l3o 0 Posted ... (edited) Hi all.When I start the Eddie client it seem all ok, but if I visit ipleak.net I can see my ip address and in the "IP Details" I see: AirVPN Exit Node: "No" (you can see the attachment). Can you help me? Thanks in advance.leo ps: Here the Eddie's client log:I 2017.10.17 22:54:44 - Eddie version: 2.13.6 / linux_x64, System: Linux, Name: Debian GNU/Linux 9 \n \l, Version: Linux mousy 4.9.0-4-amd64 #1 SMP Debian 4.9.51-1 (2017-09-28) x86_64 GNU/Linux, Mono/.Net Framework: v4.0.30319. 2017.10.17 22:54:44 - Reading options from /home/leo/.airvpn/AirVPN.xml. 2017.10.17 22:54:45 - Command line arguments (2): path="/home/leo/.airvpn" console.mode="none"I 2017.10.17 22:54:46 - OpenVPN Driver - Found, /dev/net/tunI 2017.10.17 22:54:46 - OpenVPN - Version: 2.4.0 - OpenSSL 1.0.2l 25 May 2017, LZO 2.08 (/usr/sbin/openvpn)I 2017.10.17 22:54:46 - SSH - Version: OpenSSH_7.4p1 Debian-10+deb9u1, OpenSSL 1.0.2l 25 May 2017 (/usr/bin/ssh)I 2017.10.17 22:54:46 - SSL - Version: stunnel 5.39 (/usr/bin/stunnel4)I 2017.10.17 22:54:46 - curl - Version: 7.52.1 (/usr/bin/curl)I 2017.10.17 22:54:46 - Certification Authorities: /usr/share/AirVPN/cacert.pem. 2017.10.17 22:54:46 - Updating systems & servers data ...! 2017.10.17 22:54:46 - Ready. 2017.10.17 22:54:47 - Systems & servers data update completedI 2017.10.17 22:54:51 - Session starting.I 2017.10.17 22:54:51 - Checking authorization ...! 2017.10.17 22:54:51 - Connecting to Matar (Netherlands, Alblasserdam). 2017.10.17 22:54:52 - OpenVPN > OpenVPN 2.4.0 x86_64-pc-linux-gnu [sSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Jul 18 2017. 2017.10.17 22:54:52 - OpenVPN > library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.08. 2017.10.17 22:54:52 - Connection to OpenVPN Management Interface. 2017.10.17 22:54:52 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100. 2017.10.17 22:54:52 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication. 2017.10.17 22:54:52 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication. 2017.10.17 22:54:52 - OpenVPN > TCP/UDP: Preserving recently used remote address: [AF_INET]109.232.227.137:443. 2017.10.17 22:54:52 - OpenVPN > Socket Buffers: R=[212992->212992] S=[212992->212992]. 2017.10.17 22:54:52 - OpenVPN > UDP link local: (not bound). 2017.10.17 22:54:52 - OpenVPN > UDP link remote: [AF_INET]109.232.227.137:443. 2017.10.17 22:54:52 - OpenVPN > TLS: Initial packet from [AF_INET]109.232.227.137:443, sid=6cdbc329 b476af64. 2017.10.17 22:54:52 - OpenVPN > VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.org. 2017.10.17 22:54:52 - OpenVPN > Validating certificate key usage. 2017.10.17 22:54:52 - OpenVPN > ++ Certificate has key usage 00a0, expects 00a0. 2017.10.17 22:54:52 - OpenVPN > VERIFY KU OK. 2017.10.17 22:54:52 - OpenVPN > Validating certificate extended key usage. 2017.10.17 22:54:52 - OpenVPN > ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication. 2017.10.17 22:54:52 - OpenVPN > VERIFY EKU OK. 2017.10.17 22:54:52 - OpenVPN > VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=server, emailAddress=info@airvpn.org. 2017.10.17 22:54:52 - OpenVPN > MANAGEMENT: Client connected from [AF_INET]127.0.0.1:3100. 2017.10.17 22:54:52 - OpenVPN > Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 4096 bit RSA. 2017.10.17 22:54:52 - OpenVPN > [server] Peer Connection Initiated with [AF_INET]109.232.227.137:443. 2017.10.17 22:54:53 - OpenVPN > SENT CONTROL [server]: 'PUSH_REQUEST' (status=1). 2017.10.17 22:54:53 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,comp-lzo no,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 10.4.0.1,route-gateway 10.4.0.1,topology subnet,ping 10,ping-restart 60,ifconfig 10.4.1.0 255.255.0.0,peer-id 40,cipher AES-256-GCM'. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: compression parms modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: route options modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: route-related options modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: peer-id set. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: adjusting link_mtu to 1625. 2017.10.17 22:54:53 - OpenVPN > OPTIONS IMPORT: data channel crypto options modified. 2017.10.17 22:54:53 - OpenVPN > Data Channel Encrypt: Cipher 'AES-256-GCM' initialized with 256 bit key. 2017.10.17 22:54:53 - OpenVPN > Data Channel Decrypt: Cipher 'AES-256-GCM' initialized with 256 bit key. 2017.10.17 22:54:53 - OpenVPN > ROUTE_GATEWAY 192.168.1.1/255.255.255.0 IFACE=wlp4s0 HWADDR=e4:a7:a0:65:cd:d6. 2017.10.17 22:54:53 - OpenVPN > TUN/TAP device tun0 opened. 2017.10.17 22:54:53 - OpenVPN > TUN/TAP TX queue length set to 100. 2017.10.17 22:54:53 - OpenVPN > do_ifconfig, tt->did_ifconfig_ipv6_setup=0. 2017.10.17 22:54:53 - OpenVPN > /sbin/ip link set dev tun0 up mtu 1500. 2017.10.17 22:54:53 - OpenVPN > /sbin/ip addr add dev tun0 10.4.1.0/16 broadcast 10.4.255.255. 2017.10.17 22:54:58 - OpenVPN > /sbin/ip route add 109.232.227.137/32 via 192.168.1.1. 2017.10.17 22:54:58 - OpenVPN > /sbin/ip route add 0.0.0.0/1 via 10.4.0.1. 2017.10.17 22:54:58 - OpenVPN > /sbin/ip route add 128.0.0.0/1 via 10.4.0.1. 2017.10.17 22:54:58 - /etc/resolv.conf moved to /etc/resolv.conf.eddie as backup. 2017.10.17 22:54:58 - DNS of the system updated to VPN DNS (Rename method: /etc/resolv.conf generated). 2017.10.17 22:54:58 - Flushing DNSI 2017.10.17 22:54:59 - Checking routeI 2017.10.17 22:54:59 - Checking DNS! 2017.10.17 22:55:05 - Connected.. 2017.10.17 22:55:05 - OpenVPN > Initialization Sequence Completed Edited ... by l3o Quote Share this post Link to post
WaNNaBEAnoNymoUs 10 Posted ... First things first, please activate NL (network lock) and see what happens then. Quote Hide WaNNaBEAnoNymoUs's signature Hide all signatures "You don't have to be a genius to sound like one." - BDS Share this post Link to post
l3o 0 Posted ... I WaNNaBEAnoNymoUS,thanks for your reply. If I active network lock, it's all ok.Is it normal that with the NL unlock I have this problem? If I want to use openvpn directly (via terminal adding script-security 2 up /etc/openvpn/update-resolv-confdown /etc/openvpn/update-resolv-conf) I must to config iptables too? Cheers,leo Here the log file with NL activeI 2017.10.18 08:38:16 - Eddie version: 2.13.6 / linux_x64, System: Linux, Name: Debian GNU/Linux 9 \n \l, Version: Linux mousy 4.9.0-4-amd64 #1 SMP Debian 4.9.51-1 (2017-09-28) x86_64 GNU/Linux, Mono/.Net Framework: v4.0.30319. 2017.10.18 08:38:16 - Reading options from /home/leo/.airvpn/AirVPN.xml. 2017.10.18 08:38:16 - Command line arguments (2): path="/home/leo/.airvpn" console.mode="none"I 2017.10.18 08:38:17 - OpenVPN Driver - Found, /dev/net/tunI 2017.10.18 08:38:17 - OpenVPN - Version: 2.4.0 - OpenSSL 1.0.2l 25 May 2017, LZO 2.08 (/usr/sbin/openvpn)I 2017.10.18 08:38:17 - SSH - Version: OpenSSH_7.4p1 Debian-10+deb9u1, OpenSSL 1.0.2l 25 May 2017 (/usr/bin/ssh)I 2017.10.18 08:38:17 - SSL - Version: stunnel 5.39 (/usr/bin/stunnel4)I 2017.10.18 08:38:17 - curl - Version: 7.52.1 (/usr/bin/curl)I 2017.10.18 08:38:17 - Certification Authorities: /usr/share/AirVPN/cacert.pem. 2017.10.18 08:38:17 - Updating systems & servers data ...! 2017.10.18 08:38:17 - Ready. 2017.10.18 08:38:18 - Systems & servers data update completed! 2017.10.18 08:38:20 - Activation of Network Lock - Linux iptablesI 2017.10.18 08:38:24 - Session starting.I 2017.10.18 08:38:24 - Checking authorization ...! 2017.10.18 08:38:24 - Connecting to Musica (Netherlands, Alblasserdam). 2017.10.18 08:38:25 - OpenVPN > OpenVPN 2.4.0 x86_64-pc-linux-gnu [sSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Jul 18 2017. 2017.10.18 08:38:25 - OpenVPN > library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.08. 2017.10.18 08:38:25 - Connection to OpenVPN Management Interface. 2017.10.18 08:38:25 - OpenVPN > MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:3100. 2017.10.18 08:38:25 - OpenVPN > Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication. 2017.10.18 08:38:25 - OpenVPN > Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication. 2017.10.18 08:38:25 - OpenVPN > TCP/UDP: Preserving recently used remote address: [AF_INET]213.152.161.248:443. 2017.10.18 08:38:25 - OpenVPN > Socket Buffers: R=[212992->212992] S=[212992->212992]. 2017.10.18 08:38:25 - OpenVPN > UDP link local: (not bound). 2017.10.18 08:38:25 - OpenVPN > UDP link remote: [AF_INET]213.152.161.248:443. 2017.10.18 08:38:25 - OpenVPN > TLS: Initial packet from [AF_INET]213.152.161.248:443, sid=67603154 6b41cc64. 2017.10.18 08:38:25 - OpenVPN > VERIFY OK: depth=1, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=airvpn.org CA, emailAddress=info@airvpn.org. 2017.10.18 08:38:25 - OpenVPN > Validating certificate key usage. 2017.10.18 08:38:25 - OpenVPN > ++ Certificate has key usage 00a0, expects 00a0. 2017.10.18 08:38:25 - OpenVPN > VERIFY KU OK. 2017.10.18 08:38:25 - OpenVPN > Validating certificate extended key usage. 2017.10.18 08:38:25 - OpenVPN > ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication. 2017.10.18 08:38:25 - OpenVPN > VERIFY EKU OK. 2017.10.18 08:38:25 - OpenVPN > VERIFY OK: depth=0, C=IT, ST=IT, L=Perugia, O=airvpn.org, CN=Musica, emailAddress=info@airvpn.org. 2017.10.18 08:38:25 - OpenVPN > MANAGEMENT: Client connected from [AF_INET]127.0.0.1:3100. 2017.10.18 08:38:25 - OpenVPN > Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 4096 bit RSA. 2017.10.18 08:38:25 - OpenVPN > [Musica] Peer Connection Initiated with [AF_INET]213.152.161.248:443. 2017.10.18 08:38:26 - OpenVPN > SENT CONTROL [Musica]: 'PUSH_REQUEST' (status=1). 2017.10.18 08:38:26 - OpenVPN > PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 10.4.0.1,comp-lzo no,route-gateway 10.4.0.1,topology subnet,ping 10,ping-restart 60,ifconfig 10.4.17.197 255.255.0.0,peer-id 1,cipher AES-256-GCM'. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: timers and/or timeouts modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: compression parms modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: --ifconfig/up options modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: route options modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: route-related options modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: peer-id set. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: adjusting link_mtu to 1625. 2017.10.18 08:38:26 - OpenVPN > OPTIONS IMPORT: data channel crypto options modified. 2017.10.18 08:38:26 - OpenVPN > Data Channel Encrypt: Cipher 'AES-256-GCM' initialized with 256 bit key. 2017.10.18 08:38:26 - OpenVPN > Data Channel Decrypt: Cipher 'AES-256-GCM' initialized with 256 bit key. 2017.10.18 08:38:26 - OpenVPN > ROUTE_GATEWAY 192.168.1.1/255.255.255.0 IFACE=wlp4s0 HWADDR=e4:a7:a0:65:cd:d6. 2017.10.18 08:38:26 - OpenVPN > TUN/TAP device tun0 opened. 2017.10.18 08:38:26 - OpenVPN > TUN/TAP TX queue length set to 100. 2017.10.18 08:38:26 - OpenVPN > do_ifconfig, tt->did_ifconfig_ipv6_setup=0. 2017.10.18 08:38:26 - OpenVPN > /sbin/ip link set dev tun0 up mtu 1500. 2017.10.18 08:38:26 - OpenVPN > /sbin/ip addr add dev tun0 10.4.17.197/16 broadcast 10.4.255.255. 2017.10.18 08:38:31 - OpenVPN > /sbin/ip route add 213.152.161.248/32 via 192.168.1.1. 2017.10.18 08:38:31 - OpenVPN > /sbin/ip route add 0.0.0.0/1 via 10.4.0.1. 2017.10.18 08:38:31 - OpenVPN > /sbin/ip route add 128.0.0.0/1 via 10.4.0.1. 2017.10.18 08:38:31 - /etc/resolv.conf moved to /etc/resolv.conf.eddie as backup. 2017.10.18 08:38:31 - DNS of the system updated to VPN DNS (Rename method: /etc/resolv.conf generated). 2017.10.18 08:38:31 - Flushing DNSI 2017.10.18 08:38:32 - Checking routeI 2017.10.18 08:38:33 - Checking DNS! 2017.10.18 08:38:33 - Connected.. 2017.10.18 08:38:33 - OpenVPN > Initialization Sequence Completed Quote Share this post Link to post
WaNNaBEAnoNymoUs 10 Posted ... Yes, it is normal that without NL you are "more" vulnerable different kind of leaks. So keep it up. Quote Hide WaNNaBEAnoNymoUs's signature Hide all signatures "You don't have to be a genius to sound like one." - BDS Share this post Link to post