little older air vpn install) - "The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure

channel." - Uninstalled the old airvpn version, and Installed the latest airvpn 2.10.3.  Still no connection to SWE servers, but for med the NE servers worked for those months, so was okay.

 

But now today when i try to connect i get the same error from both SWE servers and NE servers.

 

Running Windows 7 x64 

 

Only thing i have had deactivated Is windows update the last 3-4 months. Because of that annoying win 10 update spam. So can It be a sertificate that has been updated from the windows update or something like that? 

Share this post


Link to post

Same problem for me. Win 8.1.  Unfortunately being a customer on the other side of the world it means that this has been an issue for most of the day.

 

But I realise shit happens, and I've been a customer for awhile and this outage isn't normal or usual. I try to judge providers by how they respond to issues, so hopefully it'll be resolved soon   

Share this post


Link to post

Just here to say I have the same problem as the others here, for what it's worth.

 

WIn7 x64, UK, using Eddie client.

 

No doubt the team are aware and working on it.

Share this post


Link to post

Same for me. to servers France and NL on Win10x64.

 

But it works with Kali 2016 without Eddie with TCP 80 port.

 

What's happen ?

 

Thanks

Share this post


Link to post

Yep, I've got the same problem.  "The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel."

After reading this thread though, assuming the problem is with Air VPN rather than with me.  Hope it gets fixed soon.

Share this post


Link to post

Hi, i'm french and i have same problem too in Paris ...

 

It's Airvpn problem or mine ?

 

Thanks you

Share this post


Link to post

It s working if:

 

- uncheck "Check if tunnel effectively works" in Advanced > General

 

- uncheck "Check if tunnel uses AIRVPN DNS" in Advanced > DNS

 

 

Sources : aivpn forum and teksyndicate forum

Share this post


Link to post

No solutions?  I'm having a similar issue.  I've had not problems in the past connecting.  I use AirVPN's DNS servers and activate the network lock. Today I cannot connect to any servers.  The VPN client acts like it is connecting, then it says, "disconnecting," flushes the DNS and and tries to reconnect to another server.  This seems to go on in a loop.  I tried reverting to letting Windows assign an internal IP address and DNS automatically and deactivating the network lock; same thing.  AirVPN seems to  simply be not working.  Nothing has changed on my system since I last connected.

Share this post


Link to post

W 2016.07.20 22:00:44 - Checking route, 1° try failed (The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.)

W 2016.07.20 22:00:44 - Checking route, 2° try failed (The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.)

W 2016.07.20 22:00:45 - Checking route, 3° try failed (The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.)

W 2016.07.20 22:00:45 - Checking route, 4° try failed (The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.)

W 2016.07.20 22:00:45 - Checking route, 5° try failed (The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.)

W 2016.07.20 22:00:45 - The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.

 

 

I'm able to connect if I uncheck "Check if tunnel effectively works" in Advanced > General and I have unchecked "Check if tunnel uses AIRVPN DNS" in Advanced > DNS.

 

Hopefully the service that checks the tunnel is just down and the connection is still secure.

 

 

 

Same Issue - these steps allowed me to connect

Share this post


Link to post

One of the most annoying, because least helping, kind of posts are those saying "I have the same issue". Just because you posted it does not mean the issue gets resolved faster. Refrain from saying this in the future and instead say something like "I had the same issue, but I did X and Y and it was resolved for me".


Four simple things:
There's a guide to AirVPN. Before you ask questions, take 30 minutes of your time to go through it.

Amazon IPs are not dangerous here. It's the fallback DNS.
Running TOR exits is discouraged. They're subject to restrictions on the internet and harm all AirVPN users.

Furthermore, I propose that your paranoia is to be destroyed. If you overdo privacy, you'll be unique among the mass again.

 

XMPP: gigan3rd@xmpp.airvpn.org or join our lounge@conference.xmpp.airvpn.org

Share this post


Link to post

It s working if:

 

- uncheck "Check if tunnel effectively works" in Advanced > General

 

- uncheck "Check if tunnel uses AIRVPN DNS" in Advanced > DNS

 

 

Sources : aivpn forum and teksyndicate forum

OK, I tried this and it does see to be working.  Thank you.

But does this make my connection less secure by disabling these protocols?  Is it not using the AirVPN DNS with this box unchecked?  There has to be a reason why this did not have to be done until now.

Share this post


Link to post
Guest
This topic is now closed to further replies.

×
×
  • Create New...