Jump to content
Not connected, Your IP: 54.173.221.132
vpnadmin

Problems connecting to custom server after upgrade to 2.11.15

Recommended Posts

Hey guys,

 

been running an experimental 2.11.9 here and everything was fine. After upgrade to the latest stable 2.11.15 I cannot connect to my server anymore. It looks like the connection is established and Eddie trys to build up another one, and another one, and another one .... and so one which the server denies since I only have a two user license. This is the part when the first connection is terminated:

 

. 2017.03.13 15:55:24 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,explicit-exit-notify,topology subnet,route-delay 5 30,dhcp-pre-release,dhcp-renew,dhcp-release,route-metric 101,ping 12,ping-restart 50,comp-lzo yes,redirect-gateway def1,redirect-gateway bypass-dhcp,redirect-gateway autolocal,route-gateway 172.27.232.1,dhcp-option DNS 8.8.8.8,dhcp-option DNS 4.4.4.4,register-dns,block-ipv6,ifconfig 172.27.232.114 255.255.248.0'
. 2017.03.13 15:55:24 - OpenVPN > Option 'explicit-exit-notify' in [PUSH-OPTIONS]:1 is ignored by previous <connection> blocks
W 2017.03.13 15:55:24 - Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
. 2017.03.13 15:55:24 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified
. 2017.03.13 15:55:24 - OpenVPN > OPTIONS IMPORT: explicit notify parm(s) modified
! 2017.03.13 15:55:24 - Disconnecting
. 2017.03.13 15:55:24 - OpenVPN > OPTIONS IMPORT: compression parms modified
. 2017.03.13 15:55:24 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified
. 2017.03.13 15:55:24 - Connection terminated.

I've attached the full log to this post. 

 

Not sure if that's a bug or something but it is possible to download Eddie 2.11.9 somewhere since this worked actually quite well (never change a running system)?

 

Thank you!

Eddie_20170313_155534.txt

Share this post


Link to post

Hello,

 

watch out, your server is misconfigured, here:

 

. 2017.03.13 15:47:36 - OpenVPN > Option 'explicit-exit-notify' in [PUSH-OPTIONS]:1 is ignored by previous blocks

 

Here:

. 2017.03.13 15:48:29 - OpenVPN > WARNING: INSECURE cipher with block size less than 128 bit (64 bit).  This allows attacks like SWEET32.  Mitigate by using a --cipher with a larger block size (e.g. AES-256-CBC).

 

and finally you are not authorized to access it:

. 2017.03.13 15:48:37 - OpenVPN > AUTH: Received control message: AUTH_FAILED,LICENSE: Access Server license failure: maximum concurrent_connections exceeded (2)

 

Kind regards

Share this post


Link to post

Oh, I'm authorized. The reason of this message is just the termination of an already established connection before without closing it properly - that's why the server is running out of licenses here. And do I get that right: the warning message in 2017.03.13 15:48:29 is the reason why Eddie drops the connection? Is this a change in Eddie 2.11.15? 

As I mentioned, this didn't happen before, and never was an issue.

 

Is it possible to download Eddie 2.11.9 again somewhere?

 

Thanks.

Share this post


Link to post

I changed this cipher thing now. What happens is that Eddie is trying to build up another connection after one is already established. This happens two times, then the server refuses any further attempt to connect because I have only two user licenses:

 

I 2017.03.14 02:50:28 - Session starting.
. 2017.03.14 02:50:28 - IPv6 disabled with packet filtering.
! 2017.03.14 02:50:28 - Connecting to OtherServers - netcup - de (Germany)
. 2017.03.14 02:50:28 - OpenVPN > OpenVPN 2.4.0 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Jan 29 2017
. 2017.03.14 02:50:28 - OpenVPN > Windows version 6.2 (Windows 8 or greater) 64bit
. 2017.03.14 02:50:28 - OpenVPN > library versions: OpenSSL 1.0.2k  26 Jan 2017, LZO 2.09
. 2017.03.14 02:50:28 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100
. 2017.03.14 02:50:29 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:29 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:29 - OpenVPN > TCP/UDP: Preserving recently used remote address: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:29 - OpenVPN > Socket Buffers: R=[65536->262144] S=[65536->262144]
. 2017.03.14 02:50:29 - OpenVPN > UDP link local: (not bound)
. 2017.03.14 02:50:29 - OpenVPN > UDP link remote: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:29 - OpenVPN > TLS: Initial packet from [AF_INET]46.38.xxx.xxx:1194, sid=1f645a5e 0f39e213
. 2017.03.14 02:50:30 - OpenVPN > VERIFY OK: depth=1, CN=OpenVPN CA
. 2017.03.14 02:50:30 - OpenVPN > VERIFY OK: nsCertType=SERVER
. 2017.03.14 02:50:30 - OpenVPN > VERIFY OK: depth=0, CN=OpenVPN Server
. 2017.03.14 02:50:32 - OpenVPN > Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
. 2017.03.14 02:50:32 - OpenVPN > [OpenVPN Server] Peer Connection Initiated with [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:33 - OpenVPN > SENT CONTROL [OpenVPN Server]: 'PUSH_REQUEST' (status=1)
. 2017.03.14 02:50:33 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,explicit-exit-notify,topology subnet,route-delay 5 30,dhcp-pre-release,dhcp-renew,dhcp-release,route-metric 101,ping 12,ping-restart 50,comp-lzo yes,redirect-gateway def1,redirect-gateway bypass-dhcp,redirect-gateway autolocal,route-gateway 172.27.232.1,dhcp-option DNS 8.8.8.8,dhcp-option DNS 4.4.4.4,register-dns,block-ipv6,ifconfig 172.27.232.6 255.255.248.0'
. 2017.03.14 02:50:33 - OpenVPN > Option 'explicit-exit-notify' in [PUSH-OPTIONS]:1 is ignored by previous <connection> blocks
W 2017.03.14 02:50:33 - Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: explicit notify parm(s) modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: compression parms modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: route options modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: route-related options modified
. 2017.03.14 02:50:33 - OpenVPN > OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
. 2017.03.14 02:50:33 - OpenVPN > Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2017.03.14 02:50:33 - OpenVPN > Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
! 2017.03.14 02:50:33 - Disconnecting
. 2017.03.14 02:50:33 - Connection terminated.
. 2017.03.14 02:50:33 - OpenVPN > Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2017.03.14 02:50:33 - OpenVPN > Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:33 - OpenVPN > interactive service msg_channel=0
. 2017.03.14 02:50:33 - OpenVPN > ROUTE_GATEWAY 192.168.1.1/255.255.255.0 I=13 HWADDR=48:51:b7:30:3e:a0
. 2017.03.14 02:50:33 - OpenVPN > open_tun
. 2017.03.14 02:50:34 - OpenVPN > TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{22F3283F-2446-4BEC-8CFA-B25E42578CCA}.tap
. 2017.03.14 02:50:34 - OpenVPN > TAP-Windows Driver Version 9.21
. 2017.03.14 02:50:34 - OpenVPN > Set TAP-Windows TUN subnet mode network/local/netmask = 172.27.232.0/172.27.232.6/255.255.248.0 [SUCCEEDED]
. 2017.03.14 02:50:34 - OpenVPN > Notified TAP-Windows driver to set a DHCP IP/netmask of 172.27.232.6/255.255.248.0 on interface {22F3283F-2446-4BEC-8CFA-B25E42578CCA} [DHCP-serv: 172.27.239.254, lease-time: 31536000]
. 2017.03.14 02:50:34 - OpenVPN > Successful ARP Flush on interface [4] {22F3283F-2446-4BEC-8CFA-B25E42578CCA}
! 2017.03.14 02:50:37 - Connecting to OtherServers - netcup - de (Germany)
. 2017.03.14 02:50:37 - OpenVPN > OpenVPN 2.4.0 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Jan 29 2017
. 2017.03.14 02:50:37 - OpenVPN > Windows version 6.2 (Windows 8 or greater) 64bit
. 2017.03.14 02:50:37 - OpenVPN > library versions: OpenSSL 1.0.2k  26 Jan 2017, LZO 2.09
. 2017.03.14 02:50:37 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100
. 2017.03.14 02:50:37 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:37 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:37 - OpenVPN > TCP/UDP: Preserving recently used remote address: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:37 - OpenVPN > Socket Buffers: R=[65536->262144] S=[65536->262144]
. 2017.03.14 02:50:37 - OpenVPN > UDP link local: (not bound)
. 2017.03.14 02:50:37 - OpenVPN > UDP link remote: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:38 - OpenVPN > TLS: Initial packet from [AF_INET]46.38.xxx.xxx:1194, sid=1117556a af16e855
. 2017.03.14 02:50:39 - OpenVPN > VERIFY OK: depth=1, CN=OpenVPN CA
. 2017.03.14 02:50:39 - OpenVPN > VERIFY OK: nsCertType=SERVER
. 2017.03.14 02:50:39 - OpenVPN > VERIFY OK: depth=0, CN=OpenVPN Server
. 2017.03.14 02:50:40 - OpenVPN > Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
. 2017.03.14 02:50:40 - OpenVPN > [OpenVPN Server] Peer Connection Initiated with [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:41 - OpenVPN > SENT CONTROL [OpenVPN Server]: 'PUSH_REQUEST' (status=1)
. 2017.03.14 02:50:42 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,explicit-exit-notify,topology subnet,route-delay 5 30,dhcp-pre-release,dhcp-renew,dhcp-release,route-metric 101,ping 12,ping-restart 50,comp-lzo yes,redirect-gateway def1,redirect-gateway bypass-dhcp,redirect-gateway autolocal,route-gateway 172.27.232.1,dhcp-option DNS 8.8.8.8,dhcp-option DNS 4.4.4.4,register-dns,block-ipv6,ifconfig 172.27.232.7 255.255.248.0'
. 2017.03.14 02:50:42 - OpenVPN > Option 'explicit-exit-notify' in [PUSH-OPTIONS]:1 is ignored by previous <connection> blocks
W 2017.03.14 02:50:42 - Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: explicit notify parm(s) modified
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: compression parms modified
! 2017.03.14 02:50:42 - Disconnecting
. 2017.03.14 02:50:42 - Connection terminated.
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: route options modified
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: route-related options modified
. 2017.03.14 02:50:42 - OpenVPN > OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
. 2017.03.14 02:50:42 - OpenVPN > Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2017.03.14 02:50:42 - OpenVPN > Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:42 - OpenVPN > Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
. 2017.03.14 02:50:42 - OpenVPN > Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:42 - OpenVPN > interactive service msg_channel=0
. 2017.03.14 02:50:42 - OpenVPN > ROUTE_GATEWAY 192.168.1.1/255.255.255.0 I=13 HWADDR=48:51:b7:30:3e:a0
. 2017.03.14 02:50:42 - OpenVPN > open_tun
. 2017.03.14 02:50:43 - OpenVPN > TAP-WIN32 device [Ethernet 2] opened: \\.\Global\{22F3283F-2446-4BEC-8CFA-B25E42578CCA}.tap
. 2017.03.14 02:50:43 - OpenVPN > TAP-Windows Driver Version 9.21
. 2017.03.14 02:50:43 - OpenVPN > Set TAP-Windows TUN subnet mode network/local/netmask = 172.27.232.0/172.27.232.7/255.255.248.0 [SUCCEEDED]
. 2017.03.14 02:50:43 - OpenVPN > Notified TAP-Windows driver to set a DHCP IP/netmask of 172.27.232.7/255.255.248.0 on interface {22F3283F-2446-4BEC-8CFA-B25E42578CCA} [DHCP-serv: 172.27.239.254, lease-time: 31536000]
. 2017.03.14 02:50:43 - OpenVPN > Successful ARP Flush on interface [4] {22F3283F-2446-4BEC-8CFA-B25E42578CCA}
! 2017.03.14 02:50:45 - Connecting to OtherServers - netcup - de (Germany)
. 2017.03.14 02:50:45 - OpenVPN > OpenVPN 2.4.0 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Jan 29 2017
. 2017.03.14 02:50:45 - OpenVPN > Windows version 6.2 (Windows 8 or greater) 64bit
. 2017.03.14 02:50:45 - OpenVPN > library versions: OpenSSL 1.0.2k  26 Jan 2017, LZO 2.09
. 2017.03.14 02:50:45 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100
. 2017.03.14 02:50:46 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:46 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
. 2017.03.14 02:50:46 - OpenVPN > TCP/UDP: Preserving recently used remote address: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:46 - OpenVPN > Socket Buffers: R=[65536->262144] S=[65536->262144]
. 2017.03.14 02:50:46 - OpenVPN > UDP link local: (not bound)
. 2017.03.14 02:50:46 - OpenVPN > UDP link remote: [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:46 - OpenVPN > TLS: Initial packet from [AF_INET]46.38.xxx.xxx:1194, sid=1f985dae 577d0765
. 2017.03.14 02:50:47 - OpenVPN > VERIFY OK: depth=1, CN=OpenVPN CA
. 2017.03.14 02:50:47 - OpenVPN > VERIFY OK: nsCertType=SERVER
. 2017.03.14 02:50:47 - OpenVPN > VERIFY OK: depth=0, CN=OpenVPN Server
. 2017.03.14 02:50:49 - OpenVPN > Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
. 2017.03.14 02:50:49 - OpenVPN > [OpenVPN Server] Peer Connection Initiated with [AF_INET]46.38.xxx.xxx:1194
. 2017.03.14 02:50:50 - OpenVPN > SENT CONTROL [OpenVPN Server]: 'PUSH_REQUEST' (status=1)
W 2017.03.14 02:50:50 - Authorization failed.
. 2017.03.14 02:50:50 - OpenVPN > AUTH: Received control message: AUTH_FAILED,LICENSE: Access Server license failure: maximum concurrent_connections exceeded (2)
. 2017.03.14 02:50:50 - OpenVPN > SIGTERM[soft,auth-failure] received, process exiting
! 2017.03.14 02:50:50 - Disconnecting
. 2017.03.14 02:50:50 - Connection terminated.
I 2017.03.14 02:50:54 - Cancel requested.
. 2017.03.14 02:50:54 - IPv6 restored with packet filtering.
. 2017.03.14 02:50:54 - Flushing DNS
! 2017.03.14 02:50:58 - Session terminated.

 

You can see it in that line:

 

2017.03.14 02:50:43 - OpenVPN > Successful ARP Flush on interface [4] {22F3283F-2446-4BEC-8CFA-B25E42578CCA}

After that, another connection is built up. So the Cipher is not the actual problem here, there must be another thing why Eddie is setting up more and more connections. Server is OpenVPN Access Server 2.0.10 in case that helps. As I said, Eddie 2.11.9 worked fine. Meanwhile, I upgraded to Eddie 2.12.4 which doesn't change anything.

Share this post


Link to post

Well I'm quite sure this is a bug and I'm trying to be patient but if anyone here could help me out with Eddie 2.11.9 Win 10/x64 that would be great!

Share this post


Link to post

Hello!

 

You can download the version you want via the download page >> "Other Versions" link. You can also submit support tickets mind you, if no one replies.


Moderators do not speak on behalf of AirVPN. Only the Official Staff account does. Please also do not run Tor Exit Servers behind AirVPN, thank you.
Did you make a guide or how-to for something? Then contact me to get it listed in my new user guide's Guides Section, so that the community can find it more easily.

Share this post


Link to post

Thank you. I tried that "other versions" thing before and I'm not able to download any other version than 2.11.15 (the final one) from the 2.11 branch. There is 2.12.4 (which doesn't work) and 2.10 (where custom server haven't been introduced yet IIRC) as well. So that doesn't work. Maybe I'll try the support ticket but I thought this is the platform for Eddie-related stuff and the ticket thing is for AirVPN (and I don't have any issues with that). 

 

There have been other bugs with the commercial Access Server (which I'm using in the past), so Eddie-developers obviously just test their stuff with the Open Source software, I'm going to try it with the Open Source OpenVPN server therefore soon. 

 

What about you, other users? Custom Server works still fine for you?

Share this post


Link to post

Are you sure you're not able to download other versions? If not, I think Staff would like to know about that. If you're only going by the filename, then you should open Eddie and go to its "About" tab, to see the version number. As the version number isn't consistently shown in the download . Since Eddie is made by AirVPN, it's okay to submit support tickets about that too.


Moderators do not speak on behalf of AirVPN. Only the Official Staff account does. Please also do not run Tor Exit Servers behind AirVPN, thank you.
Did you make a guide or how-to for something? Then contact me to get it listed in my new user guide's Guides Section, so that the community can find it more easily.

Share this post


Link to post

Well, just see the attachment for the available options.At the bottom I can choose "Experimental" as well which would lead me to the latest experimental version. I think this behaviour is intended and it shouldn't be very different at your side.

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
  • Security Check
    Play CAPTCHA Audio
    Refresh Image

×
×
  • Create New...