2017-09-02 07:13:58 OpenVPN 2.3.17 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Aug 20 2017
2017-09-02 07:13:58 library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.10
2017-09-02 07:13:58 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337
2017-09-02 07:13:58 Need hold release from management interface, waiting...
*Tunnelblick: OS X 10.12.6; Tunnelblick 3.7.3beta02 (build 4861)
2017-09-02 07:13:58 *Tunnelblick: Attempting connection with Australia-Queensland_UDP53_SMART using shadow copy; Set nameserver = 769; monitoring connection
2017-09-02 07:13:58 *Tunnelblick: openvpnstart start Australia-Queensland_UDP53_SMART.tblk 1337 769 0 1 0 1065264 -ptADGNWradsgnw 2.3.17-openssl-1.0.2l
2017-09-02 07:13:59 *Tunnelblick: openvpnstart log:
OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
/Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.17-openssl-1.0.2l/openvpn
--daemon
--log
/Library/Application Support/Tunnelblick/Logs/-SUsers-Sjamesorawe-SLibrary-SApplication Support-STunnelblick-SConfigurations-SAustralia--Queensland_UDP53_SMART.tblk-SContents-SResources-Sconfig.ovpn.769_0_1_0_1065264.1337.openvpn.log
--cd
/Library/Application Support/Tunnelblick/Users/jamesorawe/Australia-Queensland_UDP53_SMART.tblk/Contents/Resources
--setenv
IV_GUI_VER
"net.tunnelblick.tunnelblick 4861 3.7.3beta02 (build 4861)"
--verb
3
--config
/Library/Application Support/Tunnelblick/Users/jamesorawe/Australia-Queensland_UDP53_SMART.tblk/Contents/Resources/config.ovpn
--verb
3
--cd
/Library/Application Support/Tunnelblick/Users/jamesorawe/Australia-Queensland_UDP53_SMART.tblk/Contents/Resources
--management
127.0.0.1
1337
--management-query-passwords
--management-hold
--script-security
2
--up
/Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw
--down
/Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw
2017-09-02 07:13:58 *Tunnelblick: openvpnstart starting OpenVPN
2017-09-02 07:13:59 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1337
2017-09-02 07:13:59 MANAGEMENT: CMD 'pid'
2017-09-02 07:13:59 MANAGEMENT: CMD 'state on'
2017-09-02 07:13:59 MANAGEMENT: CMD 'state'
2017-09-02 07:13:59 MANAGEMENT: CMD 'bytecount 1'
2017-09-02 07:13:59 MANAGEMENT: CMD 'hold release'
2017-09-02 07:13:59 *Tunnelblick: Established communication with OpenVPN
2017-09-02 07:14:10 MANAGEMENT: CMD 'username "Auth" "jamesorawe"'
2017-09-02 07:14:10 MANAGEMENT: CMD 'password [...]'
2017-09-02 07:14:10 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2017-09-02 07:14:10 Socket Buffers: R=[196724->196724] S=[9216->9216]
2017-09-02 07:14:10 MANAGEMENT: >STATE:1504300450,RESOLVE,,,
2017-09-02 07:14:11 UDPv4 link local: [undef]
2017-09-02 07:14:11 UDPv4 link remote: [AF_INET]46.36.201.161:53
2017-09-02 07:14:11 MANAGEMENT: >STATE:1504300451,WAIT,,,
2017-09-02 07:14:11 MANAGEMENT: >STATE:1504300451,AUTH,,,
2017-09-02 07:14:11 TLS: Initial packet from [AF_INET]46.36.201.161:53, sid=d60f529d 84e0901b
2017-09-02 07:14:11 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2017-09-02 07:14:14 VERIFY OK: depth=1, C=SC, ST=Mahe, L=Victoria, O=Global Stealth, Inc., OU=VPN, CN=Global Stealth, Inc. CA, name=serverlocation-key, emailAddress=ad...@serverlocation.co
2017-09-02 07:14:14 VERIFY OK: nsCertType=SERVER
2017-09-02 07:14:14 VERIFY OK: depth=0, C=SC, ST=Mahe, L=Victoria, O=Global Stealth, Inc., OU=VPN, CN=*.serverlocation.co, name=serverlocation-key, emailAddress=ad...@serverlocation.co
2017-09-02 07:14:15 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
2017-09-02 07:14:15 WARNING: INSECURE cipher with block size less than 128 bit (64 bit). This allows attacks like SWEET32. Mitigate by using a --cipher with a larger block size (e.g. AES-256-CBC).
2017-09-02 07:14:15 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
2017-09-02 07:14:15 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
2017-09-02 07:14:15 WARNING: INSECURE cipher with block size less than 128 bit (64 bit). This allows attacks like SWEET32. Mitigate by using a --cipher with a larger block size (e.g. AES-256-CBC).
2017-09-02 07:14:15 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
2017-09-02 07:14:15 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
2017-09-02 07:14:15 [*.serverlocation.co] Peer Connection Initiated with [AF_INET]46.36.201.161:53
2017-09-02 07:14:16 MANAGEMENT: >STATE:1504300456,GET_CONFIG,,,
2017-09-02 07:14:17 SENT CONTROL [*.serverlocation.co]: 'PUSH_REQUEST' (status=1)
2017-09-02 07:14:18 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 54.93.169.181,dhcp-option DNS 212.71.249.225,route-gateway 10.8.0.1,topology subnet,ping 10,ping-restart 30,ifconfig 10.8.0.47 255.255.255.0'
2017-09-02 07:14:18 OPTIONS IMPORT: timers and/or timeouts modified
2017-09-02 07:14:18 OPTIONS IMPORT: --ifconfig/up options modified
2017-09-02 07:14:18 OPTIONS IMPORT: route options modified
2017-09-02 07:14:18 OPTIONS IMPORT: route-related options modified
2017-09-02 07:14:18 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2017-09-02 07:14:18 Opening utun (connect(AF_SYS_CONTROL)): Resource busy
2017-09-02 07:14:18 Opening utun (connect(AF_SYS_CONTROL)): Resource busy
2017-09-02 07:14:18 Opened utun device utun2
2017-09-02 07:14:18 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2017-09-02 07:14:18 MANAGEMENT: >STATE:1504300458,ASSIGN_IP,,10.8.0.47,
2017-09-02 07:14:18 /sbin/ifconfig utun2 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2017-09-02 07:14:18 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2017-09-02 07:14:18 /sbin/ifconfig utun2 10.8.0.47 10.8.0.47 netmask 255.255.255.0 mtu 1500 up
2017-09-02 07:14:18 /sbin/route add -net 10.8.0.0 10.8.0.47 255.255.255.0
add net 10.8.0.0: gateway 10.8.0.47
2017-09-02 07:14:18 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw utun2 1500 1542 10.8.0.47 255.255.255.0 init
**********************************************
Start of output from client.up.tunnelblick.sh
Disabled IPv6 for 'Ethernet'
Disabled IPv6 for 'Wi-Fi'
Disabled IPv6 for 'Bluetooth PAN'
Disabled IPv6 for 'Thunderbolt Bridge'
Retrieved from OpenVPN: name server(s) [ 54.93.169.181 212.71.249.225 ], search domain(s) [ ] and SMB server(s) [ ] and using default domain name [ openvpn ]
Not aggregating ServerAddresses because running on OS X 10.6 or higher
Setting search domains to 'openvpn' because running under OS X 10.6 or higher and the search domains were not set manually (or are allowed to be changed) and 'Prepend domain name to search domains' was not selected
Saved the DNS and SMB configurations so they can be restored
Changed DNS ServerAddresses setting from '192.168.0.1' to '54.93.169.181 212.71.249.225'
Changed DNS SearchDomains setting from '' to 'openvpn'
Changed DNS DomainName setting from '' to 'openvpn'
Did not change SMB NetBIOSName setting of ''
Did not change SMB Workgroup setting of ''
Did not change SMB WINSAddresses setting of ''
DNS servers '54.93.169.181 212.71.249.225' will be used for DNS queries when the VPN is active
NOTE: The DNS servers do not include any free public DNS servers known to Tunnelblick. This may cause DNS queries to fail or be intercepted or falsified even if they are directed through the VPN. Specify only known public DNS servers or DNS servers located on the VPN network to avoid such problems.
Flushed the DNS cache via dscacheutil
/usr/sbin/discoveryutil not present. Not flushing the DNS cache via discoveryutil
Notified mDNSResponder that the DNS cache was flushed
Setting up to monitor system configuration with process-network-changes
End of output from client.up.tunnelblick.sh
**********************************************
2017-09-02 07:14:23 /sbin/route add -net 46.36.201.161 192.168.0.1 255.255.255.255
2017-09-02 07:14:23 *Tunnelblick: No 'connected.sh' script to execute
add net 46.36.201.161: gateway 192.168.0.1
2017-09-02 07:14:23 /sbin/route add -net 0.0.0.0 10.8.0.1 128.0.0.0
add net 0.0.0.0: gateway 10.8.0.1
2017-09-02 07:14:23 /sbin/route add -net 128.0.0.0 10.8.0.1 128.0.0.0
add net 128.0.0.0: gateway 10.8.0.1
2017-09-02 07:14:23 Initialization Sequence Completed
2017-09-02 07:14:23 MANAGEMENT: >STATE:1504300463,CONNECTED,SUCCESS,10.8.0.47,46.36.201.161
2017-09-02 07:14:14 VERIFY OK: depth=1, C=SC, ST=Mahe, L=Victoria, O=Global Stealth, Inc., OU=VPN, CN=Global Stealth, Inc. CA, name=serverlocation-key, emailAddress=admin@serverlocation.co
2017-09-02 07:14:14 VERIFY OK: nsCertType=SERVER
2017-09-02 07:14:14 VERIFY OK: depth=0, C=SC, ST=Mahe, L=Victoria, O=Global Stealth, Inc., OU=VPN, CN=*.serverlocation.co, name=serverlocation-key, emailAddress=admin@serverlocation.co