[x]
Posted via EE Mobile

Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again.

11/03/2009 at 10:24AM PST, ID: 24868174 | Points: 500
[x]
Attachment Details

OpenVPN | Ubuntu Server 9.10 | Error Self Signed Cert.

Asked by smarin820 in Virtual Private Networking (VPN), Remote Access Software

Tags: OpenVPN, Ubuntu

Hey all, I recently upgraded my server to 9.10 from 8.10. In 8.10 this worked perfect for me. I followed all my steps and setup the bridge just like before and basically mirrored my config files. I have a problem now connecting. Not sure if it is a bug or if I'm simply missing something here. Any help is greatly appreciated.

--Steve
1:
2:
3:
4:
5:
6:
7:
8:
9:
10:
11:
12:
13:
14:
15:
16:
steve@steve-lapppy:~$ sudo openvpn pebkac.ovpn [sudo] password for steve:
Tue Nov  3 09:38:49 2009 OpenVPN 2.1_rc11 i486-pc-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] built on Mar  9 2009 Tue Nov  3 09:38:49 2009 WARNING: Make sure you understand the semantics of --tls-remote before using it (see the man page).
Tue Nov  3 09:38:49 2009 WARNING: file 'ovpn/pebkac/steve.key' is group or others accessible Tue Nov  3 09:38:49 2009 /usr/bin/openssl-vulnkey -q -b 1024 -m <modulus 
omitted>
Tue Nov  3 09:38:49 2009 LZO compression initialized Tue Nov  3 09:38:49 2009 Control Channel MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ] Tue Nov  3 09:38:49 2009 Data Channel MTU parms [ L:1574 D:1450 EF:42
EB:135 ET:32 EL:0 AF:3/1 ]
Tue Nov  3 09:38:49 2009 Local Options hash (VER=V4): 'd79ca330'
Tue Nov  3 09:38:49 2009 Expected Remote Options hash (VER=V4): 'f7df56b8'
Tue Nov  3 09:38:49 2009 Socket Buffers: R=[112640->131072] S=[112640->131072] Tue Nov  3 09:38:49 2009 UDPv4 link local: [undef] Tue Nov  3 09:38:49 2009 UDPv4 link remote: xx.xxx.xx.xxx:45000 Tue Nov  3 09:38:54 2009 TLS: Initial packet from xx.xxx.xx.xxx:45000,
sid=87ff98e8 c763833b
Tue Nov  3 09:38:55 2009 VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: 
/C=US/ST=CA/L=Ontario/O=Marin_Technologies/CN=Marin_Technologies_CA/emailAddress=postmaster@marintechie.com
Tue Nov  3 09:38:55 2009 TLS_ERROR: BIO read tls_read_plaintext error: 
error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate
verify failed
Tue Nov  3 09:38:55 2009 TLS Error: TLS object -> incoming plaintext read error Tue Nov  3 09:38:55 2009 TLS Error: TLS handshake failed Tue Nov  3 09:38:55 2009 TCP/UDP: Closing socket Tue Nov  3 09:38:55 2009 SIGUSR1[soft,tls-error] received, process restarting Tue Nov  3 09:38:55 2009 Restart pause, 2 second(s) ^CTue Nov  3 09:38:56 2009 SIGINT[hard,init_instance] received, process exiting steve@steve-lapppy:~$
[+][-]11/05/09 09:30 AM, ID: 25751819

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20090824-EE-VQP-74 - Hierarchy / EE_QW_3_20080625