IdentifiantMot de passe
Loading...
Mot de passe oublié ?Je m'inscris ! (gratuit)
Navigation

Inscrivez-vous gratuitement
pour pouvoir participer, suivre les réponses en temps réel, voter pour les messages, poser vos propres questions et recevoir la newsletter

Administration système Discussion :

OpenVPN, load des fichiers impossible


Sujet :

Administration système

Vue hybride

Message précédent Message précédent   Message suivant Message suivant
  1. #1
    Membre à l'essai
    Inscrit en
    Novembre 2009
    Messages
    6
    Détails du profil
    Informations forums :
    Inscription : Novembre 2009
    Messages : 6
    Par défaut OpenVPN, load des fichiers impossible
    Bonjour les développeurs,
    J'espère que vous avez un meilleur samedi matin que moi.

    Moi perso ça fait 5h que je me casse la gueule avec OpenVPN, différentes sources, différents tuto, différentes tentatives de débuggage, et la j'en suis rendus à demander de l'aide, mes connaissances ne peuvent plus m'aider.

    Donc voilà le problème, présentement, je tente de faire à la lettre ce que ce tuto me demande de faire http://openmaniak.com/fr/openvpn_tutorial.php
    Je veux que mon VPN fonctionne avec des clés publique/privée. C'est la première fois que je travail avec des clés publiques/priver, ainsi que des certificats, et ça me donne pas trop le goût de m'y frotter.

    Donc en fait, je tente de démarrer openVPN en spécifiant directement le path du fichier de config, donc ça donne "Openvpn /home/olivier/config.txt", tout les fichiers de config sont au même niveau que le fichier de config.

    Le problème est qu'il ne réussis pas à loader les fichiers de config.
    "Sat Nov 7 00:56:52 2009 us=738446 Cannot load CA certificate file ca.key path ( "

    Je comprend le message d'erreur, mais j'Ai tenter de spécifier le chemin avec toutes les formulations que je connaissais, et rien n'y fait, j'ai tenter avec le chemin absolu, le chemin relatif (je suis plus certains du nom, mais ./ ), mais toujours le problème. le chmod est bon, j'ai tenter avec -rw-r--r--, et -rwxrwxrwx, toujours le même problème. Voici la sortie complète qe j'ai
    Please indicate why this post is abusive, and provide any other useful information.
    Spam / advertising / junk
    Personal details
    Proprietary code
    Other

    comments (optional)


    email (optional)


    1.
    Sat Nov 7 00:56:52 2009 us=379635 inactivity_timeout = 0
    2.
    Sat Nov 7 00:56:52 2009 us=379644 ping_send_timeout = 0
    3.
    Sat Nov 7 00:56:52 2009 us=379653 ping_rec_timeout = 0
    4.
    Sat Nov 7 00:56:52 2009 us=379662 ping_rec_timeout_action = 0
    5.
    Sat Nov 7 00:56:52 2009 us=379672 ping_timer_remote = DISABLED
    6.
    Sat Nov 7 00:56:52 2009 us=379681 remap_sigusr1 = 0
    7.
    Sat Nov 7 00:56:52 2009 us=379720 explicit_exit_notification = 0
    8.
    Sat Nov 7 00:56:52 2009 us=379731 persist_tun = DISABLED
    9.
    Sat Nov 7 00:56:52 2009 us=379740 persist_local_ip = DISABLED
    10.
    Sat Nov 7 00:56:52 2009 us=379750 persist_remote_ip = DISABLED
    11.
    Sat Nov 7 00:56:52 2009 us=379759 persist_key = DISABLED
    12.
    Sat Nov 7 00:56:52 2009 us=379768 mssfix = 1450
    13.
    Sat Nov 7 00:56:52 2009 us=379778 passtos = DISABLED
    14.
    Sat Nov 7 00:56:52 2009 us=379787 resolve_retry_seconds = 1000000000
    15.
    Sat Nov 7 00:56:52 2009 us=379797 username = '[UNDEF]'
    16.
    Sat Nov 7 00:56:52 2009 us=379806 groupname = '[UNDEF]'
    17.
    Sat Nov 7 00:56:52 2009 us=380315 chroot_dir = '[UNDEF]'
    18.
    Sat Nov 7 00:56:52 2009 us=380328 cd_dir = '[UNDEF]'
    19.
    Sat Nov 7 00:56:52 2009 us=380338 writepid = '[UNDEF]'
    20.
    Sat Nov 7 00:56:52 2009 us=380348 up_script = '[UNDEF]'
    21.
    Sat Nov 7 00:56:52 2009 us=380357 down_script = '[UNDEF]'
    22.
    Sat Nov 7 00:56:52 2009 us=380367 down_pre = DISABLED
    23.
    Sat Nov 7 00:56:52 2009 us=380376 up_restart = DISABLED
    24.
    Sat Nov 7 00:56:52 2009 us=380385 up_delay = DISABLED
    25.
    Sat Nov 7 00:56:52 2009 us=380394 daemon = DISABLED
    26.
    Sat Nov 7 00:56:52 2009 us=380404 inetd = 0
    27.
    Sat Nov 7 00:56:52 2009 us=380413 log = DISABLED
    28.
    Sat Nov 7 00:56:52 2009 us=380423 suppress_timestamps = DISABLED
    29.
    Sat Nov 7 00:56:52 2009 us=380432 nice = 0
    30.
    Sat Nov 7 00:56:52 2009 us=380441 verbosity = 9
    31.
    Sat Nov 7 00:56:52 2009 us=380451 mute = 0
    32.
    Sat Nov 7 00:56:52 2009 us=380460 gremlin = 0
    33.
    Sat Nov 7 00:56:52 2009 us=380469 status_file = '[UNDEF]'
    34.
    Sat Nov 7 00:56:52 2009 us=380478 status_file_version = 1
    35.
    Sat Nov 7 00:56:52 2009 us=380488 status_file_update_freq = 60
    36.
    Sat Nov 7 00:56:52 2009 us=380497 occ = ENABLED
    37.
    Sat Nov 7 00:56:52 2009 us=380506 rcvbuf = 65536
    38.
    Sat Nov 7 00:56:52 2009 us=380516 sndbuf = 65536
    39.
    Sat Nov 7 00:56:52 2009 us=380525 sockflags = 0
    40.
    Sat Nov 7 00:56:52 2009 us=380535 fast_io = DISABLED
    41.
    Sat Nov 7 00:56:52 2009 us=380544 lzo = 0
    42.
    Sat Nov 7 00:56:52 2009 us=380553 route_script = '[UNDEF]'
    43.
    Sat Nov 7 00:56:52 2009 us=380562 route_default_gateway = '[UNDEF]'
    44.
    Sat Nov 7 00:56:52 2009 us=380572 route_default_metric = 0
    45.
    Sat Nov 7 00:56:52 2009 us=380581 route_noexec = DISABLED
    46.
    Sat Nov 7 00:56:52 2009 us=380590 route_delay = 0
    47.
    Sat Nov 7 00:56:52 2009 us=380599 route_delay_window = 30
    48.
    Sat Nov 7 00:56:52 2009 us=380608 route_delay_defined = DISABLED
    49.
    Sat Nov 7 00:56:52 2009 us=380618 route_nopull = DISABLED
    50.
    Sat Nov 7 00:56:52 2009 us=380627 route_gateway_via_dhcp = DISABLED
    51.
    Sat Nov 7 00:56:52 2009 us=380637 allow_pull_fqdn = DISABLED
    52.
    Sat Nov 7 00:56:52 2009 us=380647 route 10.8.0.0/255.255.255.0/nil/nil
    53.
    Sat Nov 7 00:56:52 2009 us=380657 management_addr = '[UNDEF]'
    54.
    Sat Nov 7 00:56:52 2009 us=380667 management_port = 0
    55.
    Sat Nov 7 00:56:52 2009 us=380676 management_user_pass = '[UNDEF]'
    56.
    Sat Nov 7 00:56:52 2009 us=380686 management_log_history_cache = 250
    57.
    Sat Nov 7 00:56:52 2009 us=380695 management_echo_buffer_size = 100
    58.
    Sat Nov 7 00:56:52 2009 us=380705 management_write_peer_info_file = '[UNDEF]'
    59.
    Sat Nov 7 00:56:52 2009 us=380714 management_flags = 0
    60.
    Sat Nov 7 00:56:52 2009 us=380724 shared_secret_file = '[UNDEF]'
    61.
    Sat Nov 7 00:56:52 2009 us=380733 key_direction = 0
    62.
    Sat Nov 7 00:56:52 2009 us=380743 ciphername_defined = ENABLED
    63.
    Sat Nov 7 00:56:52 2009 us=380752 ciphername = 'AES-256-CBC'
    64.
    Sat Nov 7 00:56:52 2009 us=380762 authname_defined = ENABLED
    65.
    Sat Nov 7 00:56:52 2009 us=380771 authname = 'MD5'
    66.
    Sat Nov 7 00:56:52 2009 us=380781 keysize = 0
    67.
    Sat Nov 7 00:56:52 2009 us=380790 engine = DISABLED
    68.
    Sat Nov 7 00:56:52 2009 us=380800 replay = ENABLED
    69.
    Sat Nov 7 00:56:52 2009 us=380809 mute_replay_warnings = DISABLED
    70.
    Sat Nov 7 00:56:52 2009 us=380818 replay_window = 64
    71.
    Sat Nov 7 00:56:52 2009 us=380828 replay_time = 15
    72.
    Sat Nov 7 00:56:52 2009 us=380837 packet_id_file = '[UNDEF]'
    73.
    Sat Nov 7 00:56:52 2009 us=380847 use_iv = ENABLED
    74.
    Sat Nov 7 00:56:52 2009 us=380856 test_crypto = DISABLED
    75.
    Sat Nov 7 00:56:52 2009 us=380865 tls_server = ENABLED
    76.
    Sat Nov 7 00:56:52 2009 us=380875 tls_client = DISABLED
    77.
    Sat Nov 7 00:56:52 2009 us=380884 key_method = 2
    78.
    Sat Nov 7 00:56:52 2009 us=380893 ca_file = 'ca.key'
    79.
    Sat Nov 7 00:56:52 2009 us=380903 ca_path = '[UNDEF]'
    80.
    Sat Nov 7 00:56:52 2009 us=380912 dh_file = 'dh1024.pem'
    81.
    Sat Nov 7 00:56:52 2009 us=380921 cert_file = 'amadeus.crt'
    82.
    Sat Nov 7 00:56:52 2009 us=380931 priv_key_file = 'amadeus.key'
    83.
    Sat Nov 7 00:56:52 2009 us=380940 pkcs12_file = '[UNDEF]'
    84.
    Sat Nov 7 00:56:52 2009 us=380950 cipher_list = '[UNDEF]'
    85.
    Sat Nov 7 00:56:52 2009 us=381081 tls_verify = '[UNDEF]'
    86.
    Sat Nov 7 00:56:52 2009 us=381093 tls_remote = '[UNDEF]'
    87.
    Sat Nov 7 00:56:52 2009 us=381103 crl_file = '[UNDEF]'
    88.
    Sat Nov 7 00:56:52 2009 us=381112 ns_cert_type = 0
    89.
    Sat Nov 7 00:56:52 2009 us=381122 remote_cert_ku[i] = 0
    90.
    Sat Nov 7 00:56:52 2009 us=381131 remote_cert_ku[i] = 0
    91.
    Sat Nov 7 00:56:52 2009 us=381141 remote_cert_ku[i] = 0
    92.
    Sat Nov 7 00:56:52 2009 us=381150 remote_cert_ku[i] = 0
    93.
    Sat Nov 7 00:56:52 2009 us=381159 remote_cert_ku[i] = 0
    94.
    Sat Nov 7 00:56:52 2009 us=381168 remote_cert_ku[i] = 0
    95.
    Sat Nov 7 00:56:52 2009 us=381178 remote_cert_ku[i] = 0
    96.
    Sat Nov 7 00:56:52 2009 us=381187 remote_cert_ku[i] = 0
    97.
    Sat Nov 7 00:56:52 2009 us=381196 remote_cert_ku[i] = 0
    98.
    Sat Nov 7 00:56:52 2009 us=381205 remote_cert_ku[i] = 0
    99.
    Sat Nov 7 00:56:52 2009 us=381214 remote_cert_ku[i] = 0
    100.
    Sat Nov 7 00:56:52 2009 us=381223 remote_cert_ku[i] = 0
    101.
    Sat Nov 7 00:56:52 2009 us=381233 remote_cert_ku[i] = 0
    102.
    Sat Nov 7 00:56:52 2009 us=381242 remote_cert_ku[i] = 0
    103.
    Sat Nov 7 00:56:52 2009 us=381251 remote_cert_ku[i] = 0
    104.
    Sat Nov 7 00:56:52 2009 us=381260 remote_cert_ku[i] = 0
    105.
    Sat Nov 7 00:56:52 2009 us=381269 remote_cert_eku = '[UNDEF]'
    106.
    Sat Nov 7 00:56:52 2009 us=381278 tls_timeout = 2
    107.
    Sat Nov 7 00:56:52 2009 us=381288 renegotiate_bytes = 0
    108.
    Sat Nov 7 00:56:52 2009 us=381297 renegotiate_packets = 0
    109.
    Sat Nov 7 00:56:52 2009 us=381306 renegotiate_seconds = 3600
    110.
    Sat Nov 7 00:56:52 2009 us=381316 handshake_window = 60
    111.
    Sat Nov 7 00:56:52 2009 us=381325 transition_window = 3600
    112.
    Sat Nov 7 00:56:52 2009 us=381335 single_session = DISABLED
    113.
    Sat Nov 7 00:56:52 2009 us=381344 tls_exit = DISABLED
    114.
    Sat Nov 7 00:56:52 2009 us=381354 tls_auth_file = '[UNDEF]'
    115.
    Sat Nov 7 00:56:52 2009 us=381363 pkcs11_protected_authentication = DISABLED
    116.
    Sat Nov 7 00:56:52 2009 us=381373 pkcs11_protected_authentication = DISABLED
    117.
    Sat Nov 7 00:56:52 2009 us=381382 pkcs11_protected_authentication = DISABLED
    118.
    Sat Nov 7 00:56:52 2009 us=381392 pkcs11_protected_authentication = DISABLED
    119.
    Sat Nov 7 00:56:52 2009 us=381401 pkcs11_protected_authentication = DISABLED
    120.
    Sat Nov 7 00:56:52 2009 us=381410 pkcs11_protected_authentication = DISABLED
    121.
    Sat Nov 7 00:56:52 2009 us=381419 pkcs11_protected_authentication = DISABLED
    122.
    Sat Nov 7 00:56:52 2009 us=381429 pkcs11_protected_authentication = DISABLED
    123.
    Sat Nov 7 00:56:52 2009 us=381438 pkcs11_protected_authentication = DISABLED
    124.
    Sat Nov 7 00:56:52 2009 us=381447 pkcs11_protected_authentication = DISABLED
    125.
    Sat Nov 7 00:56:52 2009 us=381456 pkcs11_protected_authentication = DISABLED
    126.
    Sat Nov 7 00:56:52 2009 us=381466 pkcs11_protected_authentication = DISABLED
    127.
    Sat Nov 7 00:56:52 2009 us=381475 pkcs11_protected_authentication = DISABLED
    128.
    Sat Nov 7 00:56:52 2009 us=381485 pkcs11_protected_authentication = DISABLED
    129.
    Sat Nov 7 00:56:52 2009 us=381494 pkcs11_protected_authentication = DISABLED
    130.
    Sat Nov 7 00:56:52 2009 us=381503 pkcs11_protected_authentication = DISABLED
    131.
    Sat Nov 7 00:56:52 2009 us=381513 pkcs11_private_mode = 00000000
    132.
    Sat Nov 7 00:56:52 2009 us=381522 pkcs11_private_mode = 00000000
    133.
    Sat Nov 7 00:56:52 2009 us=381532 pkcs11_private_mode = 00000000
    134.
    Sat Nov 7 00:56:52 2009 us=381541 pkcs11_private_mode = 00000000
    135.
    Sat Nov 7 00:56:52 2009 us=381550 pkcs11_private_mode = 00000000
    136.
    Sat Nov 7 00:56:52 2009 us=381560 pkcs11_private_mode = 00000000
    137.
    Sat Nov 7 00:56:52 2009 us=381569 pkcs11_private_mode = 00000000
    138.
    Sat Nov 7 00:56:52 2009 us=381578 pkcs11_private_mode = 00000000
    139.
    Sat Nov 7 00:56:52 2009 us=381587 pkcs11_private_mode = 00000000
    140.
    Sat Nov 7 00:56:52 2009 us=381597 pkcs11_private_mode = 00000000
    141.
    Sat Nov 7 00:56:52 2009 us=381606 pkcs11_private_mode = 00000000
    142.
    Sat Nov 7 00:56:52 2009 us=381615 pkcs11_private_mode = 00000000
    143.
    Sat Nov 7 00:56:52 2009 us=381624 pkcs11_private_mode = 00000000
    144.
    Sat Nov 7 00:56:52 2009 us=381634 pkcs11_private_mode = 00000000
    145.
    Sat Nov 7 00:56:52 2009 us=381686 pkcs11_private_mode = 00000000
    146.
    Sat Nov 7 00:56:52 2009 us=381727 pkcs11_private_mode = 00000000
    147.
    Sat Nov 7 00:56:52 2009 us=381737 pkcs11_cert_private = DISABLED
    148.
    Sat Nov 7 00:56:52 2009 us=381747 pkcs11_cert_private = DISABLED
    149.
    Sat Nov 7 00:56:52 2009 us=381756 pkcs11_cert_private = DISABLED
    150.
    Sat Nov 7 00:56:52 2009 us=381765 pkcs11_cert_private = DISABLED
    151.
    Sat Nov 7 00:56:52 2009 us=381774 pkcs11_cert_private = DISABLED
    152.
    Sat Nov 7 00:56:52 2009 us=381783 pkcs11_cert_private = DISABLED
    153.
    Sat Nov 7 00:56:52 2009 us=381792 pkcs11_cert_private = DISABLED
    154.
    Sat Nov 7 00:56:52 2009 us=381801 pkcs11_cert_private = DISABLED
    155.
    Sat Nov 7 00:56:52 2009 us=381810 pkcs11_cert_private = DISABLED
    156.
    Sat Nov 7 00:56:52 2009 us=381819 pkcs11_cert_private = DISABLED
    157.
    Sat Nov 7 00:56:52 2009 us=381828 pkcs11_cert_private = DISABLED
    158.
    Sat Nov 7 00:56:52 2009 us=381836 pkcs11_cert_private = DISABLED
    159.
    Sat Nov 7 00:56:52 2009 us=381845 pkcs11_cert_private = DISABLED
    160.
    Sat Nov 7 00:56:52 2009 us=381854 pkcs11_cert_private = DISABLED
    161.
    Sat Nov 7 00:56:52 2009 us=381863 pkcs11_cert_private = DISABLED
    162.
    Sat Nov 7 00:56:52 2009 us=381872 pkcs11_cert_private = DISABLED
    163.
    Sat Nov 7 00:56:52 2009 us=381881 pkcs11_pin_cache_period = -1
    164.
    Sat Nov 7 00:56:52 2009 us=381890 pkcs11_id = '[UNDEF]'
    165.
    Sat Nov 7 00:56:52 2009 us=381899 pkcs11_id_management = DISABLED
    166.
    Sat Nov 7 00:56:52 2009 us=381910 server_network = 10.8.0.0
    167.
    Sat Nov 7 00:56:52 2009 us=381921 server_netmask = 255.255.255.0
    168.
    Sat Nov 7 00:56:52 2009 us=381932 server_bridge_ip = 0.0.0.0
    169.
    Sat Nov 7 00:56:52 2009 us=381942 server_bridge_netmask = 0.0.0.0
    170.
    Sat Nov 7 00:56:52 2009 us=381953 server_bridge_pool_start = 0.0.0.0
    171.
    Sat Nov 7 00:56:52 2009 us=381963 server_bridge_pool_end = 0.0.0.0
    172.
    Sat Nov 7 00:56:52 2009 us=381972 push_list = 'route 10.8.0.1,topology net30'
    173.
    Sat Nov 7 00:56:52 2009 us=381981 ifconfig_pool_defined = ENABLED
    174.
    Sat Nov 7 00:56:52 2009 us=381992 ifconfig_pool_start = 10.8.0.4
    175.
    Sat Nov 7 00:56:52 2009 us=382003 ifconfig_pool_end = 10.8.0.251
    176.
    Sat Nov 7 00:56:52 2009 us=382013 ifconfig_pool_netmask = 0.0.0.0
    177.
    Sat Nov 7 00:56:52 2009 us=382022 ifconfig_pool_persist_filename = '[UNDEF]'
    178.
    Sat Nov 7 00:56:52 2009 us=382032 ifconfig_pool_persist_refresh_freq = 600
    179.
    Sat Nov 7 00:56:52 2009 us=382041 n_bcast_buf = 256
    180.
    Sat Nov 7 00:56:52 2009 us=382050 tcp_queue_limit = 64
    181.
    Sat Nov 7 00:56:52 2009 us=382059 real_hash_size = 256
    182.
    Sat Nov 7 00:56:52 2009 us=382068 virtual_hash_size = 256
    183.
    Sat Nov 7 00:56:52 2009 us=382078 client_connect_script = '[UNDEF]'
    184.
    Sat Nov 7 00:56:52 2009 us=382087 learn_address_script = '[UNDEF]'
    185.
    Sat Nov 7 00:56:52 2009 us=382097 client_disconnect_script = '[UNDEF]'
    186.
    Sat Nov 7 00:56:52 2009 us=382106 client_config_dir = '[UNDEF]'
    187.
    Sat Nov 7 00:56:52 2009 us=382115 ccd_exclusive = DISABLED
    188.
    Sat Nov 7 00:56:52 2009 us=382124 tmp_dir = '[UNDEF]'
    189.
    Sat Nov 7 00:56:52 2009 us=382133 push_ifconfig_defined = DISABLED
    190.
    Sat Nov 7 00:56:52 2009 us=382143 push_ifconfig_local = 0.0.0.0
    191.
    Sat Nov 7 00:56:52 2009 us=382154 push_ifconfig_remote_netmask = 0.0.0.0
    192.
    Sat Nov 7 00:56:52 2009 us=382163 enable_c2c = DISABLED
    193.
    Sat Nov 7 00:56:52 2009 us=382172 duplicate_cn = DISABLED
    194.
    Sat Nov 7 00:56:52 2009 us=382181 cf_max = 0
    195.
    Sat Nov 7 00:56:52 2009 us=382190 cf_per = 0
    196.
    Sat Nov 7 00:56:52 2009 us=382199 max_clients = 1024
    197.
    Sat Nov 7 00:56:52 2009 us=382208 max_routes_per_client = 256
    198.
    Sat Nov 7 00:56:52 2009 us=382218 client_cert_not_required = DISABLED
    199.
    Sat Nov 7 00:56:52 2009 us=382227 username_as_common_name = DISABLED
    200.
    Sat Nov 7 00:56:52 2009 us=382236 auth_user_pass_verify_script = '[UNDEF]'
    201.
    Sat Nov 7 00:56:52 2009 us=382245 auth_user_pass_verify_script_via_file = DIS ABLED
    202.
    Sat Nov 7 00:56:52 2009 us=382255 port_share_host = '[UNDEF]'
    203.
    Sat Nov 7 00:56:52 2009 us=382264 port_share_port = 0
    204.
    Sat Nov 7 00:56:52 2009 us=382299 client = DISABLED
    205.
    Sat Nov 7 00:56:52 2009 us=382310 pull = DISABLED
    206.
    Sat Nov 7 00:56:52 2009 us=729811 auth_user_pass_file = '[UNDEF]'
    207.
    Sat Nov 7 00:56:52 2009 us=729848 OpenVPN 2.1_rc11 i486-pc-linux-gnu [SSL] [LZO 2] [EPOLL] [PKCS11] built on Sep 18 2008
    208.
    Sat Nov 7 00:56:52 2009 us=729937 PKCS#11: pkcs11_initialize - entered
    209.
    Sat Nov 7 00:56:52 2009 us=730047 PKCS#11: pkcs11_initialize - return 0-'CKR_OK '
    210.
    Sat Nov 7 00:56:52 2009 us=730093 WARNING: --keepalive option is missing from s erver config
    211.
    Sat Nov 7 00:56:52 2009 us=730201 GDG: route[1] 212.85.155.0/255.255.255.128/0. 0.0.0 m=0
    212.
    Sat Nov 7 00:56:52 2009 us=730221 GDG: route[2] 0.0.0.0/0.0.0.0/212.85.155.1 m= 0
    213.
    Sat Nov 7 00:56:52 2009 us=730257 GDG: best=212.85.155.1[2] lm=0
    214.
    Sat Nov 7 00:56:52 2009 us=737817 Diffie-Hellman initialized with 1024 bit key
    215.
    Sat Nov 7 00:56:52 2009 us=738446 Cannot load CA certificate file ca.key path ( null) (SSL_CTX_load_verify_locations) (OpenSSL)
    216.
    Sat Nov 7 00:56:52 2009 us=738476 Exiting
    J'ai placer le fichier de config actuel ici . J'ai tenter de commenter le moment où openVPN se chroot, mais j'ai toujours le même problème.

    J'ai aussi tenter de changer le répertoires des keys, mais toujours aucun résultats.


    Je suis totalement désarçonner par ce problème,

    Merci beaucoup de m'aider à trouver la solution
    Olivier

  2. #2
    Membre expérimenté
    Profil pro
    Ingénieur
    Inscrit en
    Mars 2007
    Messages
    199
    Détails du profil
    Informations personnelles :
    Localisation : France, Seine Saint Denis (Île de France)

    Informations professionnelles :
    Activité : Ingénieur

    Informations forums :
    Inscription : Mars 2007
    Messages : 199
    Par défaut
    Si cela peut t'aider, voici un exemple de fichier de configuration
    qui fonctionne coté serveur openvpn et client.

    Pour l'exemple les fichiers de configuration sont sous /etc/openvpn
    les clefs sous /etc/openvpn/server, les configurations clientes sous
    /etc/openvpn/ccd, les plugins sous /etc/openvpn/lib et les shells
    de connexions sous /etc/openvpn/shell


    Code : Sélectionner tout - Visualiser dans une fenêtre à part
    1
    2
    3
    4
    5
    6
    7
    8
    9
    10
    11
    12
    13
    14
    15
    16
    17
    18
    19
    20
    21
    22
    23
    24
    25
    26
    27
    28
    29
    30
    31
    32
    33
    34
    35
    36
    37
    38
    39
    40
    41
    42
    43
     
    local 192.168.1.1
    port 1194
    proto udp
    dev tun0
     
    server 192.168.2.0 255.255.255.0
     
    route 192.168.2.0 255.255.255.0
     
    client-config-dir ccd
    ccd-exclusive
    ifconfig-pool-persist ipp.txt
     
    plugin /etc/openvpn/lib/openvpn-auth-pam.so login
     
    ca server/file.ca.crt
    cert server/file.crt
    key server/file.key
    dh server/file.dh1024.pem
     
    auth-nocache
    # keepalive 10 120
    ping 10
    ping-restart 120
    ping-exit 300
    inactive 900
     
    max-clients 1024
    tun-mtu 1500
    tls-server
    tls-auth server/file.ta.key 0
    cipher BF-CBC
    comp-lzo
    user openvpn 
    group openvpn
    persist-key
    persist-tun
    status openvpn-status.log
    script-security 2
    verb 4
    client-connect /etc/openvpn/shell/client-connect.sh
    client-disconnect /etc/openvpn/shell/client-disconnect.sh

    Ligne de commande lancement du serveur :
    Code : Sélectionner tout - Visualiser dans une fenêtre à part
    1
    2
     
    /usr/sbin/openvpn --daemon ovpn-server --writepid /var/run/openvpn.server.pid --config /etc/openvpn/server.conf --status /var/run/openvpn.server.status --cd /etc/openvpn
    Coté client :

    Code : Sélectionner tout - Visualiser dans une fenêtre à part
    1
    2
    3
    4
    5
    6
    7
    8
    9
    10
    11
    12
    13
    14
    15
    16
    17
    18
    19
    20
    21
    22
     
    client
    dev tun
    proto udp
    port 1194
    remote vpn.exemple.com
    ca file.ca.crt
    remote-cert-tls server
    ns-cert-type server
    tls-remote vpn.exemple.com
    tls-client
    tls-auth file.ta.key 1
    cert file-client.crt
    key file-client.key
    auth-nocache
    auth-user-pass
    comp-lzo
    nobind
    route-method adaptive
    route-delay 2
    # script-security 2
    verb 3

Discussions similaires

  1. Recherche des fichiers impossible
    Par anouar_chaieb dans le forum Windows 7
    Réponses: 3
    Dernier message: 19/02/2012, 15h13
  2. problème de "load" des fichiers textes dans un exe
    Par guefrachi dans le forum MATLAB
    Réponses: 8
    Dernier message: 13/10/2010, 15h21
  3. impossible d'utiliser des fichiers sources uniques
    Par Florian.L dans le forum Code::Blocks
    Réponses: 7
    Dernier message: 11/10/2006, 15h35
  4. Chmod Impossible de changer les droits des fichiers
    Par Franciske dans le forum Sécurité
    Réponses: 2
    Dernier message: 09/10/2006, 00h58
  5. Partage des fichier impossibles
    Par maminova dans le forum Administration
    Réponses: 3
    Dernier message: 16/11/2005, 10h28

Partager

Partager
  • Envoyer la discussion sur Viadeo
  • Envoyer la discussion sur Twitter
  • Envoyer la discussion sur Google
  • Envoyer la discussion sur Facebook
  • Envoyer la discussion sur Digg
  • Envoyer la discussion sur Delicious
  • Envoyer la discussion sur MySpace
  • Envoyer la discussion sur Yahoo