upgrade to TB 3.6.3 --> problem: infinite reconnects

43 views
Skip to first unread message

eric.van...@netboosters.nl

unread,
May 13, 2016, 8:11:11 AM5/13/16
to tunnelblick-discuss

Guys plz help! I was so happy with precious TB releases, very stable and quick. 

Now, after upgrade to TB3.6.3 i cannot connect my MACBook to my Synology @ office anymore.

Symptoms: TB launches, tries to connect, connects, authorizes and kills the connection from the client side (sniffertrace has shown this), TB reconnects, and so on and so on. Infine reconnects.

I tried everything, new installation, installation to the latest beta release, new openvpn server certificate. Nothing helps. Driving me crazy now.

The error i receive in the TB log is listed below. Openvpn still works on my android and tablet to my Synology, however, my MACBook connectivity is gone. I need this! Anyone here that can help?


Client: MACBook pro (2010) with OSX 10.11.4 El Capitan

TB client: TB3.6.4beta04

Synology Diskstation with openvpn server installed and working fine (for other clients)


PS: YES, i have spaces in the C, ST, L and O and OU settings and do not know how to change this. In previous posts I found this might be a cause? Appreciate help on this: how and in which files to change these then?


TB log:

2016-05-13 11:33:34 Fatal TLS error (check_tls_errors_co), restarting

2016-05-13 11:33:34 SIGUSR1[soft,tls-error] received, process restarting

2016-05-13 11:33:34 MANAGEMENT: >STATE:1463132014,RECONNECTING,tls-error,,

2016-05-13 11:33:34 MANAGEMENT: CMD 'hold release'

2016-05-13 11:33:34 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.

2016-05-13 11:33:34 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2016-05-13 11:33:34 Socket Buffers: R=[131072->131072] S=[131072->131072]

2016-05-13 11:33:34 Attempting to establish TCP connection with [AF_INET]<MYIPADRESSREMOVEDHERE>:1194 [nonblock]

2016-05-13 11:33:34 MANAGEMENT: >STATE:1463132014,TCP_CONNECT,,,

2016-05-13 11:33:35 TCP connection established with [AF_INET]<MYIPADRESSREMOVEDHERE>:1194

2016-05-13 11:33:35 TCPv4_CLIENT link local: [undef]

2016-05-13 11:33:35 TCPv4_CLIENT link remote: [AF_INET]<MYIPADRESSREMOVEDHERE>:1194

2016-05-13 11:33:35 MANAGEMENT: >STATE:1463132015,WAIT,,,

2016-05-13 11:33:35 MANAGEMENT: >STATE:1463132015,AUTH,,,

2016-05-13 11:33:35 TLS: Initial packet from [AF_INET]<MYIPADRESSREMOVEDHERE>:1194, sid=688441d7 c846e037

2016-05-13 11:33:35 VERIFY ERROR: depth=0, error=self signed certificate: C=NL, ST=REMOVED, L=REMOVED, O=REMOVED, OU=REMOVED, CN=REMOVED, emailAddress=REMOVED

2016-05-13 11:33:35 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed

2016-05-13 11:33:35 TLS Error: TLS object -> incoming plaintext read error

2016-05-13 11:33:35 TLS Error: TLS handshake failed

2016-05-13 11:33:35 Fatal TLS error (check_tls_errors_co), restarting

2016-05-13 11:33:35 SIGUSR1[soft,tls-error] received, process restarting

2016-05-13 11:33:35 MANAGEMENT: >STATE:1463132015,RECONNECTING,tls-error,,

2016-05-13 11:33:35 *Tunnelblick: Disconnecting; VPN Details… window disconnect button pressed

2016-05-13 11:33:36 *Tunnelblick: No 'pre-disconnect.sh' script to execute

2016-05-13 11:33:36 *Tunnelblick: Disconnecting using 'kill'

2016-05-13 11:33:36 SIGTERM[hard,init_instance] received, process exiting

2016-05-13 11:33:36 MANAGEMENT: >STATE:1463132016,EXITING,init_instance,,

2016-05-13 11:33:36 *Tunnelblick: No 'post-disconnect.sh' script to execute

2016-05-13 11:33:36 *Tunnelblick: Expected disconnection occurred.

jkbull...gmail.com

unread,
May 13, 2016, 8:34:42 AM5/13/16
to tunnelblick-discuss
You didn't post the "Read Before You Post" information (), so it's just a guess, but this is likely to be a problem with either the updated OpenVPN or the updated OpenSSL included in recent versions of Tunnelblick.

I can't help much more other than to suggest that you try Tunnelblick 3.5.9, available on Tunnelblick's Deprecated Downloads page. That uses earlier versions of both OpenVPN and OpenSSL.

Eric Van Der Palen

unread,
May 14, 2016, 6:43:14 AM5/14/16
to tunnelblick-discuss
installation of previous deprecated version 3.5.9 has same effect now. No connectivity...same infinte reconnects. Strange..and annoying. Any other suggestions?

Op vrijdag 13 mei 2016 14:11:11 UTC+2 schreef Eric Van Der Palen:

Jonathan K. Bullard

unread,
May 14, 2016, 6:46:55 AM5/14/16
to tunnelbli...@googlegroups.com
As I wrote earlier:
Knowing what version of Tunnelblick worked for you might help us figure out exactly what the problem is, and I could send you a copy of that program so you could continue to use it while a more permanent solution is found.

The full diagnostic info might help, too.

--
You received this message because you are subscribed to the Google Groups "tunnelblick-discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to tunnelblick-dis...@googlegroups.com.
Visit this group at https://groups.google.com/group/tunnelblick-discuss.
For more options, visit https://groups.google.com/d/optout.

Reply all
Reply to author
Forward
0 new messages