dim918
Junior Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Добрый день. Немного почитав про OPENVPN, решил создать сеть ОФИС(192.168.1.x) - ДОМ(192.168.1.11) в офисе и дома стоят AdSL модемы настроенные роутером получилось состряпать такой файл сервера port 1194 proto udp dev tun ca "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\ca.crt" cert "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\server.crt" key "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\server.key" dh "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\dh1024.pem" ;dh dh1024.pem server 10.8.0.0 255.255.255.0 ifconfig-pool-persist ipp.txt ;server-bridge 10.8.0.4 255.255.255.0 10.8.0.50 10.8.0.100 keepalive 10 120 comp-lzo persist-key persist-tun status openvpn-status.log verb 3 и такой файл клиента client dev tun proto udp remote dim918.no-ip.org 1194 ;remote my-server-2 1194 resolv-retry infinite nobind persist-key persist-tun ca "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\ca.crt" cert "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\client1.crt" key "C:\\Program Files\\OpenVPN\\easy-rsa\\keys\\client1.key" ns-cert-type server comp-lzo verb 3 из дома (сервер) пингуется 10.8.0.6 из офиса (клиент) 10.8.0.1 но расшаренных папок не вижу на обоих модемах проброс портов сделал лог клиента Thu Sep 16 23:10:26 2010 OpenVPN 2.1.1 i686-pc-mingw32 [SSL] [LZO2] [PKCS11] built on Dec 11 2009 Thu Sep 16 23:10:26 2010 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Thu Sep 16 23:10:27 2010 LZO compression initialized Thu Sep 16 23:10:27 2010 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Thu Sep 16 23:10:27 2010 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Thu Sep 16 23:10:27 2010 Local Options hash (VER=V4): '41690919' Thu Sep 16 23:10:27 2010 Expected Remote Options hash (VER=V4): '530fdded' Thu Sep 16 23:10:27 2010 Socket Buffers: R=[8192->8192] S=[8192->8192] Thu Sep 16 23:10:27 2010 UDPv4 link local: [undef] Thu Sep 16 23:10:27 2010 UDPv4 link remote: 95.84.18.225:1194 Thu Sep 16 23:10:27 2010 TLS: Initial packet from 95.84.18.225:1194, sid=86f5a888 10e55c9d Thu Sep 16 23:10:28 2010 VERIFY OK: depth=1, /C=RU/ST=VT/L=Saratov/O=HOMe/OU=Home1/CN=dim918.no-ip.org/emailAddress=dim918@yandex.ru Thu Sep 16 23:10:28 2010 VERIFY OK: nsCertType=SERVER Thu Sep 16 23:10:28 2010 VERIFY OK: depth=0, /C=RU/ST=VT/O=HOMe/CN=server/emailAddress=dim918@yandex.ru Thu Sep 16 23:10:30 2010 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key Thu Sep 16 23:10:30 2010 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Thu Sep 16 23:10:30 2010 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key Thu Sep 16 23:10:30 2010 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication Thu Sep 16 23:10:30 2010 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA Thu Sep 16 23:10:30 2010 [server] Peer Connection Initiated with 95.84.18.225:1194 Thu Sep 16 23:10:32 2010 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1) Thu Sep 16 23:10:32 2010 PUSH: Received control message: 'PUSH_REPLY,route 192.168.1.0 255.255.255.0,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5' Thu Sep 16 23:10:32 2010 OPTIONS IMPORT: timers and/or timeouts modified Thu Sep 16 23:10:32 2010 OPTIONS IMPORT: --ifconfig/up options modified Thu Sep 16 23:10:32 2010 OPTIONS IMPORT: route options modified Thu Sep 16 23:10:32 2010 ROUTE default_gateway=192.168.1.1 Thu Sep 16 23:10:32 2010 TAP-WIN32 device [Подключение по локальной сети 4] opened: \\.\Global\{BF044FC1-C256-406E-92B4-5AC1B77422F6}.tap Thu Sep 16 23:10:32 2010 TAP-Win32 Driver Version 9.6 Thu Sep 16 23:10:32 2010 TAP-Win32 MTU=1500 Thu Sep 16 23:10:32 2010 Notified TAP-Win32 driver to set a DHCP IP/netmask of 10.8.0.6/255.255.255.252 on interface {BF044FC1-C256-406E-92B4-5AC1B77422F6} [DHCP-serv: 10.8.0.5, lease-time: 31536000] Thu Sep 16 23:10:32 2010 Successful ARP Flush on interface [3] {BF044FC1-C256-406E-92B4-5AC1B77422F6} Thu Sep 16 23:10:38 2010 TEST ROUTES: 0/0 succeeded len=2 ret=0 a=0 u/d=down Thu Sep 16 23:10:38 2010 Route: Waiting for TUN/TAP interface to come up... Thu Sep 16 23:10:42 2010 TEST ROUTES: 2/2 succeeded len=2 ret=1 a=0 u/d=up Thu Sep 16 23:10:42 2010 WARNING: potential route subnet conflict between local LAN [192.168.1.0/255.255.255.0] and remote VPN [192.168.1.0/255.255.255.0] Thu Sep 16 23:10:42 2010 C:\WINDOWS\system32\route.exe ADD 192.168.1.0 MASK 255.255.255.0 10.8.0.5 Thu Sep 16 23:10:42 2010 Route addition via IPAPI succeeded [adaptive] Thu Sep 16 23:10:42 2010 C:\WINDOWS\system32\route.exe ADD 10.8.0.1 MASK 255.255.255.255 10.8.0.5 Thu Sep 16 23:10:42 2010 Route addition via IPAPI succeeded [adaptive] Thu Sep 16 23:10:42 2010 Initialization Sequence Completed Подскажите где ошибка! |