Connected, but I can't surf through Internet (it is not a DSN problem)

1,804 views
Skip to first unread message

mum...@gmail.com

unread,
Mar 24, 2015, 8:50:39 AM3/24/15
to tunnelbli...@googlegroups.com
Hi,

I get connected to VPN, but then, I can't access the Internet. I tried acessing a site through IP and it doesn't load too, so it is not a DSN problem.

Any clues?


jkbull...gmail.com

unread,
Mar 24, 2015, 8:53:29 AM3/24/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Please follow the instructions at Read Before You Post to get the info needed to diagnose problems.

mum...@gmail.com

unread,
Mar 24, 2015, 9:11:42 AM3/24/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Hi, thanks

On topic 1 from "Resd Before You Post", I have only some address in gray in left, is this right?

Then, I got the log (connect, tried to surf and disconnected):

2015-03-24 10:07:50 Initialization Sequence Completed
2015-03-24 10:07:51 *Tunnelblick: No 'connected.sh' script to execute
2015-03-24 10:07:56 *Tunnelblick process-network-changes: A system configuration change was ignored
2015-03-24 10:07:56 *Tunnelblick: This computer's apparent public IP address (191.190.180.76) was unchanged after the connection was made
2015-03-24 10:09:31 *Tunnelblick: Disconnecting; VPN Details… window disconnect button pressed
2015-03-24 10:09:31 *Tunnelblick: Disconnecting using 'kill'
2015-03-24 10:09:31 event_wait : Interrupted system call (code=4)
                                        delete net 192.168.30.0: gateway 192.168.30.9
2015-03-24 10:09:31 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init
                                        **********************************************
                                        Start of output from client.down.tunnelblick.sh
                                        Cancelled monitoring of system configuration changes
                                        Restored the DNS and SMB configurations
                                        Flushed the DNS cache via dscacheutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        End of output from client.down.tunnelblick.sh
                                        **********************************************
2015-03-24 10:09:32 SIGTERM[hard,] received, process exiting
2015-03-24 10:09:32 *Tunnelblick: No 'post-disconnect.sh' script to execute
2015-03-24 10:09:32 *Tunnelblick: Expected disconnection occurred

Any clues?

Thanks for your asssistance,
Murilo

jkbull...gmail.com

unread,
Mar 24, 2015, 10:10:30 AM3/24/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
On Tuesday, March 24, 2015 at 9:11:42 AM UTC-4, mum...@gmail.com wrote:
Hi, thanks

On topic 1 from "Resd Before You Post", I have only some address in gray in left, is this right?

Yes, that's OK. It means there were no manual entries.
 
Then, I got the log (connect, tried to surf and disconnected):

Please post the full diagnostic info, not just a tiny bit of one part of it.

mum...@gmail.com

unread,
Mar 24, 2015, 7:59:48 PM3/24/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
OK Thanks

Here is the complete log:

*Tunnelblick: OS X 10.9.2; Tunnelblick 3.4.4 (build 4055.4236); prior version 3.4.3 (build 4055.4198); Admin user

"Sanitized" condensed configuration file for /Library/Application Support/Tunnelblick/Shared/eagle.tblk:

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 1


================================================================================

"Sanitized" full configuration file

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 1



================================================================================

Cannot list unusual files in eagle.tblk; not a private configuration

================================================================================

Configuration preferences:

-routeAllTrafficThroughVpn = 0
-keepConnected = 1
-lastConnectionSucceeded = 1
-tunnelDownSoundName = Speak
-tunnelUpSoundName = Speak

================================================================================

Wildcard preferences:


================================================================================

Program preferences:

placeIconInStandardPositionInStatusBar = 0
launchAtNextLogin = 1
notOKToCheckThatIPAddressDidNotChangeAfterConnection = 0
askedUserIfOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
tunnelblickVersionHistory = (
    "3.4.4 (build 4055.4236)",
    "3.4.3 (build 4055.4198)"
)
lastLaunchTime = 448810043.653636
doNotShowConnectionSubmenus = 0
showConnectedDurations = 0
connectionWindowDisplayCriteria = showWhenConnecting
maxLogDisplaySize = 102400
lastConnectedDisplayName = eagle
installationUID (not shown)
keyboardShortcutIndex = 1
updateCheckAutomatically = 1
updateSendProfileInfo = 1
NSWindow Frame SettingsSheetWindow = 472 224 829 424 0 0 1680 1028
NSWindow Frame ConnectingWindow = 645 647 389 187 0 0 1680 1028
detailsWindowFrameVersion = 4055.4236
detailsWindowFrame = {{473, 502}, {912, 468}}
detailsWindowLeftFrame = {{0, 0}, {164, 350}}
leftNavSelectedDisplayName = eagle
haveDealtWithSparkle1dot5b6 = 1
haveDealtWithOldTunTapPreferences = 1
haveDealtWithOldLoginItem = 1
SUEnableAutomaticChecks = 1
SUFeedURL = https://www.tunnelblick.net/appcast-s.rss
SUScheduledCheckInterval = 86400
SUSendProfileInfo = 1
SULastCheckTime = 2015-03-24 13:48:49 +0000
SULastProfileSubmissionDate = 2015-03-20 19:02:25 +0000
SUHasLaunchedBefore = 1
WebKitDefaultFontSize = 11
WebKitStandardFont = Lucida Grande

================================================================================

Tunnelblick Log:

2015-03-24 20:59:46 *Tunnelblick: OS X 10.9.2; Tunnelblick 3.4.4 (build 4055.4236); prior version 3.4.3 (build 4055.4198)
2015-03-24 20:59:46 *Tunnelblick: Attempting connection with eagle; Set nameserver = 1; monitoring connection
2015-03-24 20:59:46 *Tunnelblick: openvpnstart start eagle.tblk 1337 1 0 3 0 16688 -ptADGNWradsgnw 2.3.6
2015-03-24 20:59:46 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Mar 19 2015
2015-03-24 20:59:46 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
2015-03-24 20:59:46 *Tunnelblick: openvpnstart log:
     Tunnelblick:
     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
    
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SLibrary-SApplication Support-STunnelblick-SShared-Seagle.tblk-SContents-SResources-Sconfig.ovpn.1_0_3_0_16688.1337.openvpn.log
          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --config
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/config.ovpn
          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --management
          127.0.0.1
          1337
          --management-query-passwords
          --management-hold
          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw
          --down

          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw

2015-03-24 20:59:46 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2015-03-24 20:59:46 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2015-03-24 20:59:46 *Tunnelblick: Established communication with OpenVPN
2015-03-24 20:59:46 *Tunnelblick: openvpnstart starting OpenVPN
2015-03-24 20:59:46 UDPv4 link local (bound): [undef]
2015-03-24 20:59:46 UDPv4 link remote: [AF_INET]78.129.158.46:5000
2015-03-24 20:59:51 [server] Peer Connection Initiated with [AF_INET]78.129.158.46:5000
2015-03-24 20:59:53 Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:2: register-dns (2.3.6)
2015-03-24 20:59:53 Opened utun device utun0
2015-03-24 20:59:53 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2015-03-24 20:59:53 /sbin/ifconfig utun0 delete
                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2015-03-24 20:59:53 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2015-03-24 20:59:53 /sbin/ifconfig utun0 192.168.30.10 192.168.30.9 mtu 1500 netmask 255.255.255.255 up
2015-03-24 20:59:53 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init
                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        Retrieved from OpenVPN: name server(s) [ 192.168.30.1 ], search domain(s) [  ] and SMB server(s) [  ] and using default domain name [ openvpn ]
                                        Not aggregating ServerAddresses because running on OS X 10.6 or higher
                                        Setting search domains to 'openvpn' because running under OS X 10.6 or higher and the search domains were not set manually and 'Prepend domain name to search domains' was not selected
                                        Saved the DNS and SMB configurations so they can be restored
                                        Set ServerAddresses to 192.168.30.1
                                        Set SearchDomains   to openvpn
                                        Set DomainName       to openvpn

                                        Flushed the DNS cache via dscacheutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        Setting up to monitor system configuration with process-network-changes
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
                                        add net 192.168.30.0: gateway 192.168.30.9
2015-03-24 20:59:56 *Tunnelblick: No 'connected.sh' script to execute
2015-03-24 20:59:56 Initialization Sequence Completed
2015-03-24 21:00:01 *Tunnelblick process-network-changes: A system configuration change was ignored
2015-03-24 21:00:01 *Tunnelblick: This computer's apparent public IP address (179.159.64.233) was unchanged after the connection was made
2015-03-24 21:00:22 *Tunnelblick: Disconnecting; VPN Details… window disconnect button pressed
2015-03-24 21:00:22 *Tunnelblick: Disconnecting using 'kill'
2015-03-24 21:00:22 event_wait : Interrupted system call (code=4)

                                        delete net 192.168.30.0: gateway 192.168.30.9
2015-03-24 21:00:22 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init

                                        **********************************************
                                        Start of output from client.down.tunnelblick.sh
                                        Cancelled monitoring of system configuration changes
                                        Restored the DNS and SMB configurations
                                        Flushed the DNS cache via dscacheutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        End of output from client.down.tunnelblick.sh
                                        **********************************************
2015-03-24 21:00:22 SIGTERM[hard,] received, process exiting
2015-03-24 21:00:23 *Tunnelblick: No 'post-disconnect.sh' script to execute
2015-03-24 21:00:23 *Tunnelblick: Expected disconnection occurred.

================================================================================

Console Log:


================================================================================

Non-Apple kexts that are loaded:

Index Refs Address            Size       Wired      Name (Version) <Linked Against>

jkbull...gmail.com

unread,
Mar 24, 2015, 10:08:57 PM3/24/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
By default, OpenVPN only sends traffic destined for the VPN through the VPN.

Try setting up to route all IPv4 traffic through the VPN:
  1. Select the configuration(s) you want to apply the change to on the left side of the "VPN Details…" window.
  2. Click the "Advanced" button.
  3. Click the "While Connected" tab.
  4. Make sure there is a check next to "Route all IPv4 traffic through the VPN".

Scrutiny

unread,
Mar 25, 2015, 6:54:49 AM3/25/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Any luck so far?

I face the same issue. Connected but no traffic. 



jkbull...gmail.com

unread,
Mar 25, 2015, 6:59:46 AM3/25/15
to tunnelbli...@googlegroups.com, mum...@gmail.com, bond...@gmail.com
@Scrutiny - If you have the same issue, same advice:
  • Try setting up to route all IPv4 traffic through the VPN.
  • Please follow the instructions at Read Before You Post to get the info needed to diagnose problems.

bond...@gmail.com

unread,
Mar 27, 2015, 3:01:21 AM3/27/15
to tunnelbli...@googlegroups.com, mum...@gmail.com, bond...@gmail.com
Here's my log file:

*Tunnelblick: OS X 10.10.2; Tunnelblick 3.4.4 (build 4055.4236); prior version 3.4.3 (build 4055.4198); Admin user

"Sanitized" condensed configuration file for /Users/kelvinlee/Library/Application Support/Tunnelblick/Configurations/openvpn.tblk:

dev tun
tls-client

remote lappy.synology.me 1194




redirect-gateway



pull

proto udp

script-security 2

ca ca.crt

comp-lzo

reneg-sec 0

auth-user-pass


================================================================================

"Sanitized" full configuration file

dev tun
tls-client

remote lappy.synology.me 1194

# The "float" tells OpenVPN to accept authenticated packets from any address,
# not only the address which was specified in the --remote option.
# This is useful when you are connecting to a peer which holds a dynamic address
# such as a dial-in user or DHCP client.
# (Please refer to the manual of OpenVPN for more information.)

#float

# If redirect-gateway is enabled, the client will redirect it's
# default network gateway through the VPN.
# It means the VPN connection will firstly connect to the VPN Server
# and then to the internet.
# (Please refer to the manual of OpenVPN for more information.)

redirect-gateway

# dhcp-option DNS: To set primary domain name server address.
# Repeat this option to set secondary DNS server addresses.

#dhcp-option DNS DNS_IP_ADDRESS

pull

# If you want to connect by Server's IPv6 address, you should use
# "proto udp6" in UDP mode or "proto tcp6-client" in TCP mode
proto udp

script-security 2

ca ca.crt

comp-lzo

reneg-sec 0

auth-user-pass



================================================================================

There are no unusual files in openvpn.tblk

================================================================================

Configuration preferences:

-routeAllTrafficThroughVpn = 1
-useRouteUpInsteadOfUp = 0
-notOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
-lastConnectionSucceeded = 1
-tunnelDownSoundName = Blow
-tunnelUpSoundName = Submarine

================================================================================

Wildcard preferences:

-notOKToCheckThatIPAddressDidNotChangeAfterConnection = 1

================================================================================

Program preferences:

inhibitOutboundTunneblickTraffic = 1
launchAtNextLogin = 1
menuIconSet = 3.3.TBMenuIcons
notOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
askedUserIfOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
tunnelblickVersionHistory = (
    "3.4.4 (build 4055.4236)",
    "3.4.3 (build 4055.4198)"
)
lastLaunchTime = 449131342.996136
showConnectedDurations = 1
connectionWindowDisplayCriteria = showWhenConnecting
maxLogDisplaySize = 102400
lastConnectedDisplayName = openvpn
installationUID (not shown)
keyboardShortcutIndex = 1
updateCheckAutomatically = 1
updateSendProfileInfo = 0
NSWindow Frame SettingsSheetWindow = 453 162 829 424 0 0 1366 745 
NSWindow Frame ConnectingWindow = 477 364 412 260 0 0 1366 745 
detailsWindowFrameVersion = 4055.4236
detailsWindowFrame = {{224, 240}, {904, 467}}
detailsWindowLeftFrame = {{0, 0}, {165, 350}}
leftNavSelectedDisplayName = openvpn
haveDealtWithSparkle1dot5b6 = 1
haveDealtWithOldTunTapPreferences = 1
haveDealtWithOldLoginItem = 1
SUEnableAutomaticChecks = 0
SUScheduledCheckInterval = 86400
SUSendProfileInfo = 0
SULastCheckTime = 2015-03-27 06:42:22 +0000
SULastProfileSubmissionDate = 2015-03-17 17:03:10 +0000
SUHasLaunchedBefore = 1
WebKitDefaultFontSize = 11
WebKitStandardFont = .Helvetica Neue DeskInterface

================================================================================

Tunnelblick Log:

2015-03-27 14:44:43 *Tunnelblick: OS X 10.10.2; Tunnelblick 3.4.4 (build 4055.4236); prior version 3.4.3 (build 4055.4198)
2015-03-27 14:44:43 *Tunnelblick: Attempting connection with openvpn using shadow copy; Set nameserver = 1; monitoring connection
2015-03-27 14:44:43 *Tunnelblick: openvpnstart start openvpn.tblk 1337 1 0 1 0 17200 -ptADGNWradsgnw 2.3.6
2015-03-27 14:44:44 *Tunnelblick: openvpnstart log:
     Tunnelblick: 
     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
     
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SUsers-Skelvinlee-SLibrary-SApplication Support-STunnelblick-SConfigurations-Sopenvpn.tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_17200.1337.openvpn.log
          --cd
          /Library/Application Support/Tunnelblick/Users/kelvinlee/openvpn.tblk/Contents/Resources
          --config
          /Library/Application Support/Tunnelblick/Users/kelvinlee/openvpn.tblk/Contents/Resources/config.ovpn
          --cd
          /Library/Application Support/Tunnelblick/Users/kelvinlee/openvpn.tblk/Contents/Resources
          --management
          127.0.0.1
          1337
          --management-query-passwords
          --management-hold
          --redirect-gateway
          def1
          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw
          --down
          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw

2015-03-27 14:44:43 *Tunnelblick: openvpnstart starting OpenVPN
2015-03-27 14:44:44 *Tunnelblick: Established communication with OpenVPN
2015-03-27 14:44:44 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Mar 19 2015
2015-03-27 14:44:44 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
2015-03-27 14:44:52 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2015-03-27 14:44:52 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2015-03-27 14:44:54 UDPv4 link local (bound): [undef]
2015-03-27 14:44:54 UDPv4 link remote: [AF_INET]116.86.233.195:1194
2015-03-27 14:44:54 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2015-03-27 14:44:55 [synology.com] Peer Connection Initiated with [AF_INET]116.86.233.195:1194
2015-03-27 14:44:57 Opening utun (connect(AF_SYS_CONTROL)): Resource busy
2015-03-27 14:44:57 Opened utun device utun1
2015-03-27 14:44:57 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2015-03-27 14:44:57 /sbin/ifconfig utun1 delete
                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2015-03-27 14:44:57 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2015-03-27 14:44:57 /sbin/ifconfig utun1 10.8.0.6 10.8.0.5 mtu 1500 netmask 255.255.255.255 up
2015-03-27 14:44:57 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw utun1 1500 1542 10.8.0.6 10.8.0.5 init
                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        No network configuration changes need to be made.
                                        Will NOT monitor for other network configuration changes.
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
                                        add net 116.86.233.195: gateway 10.152.0.1
                                        add net 0.0.0.0: gateway 10.8.0.5
                                        add net 128.0.0.0: gateway 10.8.0.5
                                        add net 10.8.0.0: gateway 10.8.0.5
                                        add net 10.8.0.1: gateway 10.8.0.5
2015-03-27 14:44:59 *Tunnelblick: No 'connected.sh' script to execute
2015-03-27 14:44:59 Initialization Sequence Completed

================================================================================

Console Log:

2015-03-27 14:42:22 Tunnelblick[5132] Using icon set '3.3.TBMenuIcons' without Retina images
2015-03-27 14:42:22 Tunnelblick[5132] Set program update feedURL to https://www.tunnelblick.net/appcast-s.rss
2015-03-27 14:42:40 Tunnelblick[5132] Using icon set '3.3.TBMenuIcons' without Retina images
2015-03-27 14:46:49 Tunnelblick[5132] Using icon set '3.3.TBMenuIcons' without Retina images

jkbull...gmail.com

unread,
Mar 27, 2015, 7:09:08 AM3/27/15
to tunnelbli...@googlegroups.com, mum...@gmail.com, bond...@gmail.com
Try replacing the configuration file's "redirect-gateway", with  "redirect-gateway def1".

Beyond that, you should contact Synology for support for this.

bond...@gmail.com

unread,
Mar 27, 2015, 7:25:52 AM3/27/15
to tunnelbli...@googlegroups.com, mum...@gmail.com, bond...@gmail.com
I solved my problem.

I had to put in a DNS address that points to my router at home.

Apparently i read somewhere that synology sends it's own ip as the DNS which is wrong....so input the internal IP of my router fixed the issue

jkbull...gmail.com

unread,
Mar 27, 2015, 7:41:11 AM3/27/15
to tunnelbli...@googlegroups.com, mum...@gmail.com, bond...@gmail.com
Thanks for sharing your solution.

mum...@gmail.com

unread,
Mar 31, 2015, 2:04:17 AM3/31/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Hello,

After checking "Route all traffic through VPN", I am still not able to surf. I noticed that if I leave it unchecked, only browsers don't work. If I check this option, all my Internet is down (including Skype and others...)

Any clues?

Here is the current log:

2015-03-31 03:01:21 *Tunnelblick: OS X 10.9.2; Tunnelblick 3.4.4 (build 4055.4236); prior version 3.4.3 (build 4055.4198)
2015-03-31 03:01:21 *Tunnelblick: Attempting connection with condor; Set nameserver = 1; monitoring connection
2015-03-31 03:01:21 *Tunnelblick: openvpnstart start condor.tblk 1337 1 0 3 0 17200 -ptADGNWradsgnw 2.3.6
2015-03-31 03:01:22 *Tunnelblick: openvpnstart log:

     Tunnelblick:
     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
    
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SLibrary-SApplication Support-STunnelblick-SShared-Scondor.tblk-SContents-SResources-Sconfig.ovpn.1_0_3_0_17200.1337.openvpn.log
          --cd
          /Library/Application Support/Tunnelblick/Shared/condor.tblk/Contents/Resources
          --config
          /Library/Application Support/Tunnelblick/Shared/condor.tblk/Contents/Resources/config.ovpn
          --cd
          /Library/Application Support/Tunnelblick/Shared/condor.tblk/Contents/Resources

          --management
          127.0.0.1
          1337
          --management-query-passwords
          --management-hold
          --redirect-gateway
          def1
          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw
          --down
          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw

2015-03-31 03:01:21 *Tunnelblick: openvpnstart starting OpenVPN
2015-03-31 03:01:22 *Tunnelblick: Established communication with OpenVPN
2015-03-31 03:01:22 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Mar 19 2015
2015-03-31 03:01:22 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
2015-03-31 03:01:22 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2015-03-31 03:01:22 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2015-03-31 03:01:22 UDPv4 link local (bound): [undef]
2015-03-31 03:01:22 UDPv4 link remote: [AF_INET]78.129.158.46:5000
2015-03-31 03:01:26 [server] Peer Connection Initiated with [AF_INET]78.129.158.46:5000
2015-03-31 03:01:29 Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:2: register-dns (2.3.6)
2015-03-31 03:01:29 Opened utun device utun0
2015-03-31 03:01:29 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2015-03-31 03:01:29 /sbin/ifconfig utun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2015-03-31 03:01:29 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2015-03-31 03:01:29 /sbin/ifconfig utun0 192.168.30.10 192.168.30.9 mtu 1500 netmask 255.255.255.255 up
2015-03-31 03:01:29 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init

                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        Retrieved from OpenVPN: name server(s) [ 192.168.30.1 ], search domain(s) [  ] and SMB server(s) [  ] and using default domain name [ openvpn ]
                                        Not aggregating ServerAddresses because running on OS X 10.6 or higher
                                        Setting search domains to 'openvpn' because running under OS X 10.6 or higher and the search domains were not set manually and 'Prepend domain name to search domains' was not selected
                                        Saved the DNS and SMB configurations so they can be restored
                                        Set ServerAddresses to 192.168.30.1
                                        Set SearchDomains   to openvpn
                                        Set DomainName       to openvpn
                                        Flushed the DNS cache via dscacheutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        Setting up to monitor system configuration with process-network-changes
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
                                        add net 78.129.158.46: gateway 192.168.1.1
                                        add net 0.0.0.0: gateway 192.168.30.9
                                        add net 128.0.0.0: gateway 192.168.30.9

                                        add net 192.168.30.0: gateway 192.168.30.9
2015-03-31 03:01:32 *Tunnelblick: No 'connected.sh' script to execute
2015-03-31 03:01:32 Initialization Sequence Completed
2015-03-31 03:01:37 *Tunnelblick process-network-changes: A system configuration change was ignored
2015-03-31 03:02:37 *Tunnelblick: After 30.0 seconds, gave up trying to fetch IP address information using the ipInfo host's IP address after connecting.


Thank you!







Em terça-feira, 24 de março de 2015 09:50:39 UTC-3, mum...@gmail.com escreveu:

jkbull...gmail.com

unread,
Mar 31, 2015, 7:40:22 AM3/31/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Please follow the instructions at Read Before You Post to get the info needed to diagnose problems.

mum...@gmail.com

unread,
Apr 2, 2015, 12:57:39 AM4/2/15
to tunnelbli...@googlegroups.com, mum...@gmail.com

Yes, I did it. The log is in the previous message

mum...@gmail.com

unread,
Apr 2, 2015, 1:02:03 AM4/2/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
I also get the following popup message after connected:

Jonathan K. Bullard

unread,
Apr 2, 2015, 6:44:59 AM4/2/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
That's the log, not the diagnostic info.

jkbull...gmail.com

unread,
Apr 2, 2015, 6:46:31 AM4/2/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
You did not include the "popup message".

mum...@gmail.com

unread,
Apr 14, 2015, 9:49:22 PM4/14/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Hello,

The popup I see is: "Warning: After connecting to eagle, the Internet does not appear to be reachable. This may mean that your VPN is not configured correctly."

And this is the Diagontic Info:



*Tunnelblick: OS X 10.9.2; Tunnelblick 3.5.0 (build 4265); prior version 3.4.4 (build 4055.4236); Admin user

Configuration eagle


"Sanitized" condensed configuration file for /Library/Application Support/Tunnelblick/Shared/eagle.tblk:

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 1


================================================================================

"Sanitized" full configuration file

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 1



================================================================================

There are no unusual files in eagle.tblk

================================================================================

Configuration preferences:

-routeAllTrafficThroughVpn = 0
-keepConnected = 1
-lastConnectionSucceeded = 1

-tunnelDownSoundName = Speak
-tunnelUpSoundName = Speak

================================================================================

Wildcard preferences:


================================================================================

Program preferences:

placeIconInStandardPositionInStatusBar = 0
launchAtNextLogin = 1
notOKToCheckThatIPAddressDidNotChangeAfterConnection = 0
askedUserIfOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
tunnelblickVersionHistory = (
    "3.5.0 (build 4265)",

    "3.4.4 (build 4055.4236)",
    "3.4.3 (build 4055.4198)"
)
lastLaunchTime = 450103687.351548

doNotShowConnectionSubmenus = 0
showConnectedDurations = 0
connectionWindowDisplayCriteria = showWhenConnecting
maxLogDisplaySize = 102400
lastConnectedDisplayName = eagle

installationUID (not shown)
keyboardShortcutIndex = 1
updateCheckAutomatically = 1
updateSendProfileInfo = 1
NSWindow Frame SettingsSheetWindow = 428 553 829 424 0 0 1680 1028
NSWindow Frame ConnectingWindow = 645 645 389 187 0 0 1680 1028
detailsWindowFrameVersion = 4265
detailsWindowFrame = {{382, 434}, {916, 468}}
detailsWindowLeftFrame = {{0, 0}, {163, 350}}
leftNavSelectedDisplayName = eagle

haveDealtWithSparkle1dot5b6 = 1
haveDealtWithOldTunTapPreferences = 1
haveDealtWithOldLoginItem = 1
SUEnableAutomaticChecks = 1

SUFeedURL = https://www.tunnelblick.net/appcast-s.rss
SUScheduledCheckInterval = 86400
SUSendProfileInfo = 1
SULastCheckTime = 2015-04-14 13:00:22 +0000
SULastProfileSubmissionDate = 2015-04-13 13:00:29 +0000

SUHasLaunchedBefore = 1
WebKitDefaultFontSize = 11
WebKitStandardFont = Lucida Grande

================================================================================

Tunnelblick Log:

2015-04-14 22:47:27 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Apr  3 2015
2015-04-14 22:47:27 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
2015-04-14 22:47:26 *Tunnelblick: OS X 10.9.2; Tunnelblick 3.5.0 (build 4265); prior version 3.4.4 (build 4055.4236)
2015-04-14 22:47:26 *Tunnelblick: Attempting connection with eagle; Set nameserver = 1; monitoring connection
2015-04-14 22:47:26 *Tunnelblick: openvpnstart start eagle.tblk 1337 1 0 3 0 16688 -ptADGNWradsgnw 2.3.6
2015-04-14 22:47:26 *Tunnelblick: openvpnstart starting OpenVPN
2015-04-14 22:47:29 *Tunnelblick: openvpnstart log:

     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
    
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SLibrary-SApplication Support-STunnelblick-SShared-Seagle.tblk-SContents-SResources-Sconfig.ovpn.1_0_3_0_16688.1337.openvpn.log
          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --config
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/config.ovpn
          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --management
          127.0.0.1
          1337
          --management-query-passwords
          --management-hold
          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw
          --down
          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw

2015-04-14 22:47:30 *Tunnelblick: Established communication with OpenVPN
2015-04-14 22:47:30 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2015-04-14 22:47:30 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2015-04-14 22:47:32 UDPv4 link local (bound): [undef]
2015-04-14 22:47:32 UDPv4 link remote: [AF_INET]78.129.158.46:5000
2015-04-14 22:47:36 [server] Peer Connection Initiated with [AF_INET]78.129.158.46:5000
2015-04-14 22:47:38 Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:2: register-dns (2.3.6)
2015-04-14 22:47:38 Opened utun device utun0
2015-04-14 22:47:38 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2015-04-14 22:47:38 /sbin/ifconfig utun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2015-04-14 22:47:39 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2015-04-14 22:47:39 /sbin/ifconfig utun0 192.168.30.10 192.168.30.9 mtu 1500 netmask 255.255.255.255 up
2015-04-14 22:47:39 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init

                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        Retrieved from OpenVPN: name server(s) [ 192.168.30.1 ], search domain(s) [  ] and SMB server(s) [  ] and using default domain name [ openvpn ]
                                        Not aggregating ServerAddresses because running on OS X 10.6 or higher
                                        Setting search domains to 'openvpn' because running under OS X 10.6 or higher and the search domains were not set manually and 'Prepend domain name to search domains' was not selected
                                        Saved the DNS and SMB configurations so they can be restored
                                        Changed DNS ServerAddresses setting from '201.55.232.80 201.55.232.75 201.6.4.116' to '192.168.30.1'
                                        Changed DNS SearchDomains setting from '' to 'openvpn'
                                        Changed DNS DomainName setting from '' to 'openvpn'
                                        Did not change SMB NetBIOSName setting of ''
                                        Did not change SMB Workgroup setting of ''
                                        Did not change SMB WINSAddresses setting of ''
                                        DNS servers '192.168.30.1' will be used for DNS queries when the VPN is active
                                        The DNS servers do not include any free public DNS servers known to Tunnelblick. This may cause DNS queries to fail or be intercepted or falsified even if they are directed through the VPN. Specify only known public DNS servers or DNS servers located on the VPN network to avoid such problems.

                                        Flushed the DNS cache via dscacheutil
                                        /usr/sbin/discoveryutil not present. Not flushing the DNS cache via discoveryutil

                                        Notified mDNSResponder that the DNS cache was flushed
                                        Setting up to monitor system configuration with process-network-changes
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
                                        add net 192.168.30.0: gateway 192.168.30.9
2015-04-14 22:47:44 Initialization Sequence Completed
2015-04-14 22:47:45 *Tunnelblick: No 'connected.sh' script to execute
2015-04-14 22:47:49 *Tunnelblick process-network-changes: A system configuration change was ignored
2015-04-14 22:47:50 *Tunnelblick: This computer's apparent public IP address (191.190.180.76) was unchanged after the connection was made

================================================================================

ifconfig output:

lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384
    options=3<RXCSUM,TXCSUM>
    inet6 ::1 prefixlen 128
    inet 127.0.0.1 netmask 0xff000000
    inet6 fe80::1%lo0 prefixlen 64 scopeid 0x1
    nd6 options=1<PERFORMNUD>
gif0: flags=8010<POINTOPOINT,MULTICAST> mtu 1280
stf0: flags=0<> mtu 1280
en0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
    options=10b<RXCSUM,TXCSUM,VLAN_HWTAGGING,AV>
    ether 40:6c:8f:40:09:3e
    nd6 options=1<PERFORMNUD>
    media: autoselect (none)
    status: inactive
en1: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
    ether 7c:d1:c3:77:72:96
    inet6 fe80::7ed1:c3ff:fe77:7296%en1 prefixlen 64 scopeid 0x5
    inet 192.168.1.102 netmask 0xffffff00 broadcast 192.168.1.255
    nd6 options=1<PERFORMNUD>
    media: autoselect
    status: active
en2: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
    options=60<TSO4,TSO6>
    ether d2:00:10:d2:ef:60
    nd6 options=1<PERFORMNUD>
    media: autoselect <full-duplex>
    status: inactive
fw0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 4078
    lladdr 00:3e:e1:ff:fe:0d:2e:f6
    nd6 options=1<PERFORMNUD>
    media: autoselect <full-duplex>
    status: inactive
p2p0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 2304
    ether 0e:d1:c3:77:72:96
    media: autoselect
    status: inactive
utun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
    inet 192.168.30.10 --> 192.168.30.9 netmask 0xffffffff

================================================================================

Console Log:

2015-04-14 22:47:26 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-14 22:47:26 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-14 22:47:26 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-14 22:47:26 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.800000 seconds...
2015-04-14 22:47:27 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 1.600000 seconds...
2015-04-14 22:47:28 tunnelblickd[37305] Status = 0 from tunnelblick-helper command 'start eagle.tblk 1337 1 0 3 0 16688 -ptADGNWradsgnw 2.3.6'
2015-04-14 22:47:44 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-14 22:47:44 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-14 22:47:44 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-14 22:47:45 tunnelblickd[37305] Status = 0 from tunnelblick-helper command 'connected eagle.tblk 3'
2015-04-14 22:48:39 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-14 22:48:39 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-14 22:48:39 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-14 22:48:39 tunnelblickd[37447] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'
2015-04-14 22:48:47 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-14 22:48:47 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-14 22:48:47 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-14 22:48:47 tunnelblickd[37447] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'


================================================================================

Non-Apple kexts that are loaded:

Index Refs Address            Size       Wired      Name (Version) <Linked Against>
  179    0 0xffffff7f82689000 0x7000     0x7000     com.viscosityvpn.Viscosity.tap (1.0) <7 5 4 1>
  180    0 0xffffff7f82690000 0x7000     0x7000     com.viscosityvpn.Viscosity.tun (1.0) <7 5 4 1>

jkbull...gmail.com

unread,
Apr 15, 2015, 10:19:04 AM4/15/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
One probably minor problem is the following:
2015-04-14 22:47:38 Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:2: register-dns (2.3.6)
which means that the OpenVPN server is pushing a "Windows specific" option, which is not supported by OpenVPN on OS X. Apparently OpenVPN just ignores it.

But I think you should try sending all IPv4 traffic through the VPN:
  1. Click on a configuration in the list on the left
  2. Type Command-A to select all configurations (if you have more than one)
  3. Click on the "Advanced" button. the "Advanced" window will appear
  4. Click on the "While Connected" tab
  5. Put a check to the left of "Route all IPv4 traffic through the VPN"
  6. If you are asked, click "Change for the selected configurations"
  7. Close the "Advanced" window
If that doesn't help, please set the "verb" level to 3 in the configuration file ("verb 1" doesn't provide enough information to help) and get the diagnostic info again.

mum...@gmail.com

unread,
Apr 15, 2015, 8:07:53 PM4/15/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
I really appreciate your help!
Below is the Diagnostic with verb set to 3:




*Tunnelblick: OS X 10.9.2; Tunnelblick 3.5.0 (build 4265); prior version 3.4.4 (build 4055.4236); Admin user

Configuration eagle

"Sanitized" condensed configuration file for /Library/Application Support/Tunnelblick/Shared/eagle.tblk:

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 3



================================================================================

"Sanitized" full configuration file

port 5000
dev tun
remote eagle.ovpn.ntfm.nl
ping 10
ping-restart 20
resolv-retry 86400
tls-client
ca eagle-ca.crt
cert 0B.crt
key 0B.key
comp-lzo
ping-timer-rem
persist-key
persist-tun
pull
verb 3




================================================================================

There are no unusual files in eagle.tblk

================================================================================

Configuration preferences:

-routeAllTrafficThroughVpn = 1
NSWindow Frame ListingWindow = 497 424 500 422 0 0 1680 1028
detailsWindowFrameVersion = 4265
detailsWindowFrame = {{382, 434}, {912, 468}}
detailsWindowLeftFrame = {{0, 0}, {164, 350}}

leftNavSelectedDisplayName = eagle
haveDealtWithSparkle1dot5b6 = 1
haveDealtWithOldTunTapPreferences = 1
haveDealtWithOldLoginItem = 1
SUEnableAutomaticChecks = 1
SUFeedURL = https://www.tunnelblick.net/appcast-s.rss
SUScheduledCheckInterval = 86400
SUSendProfileInfo = 1
SULastCheckTime = 2015-04-15 13:00:15 +0000

SULastProfileSubmissionDate = 2015-04-13 13:00:29 +0000
SUHasLaunchedBefore = 1
WebKitDefaultFontSize = 11
WebKitStandardFont = Lucida Grande

================================================================================

Tunnelblick Log:

2015-04-15 21:05:52 OpenVPN 2.3.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [PKCS11] [MH] [IPv6] built on Apr  3 2015
2015-04-15 21:05:52 library versions: OpenSSL 1.0.1m 19 Mar 2015, LZO 2.08
2015-04-15 21:05:52 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337
2015-04-15 21:05:52 Need hold release from management interface, waiting...
2015-04-15 21:05:51 *Tunnelblick: OS X 10.9.2; Tunnelblick 3.5.0 (build 4265); prior version 3.4.4 (build 4055.4236)
2015-04-15 21:05:51 *Tunnelblick: Attempting connection with eagle; Set nameserver = 1; monitoring connection
2015-04-15 21:05:51 *Tunnelblick: openvpnstart start eagle.tblk 1337 1 0 3 0 17200 -ptADGNWradsgnw 2.3.6
2015-04-15 21:05:54 *Tunnelblick: openvpnstart log:

     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
    
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.6/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SLibrary-SApplication Support-STunnelblick-SShared-Seagle.tblk-SContents-SResources-Sconfig.ovpn.1_0_3_0_17200.1337.openvpn.log

          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --config
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/config.ovpn
          --cd
          /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
          --management
          127.0.0.1
          1337
          --management-query-passwords
          --management-hold
          --redirect-gateway
          def1

          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw
          --down
          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw

2015-04-15 21:05:51 *Tunnelblick: openvpnstart starting OpenVPN
2015-04-15 21:05:54 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1337
2015-04-15 21:05:54 *Tunnelblick: Established communication with OpenVPN
2015-04-15 21:05:54 MANAGEMENT: CMD 'pid'
2015-04-15 21:05:54 MANAGEMENT: CMD 'state on'
2015-04-15 21:05:54 MANAGEMENT: CMD 'state'
2015-04-15 21:05:54 MANAGEMENT: CMD 'bytecount 1'
2015-04-15 21:05:54 MANAGEMENT: CMD 'hold release'
2015-04-15 21:05:54 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2015-04-15 21:05:54 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2015-04-15 21:05:54 Socket Buffers: R=[196724->65536] S=[9216->65536]
2015-04-15 21:05:54 MANAGEMENT: >STATE:1429142754,RESOLVE,,,
2015-04-15 21:05:54 UDPv4 link local (bound): [undef]
2015-04-15 21:05:54 UDPv4 link remote: [AF_INET]78.129.158.46:5000
2015-04-15 21:05:54 MANAGEMENT: >STATE:1429142754,WAIT,,,
2015-04-15 21:05:54 MANAGEMENT: >STATE:1429142754,AUTH,,,
2015-04-15 21:05:54 TLS: Initial packet from [AF_INET]78.129.158.46:5000, sid=732b4ac2 f92a1211
2015-04-15 21:05:56 VERIFY OK: depth=1, C=CR, ST=SJ, L=San Jose, O=eagle Company, OU=server, CN=server, emailAddress=hostm...@hidden.nl
2015-04-15 21:05:56 VERIFY OK: depth=0, C=CR, ST=SJ, O=eagle Company, OU=server, CN=server, emailAddress=hostm...@hidden.nl
2015-04-15 21:06:00 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
2015-04-15 21:06:00 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
2015-04-15 21:06:00 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
2015-04-15 21:06:00 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
2015-04-15 21:06:00 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
2015-04-15 21:06:00 [server] Peer Connection Initiated with [AF_INET]78.129.158.46:5000
2015-04-15 21:06:01 MANAGEMENT: >STATE:1429142761,GET_CONFIG,,,
2015-04-15 21:06:02 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2015-04-15 21:06:03 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.168.30.1,register-dns,route 192.168.30.0 255.255.255.0,ping 10,ping-restart 120,ifconfig 192.168.30.10 192.168.30.9'
2015-04-15 21:06:03 Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:2: register-dns (2.3.6)
2015-04-15 21:06:03 OPTIONS IMPORT: timers and/or timeouts modified
2015-04-15 21:06:03 OPTIONS IMPORT: --ifconfig/up options modified
2015-04-15 21:06:03 OPTIONS IMPORT: route options modified
2015-04-15 21:06:03 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2015-04-15 21:06:03 Opened utun device utun0
2015-04-15 21:06:03 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
2015-04-15 21:06:03 MANAGEMENT: >STATE:1429142763,ASSIGN_IP,,192.168.30.10,
2015-04-15 21:06:03 /sbin/ifconfig utun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2015-04-15 21:06:03 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2015-04-15 21:06:03 /sbin/ifconfig utun0 192.168.30.10 192.168.30.9 mtu 1500 netmask 255.255.255.255 up
2015-04-15 21:06:03 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -d -f -m -w -ptADGNWradsgnw utun0 1500 1542 192.168.30.10 192.168.30.9 init

                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        Retrieved from OpenVPN: name server(s) [ 192.168.30.1 ], search domain(s) [  ] and SMB server(s) [  ] and using default domain name [ openvpn ]
                                        Not aggregating ServerAddresses because running on OS X 10.6 or higher
                                        Setting search domains to 'openvpn' because running under OS X 10.6 or higher and the search domains were not set manually and 'Prepend domain name to search domains' was not selected
                                        Saved the DNS and SMB configurations so they can be restored
                                        Changed DNS ServerAddresses setting from '201.55.232.80 201.55.232.75 201.6.4.116' to '192.168.30.1'
                                        Changed DNS SearchDomains setting from '' to 'openvpn'
                                        Changed DNS DomainName setting from '' to 'openvpn'
                                        Did not change SMB NetBIOSName setting of ''
                                        Did not change SMB Workgroup setting of ''
                                        Did not change SMB WINSAddresses setting of ''
                                        DNS servers '192.168.30.1' will be used for DNS queries when the VPN is active
                                        The DNS servers do not include any free public DNS servers known to Tunnelblick. This may cause DNS queries to fail or be intercepted or falsified even if they are directed through the VPN. Specify only known public DNS servers or DNS servers located on the VPN network to avoid such problems.
                                        Flushed the DNS cache via dscacheutil
                                        /usr/sbin/discoveryutil not present. Not flushing the DNS cache via discoveryutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        Setting up to monitor system configuration with process-network-changes
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
2015-04-15 21:06:06 /sbin/route add -net 78.129.158.46 192.168.1.1 255.255.255.255

                                        add net 78.129.158.46: gateway 192.168.1.1
2015-04-15 21:06:06 /sbin/route add -net 0.0.0.0 192.168.30.9 128.0.0.0

                                        add net 0.0.0.0: gateway 192.168.30.9
2015-04-15 21:06:06 /sbin/route add -net 128.0.0.0 192.168.30.9 128.0.0.0

                                        add net 128.0.0.0: gateway 192.168.30.9
2015-04-15 21:06:07 *Tunnelblick: No 'connected.sh' script to execute
2015-04-15 21:06:07 MANAGEMENT: >STATE:1429142767,ADD_ROUTES,,,
2015-04-15 21:06:07 /sbin/route add -net 192.168.30.0 192.168.30.9 255.255.255.0

                                        add net 192.168.30.0: gateway 192.168.30.9
2015-04-15 21:06:07 Initialization Sequence Completed
2015-04-15 21:06:07 MANAGEMENT: >STATE:1429142767,CONNECTED,SUCCESS,192.168.30.10,78.129.158.46
2015-04-15 21:06:12 *Tunnelblick process-network-changes: A system configuration change was ignored
2015-04-15 21:00:04 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:00:04 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:00:05 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:00:05 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.800000 seconds...
2015-04-15 21:00:05 tunnelblickd[39452] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'
2015-04-15 21:00:39 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:00:40 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:00:40 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:00:40 tunnelblickd[39457] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'
2015-04-15 21:01:59 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:01:59 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:01:59 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:02:00 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.800000 seconds...
2015-04-15 21:02:01 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 1.600000 seconds...
2015-04-15 21:02:01 tunnelblickd[39469] Status = 0 from tunnelblick-helper command 'start eagle.tblk 1337 1 0 3 0 17200 -ptADGNWradsgnw 2.3.6'
2015-04-15 21:02:25 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:02:25 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:02:25 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:02:26 tunnelblickd[39469] Status = 0 from tunnelblick-helper command 'connected eagle.tblk 3'
2015-04-15 21:02:30 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:02:30 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:02:30 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:02:30 tunnelblickd[39469] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'
2015-04-15 21:03:04 Tunnelblick[25804] currentIPInfo(Name): IP address info could not be fetched within 1073741824.0 seconds; the error was 'Error Domain=NSURLErrorDomain Code=-1009 "The Internet connection appears to be offline." UserInfo=0x3c98a0 {NSErrorFailingURLStringKey=https://www.tunnelblick.net/ipinfo, NSErrorFailingURLKey=https://www.tunnelblick.net/ipinfo, NSLocalizedDescription=The Internet connection appears to be offline., NSUnderlyingError=0x269b340 "The Internet connection appears to be offline."}'; the response was '(null)'
2015-04-15 21:03:39 Tunnelblick[25804] currentIPInfo(Address): IP address info could not be fetched within 16.0 seconds; the error was 'Error Domain=NSURLErrorDomain Code=-1001 "The request timed out." UserInfo=0x2673a60 {NSErrorFailingURLStringKey=http://205.233.73.116/ipinfo, NSErrorFailingURLKey=http://205.233.73.116/ipinfo, NSLocalizedDescription=The request timed out., NSUnderlyingError=0x2608a90 "The request timed out."}'; the response was '(null)'
2015-04-15 21:03:56 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:03:56 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:03:56 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:03:56 tunnelblickd[39620] Status = 0 from tunnelblick-helper command 'kill 39473'
2015-04-15 21:03:58 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:03:58 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:03:58 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:03:58 tunnelblickd[39620] Status = 0 from tunnelblick-helper command 'postDisconnect eagle.tblk 3'
2015-04-15 21:05:37 Tunnelblick[25804] Converting/Installing /Users/murilomazza/Downloads/eagle.ovpn at line 8: Copied eagle-ca.crt
2015-04-15 21:05:37 Tunnelblick[25804] Changed permissions from 755 to 740 on /private/var/folders/f8/kgm86fp93wxc12d3dwnvktrc0000gn/T/Tunnelblick-VBnPbO/eagle.tblk/Contents/Resources/eagle-ca.crt
2015-04-15 21:05:37 Tunnelblick[25804] Converting/Installing /Users/murilomazza/Downloads/eagle.ovpn at line 9: Copied 0B.crt
2015-04-15 21:05:37 Tunnelblick[25804] Changed permissions from 755 to 740 on /private/var/folders/f8/kgm86fp93wxc12d3dwnvktrc0000gn/T/Tunnelblick-VBnPbO/eagle.tblk/Contents/Resources/0B.crt
2015-04-15 21:05:37 Tunnelblick[25804] Converting/Installing /Users/murilomazza/Downloads/eagle.ovpn at line 10: Copied 0B.key
2015-04-15 21:05:37 Tunnelblick[25804] Changed permissions from 755 to 740 on /private/var/folders/f8/kgm86fp93wxc12d3dwnvktrc0000gn/T/Tunnelblick-VBnPbO/eagle.tblk/Contents/Resources/0B.key
2015-04-15 21:05:37 Tunnelblick[25804] Converting/Installing /Users/murilomazza/Downloads/eagle.ovpn: Converted OpenVPN configuration
2015-04-15 21:05:39 Tunnelblick[25804] Beginning installation or repair
2015-04-15 21:05:44 authexec[39730] executing /Applications/Tunnelblick.app/Contents/Resources/installer
2015-04-15 21:05:46 Tunnelblick[25804] Installation or repair succeeded; Log:
                                       Tunnelblick installer started 2015-04-15 21:05:44. 3 arguments: 0x0001
                                            /Library/Application Support/Tunnelblick/Shared/eagle.tblk
                                            /private/var/folders/f8/kgm86fp93wxc12d3dwnvktrc0000gn/T/Tunnelblick-VBnPbO/eagle.tblk
                                       Copied /private/var/folders/f8/kgm86fp93wxc12d3dwnvktrc0000gn/T/Tunnelblick-VBnPbO/eagle.tblk
                                           to /Library/Application Support/Tunnelblick/Shared/eagle.tblk.temp
                                       Renamed /Library/Application Support/Tunnelblick/Shared/eagle.tblk.temp
                                            to /Library/Application Support/Tunnelblick/Shared/eagle.tblk
                                       Changed ownership of /Library/Application Support/Tunnelblick/Shared/eagle.tblk and its contents from 501:20 to 0:0
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources
                                       Changed permissions from 740 to 700 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/0B.crt
                                       Changed permissions from 740 to 700 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/0B.key
                                       Changed permissions from 740 to 700 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/eagle-ca.crt
                                       Changed permissions from 740 to 700 on /Library/Application Support/Tunnelblick/Shared/eagle.tblk/Contents/Resources/config.ovpn
                                       Tunnelblick installer finished without error
2015-04-15 21:05:51 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:05:51 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:05:51 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:05:51 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.800000 seconds...
2015-04-15 21:05:52 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 1.600000 seconds...
2015-04-15 21:05:52 tunnelblickd[39738] Status = 0 from tunnelblick-helper command 'start eagle.tblk 1337 1 0 3 0 17200 -ptADGNWradsgnw 2.3.6'
2015-04-15 21:05:59 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:05:59 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:06:00 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:06:00 tunnelblickd[39738] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'
2015-04-15 21:06:07 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:06:07 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:06:07 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:06:07 tunnelblickd[39738] Status = 0 from tunnelblick-helper command 'connected eagle.tblk 3'
2015-04-15 21:06:20 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.100000 seconds...
2015-04-15 21:06:20 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.200000 seconds...
2015-04-15 21:06:20 Tunnelblick[25804] runTunnelblickd: no data available from tunnelblickd socket; sleeping 0.400000 seconds...
2015-04-15 21:06:20 tunnelblickd[39738] Status = 0 from tunnelblick-helper command 'printSanitizedConfigurationFile eagle.tblk 3'


================================================================================

Non-Apple kexts that are loaded:

Index Refs Address            Size       Wired      Name (Version) <Linked Against>
  179    0 0xffffff7f82689000 0x7000     0x7000     com.viscosityvpn.Viscosity.tap (1.0) <7 5 4 1>
  180    0 0xffffff7f82690000 0x7000     0x7000     com.viscosityvpn.Viscosity.tun (1.0) <7 5 4 1>



Thank you!

mum...@gmail.com

unread,
Apr 17, 2015, 1:03:53 AM4/17/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Anything strange detected in the last diagnostic?




Em terça-feira, 24 de março de 2015 09:50:39 UTC-3, mum...@gmail.com escreveu:

jkbull...gmail.com

unread,
Apr 17, 2015, 5:11:50 AM4/17/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Try it with "Set DNS after routes are set instead of before routes are set" on the "Advanced" settings page.

Also, I noticed that you have two Viscosity kexts loaded, so I assume you have Viscosity installed. I don't think that should be a problem, but it might be a good idea to remove them and see if that helps. I assume that uninstalling Viscosity would take care of that.

Or, you could try to connect Viscosity. If the VPN works under Viscosity it would help to have the log from that (working) connection. If it doesn't work, you could ask them for help; perhaps they'll see something I don't.

mum...@gmail.com

unread,
Apr 17, 2015, 2:19:11 PM4/17/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
The option "Set DNS after routes are set instead of before routes are set" also didn't work.

I installed Viscosity in the past because I wasn't able to solve the problem in Tunnelblick, but I get the same results with it as well. So it shouldn't be a problem I guess, I just get the same results with it. Should this Connection issue be something in my machine (instead of Tunnelblick and Viscosity clients)? Not sure why... I use Mac OS X 10.9.2. At home, this is the single machine connected to the modem & router.


jkbull...gmail.com

unread,
Apr 17, 2015, 2:23:24 PM4/17/15
to tunnelbli...@googlegroups.com, mum...@gmail.com
Not working with Viscosity is an important clue. (Perhaps you mentioned it earlier and I missed it.)

It probably means that your OpenVPN server is not getting out to the Internet or is misconfigured in some way. That's an OpenVPN configuration issue I can't help with. You might want to try some OpenVPN experts:
Reply all
Reply to author
Forward
0 new messages