Internet not working - vpn is connected

256 views
Skip to first unread message

Mohammad Usaid Abbasi

unread,
Oct 9, 2018, 5:05:08 PM10/9/18
to tunnelblick-discuss
Hi
I am trying to connect to the vpn of my workplace. tunnelblick is showing successful connection, but internet isnt working. Also, it is coming with following warning:

'After connecting to ic, DNS does not appear to be working. This may mean that your VPN is not configured correctly'

My VPN used to be fine. I checked 1month ago and everything was fine. Not sure if this is happening after I updated the tunnelblick today. Also tried beta version, that isnt working either. 

Can you please help? 




**************************************************************************************************

*Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.8beta01 (build 5160); prior version 3.7.7 (build 5150); Admin user
git commit fc572c89d58d4ad4b515f37a14639c03b609bd35


Configuration ic

"Sanitized" condensed configuration file for /Library/Application Support/Tunnelblick/Shared/ic.tblk:

port 1194
proto udp
setenv CLIENT_CERT 0
dev tun
client
auth-user-pass
keepalive 10 60
<ca>
[Security-related line(s) omitted]
</ca>


================================================================================

Non-Apple kexts that are loaded:

Index Refs Address            Size       Wired      Name (Version) UUID <Linked Against>

================================================================================

Files in ic.tblk:
      Contents/Resources/config.ovpn

================================================================================

Configuration preferences:

useDNS = 1
-resetPrimaryInterfaceAfterDisconnect = 0
-routeAllTrafficThroughVpn = 1
-keychainHasUsernameAndPassword = 1
-openvpnVersion = 2.4.6-openssl-1.1.1
-notOKToCheckThatIPAddressDidNotChangeAfterConnection = 0
-loggingLevel = 3
-lastConnectionSucceeded = 1

================================================================================

Wildcard preferences:


================================================================================

Program preferences:

launchAtNextLogin = 1
notOKToCheckThatIPAddressDidNotChangeAfterConnection = 0
tunnelblickVersionHistory = (
    "3.7.8beta01 (build 5160)",
    "3.7.7 (build 5150)",
    "3.7.6a (build 5080)",
    "3.7.5a (build 5011)",
    "3.7.5 (build 5010)",
    "3.7.4b (build 4921)",
    "3.7.4a (build 4920)",
    "3.7.4 (build 4900)",
    "3.7.3 (build 4880)",
    "3.7.2a (build 4851)"
)
statusDisplayNumber = 0
lastLaunchTime = 560811306.4283
lastLanguageAtLaunchWasRTL = 0
connectionWindowDisplayCriteria = showWhenConnecting
maxLogDisplaySize = 102400
lastConnectedDisplayName = ic
keyboardShortcutIndex = 1
updateCheckAutomatically = 1
NSWindow Frame ConnectingWindow = 525 538 389 187 0 0 1440 877 
NSWindow Frame SUStatusFrame = 701 539 400 129 0 0 1440 877 
NSWindow Frame SUUpdateAlert = 410 384 620 392 0 0 1440 877 
detailsWindowFrameVersion = 5150
detailsWindowFrame = {{260, 327}, {920, 468}}
detailsWindowLeftFrame = {{0, 0}, {165, 350}}
detailsWindowViewIndex = 0
detailsWindowConfigurationsTabIdentifier = settings
leftNavSelectedDisplayName = ic
AdvancedWindowTabIdentifier = connectingAndDisconnecting
haveDealtWithOldTunTapPreferences = 1
haveDealtWithOldLoginItem = 1
haveDealtWithAfterDisconnect = 1
SUEnableAutomaticChecks = 1
SUScheduledCheckInterval = 86400
SUSendProfileInfo = 1
SULastCheckTime = 2018-10-09 20:55:06 +0000
SULastProfileSubmissionDate = 2018-10-09 20:00:38 +0000
SUHasLaunchedBefore = 1
WebKitDefaultFontSize = 16
WebKitStandardFont = Times
userAgreementVersionAgreedTo = 1
askedUserIfOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
haveDealtWithSparkle1dot5b6 = 1
updateSendProfileInfo = 1

================================================================================

Tunnelblick Log:

*Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.8beta01 (build 5160); prior version 3.7.7 (build 5150)
2018-10-09 21:59:57 *Tunnelblick: Attempting connection with ic; Set nameserver = 769; monitoring connection
2018-10-09 21:59:57 *Tunnelblick: openvpnstart start ic.tblk 55079 769 0 3 0 1065776 -ptADGNWradsgnw 2.4.6-openssl-1.1.1
2018-10-09 21:59:57 *Tunnelblick: openvpnstart log:
     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):
     
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.4.6-openssl-1.1.1/openvpn
          --daemon
          --log
          /Library/Application Support/Tunnelblick/Logs/-SLibrary-SApplication Support-STunnelblick-SShared-Sic.tblk-SContents-SResources-Sconfig.ovpn.769_0_3_0_1065776.55079.openvpn.log
          --cd
          /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents/Resources
          --setenv
          IV_GUI_VER
          "net.tunnelblick.tunnelblick 5160 3.7.8beta01 (build 5160)"
          --verb
          3
          --config
          /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents/Resources/config.ovpn
          --verb
          3
          --cd
          /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents/Resources
          --management
          127.0.0.1
          55079
          /Library/Application Support/Tunnelblick/anlgigojcmekfggmlclnkdcgdkjfhbolgcjmimmd.mip
          --management-query-passwords
          --management-hold
          --redirect-gateway
          def1
          --script-security
          2
          --up
          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw
          --down
          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw

2018-10-09 21:59:57 *Tunnelblick: openvpnstart starting OpenVPN
2018-10-09 21:59:57 *Tunnelblick: Established communication with OpenVPN
2018-10-09 21:59:57 >INFO:OpenVPN Management Interface Version 1 -- type 'help' for more info
2018-10-09 21:59:57 OpenVPN 2.4.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [LZ4] [MH/RECVDA] [AEAD] built on Sep 29 2018
2018-10-09 21:59:57 library versions: OpenSSL 1.1.1  11 Sep 2018, LZO 2.10
2018-10-09 21:59:57 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:55079
2018-10-09 21:59:57 Need hold release from management interface, waiting...
2018-10-09 21:59:57 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:55079
2018-10-09 21:59:57 MANAGEMENT: CMD 'pid'
2018-10-09 21:59:57 MANAGEMENT: CMD 'auth-retry interact'
2018-10-09 21:59:57 MANAGEMENT: CMD 'state on'
2018-10-09 21:59:57 MANAGEMENT: CMD 'state'
2018-10-09 21:59:57 MANAGEMENT: CMD 'bytecount 1'
2018-10-09 21:59:57 MANAGEMENT: CMD 'hold release'
2018-10-09 21:59:58 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-10-09 21:59:58 MANAGEMENT: CMD 'username "Auth" "mua09"'
2018-10-09 21:59:58 MANAGEMENT: CMD 'password [...]'
2018-10-09 21:59:58 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
2018-10-09 21:59:58 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2018-10-09 21:59:58 MANAGEMENT: >STATE:1539118798,RESOLVE,,,,,,
2018-10-09 21:59:58 TCP/UDP: Preserving recently used remote address: [AF_INET]193.61.68.226:1194
2018-10-09 21:59:58 Socket Buffers: R=[196724->196724] S=[9216->9216]
2018-10-09 21:59:58 UDP link local (bound): [AF_INET][undef]:1194
2018-10-09 21:59:58 UDP link remote: [AF_INET]193.61.68.226:1194
2018-10-09 21:59:58 MANAGEMENT: >STATE:1539118798,WAIT,,,,,,
2018-10-09 21:59:58 MANAGEMENT: >STATE:1539118798,AUTH,,,,,,
2018-10-09 21:59:58 TLS: Initial packet from [AF_INET]193.61.68.226:1194, sid=ff56ffb7 c6afc3b8
2018-10-09 21:59:58 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2018-10-09 21:59:58 VERIFY OK: depth=0, C=GB, ST=London, L=London, O=Imperial College London, OU=ICT, CN=opn.ic.ac.uk, emailAddress=
2018-10-09 21:59:58 Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
2018-10-09 21:59:58 [openvpn.ic.ac.uk] Peer Connection Initiated with [AF_INET]193.61.68.226:1194
2018-10-09 21:59:59 MANAGEMENT: >STATE:1539118799,GET_CONFIG,,,,,,
2018-10-09 21:59:59 SENT CONTROL [openvpn.ic.ac.uk]: 'PUSH_REQUEST' (status=1)
2018-10-09 21:59:59 PUSH: Received control message: 'PUSH_REPLY,topology subnet,tun-ipv6,route-ipv6 2001:630:12::/48,route-ipv6 2a0c:5bc0::/40,route 155.198.0.0 255.255.0.0,route 129.31.0.0 255.255.0.0,route 146.169.0.0 255.255.0.0,route 146.179.0.0 255.255.0.0,route 172.16.0.0 255.240.0.0,route-gateway 129.31.250.1,ping 10,ping-restart 60,ifconfig-ipv6 2001:630:12:2ffe::250:18/64 2001:630:12:2ffe::1,ifconfig 129.31.250.18 255.255.255.0,peer-id 7,cipher AES-256-GCM'
2018-10-09 21:59:59 OPTIONS IMPORT: timers and/or timeouts modified
2018-10-09 21:59:59 OPTIONS IMPORT: --ifconfig/up options modified
2018-10-09 21:59:59 OPTIONS IMPORT: route options modified
2018-10-09 21:59:59 OPTIONS IMPORT: route-related options modified
2018-10-09 21:59:59 OPTIONS IMPORT: peer-id set
2018-10-09 21:59:59 OPTIONS IMPORT: adjusting link_mtu to 1624
2018-10-09 21:59:59 OPTIONS IMPORT: data channel crypto options modified
2018-10-09 21:59:59 Data Channel: using negotiated cipher 'AES-256-GCM'
2018-10-09 21:59:59 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2018-10-09 21:59:59 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2018-10-09 21:59:59 GDG6: remote_host_ipv6=n/a
2018-10-09 21:59:59 GDG6: problem writing to routing socket
2018-10-09 21:59:59 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-10-09 21:59:59 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-10-09 21:59:59 Opened utun device utun2
2018-10-09 21:59:59 do_ifconfig, tt->did_ifconfig_ipv6_setup=1
2018-10-09 21:59:59 MANAGEMENT: >STATE:1539118799,ASSIGN_IP,,129.31.250.18,,,,,2001:630:12:2ffe::250:18
2018-10-09 21:59:59 /sbin/ifconfig utun2 delete
                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-10-09 21:59:59 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-10-09 21:59:59 /sbin/ifconfig utun2 129.31.250.18 129.31.250.18 netmask 255.255.255.0 mtu 1500 up
2018-10-09 21:59:59 /sbin/route add -net 129.31.250.0 129.31.250.18 255.255.255.0
                                        add net 129.31.250.0: gateway 129.31.250.18
2018-10-09 21:59:59 /sbin/ifconfig utun2 inet6 2001:630:12:2ffe::250:18/64
2018-10-09 21:59:59 add_route_ipv6(2001:630:12:2ffe::/64 -> 2001:630:12:2ffe::250:18 metric 0) dev utun2
2018-10-09 21:59:59 /sbin/route add -inet6 2001:630:12:2ffe:: -prefixlen 64 -iface utun2
                                        route: writing to routing socket: File exists
                                        add net 2001:630:12:2ffe::: gateway utun2: File exists
2018-10-09 21:59:59 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -9 -d -f -m -w -ptADGNWradsgnw utun2 1500 1552 129.31.250.18 255.255.255.0 init
                                        **********************************************
                                        Start of output from client.up.tunnelblick.sh
                                        NOTE: No network configuration changes need to be made.
                                        WARNING: Will NOT monitor for other network configuration changes.
                                        WARNING: Will NOT disable IPv6 settings.
                                        DNS servers '194.168.4.100 194.168.8.100' will be used for DNS queries when the VPN is active
                                        NOTE: The DNS servers do not include any free public DNS servers known to Tunnelblick. This may cause DNS queries to fail or be intercepted or falsified even if they are directed through the VPN. Specify only known public DNS servers or DNS servers located on the VPN network to avoid such problems.
                                        Flushed the DNS cache via dscacheutil
                                        /usr/sbin/discoveryutil not present. Not flushing the DNS cache via discoveryutil
                                        Notified mDNSResponder that the DNS cache was flushed
                                        End of output from client.up.tunnelblick.sh
                                        **********************************************
2018-10-09 22:00:01 *Tunnelblick: No 'connected.sh' script to execute
2018-10-09 22:00:01 /sbin/route add -net 193.61.68.226 192.168.0.1 255.255.255.255
                                        add net 193.61.68.226: gateway 192.168.0.1
2018-10-09 22:00:01 /sbin/route add -net 0.0.0.0 129.31.250.1 128.0.0.0
                                        add net 0.0.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 /sbin/route add -net 128.0.0.0 129.31.250.1 128.0.0.0
                                        add net 128.0.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 MANAGEMENT: >STATE:1539118801,ADD_ROUTES,,,,,,
2018-10-09 22:00:01 /sbin/route add -net 155.198.0.0 129.31.250.1 255.255.0.0
                                        add net 155.198.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 /sbin/route add -net 129.31.0.0 129.31.250.1 255.255.0.0
                                        add net 129.31.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 /sbin/route add -net 146.169.0.0 129.31.250.1 255.255.0.0
                                        add net 146.169.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 /sbin/route add -net 146.179.0.0 129.31.250.1 255.255.0.0
                                        add net 146.179.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 /sbin/route add -net 172.16.0.0 129.31.250.1 255.240.0.0
                                        add net 172.16.0.0: gateway 129.31.250.1
2018-10-09 22:00:01 add_route_ipv6(2001:630:12::/48 -> 2001:630:12:2ffe::1 metric -1) dev utun2
2018-10-09 22:00:01 /sbin/route add -inet6 2001:630:12:: -prefixlen 48 -iface utun2
                                        add net 2001:630:12::: gateway utun2
2018-10-09 22:00:01 add_route_ipv6(2a0c:5bc0::/40 -> 2001:630:12:2ffe::1 metric -1) dev utun2
2018-10-09 22:00:01 /sbin/route add -inet6 2a0c:5bc0:: -prefixlen 40 -iface utun2
                                        add net 2a0c:5bc0::: gateway utun2
2018-10-09 22:00:01 Initialization Sequence Completed
2018-10-09 22:00:01 MANAGEMENT: >STATE:1539118801,CONNECTED,SUCCESS,129.31.250.18,193.61.68.226,1194,,,2001:630:12:2ffe::250:18
2018-10-09 22:00:01 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:06 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:07 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:08 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:09 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:20 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:30 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:40 TLS Error: local/remote TLS keys are out of sync: [AF_INET]193.61.68.243:1194 [0]
2018-10-09 22:00:41 *Tunnelblick: After 30.0 seconds, gave up trying to fetch IP address information using the ipInfo host's name after connecting.

================================================================================

"Sanitized" full configuration file

remote open*****c.uk
port 1194
proto udp

# needed for iOS client to use username/pass
setenv CLIENT_CERT 0

dev tun
client
auth-user-pass
keepalive 10 60
<ca>
 [Security-related line(s) omitted]
</ca>



================================================================================

ifconfig output:

lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384
options=1203<RXCSUM,TXCSUM,TXSTATUS,SW_TIMESTAMP>
inet 127.0.0.1 netmask 0xff000000 
inet6 ::1 prefixlen 128 
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x1 
nd6 options=201<PERFORMNUD,DAD>
gif0: flags=8010<POINTOPOINT,MULTICAST> mtu 1280
stf0: flags=0<> mtu 1280
XHC20: flags=0<> mtu 0
en0: flags=8823<UP,BROADCAST,SMART,SIMPLEX,MULTICAST> mtu 1500
ether 6c:40:08:99:a3:00 
nd6 options=201<PERFORMNUD,DAD>
media: autoselect (<unknown type>)
status: inactive
p2p0: flags=8802<BROADCAST,SIMPLEX,MULTICAST> mtu 2304
ether 0e:40:08:99:a3:00 
media: autoselect
status: inactive
awdl0: flags=8902<BROADCAST,PROMISC,SIMPLEX,MULTICAST> mtu 1484
ether de:57:0c:3e:85:fa 
nd6 options=201<PERFORMNUD,DAD>
media: autoselect
status: inactive
en1: flags=8963<UP,BROADCAST,SMART,RUNNING,PROMISC,SIMPLEX,MULTICAST> mtu 1500
options=60<TSO4,TSO6>
ether 72:00:06:0f:d2:40 
media: autoselect <full-duplex>
status: inactive
en2: flags=8963<UP,BROADCAST,SMART,RUNNING,PROMISC,SIMPLEX,MULTICAST> mtu 1500
options=60<TSO4,TSO6>
ether 72:00:06:0f:d2:41 
media: autoselect <full-duplex>
status: inactive
bridge0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
options=3<RXCSUM,TXCSUM>
ether 0c:4d:e9:be:e9:07 
inet6 fe80::18bd:9826:4379:1ec4%bridge0 prefixlen 64 secured scopeid 0xb 
inet 192.168.0.10 netmask 0xffffff00 broadcast 192.168.0.255
Configuration:
id 0:0:0:0:0:0 priority 0 hellotime 0 fwddelay 0
maxage 0 holdcnt 0 proto stp maxaddr 100 timeout 1200
root id 0:0:0:0:0:0 priority 0 ifcost 0 port 0
ipfilter disabled flags 0x2
member: en3 flags=3<LEARNING,DISCOVER>
        ifmaxaddr 0 port 5 priority 0 path cost 0
member: en1 flags=3<LEARNING,DISCOVER>
        ifmaxaddr 0 port 9 priority 0 path cost 0
member: en2 flags=3<LEARNING,DISCOVER>
        ifmaxaddr 0 port 10 priority 0 path cost 0
nd6 options=201<PERFORMNUD,DAD>
media: autoselect
status: active
utun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 2000
inet6 fe80::8d2b:483d:3831:8bb1%utun0 prefixlen 64 scopeid 0xc 
nd6 options=201<PERFORMNUD,DAD>
utun1: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1380
inet6 fe80::eabe:d7fe:1625:8f23%utun1 prefixlen 64 scopeid 0xd 
nd6 options=201<PERFORMNUD,DAD>
en3: flags=8963<UP,BROADCAST,SMART,RUNNING,PROMISC,SIMPLEX,MULTICAST> mtu 1500
options=10b<RXCSUM,TXCSUM,VLAN_HWTAGGING,AV>
ether 0c:4d:e9:be:e9:07 
media: autoselect (1000baseT <full-duplex,flow-control,energy-efficient-ethernet>)
status: active
utun2: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
inet 129.31.250.18 --> 129.31.250.18 netmask 0xffffff00 
inet6 fe80::6e40:8ff:fe99:a300%utun2 prefixlen 64 scopeid 0xe 
inet6 2001:630:12:2ffe::250:18 prefixlen 64 
nd6 options=201<PERFORMNUD,DAD>

================================================================================

Console Log:

2018-10-09 20:59:01 Tunnelblick[724] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 20:59:01 Tunnelblick[724] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 20:59:24 Tunnelblick[724] applicationShouldTerminate: termination because of shutdown; delayed until 'shutdownTunnelblick' finishes
2018-10-09 20:59:24 Tunnelblick[724] waitForDisconnection: Computer is shutting down or restarting; OS X will wait for OpenVPN instances to terminate
2018-10-09 20:59:24 Tunnelblick[724] Finished shutting down Tunnelblick; allowing termination
2018-10-09 20:59:24 com.apple.xpc.launchd[1] Service exited due to signal: Broken pipe: 13 sent by tunnelblickd[36551]
2018-10-09 21:00:26 ksinstall[436] 2018-10-09 21:00:26.747 ksinstall[436/0x7fff9bde8380] [lvl=2] -[KeystoneInstallTool main] Google Software Update installer started.
2018-10-09 21:00:26 ksinstall[436] 2018-10-09 21:00:26.756 ksinstall[436/0x7fff9bde8380] [lvl=2] -[KeystoneInstallTool main] Google Software Update installer starting Installation.
2018-10-09 21:00:30 ksinstall[436] 2018-10-09 21:00:30.206 ksinstall[436/0x7fff9bde8380] [lvl=2] -[KeystoneInstallTool main] Google Software Update installer ran successfully.
2018-10-09 21:00:34 Tunnelblick[597] Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.6a (build 5080)
2018-10-09 21:00:38 Tunnelblick[597] Sparkle: ===== Tunnelblick =====
2018-10-09 21:00:38 Tunnelblick[597] Sparkle: Verified appcast signature
2018-10-09 21:00:45 Tunnelblick[597] Sparkle: Extracting using '/usr/bin/ditto' '-x' '-k' '-' < '/Users/usaidabbasi/Library/Caches/net.tunnelblick.tunnelblick/org.sparkle-project.Sparkle/Tunnelblick 5150/Tunnelblick_3.7.7_build_5150.zip' '/Users/usaidabbasi/Library/Caches/net.tunnelblick.tunnelblick/org.sparkle-project.Sparkle/Tunnelblick 5150'
2018-10-09 21:00:50 Tunnelblick[597] updater:willInstallUpdate: Starting cleanup.
2018-10-09 21:00:50 Tunnelblick[597] updater:willInstallUpdate: Cleanup finished.
2018-10-09 21:00:50 Tunnelblick[597] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes
2018-10-09 21:00:50 Tunnelblick[597] pthread_mutex_trylock( &cleanupMutex ) failed; status = 16, errno = 9
2018-10-09 21:00:50 Tunnelblick[597] pthread_mutex_trylock( &cleanupMutex ) failed is normal and expected when Tunnelblick is updated
2018-10-09 21:00:50 Tunnelblick[597] Finished shutting down Tunnelblick; allowing termination
2018-10-09 21:00:56 Tunnelblick[798] Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.7 (build 5150)
2018-10-09 21:00:57 Tunnelblick[798] Need to replace and/or reload 'tunnelblickd':
                                           daemonHashesMatch  = NO
                                           plistHashesMatch   = YES
                                           activePlistMatches = YES
2018-10-09 21:01:01 Tunnelblick[798] Tunnelblick needs to:
                                         • Complete the update
2018-10-09 21:01:01 Tunnelblick[798] Beginning installation or repair
2018-10-09 21:01:01 Tunnelblick[798] Installation or repair succeeded; Log:
                                       Tunnelblick installer started 2018-10-09 21:01:01. 1 arguments: 0x0101
                                       Replaced /Library/LaunchDaemons/net.tunnelblick.tunnelblick.tunnelblickd.plist
                                       Used launchctl to load tunnelblickd
                                       Tunnelblick installer finished without error
2018-10-09 21:01:03 Tunnelblick[798] Sparkle: ===== Tunnelblick =====
2018-10-09 21:01:03 Tunnelblick[798] Sparkle: Verified appcast signature
2018-10-09 21:01:10 Tunnelblick[798] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:01:10 Tunnelblick[798] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:06:59 Tunnelblick[798] Set 'expect disconnect' flag
2018-10-09 21:07:01 tunnelblickd[1130] Status = 248 from tunnelblick-helper command 'kill 851'
2018-10-09 21:07:01 Tunnelblick[798] tunnelblickd status from kill: 248
                                       tunnelblickd stderr:
                                       'killOneOpenvpn(851): Process does not exist
                                       '
2018-10-09 21:07:16 Tunnelblick[798] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:07:16 Tunnelblick[798] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:08:22 Tunnelblick[798] Set 'expect disconnect' flag
2018-10-09 21:12:41 Tunnelblick[1517] Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.7 (build 5150)
2018-10-09 21:12:42 Tunnelblick[1517] Sparkle: ===== Tunnelblick =====
2018-10-09 21:12:42 Tunnelblick[1517] Sparkle: Verified appcast signature
2018-10-09 21:13:01 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:13:01 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:13:39 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:14:10 Tunnelblick[1517] Converting/Installing /Users/usaidabbasi/Downloads/ic.ovpn: One or more CR characters have been removed or replaced with LF characters
2018-10-09 21:14:10 Tunnelblick[1517] Converting/Installing /Users/usaidabbasi/Downloads/ic.ovpn: One or more CR characters have been removed or replaced with LF characters
2018-10-09 21:14:10 Tunnelblick[1517] Converting/Installing /Users/usaidabbasi/Downloads/ic.ovpn: Converted OpenVPN configuration
2018-10-09 21:14:15 Tunnelblick[1517] Tunnelblick needs to perform an action that requires a computer administrator's authorization.
2018-10-09 21:14:15 Tunnelblick[1517] Beginning installation or repair
2018-10-09 21:14:15 Tunnelblick[1517] Installation or repair succeeded; Log:
                                       Tunnelblick installer started 2018-10-09 21:14:15. 3 arguments: 0x0001
                                            /Library/Application Support/Tunnelblick/Shared/ic.tblk
                                            /private/var/folders/74/21m370057vxc3s_8zhjbwzd80000gn/T/Tunnelblick-FsVwwr/ic.tblk
                                       Copied /private/var/folders/74/21m370057vxc3s_8zhjbwzd80000gn/T/Tunnelblick-FsVwwr/ic.tblk
                                           to /Library/Application Support/Tunnelblick/Shared/ic.tblk.temp
                                       Renamed /Library/Application Support/Tunnelblick/Shared/ic.tblk.temp
                                            to /Library/Application Support/Tunnelblick/Shared/ic.tblk
                                       Changed ownership of /Library/Application Support/Tunnelblick/Shared/ic.tblk and its contents from 501:20 to 0:0
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/ic.tblk
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents
                                       Changed permissions from 750 to 755 on /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents/Resources
                                       Changed permissions from 740 to 700 on /Library/Application Support/Tunnelblick/Shared/ic.tblk/Contents/Resources/config.ovpn
                                       Tunnelblick installer finished without error
2018-10-09 21:14:21 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:14:21 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:15:48 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:15:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:15:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:33:14 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:33:20 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:33:20 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:34:03 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:34:18 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:34:18 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:35:26 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:36:27 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:36:27 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:37:44 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:40:06 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:40:07 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:40:07 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:40:40 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:40:51 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:40:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:40:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:41:20 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:41:23 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:41:23 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:43:08 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:43:10 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:43:11 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:43:11 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:44:45 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:44:51 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:44:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:44:52 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:45:59 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:46:39 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:46:40 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:46:40 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:47:11 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:50:48 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:50:49 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:50:49 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:52:07 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:52:36 Tunnelblick[1517] Cleared 'expect disconnect' flag
2018-10-09 21:52:37 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:52:37 Tunnelblick[1517] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:53:24 Tunnelblick[1517] Set 'expect disconnect' flag
2018-10-09 21:54:56 Tunnelblick[3948] Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.8beta01 (build 5160)
2018-10-09 21:54:57 Tunnelblick[3948] Tunnelblick cannot run when it is on /Volumes because the volume has the MNT_NOSUID statfs flag set.
2018-10-09 21:55:02 Tunnelblick[1517] SIGTERM (signal 15) received
2018-10-09 21:55:02 Tunnelblick[1517] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes
2018-10-09 21:55:03 Tunnelblick[1517] Finished shutting down Tunnelblick; allowing termination
2018-10-09 21:55:03 Tunnelblick[3948] Tunnelblick needs to:
                                         • Be installed in /Applications as Tunnelblick
                                         • Change ownership and permissions of the program to secure it
                                         • Secure configurations
2018-10-09 21:55:03 Tunnelblick[3948] Beginning installation or repair
2018-10-09 21:55:04 Tunnelblick[3948] Installation or repair succeeded; Log:
                                       Tunnelblick installer started 2018-10-09 21:55:03. 1 arguments: 0x0017
                                       Moved /Applications/Tunnelblick.app to the Trash
                                       Copied /Volumes/Tunnelblick/Tunnelblick.app to /Applications/Tunnelblick.app
                                       Removed all 'com.apple.quarantine' extended attributes
                                       Changed ownership of /Applications/Tunnelblick.app and its contents from 501:80 to 0:0
                                       Need to replace and/or reload 'tunnelblickd':
                                           daemonHashesMatch  = NO
                                           plistHashesMatch   = YES
                                           activePlistMatches = YES
                                       Replaced /Library/LaunchDaemons/net.tunnelblick.tunnelblick.tunnelblickd.plist
                                       Used launchctl to load tunnelblickd
                                       Tunnelblick installer finished without error
2018-10-09 21:55:04 Tunnelblick[3948] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes
2018-10-09 21:55:04 Tunnelblick[3970] Tunnelblick: OS X 10.13.6; Tunnelblick 3.7.8beta01 (build 5160)
2018-10-09 21:55:04 Tunnelblick[3948] Finished shutting down Tunnelblick; allowing termination
2018-10-09 21:55:06 Tunnelblick[3970] Sparkle: ===== Tunnelblick =====
2018-10-09 21:55:06 Tunnelblick[3970] Sparkle: Verified appcast signature
2018-10-09 21:55:06 Tunnelblick[3970] Removed file: /Library/Application Support/Tunnelblick/expect-disconnect.txt
2018-10-09 21:55:10 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:55:10 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:55:46 Tunnelblick[3970] Set 'expect disconnect' flag
2018-10-09 21:58:06 Tunnelblick[3970] Cleared 'expect disconnect' flag
2018-10-09 21:58:08 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:58:08 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 21:58:49 Tunnelblick[3970] Set 'expect disconnect' flag
2018-10-09 21:59:58 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'username'
2018-10-09 21:59:58 Tunnelblick[3970] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-ic' account = 'password'
2018-10-09 22:00:41 Tunnelblick[3970] currentIPInfo(Name): IP address info could not be fetched within 34.2 seconds; the error was 'Error Domain=NSURLErrorDomain Code=-1001 "The request timed out." UserInfo={NSUnderlyingError=0x608000058930 {Error Domain=kCFErrorDomainCFNetwork Code=-1001 "The request timed out." UserInfo={NSErrorFailingURLStringKey=https://tunnelblick.net/ipinfo, NSErrorFailingURLKey=https://tunnelblick.net/ipinfo, _kCFStreamErrorCodeKey=-2102, _kCFStreamErrorDomainKey=4, NSLocalizedDescription=The request timed out.}}, NSErrorFailingURLStringKey=https://tunnelblick.net/ipinfo, NSErrorFailingURLKey=https://tunnelblick.net/ipinfo, _kCFStreamErrorDomainKey=4, _kCFStreamErrorCodeKey=-2102, NSLocalizedDescription=The request timed out.}'; the response was '(null)'




Tunnelblick developer

unread,
Oct 9, 2018, 7:54:10 PM10/9/18
to tunnelblick-discuss
Although there is a report that DNS does not work properly with some IPv6 setups, the more common problem is that

this:
NOTE: No network configuration changes need to be made.
plus:
DNS servers '194.168.4.100 194.168.8.100' will be used for DNS queries when the VPN is active

means that your DNS servers were set to 194.168.4.and 100 194.168.8.100 before the VPN became active, and the VPN setup does not tell OpenVPN (or Tunnelblick) to change them, so they continue to be used when the VPN is active.

Those DNS servers are operated by Virgin Media. I suspect that they do not respond to DNS queries that originate outside of the Virgin Media network (which is very common; most ISPs don't respond to queries from outside their network). Without the VPN, that's fine because your DNS queries are coming from inside the Virgin Media network, but when the VPN is active, DNS queries originate outside of the Virgin Media network – they originate from whatever network the OpenVPN server is running on (probably whatever ISP openvpn.ic.ac.uk (Imperial College London uses).

The easiest solution is to manually set your normal DNS to a free DNS service, such as Google Public DNS, IBM Quad9 DNS, or Cloudflare Quad1 DNS. They each have instructions on how to set up to use them.

Tunnelblick developer

unread,
Oct 9, 2018, 7:54:24 PM10/9/18
to tunnelblick-discuss
Although there is a report that DNS does not work properly with some IPv6 setups, the more common problem is that

this:
NOTE: No network configuration changes need to be made.
plus:
DNS servers '194.168.4.100 194.168.8.100' will be used for DNS queries when the VPN is active
means that your DNS servers were set to 194.168.4.and 100 194.168.8.100 before the VPN became active, and the VPN setup does not tell OpenVPN (or Tunnelblick) to change them, so they continue to be used when the VPN is active.

Those DNS servers are operated by Virgin Media. I suspect that they do not respond to DNS queries that originate outside of the Virgin Media network (which is very common; most ISPs don't respond to queries from outside their network). Without the VPN, that's fine because your DNS queries are coming from inside the Virgin Media network, but when the VPN is active, DNS queries originate outside of the Virgin Media network – they originate from whatever network the OpenVPN server is running on (probably whatever ISP openvpn.ic.ac.uk (Imperial College London uses).

The easiest solution is to manually set your normal DNS to a free DNS service, such as Google Public DNS, IBM Quad9 DNS, or Cloudflare Quad1 DNS. They each have instructions on how to set up to use them.


On Tuesday, October 9, 2018 at 5:05:08 PM UTC-4, Mohammad Usaid Abbasi wrote:

Tunnelblick developer

unread,
Oct 9, 2018, 7:56:37 PM10/9/18
to tunnelblick-discuss
Although there is a report that DNS does not work properly with some IPv6 setups, the more common problem is that

this:
NOTE: No network configuration changes need to be made.
plus:
DNS servers '194.168.4.100 194.168.8.100' will be used for DNS queries when the VPN is active
means that your DNS servers were set to 194.168.4.and 100 194.168.8.100 before the VPN became active, and the VPN setup does not tell OpenVPN (or Tunnelblick) to change them, so they continue to be used when the VPN is active.

Those DNS servers are operated by Virgin Media. I suspect that they do not respond to DNS queries that originate outside of the Virgin Media network (which is very common; most ISPs don't respond to queries from outside their network). Without the VPN, that's fine because your DNS queries are coming from inside the Virgin Media network, but when the VPN is active, DNS queries originate outside of the Virgin Media network – they originate from whatever network the OpenVPN server is running on (probably whatever ISP openvpn.ic.ac.uk (Imperial College London uses).

The easiest solution is to manually set your normal DNS to a free DNS service, such as Google Public DNS, IBM Quad9 DNS, or Cloudflare Quad1 DNS. They each have instructions on how to set up to use them.


On Tuesday, October 9, 2018 at 5:05:08 PM UTC-4, Mohammad Usaid Abbasi wrote:

Mohammad Usaid Abbasi

unread,
Oct 10, 2018, 6:29:04 AM10/10/18
to tunnelblick-discuss
Setting up DNS service manually solved the issue for me. Thanks a lot everyone. :) 
Reply all
Reply to author
Forward
0 new messages