• Не работает OpenVPN-клиент на Zyxel Keenetic Ultra 2, что делать?

    @buwak Автор вопроса
    Убрал всё лишнее:
    конфиг клиента
    dev tun
    proto udp
    remote 5.*.*.203 1194
    client
    tls-client
    ca <ca>
    cert <cert>
    key <key>
    tls-auth <ta> 1
    cipher AES-128-CBC
    comp-lzo
    mssfix
    tun-mtu 1500
    verb 3
    auth SHA256
    auth-nocache
    route-delay 5
    route-method exe
    <cert>
    -----BEGIN CERTIFICATE-----
    M
    M
    D
    B
    M
    M
    B
    D
    9
    G
    A
    4
    +
    A
    d
    F
    B
    C
    h
    B
    s
    U
    l
    C
    V
    L
    -----END CERTIFICATE-----
    </cert
    <key>
    -----BEGIN PRIVATE KEY-----
    M
    a
    0
    c
    S
    U
    h
    V
    b
    l
    V
    e
    7
    t
    c
    u
    F
    D
    V
    b
    3
    I
    E
    c
    m
    V
    -----END PRIVATE KEY-----
    </key>
    <ca>
    -----BEGIN CERTIFICATE-----
    M
    B
    Q
    K
    N
    B
    C
    h
    A
    4
    m
    /
    M
    g
    V
    B
    S
    B
    C
    a
    H
    A
    Y
    -----END CERTIFICATE-----
    </ca>
    <ta>
    -----BEGIN OpenVPN Static key V1-----
    e
    3
    2
    0
    c
    e
    1
    e
    4
    4
    6
    7
    a
    5
    5
    9
    -----END OpenVPN Static key V1-----
    </ta>

    Лог на кинетике:
    лог
    Feb 24 16:00:18ndm
    Core::Syslog: the system log has been cleared.
    Feb 24 16:00:24ndm
    Network::Interface::Supplicant: "OpenVPN0": authnentication is unchanged.
    Feb 24 16:00:24ndm
    Network::Interface::Base: "OpenVPN0": description saved.
    Feb 24 16:00:24ndm
    Network::Interface::IP: "OpenVPN0": IP address cleared.
    Feb 24 16:00:24ndm
    Network::Interface::IP: "OpenVPN0": global priority is 41221.
    Feb 24 16:00:24ndm
    Network::Interface::IP: "OpenVPN0": order is 0.
    Feb 24 16:00:24ndm
    Network::Interface::IP: "OpenVPN0": TCP-MSS adjustment enabled.
    Feb 24 16:00:24ndm
    Network::Interface::OpenVpn: "OpenVPN0": configuration successfully saved.
    Feb 24 16:00:24ndm
    Network::Interface::OpenVpn: "OpenVPN0": enable automatic routes accept via tunnel.
    Feb 24 16:00:24ndm
    Network::Interface::IP: "OpenVPN0": order is 0.
    Feb 24 16:00:24ndm
    Network::Interface::OpenVpn: "OpenVPN0": set connection via PPPoE1.
    Feb 24 16:00:24ndm
    Network::Interface::Base: "OpenVPN0": interface is up.
    Feb 24 16:00:24ndm
    Network::Interface::Base: "OpenVPN0": schedule cleared.
    Feb 24 16:00:27 OpenVPN0
    Unrecognized option or missing or extra parameter(s) in configuration: (line 22): ta (2.4.3)
    Feb 24 16:00:27 OpenVPN0
    Exiting due to fatal error
    Feb 24 16:00:27ndm
    Service: "OpenVPN": unexpectedly stopped.
    Feb 24 16:00:27ndm
    Network::Interface::OpenVpn: "OpenVPN0": configuration is invalid.
  • Не работает OpenVPN-клиент на Zyxel Keenetic Ultra 2, что делать?

    @buwak Автор вопроса
    конфиг клиента
    # Создаем маршрутизируемый IP туннель.
    dev tun
    # Указываем протокол для подключения.
    proto udp
    # Указываем IP аддрес сервера с портом.
    remote 5.*.*.203 1194
    
    # Указываем чтобы клиент забирал информацию о маршрутизации с сервера.
    client
    # Указываем что мы являемся TLS клиентом.
    tls-client
    
    # Указываем путь к доверенному сертификату.
    ca <ca>
    # Указываем путь к клиентскому сертификату.
    cert <cert>
    # Указываем путь к клиентскому ключу.
    key <key>
    # Указываем путь к ключу безопасности и #устанавливаем параметр клиента 1
    tls-auth <ta> 1
    # Указываем алгоритм шифрования должен быть одинаковый клиент\\сервер.
    cipher AES-128-CBC
    # Включаем сжатие.
    comp-lzo
    # Устранение проблем с передачей MTU.
    mssfix
    # Указывает MTU для туннеля, должны быть одинаковые параметры клиент\\сервер.
    tun-mtu 1500
    # Указываем уровень логирования.
    verb 3
    auth SHA256
    auth-nocache
    
    route-delay 5
    route-method exe
    
    <cert>
    -----BEGIN CERTIFICATE-----
    M
    M
    D
    B
    M
    M
    B
    D
    9
    G
    A
    4
    +
    A
    d
    F
    B
    C
    h
    B
    s
    U
    l
    C
    V
    L
    -----END CERTIFICATE-----
    </cert>
    
    <key>
    -----BEGIN PRIVATE KEY-----
    M
    a
    0
    c
    S
    U
    h
    V
    b
    l
    V
    e
    7
    t
    c
    u
    F
    D
    V
    b
    3
    I
    E
    c
    m
    V
    -----END PRIVATE KEY-----
    </key>
    
    <ca>
    -----BEGIN CERTIFICATE-----
    M
    B
    Q
    K
    N
    B
    C
    h
    A
    4
    m
    /
    M
    g
    V
    B
    S
    B
    C
    a
    H
    A
    Y
    -----END CERTIFICATE-----
    </ca>
    
    <ta>
    -----BEGIN OpenVPN Static key V1-----
    e
    3
    2
    0
    c
    e
    1
    e
    4
    4
    6
    7
    a
    5
    5
    9
    -----END OpenVPN Static key V1-----
    </ta>
  • Не работает OpenVPN-клиент на Zyxel Keenetic Ultra 2, что делать?

    @buwak Автор вопроса
    Сделал всё инлайновым, теперь :
    Feb 24 11:54:39ndm
    Network::Interface::OpenVpn: "OpenVPN0": configuration is invalid.
    Feb 24 11:54:41ndm
    Network::Interface::Supplicant: "OpenVPN0": authnentication is unchanged.
    Feb 24 11:54:41ndm
    Network::Interface::Base: "OpenVPN0": description saved.
    Feb 24 11:54:41ndm
    Network::Interface::IP: "OpenVPN0": IP address cleared.
    Feb 24 11:54:41ndm
    Network::Interface::IP: "OpenVPN0": global priority is 41221.
    Feb 24 11:54:41ndm
    Network::Interface::IP: "OpenVPN0": order is 0.
    Feb 24 11:54:41ndm
    Network::Interface::IP: "OpenVPN0": TCP-MSS adjustment enabled.
    Feb 24 11:54:41ndm
    Network::Interface::OpenVpn: "OpenVPN0": configuration successfully saved.
    Feb 24 11:54:42ndm
    Network::Interface::OpenVpn: "OpenVPN0": enable automatic routes accept via tunnel.
    Feb 24 11:54:42ndm
    Network::Interface::IP: "OpenVPN0": order is 0.
    Feb 24 11:54:42ndm
    Network::Interface::OpenVpn: "OpenVPN0": set connection via PPPoE1.
    Feb 24 11:54:42ndm
    Network::Interface::Base: "OpenVPN0": interface is up.
    Feb 24 11:54:42ndm
    Network::Interface::Base: "OpenVPN0": schedule cleared.
    Feb 24 11:54:44OpenVPN0
    Unrecognized option or missing or extra parameter(s) in configuration: (line 44): ta (2.4.3)
    Feb 24 11:54:44OpenVPN0
    Exiting due to fatal error
    Feb 24 11:54:44ndm
    Service: "OpenVPN": unexpectedly stopped.
    Feb 24 11:54:44ndm
    Network::Interface::OpenVpn: "OpenVPN0": configuration is invalid.