首页
学习
活动
专区
圈层
工具
发布
社区首页 >问答首页 >Openvpn:在tcp握手中没有来自服务器的响应

Openvpn:在tcp握手中没有来自服务器的响应
EN

Server Fault用户
提问于 2015-07-07 20:45:16
回答 1查看 5.6K关注 0票数 0

我试图连接到我在pfSense 2.2.3上创建的一个pfSense服务器,方法是在我的Macbook上使用隧道技术。每当我尝试使用OpenVPN版本2.3.6或2.3.7 (这个版本的隧道可用的所有内容)进行连接时,openVPN服务器就会接收启动TCP握手以建立连接的数据包,但不会响应它。我已经粘贴了在下面尝试连接时发生的情况的日志。我不知道现在会有甚麽问题,请告诉我是否需要更多资料来协助解决这个问题。

代码语言:javascript
复制
> 2015-07-07 16:28:28 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)]
> [LZO] [PKCS11] [MH] [IPv6] built on Jun 12 2015 2015-07-07 16:28:28
> library versions: OpenSSL 1.0.2c 12 Jun 2015, LZO 2.09 2015-07-07
> 16:28:28 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337
> 2015-07-07 16:28:28 Need hold release from management interface,
> waiting... 2015-07-07 16:28:26 *Tunnelblick: OS X 10.7.5; Tunnelblick
> 3.6beta06 (build 4346) 2015-07-07 16:28:27 *Tunnelblick: Attempting connection with config using shadow copy; Set nameserver = 1;
> monitoring connection 2015-07-07 16:28:27 *Tunnelblick: openvpnstart
> start config.tblk 1337 1 0 1 0 16688 -ptADGNWradsgnw 2.3.6 2015-07-07
> 16:28:30 *Tunnelblick: openvpnstart log:
>      OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
>      
>           /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
>           --daemon
>           --log
>           /Library/Application Support/Tunnelblick/Logs/-SUsers-Scw-SLibrary-SApplication
> Support-STunnelblick-SConfigurations-Sconfig.tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_16688.1337.openvpn.log
>           --cd
>           /Library/Application Support/Tunnelblick/Users/cw/config.tblk/Contents/Resources
>           --verb
>           3
>           --config
>           /Library/Application Support/Tunnelblick/Users/cw/config.tblk/Contents/Resources/config.ovpn
>           --cd
>           /Library/Application Support/Tunnelblick/Users/cw/config.tblk/Contents/Resources
>           --management
>           127.0.0.1
>           1337
>           --management-query-passwords
>           --management-hold
>           --script-security
>           2
>           --up
>           /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh
> -d -f -m -w -ptADGNWradsgnw
>           --down
>           /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh
> -d -f -m -w -ptADGNWradsgnw
> 
> 2015-07-07 16:28:27 *Tunnelblick: openvpnstart starting OpenVPN
> 2015-07-07 16:28:30 MANAGEMENT: Client connected from
> [AF_INET]127.0.0.1:1337 2015-07-07 16:28:30 *Tunnelblick: Established
> communication with OpenVPN 2015-07-07 16:28:30 MANAGEMENT: CMD 'pid'
> 2015-07-07 16:28:30 MANAGEMENT: CMD 'state on' 2015-07-07 16:28:30
> MANAGEMENT: CMD 'state' 2015-07-07 16:28:30 MANAGEMENT: CMD 'bytecount
> 1' 2015-07-07 16:28:30 MANAGEMENT: CMD 'hold release' 2015-07-07
> 16:28:30 NOTE: the current --script-security setting may allow this
> configuration to call user-defined scripts 2015-07-07 16:28:30 Socket
> Buffers: R=[262140->65536] S=[131070->65536] 2015-07-07 16:28:30
> Attempting to establish TCP connection with
> [AF_INET]128.151.18.205:443 [nonblock] 2015-07-07 16:28:30 MANAGEMENT:
> >STATE:1436300910,TCP_CONNECT,,, 2015-07-07 16:28:40 TCP: connect to [AF_INET]128.151.18.205:443 failed, will try again in 5 seconds:
> Operation timed out 2015-07-07 16:28:45 MANAGEMENT:
> >STATE:1436300925,TCP_CONNECT,,, 2015-07-07 16:28:55 TCP: connect to [AF_INET]128.151.18.205:443 failed, will try again in 5 seconds:
> Operation timed out 2015-07-07 16:29:00 MANAGEMENT:
> >STATE:1436300940,TCP_CONNECT,,, 2015-07-07 16:29:10 TCP: connect to [AF_INET]128.151.18.205:443 failed, will try again in 5 seconds:
> Operation timed out 2015-07-07 16:29:15 MANAGEMENT:
> >STATE:1436300955,TCP_CONNECT,,, 2015-07-07 16:29:25 TCP: connect to [AF_INET]128.151.18.205:443 failed, will try again in 5 seconds:
> Operation timed out 2015-07-07 16:29:30 MANAGEMENT:
> >STATE:1436300970,TCP_CONNECT,,, 2015-07-07 16:29:40 TCP: connect to [AF_INET]128.151.18.205:443 failed, will try again in 5 seconds:
> Operation timed out 2015-07-07 16:29:41 *Tunnelblick: Disconnecting;
> VPN Details… window disconnect button pressed 2015-07-07 16:29:41
> *Tunnelblick: Disconnecting using 'kill' 2015-07-07 16:29:42 SIGTERM[hard,init_instance] received, process exiting 2015-07-07
> 16:29:42 MANAGEMENT: >STATE:1436300982,EXITING,init_instance,,
> 2015-07-07 16:29:43 *Tunnelblick: No 'post-disconnect.sh' script to
> execute 2015-07-07 16:29:43 *Tunnelblick: Expected disconnection
> occurred.
EN

回答 1

Server Fault用户

发布于 2015-07-08 23:16:35

你看到什么了:“收到包”?看上去一点反应都没有。尝试将telnet发送到运行OpenVPN的端口。

猜测,您可能没有在广域网上添加防火墙规则,允许流量到达OpenVPN服务器实例并阻止它。如果是这样的话,您将在防火墙日志中看到这一点。

您最好使用UDP,而不是TCP,除非您处于由于某种原因需要TCP的情况下。但这与眼前的问题无关。

票数 1
EN
页面原文内容由Server Fault提供。腾讯云小微IT领域专用引擎提供翻译支持
原文链接:

https://serverfault.com/questions/704191

复制
相关文章

相似问题

领券
问题归档专栏文章快讯文章归档关键词归档开发者手册归档开发者手册 Section 归档