Page 1 of 1

VPN connection

Posted: Mon Sep 21, 2009 8:25 am
by vrop
I have installed Amahi 2 weeks ago, and I really like it! However, I have not been able to get the HDAConnectClient to connect to my Amahi homeserver. I have opened the 1193-1195 ports (UDP) on the router (checked this with other software), but do get this error message:

Mon Sep 21 17:10:40 2009 OpenVPN 2.1_rc15 i686-pc-mingw32 [SSL] [LZO2] [PKCS11] built on Nov 19 2008
Mon Sep 21 17:10:46 2009 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Mon Sep 21 17:10:46 2009 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Mon Sep 21 17:10:46 2009 LZO compression initialized
Mon Sep 21 17:10:46 2009 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Mon Sep 21 17:10:46 2009 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Mon Sep 21 17:10:46 2009 Local Options hash (VER=V4): '41690919'
Mon Sep 21 17:10:46 2009 Expected Remote Options hash (VER=V4): '530fdded'
Mon Sep 21 17:10:46 2009 Socket Buffers: R=[8192->8192] S=[8192->8192]
Mon Sep 21 17:10:46 2009 UDPv4 link local: [undef]
Mon Sep 21 17:10:46 2009 UDPv4 link remote: XXX.XXXX.XXXX:1194
Mon Sep 21 17:11:46 2009 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mon Sep 21 17:11:46 2009 TLS Error: TLS handshake failed
Mon Sep 21 17:11:46 2009 TCP/UDP: Closing socket
Mon Sep 21 17:11:46 2009 SIGUSR1[soft,tls-error] received, process restarting
Mon Sep 21 17:11:46 2009 Restart pause, 2 second(s)

I have also tried to conect with https://XXX.yourhda.com, as suggested in this forum. I do get a login screen, but the user/password is not accepted. Error:

401 Unauthorized

ERR_ACCESS_DENIED
Webserver Mon, 21 Sep 2009 10:53:41 GMT

What to do next?

Re: VPN connection

Posted: Mon Sep 21, 2009 12:41 pm
by Rogerrally
Hi

You have not mentioned what OS you are using on the client PC? Also you do not mention which version of HDAconnect you are using, as i believe that Win 7 does not play well with HDAconnect2.

Cheers
R

Re: VPN connection

Posted: Mon Sep 21, 2009 1:31 pm
by vrop
Hi,

I use Windows XP (servicepack 3) on the client PC and version 3 of HDAConnect.

Regards,

Vrop

Re: VPN connection

Posted: Mon Sep 21, 2009 3:32 pm
by bsk
We have seen this with HDAC3, please install HDA Connect 2 and use it until we get this resolved.

http://dl.amahi.org/HDAConnect2.exe

Re: VPN connection

Posted: Tue Sep 22, 2009 4:35 am
by vrop
I have installed HDA Connect 2, but there is no difference with HDAConnect 3, it stops at the same line as in the first post (see below).

Tue Sep 22 13:31:57 2009 Restart pause, 2 second(s)
Tue Sep 22 13:31:59 2009 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Tue Sep 22 13:31:59 2009 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Tue Sep 22 13:31:59 2009 Re-using SSL/TLS context
Tue Sep 22 13:31:59 2009 LZO compression initialized
Tue Sep 22 13:31:59 2009 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Tue Sep 22 13:31:59 2009 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Tue Sep 22 13:31:59 2009 Local Options hash (VER=V4): '41690919'
Tue Sep 22 13:31:59 2009 Expected Remote Options hash (VER=V4): '530fdded'
Tue Sep 22 13:31:59 2009 UDPv4 link local: [undef]
Tue Sep 22 13:31:59 2009 UDPv4 link remote: XXX.XX.XXX.XXX:1194

What else can I do?

Regards,

vrop

Re: VPN connection

Posted: Tue Sep 22, 2009 10:57 am
by Rogerrally
Hi

You mentioned that you have opened the ports on your router, i assume that you have actually forwarded the ports to your Amahi server?

You are also trying to VPN in from outside of your home network?

Re: VPN connection

Posted: Tue Sep 22, 2009 11:06 am
by cpg
TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
this most likely means that the port is not forwarded well and communication with the VPN server does not take place. You need three things
  • Port 1194 open and forwarded
  • UDP forwarded (not TCP!)
  • Forwarding the protocol and port above to the internal IP address of your HDA
can you double check that?

often, it's a silly setting that is not taking place.

if not came by the irc channel at http://talk.amahi.org and we can help you test it.

Re: VPN connection

Posted: Tue Sep 22, 2009 12:16 pm
by vrop
Many thanks for the suggestions. I have made a copy of the FritzBox router settings in the attached pdf file. I assume that these are the correct settings (xxx.10 is the HDA server)?

Many thanks,

vrop

Re: VPN connection

Posted: Fri Oct 02, 2009 1:14 pm
by Rogerrally
:?: Did you make any progress with this problem?

Re: VPN connection

Posted: Sun Oct 04, 2009 12:14 pm
by vrop
Yes and no,

My connection was checked in the IRC channel, and worked. However, I can still not login from outside with HDAconnect 2/3. So, there is either a problem with a firewall, or something is wrong with the client computer (tried two different computers). I do not know how to test this, so I have given up for the moment.

Regards,

vrop