Jump to content
Not connected, Your IP: 3.144.25.74
Sign in to follow this  
odsode

mac setup -> authentication error vpn->tor>server

Recommended Posts

Here is a log from tunnelblick, saying my authentication details are bad but they seem to finally work for direct connecting to vpn after changing passwords a few times and downloading config files. Sorry this is short but I wrote three posts already and none show up so I am just posting a log and hoping someone can point me in the right direction of how I can get this to work. Thanks.

I know about tor and the need for the control port to not be set automatically by tor/vidalia. I have tried TBB and vidalia standalone with firefox and other browsers but it all ends up with an authentication error. I have tried, viscosity, shimo, tunnelblick, and none do the job, so please if anyone has had success on a mac doing this please give me some insight. I am at my wits end.

I have logs from all the apps I mentioned but here is the Tunnelblick log: it connects, but not really as openvpn is not even called and then when I try to reload a page I get an authentication error and the connection quits.

2012-07-12 00:44:05 *Tunnelblick: OS X 10.7.4; Tunnelblick 3.2.6 (build 2891.3007)

2012-07-12 00:44:05 *Tunnelblick: Attempting connection with London Socks; Set nameserver = 1; monitoring connection

2012-07-12 00:44:05 *Tunnelblick: /Applications/Tunnelblick.app/Contents/Resources/openvpnstart start London\ Socks.tblk 1337 1 0 0 0 49 -atDASNGWrdasngw

2012-07-12 00:44:05 *Tunnelblick: openvpnstart: /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.2.1/openvpn --cd /Users/jeremy/Library/Application Support/Tunnelblick/Configurations/London Socks.tblk/Contents/Resources --daemon --management 127.0.0.1 1337 --config /Users/jeremy/Library/Application Support/Tunnelblick/Configurations/London Socks.tblk/Contents/Resources/config.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-Sjeremy-SLibrary-SApplication Support-STunnelblick-SConfigurations-SLondon Socks.tblk-SContents-SResources-Sconfig.ovpn.1_0_0_0_49.1337.openvpn.log --management-query-passwords --management-hold --script-security 2 --up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -atDASNGWrdasngw --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -atDASNGWrdasngw --up-restart

2012-07-12 00:44:06 *Tunnelblick: openvpnstart message: Loading tun.kext

2012-07-12 00:44:06 *Tunnelblick: Established communication with OpenVPN

2012-07-12 00:44:06 OpenVPN 2.2.1 i386-apple-darwin10.7.1 [sSL] [LZO2] [PKCS11] [eurephia] built on May 2 2012

2012-07-12 00:44:06 MANAGEMENT: TCP Socket listening on 127.0.0.1:1337

2012-07-12 00:44:06 Need hold release from management interface, waiting...

2012-07-12 00:44:06 MANAGEMENT: Client connected from 127.0.0.1:1337

2012-07-12 00:44:06 MANAGEMENT: CMD 'pid'

2012-07-12 00:44:06 MANAGEMENT: CMD 'state on'

2012-07-12 00:44:06 MANAGEMENT: CMD 'state'

2012-07-12 00:44:06 MANAGEMENT: CMD 'hold release'

2012-07-12 00:44:06 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2012-07-12 00:44:06 WARNING: file 'user.key' is group or others accessible

2012-07-12 00:44:06 LZO compression initialized

2012-07-12 00:44:06 Control Channel MTU parms [ L:1560 D:140 EF:40 EB:0 ET:0 EL:0 ]

2012-07-12 00:44:06 Socket Buffers: R=[262140->65536] S=[131070->65536]

2012-07-12 00:44:06 Data Channel MTU parms [ L:1560 D:1450 EF:60 EB:135 ET:0 EL:0 AF:3/1 ]

2012-07-12 00:44:06 Local Options hash (VER=V4): '958c5492'

2012-07-12 00:44:06 Expected Remote Options hash (VER=V4): '79ef4284'

2012-07-12 00:44:06 Attempting to establish TCP connection with 127.0.0.1:9050 [nonblock]

2012-07-12 00:44:06 MANAGEMENT: >STATE:1342068246,TCP_CONNECT,,,

2012-07-12 00:44:06 TCP connection established with 127.0.0.1:9050

2012-07-12 00:44:06 TCPv4_CLIENT link local: [undef]

2012-07-12 00:44:06 TCPv4_CLIENT link remote: 127.0.0.1:9050

2012-07-12 00:44:06 MANAGEMENT: >STATE:1342068246,WAIT,,,

2012-07-12 00:44:06 MANAGEMENT: >STATE:1342068246,AUTH,,,

2012-07-12 00:44:06 TLS: Initial packet from 127.0.0.1:9050, sid=dc3f46ce d12420ac

2012-07-12 00:44:09 VERIFY OK: depth=1, /C=IT/ST=IT/L=Perugia/O=airvpn.org/CN=airvpn.org_CA/emailAddress=info@airvpn.org

2012-07-12 00:44:09 VERIFY OK: nsCertType=SERVER

2012-07-12 00:44:09 VERIFY OK: depth=0, /C=IT/ST=IT/L=Perugia/O=airvpn.org/CN=server/emailAddress=info@airvpn.org

2012-07-12 00:44:15 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key

2012-07-12 00:44:15 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2012-07-12 00:44:15 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key

2012-07-12 00:44:15 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2012-07-12 00:44:15 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA

2012-07-12 00:44:15 [server] Peer Connection Initiated with 127.0.0.1:9050

2012-07-12 00:44:16 MANAGEMENT: >STATE:1342068256,GET_CONFIG,,,

2012-07-12 00:44:17 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)

2012-07-12 00:44:18 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 10.5.0.1,comp-lzo no,route 10.5.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.5.2.34 10.5.2.33'

2012-07-12 00:44:18 OPTIONS IMPORT: timers and/or timeouts modified

2012-07-12 00:44:18 OPTIONS IMPORT: LZO parms modified

2012-07-12 00:44:18 OPTIONS IMPORT: --ifconfig/up options modified

2012-07-12 00:44:18 OPTIONS IMPORT: route options modified

2012-07-12 00:44:18 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified

2012-07-12 00:44:18 ROUTE default_gateway=192.168.0.1

2012-07-12 00:44:18 TUN/TAP device /dev/tun0 opened

2012-07-12 00:44:18 MANAGEMENT: >STATE:1342068258,ASSIGN_IP,,10.5.2.34,

2012-07-12 00:44:18 /sbin/ifconfig tun0 delete

ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address

2012-07-12 00:44:18 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure

2012-07-12 00:44:18 /sbin/ifconfig tun0 10.5.2.34 10.5.2.33 mtu 1500 netmask 255.255.255.255 up

2012-07-12 00:44:18 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -atDASNGWrdasngw tun0 1500 1560 10.5.2.34 10.5.2.33 init

No such key

2012-07-12 00:44:20 *Tunnelblick: Flushed the DNS cache

2012-07-12 00:44:20 /sbin/route add -net 127.0.0.1 192.168.0.1 255.255.255.255

add net 127.0.0.1: gateway 192.168.0.1

2012-07-12 00:44:20 /sbin/route add -net 0.0.0.0 10.5.2.33 128.0.0.0

add net 0.0.0.0: gateway 10.5.2.33

2012-07-12 00:44:20 /sbin/route add -net 128.0.0.0 10.5.2.33 128.0.0.0

add net 128.0.0.0: gateway 10.5.2.33

2012-07-12 00:44:20 MANAGEMENT: >STATE:1342068260,ADD_ROUTES,,,

2012-07-12 00:44:20 /sbin/route add -net 10.5.0.1 10.5.2.33 255.255.255.255

add net 10.5.0.1: gateway 10.5.2.33

2012-07-12 00:44:20 Initialization Sequence Completed

2012-07-12 00:44:20 MANAGEMENT: >STATE:1342068260,CONNECTED,SUCCESS,10.5.2.34,127.0.0.1

2012-07-12 00:44:20 *Tunnelblick client.up.tunnelblick.sh: Retrieved name server(s) [ 10.5.0.1 ] and WINS server(s) [ ] and using default domain name [ openvpn ]

2012-07-12 00:44:20 *Tunnelblick client.up.tunnelblick.sh: Up to two 'No such key' warnings are normal and may be ignored

2012-07-12 00:44:20 *Tunnelblick client.up.tunnelblick.sh: Saved the DNS and WINS configurations for later use

2012-07-12 00:44:20 *Tunnelblick client.up.tunnelblick.sh: Set up to monitor system configuration with process-network-changes

2012-07-12 00:44:55 *Tunnelblick process-network-changes: A system configuration change was ignored because it was not relevant

2012-07-12 00:45:26 Connection reset, restarting [0]

2012-07-12 00:45:26 TCP/UDP: Closing socket

2012-07-12 00:45:26 /sbin/route delete -net 10.5.0.1 10.5.2.33 255.255.255.255

delete net 10.5.0.1: gateway 10.5.2.33

2012-07-12 00:45:26 /sbin/route delete -net 127.0.0.1 192.168.0.1 255.255.255.255

delete net 127.0.0.1: gateway 192.168.0.1

2012-07-12 00:45:26 /sbin/route delete -net 0.0.0.0 10.5.2.33 128.0.0.0

delete net 0.0.0.0: gateway 10.5.2.33

2012-07-12 00:45:26 /sbin/route delete -net 128.0.0.0 10.5.2.33 128.0.0.0

delete net 128.0.0.0: gateway 10.5.2.33

2012-07-12 00:45:26 Closing TUN/TAP interface

2012-07-12 00:45:26 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -atDASNGWrdasngw tun0 1500 1560 10.5.2.34 10.5.2.33 init

2012-07-12 00:45:26 SIGUSR1[soft,connection-reset] received, process restarting

2012-07-12 00:45:26 MANAGEMENT: >STATE:1342068326,RECONNECTING,connection-reset,,

2012-07-12 00:45:26 MANAGEMENT: CMD 'hold release'

2012-07-12 00:45:26 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2012-07-12 00:45:26 WARNING: file 'user.key' is group or others accessible

2012-07-12 00:45:26 LZO compression initialized

2012-07-12 00:45:26 Control Channel MTU parms [ L:1560 D:140 EF:40 EB:0 ET:0 EL:0 ]

2012-07-12 00:45:26 Socket Buffers: R=[65536->65536] S=[65536->65536]

2012-07-12 00:45:26 Data Channel MTU parms [ L:1560 D:1450 EF:60 EB:135 ET:0 EL:0 AF:3/1 ]

2012-07-12 00:45:26 Local Options hash (VER=V4): '958c5492'

2012-07-12 00:45:26 Expected Remote Options hash (VER=V4): '79ef4284'

2012-07-12 00:45:26 Attempting to establish TCP connection with 127.0.0.1:9050 [nonblock]

2012-07-12 00:45:26 MANAGEMENT: >STATE:1342068326,TCP_CONNECT,,,

2012-07-12 00:45:26 TCP connection established with 127.0.0.1:9050

2012-07-12 00:45:26 *Tunnelblick client.down.tunnelblick.sh: Cancelled monitoring of system configuration changes

2012-07-12 00:45:26 *Tunnelblick client.down.tunnelblick.sh: Restored the DNS and WINS configurations

2012-07-12 00:45:29 TCPv4_CLIENT link local: [undef]

2012-07-12 00:45:29 TCPv4_CLIENT link remote: 127.0.0.1:9050

2012-07-12 00:45:29 MANAGEMENT: >STATE:1342068329,WAIT,,,

2012-07-12 00:45:29 MANAGEMENT: >STATE:1342068329,AUTH,,,

2012-07-12 00:45:29 TLS: Initial packet from 127.0.0.1:9050, sid=e01cd786 eafc6724

2012-07-12 00:45:33 VERIFY OK: depth=1, /C=IT/ST=IT/L=Perugia/O=airvpn.org/CN=airvpn.org_CA/emailAddress=info@airvpn.org

2012-07-12 00:45:33 VERIFY OK: nsCertType=SERVER

2012-07-12 00:45:33 VERIFY OK: depth=0, /C=IT/ST=IT/L=Perugia/O=airvpn.org/CN=server/emailAddress=info@airvpn.org

2012-07-12 00:45:45 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key

2012-07-12 00:45:45 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2012-07-12 00:45:45 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key

2012-07-12 00:45:45 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2012-07-12 00:45:45 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA

2012-07-12 00:45:45 [server] Peer Connection Initiated with 127.0.0.1:9050

2012-07-12 00:45:46 MANAGEMENT: >STATE:1342068346,GET_CONFIG,,,

2012-07-12 00:45:48 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)

2012-07-12 00:45:48 AUTH: Received AUTH_FAILED control message

2012-07-12 00:45:48 TCP/UDP: Closing socket

2012-07-12 00:45:48 SIGTERM[soft,auth-failure] received, process exiting

2012-07-12 00:45:48 MANAGEMENT: >STATE:1342068348,EXITING,auth-failure,,

2012-07-12 00:45:57 *Tunnelblick: Disconnecting; user cancelled authorization or there was an error obtaining authorization

2012-07-12 00:45:57 *Tunnelblick: Flushed the DNS cache

Share this post


Link to post

Hello!

Can you please disable "Monitor connection" and check whether it solves the problem?

Please see also:

http://code.google.com/p/tunnelblick/wiki/cKnown

If "Monitor connection" is checked, Tunnelblick monitors the network interface that connects to the VPN and will restart the connection if changes to DNS or WINS are detected. With some network configurations this causes repeated disconnects/reconnects every few seconds. To avoid this, uncheck "Monitor connection" for the problematic configuration on the "VPN Details…" window. Please post your complete log (showing the problem with "Monitor connection" checked) to the Tunnelblick Discussion Group so we can fix this problem. (Be sure to cross out any sensitive information such as server IP addresses before you post your log.)

Kind regards

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
  • Security Check
    Play CAPTCHA Audio
    Refresh Image
Sign in to follow this  

×
×
  • Create New...