This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Problem VPN SSL

Hello everyone,

I'm having problems with SSL VPN tunnels:

I have created a SSL VPN tunnel which when I turn it on always stays in "RECONNECTING":

When I turn it off and I have the same behavior, it always stays in "RECONNECTING".

What the LOGs show me are:

 

 

2018:01:12-18:57:16 utm openvpn[3049]: DEPRECATED OPTION: --tls-remote, please update your configuration
2018:01:12-18:57:16 utm openvpn[3049]: OpenVPN 2.3.10 i686-suse-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jun 29 2017
2018:01:12-18:57:16 utm openvpn[3049]: library versions: OpenSSL 1.0.2j-fips 26 Sep 2016, LZO 2.09
2018:01:12-18:57:16 utm openvpn[3062]: MANAGEMENT: client_uid=0
2018:01:12-18:57:16 utm openvpn[3062]: MANAGEMENT: client_gid=0
2018:01:12-18:57:16 utm openvpn[3062]: MANAGEMENT: unix domain socket listening on /var/run/openvpn_mgmt_REF_SslCliToServerCloud
2018:01:12-18:57:16 utm openvpn[3062]: PLUGIN_INIT: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so '[/usr/lib/openvpn/plugins/openvpn-plugin-utm.so] [REF_SslCliToServerCloud]' intercepted=PLUGIN_UP|PLUGIN_DOWN|PLUGIN_ROUTE_UP|PLUGIN_ROUTE_PREDOWN
2018:01:12-18:57:16 utm openvpn[3062]: Socket Buffers: R=[87380->87380] S=[16384->16384]
2018:01:12-18:57:16 utm openvpn[3062]: Attempting to establish TCP connection with [AF_INET]108.175.10.49:443 [nonblock]
2018:01:12-18:57:16 utm openvpn[3062]: TCP: connect to [AF_INET]108.175.XXX.XXX:443 failed, will try again in 5 seconds: Network is unreachable
2018:01:12-18:57:16 utm openvpn[3062]: SIGHUP[soft,init_instance] received, process restarting
2018:01:12-18:57:16 utm openvpn[3062]: DEPRECATED OPTION: --tls-remote, please update your configuration
2018:01:12-18:57:16 utm openvpn[3062]: OpenVPN 2.3.10 i686-suse-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jun 29 2017
2018:01:12-18:57:16 utm openvpn[3062]: library versions: OpenSSL 1.0.2j-fips 26 Sep 2016, LZO 2.09
2018:01:12-18:57:16 utm openvpn[3062]: Restart pause, 10 second(s)


2018:01:12-18:57:26 utm openvpn[3062]: Socket Buffers: R=[87380->87380] S=[16384->16384]
2018:01:12-18:57:26 utm openvpn[3062]: Attempting to establish TCP connection with [AF_INET]108.175.XXX.XXX:443 [nonblock]
2018:01:12-18:57:26 utm openvpn[3062]: TCP: connect to [AF_INET]108.175.XXX.XXX:443 failed, will try again in 5 seconds: Network is unreachable
2018:01:12-18:57:26 utm openvpn[3062]: SIGHUP[soft,init_instance] received, process restarting
2018:01:12-18:57:26 utm openvpn[3062]: DEPRECATED OPTION: --tls-remote, please update your configuration
2018:01:12-18:57:26 utm openvpn[3062]: OpenVPN 2.3.10 i686-suse-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jun 29 2017
2018:01:12-18:57:26 utm openvpn[3062]: library versions: OpenSSL 1.0.2j-fips 26 Sep 2016, LZO 2.09
2018:01:12-18:57:26 utm openvpn[3062]: Restart pause, 10 second(s)


2018:01:12-18:57:36 utm openvpn[3062]: PLUGIN_INIT: POST /usr/lib/openvpn/plugins/openvpn-plugin-utm.so '[/usr/lib/openvpn/plugins/openvpn-plugin-utm.so] [REF_SslCliToServerCloud]' intercepted=PLUGIN_UP|PLUGIN_DOWN|PLUGIN_ROUTE_UP|PLUGIN_ROUTE_PREDOWN
2018:01:12-18:57:36 utm openvpn[3062]: Socket Buffers: R=[87380->87380] S=[16384->16384]
2018:01:12-18:57:36 utm openvpn[3062]: Attempting to establish TCP connection with [AF_INET]108.175.XXX.XXX:443 [nonblock]
2018:01:12-18:57:36 utm openvpn[3062]: TCP: connect to [AF_INET]108.175.XXX.XXX:443 failed, will try again in 5 seconds: Network is unreachable
2018:01:12-18:57:36 utm openvpn[3062]: SIGHUP[soft,init_instance] received, process restarting
2018:01:12-18:57:36 utm openvpn[3062]: DEPRECATED OPTION: --tls-remote, please update your configuration
2018:01:12-18:57:36 utm openvpn[3062]: OpenVPN 2.3.10 i686-suse-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jun 29 2017
2018:01:12-18:57:36 utm openvpn[3062]: library versions: OpenSSL 1.0.2j-fips 26 Sep 2016, LZO 2.09
2018:01:12-18:57:36 utm openvpn[3062]: Restart pause, 10 second(s)



Try removing and creating the tunnel again and the message that you received when you tried to delete it was:

It never lets me eliminate the tunnel. The only way that the tunnel is stable is when I fully restart the Sophos UTM, however, when I turn off and turn on the tunnel, it has the behavior of "RECONNECTING" again.

What will be happening here?

 

 

 

Thanks !!! 



This thread was automatically locked due to age.
Parents Reply
  • To add:

    In the UTM VPN Server it remains in "WAIT_CONNECT".

    The LOGs shows me the following:

    2018: 01: 12-19: 36: 02 utm openvpn [27921]: MANAGEMENT: Client connected from / var / run / openvpn_mgmt
    2018: 01: 12-19: 36: 02 utm openvpn [27921]: MANAGEMENT: CMD 'status -1'
    2018: 01: 12-19: 36: 02 utm openvpn [27921]: MANAGEMENT: CMD 'status -1'
    2018: 01: 12-19: 36: 12 utm openvpn [27921]: MANAGEMENT: Client disconnected

    I hope help.

Children