Problem with starting up VPN

1,420 views
Skip to first unread message

Jimid...@live.nl

unread,
Jun 9, 2017, 2:13:09 PM6/9/17
to tunnelblick-discuss
Hi guys,

My name is Jimi and currently i'm trying to get my own VPN on my virtual server. All the steps worked except for the starting the VPN up with the tunnelblick client.

I get these errors:

2017-06-09 19:40:42 OpenSSL: error:0906D06C:PEM routines:PEM_read_bio:no start line
2017-06-09 19:40:42 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib

Tunnelblick: No 'post-disconnect.sh' script to execute

PLUGIN_INIT: POST /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.16-openssl-1.0.2k/openvpn-down-root.so '[/Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.16-openssl-1.0.2k/openvpn-down-root.so] [/Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh] [-9] [-d] [-f] [-m] [-w] [-ptADGNWradsgnw]' intercepted=PLUGIN_UP|PLUGIN_DOWN

I couldn't find any straight forward answer to this problem on the forum regarding this problem. I made the .ovpn file on an ubuntu server and everything worked fine. Untill i sftp'ed the file to my local device to use the vpn server for browsing.

Anyone got a solution? It would be great if someone could help me!

Thanks in advance.

Best Regards,

Jimi


Tunnelblick developer

unread,
Jun 9, 2017, 2:24:08 PM6/9/17
to tunnelblick-discuss
This:

Tunnelblick: No 'post-disconnect.sh' script to execute

is not an error or a problem at all. It just means that your configuration does not have a "post-disconnect.sh' script, which is fine.

Neither is this a problem:

PLUGIN_INIT: POST /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.16-openssl-1.0.2k/openvpn-down-root.so '[/Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.16-openssl-1.0.2k/openvpn-down-root.so] [/Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh] [-9] [-d] [-f] [-m] [-w] [-ptADGNWradsgnw]' intercepted=PLUGIN_UP|PLUGIN_DOWN 

It just means that you are using the "down-root" plugin.

This, however, is an indication of a problem:

2017-06-09 19:40:42 OpenSSL: error:0906D06C:PEM routines:PEM_read_bio:no start line
2017-06-09 19:40:42 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib

These messages show that a certificate wasn't as expected. Why does the certificate have a ".lib" extension? Maybe it was expecting an ASCII certificate and you provided a binary one. In any case, this is really more of an OpenVPN/OpenSSL problem than a Tunnelblick problem. Did you follow the instructions at Setting up your own Certificate Authority (CA) and generating certificates and keys for an OpenVPN server and multiple clients?

Jimid...@live.nl

unread,
Jun 13, 2017, 5:35:40 AM6/13/17
to tunnelblick-discuss
Thank you for your answer! I did follow those steps as far i know.

Will try these steps once more to create a different CA and hopefully this will work.
Will let you know!


Op vrijdag 9 juni 2017 20:24:08 UTC+2 schreef Tunnelblick developer:
Reply all
Reply to author
Forward
0 new messages