agent41 0 Posted ... Hi everyone, Since I changed the DNS servers from my internet box, I can only access to websites threw their IP (000.0.00.00) and not from their names (google.com). I think it's related to a DNS resolution problem.I've tried some known issues on Ubuntu such as adding these lines to my ovpn files : script-security 2up /etc/openvpn/update-resolv-confdown /etc/openvpn/update-resolv-conf Here is my connection logs :Fri Feb 10 21:18:45 2017 OpenVPN 2.3.10 x86_64-pc-linux-gnu [sSL (OpenSSL)] [LZO] [EPOLL] [PKCS11] [MH] [iPv6] built on Feb 2 2016Fri Feb 10 21:18:45 2017 library versions: OpenSSL 1.0.2g 1 Mar 2016, LZO 2.08Fri Feb 10 21:18:45 2017 Control Channel Authentication: tls-auth using INLINE static key fileFri Feb 10 21:18:45 2017 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authenticationFri Feb 10 21:18:45 2017 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authenticationFri Feb 10 21:18:45 2017 Socket Buffers: R=[212992->212992] S=[212992->212992]Fri Feb 10 21:18:45 2017 UDPv4 link local: [undef]Fri Feb 10 21:18:45 2017 UDPv4 link remote: [AF_INET]185.156.174.154:443Fri Feb 10 21:18:45 2017 TLS: Initial packet from [AF_INET]185.156.174.154:443, sid=652c91ff 7fd6447fFri Feb 10 21:18:45 2017 VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.orgFri Feb 10 21:18:45 2017 Validating certificate key usageFri Feb 10 21:18:45 2017 ++ Certificate has key usage 00a0, expects 00a0Fri Feb 10 21:18:45 2017 VERIFY KU OKFri Feb 10 21:18:45 2017 Validating certificate extended key usageFri Feb 10 21:18:45 2017 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server AuthenticationFri Feb 10 21:18:45 2017 VERIFY EKU OKFri Feb 10 21:18:45 2017 VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=Turais, emailAddress=info@airvpn.orgFri Feb 10 21:18:46 2017 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit keyFri Feb 10 21:18:46 2017 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationFri Feb 10 21:18:46 2017 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit keyFri Feb 10 21:18:46 2017 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authenticationFri Feb 10 21:18:46 2017 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSAFri Feb 10 21:18:46 2017 [Turais] Peer Connection Initiated with [AF_INET]185.156.174.154:443Fri Feb 10 21:18:48 2017 SENT CONTROL [Turais]: 'PUSH_REQUEST' (status=1)Fri Feb 10 21:18:48 2017 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 10.4.0.1,comp-lzo no,route-gateway 10.4.0.1,topology subnet,ping 10,ping-restart 60,ifconfig 10.4.5.70 255.255.0.0'Fri Feb 10 21:18:48 2017 OPTIONS IMPORT: timers and/or timeouts modifiedFri Feb 10 21:18:48 2017 OPTIONS IMPORT: LZO parms modifiedFri Feb 10 21:18:48 2017 OPTIONS IMPORT: --ifconfig/up options modifiedFri Feb 10 21:18:48 2017 OPTIONS IMPORT: route options modifiedFri Feb 10 21:18:48 2017 OPTIONS IMPORT: route-related options modifiedFri Feb 10 21:18:48 2017 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modifiedFri Feb 10 21:18:48 2017 ROUTE_GATEWAY 192.168.0.1/255.255.255.0 IFACE=wlp1s0 HWADDR=18:5e:0f:1a:0a:eaFri Feb 10 21:18:48 2017 TUN/TAP device tun0 openedFri Feb 10 21:18:48 2017 TUN/TAP TX queue length set to 100Fri Feb 10 21:18:48 2017 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0Fri Feb 10 21:18:48 2017 /sbin/ip link set dev tun0 up mtu 1500Fri Feb 10 21:18:48 2017 /sbin/ip addr add dev tun0 10.4.5.70/16 broadcast 10.4.255.255Fri Feb 10 21:18:53 2017 /sbin/ip route add 185.156.174.154/32 via 192.168.0.1Fri Feb 10 21:18:53 2017 /sbin/ip route add 0.0.0.0/1 via 10.4.0.1Fri Feb 10 21:18:53 2017 /sbin/ip route add 128.0.0.0/1 via 10.4.0.1Fri Feb 10 21:18:53 2017 Initialization Sequence Completed Thanks ! agent41 Quote Share this post Link to post
OpenSourcerer 1435 Posted ... Since I changed the DNS servers from my internet box Did you check whether these new servers really work? Quote Hide OpenSourcerer's signature Hide all signatures NOT AN AIRVPN TEAM MEMBER. USE TICKETS FOR PROFESSIONAL SUPPORT. LZ1's New User Guide to AirVPN « Plenty of stuff for advanced users, too! Want to contact me directly? All relevant methods are on my About me page. Share this post Link to post
hugomueller 13 Posted ... is this a temporary issue or is it permanent?if temporary:https://airvpn.org/topic/21619-dns-name-resolution-from-10401-seems-to-fail-randomly-after-working-for-hours-or-days/?p=56278 Quote Share this post Link to post