Tunnelblick connects to server, but no internet access...

6,911 views
Skip to first unread message

Oliver Crow

unread,
Aug 28, 2013, 9:38:15 PM8/28/13
to tunnelbli...@googlegroups.com
Hi,

I am new to OpenVPN (and this group), and I think it's great! My OpenVPN Server has been running on my old XP machine for some time now. I have been connecting to it using my Windows 7 machine. And now I would like to connect my MacBook Pro to the server as well.

I have installed the Tunnelblick version 3.4beta04 (build 3555) onto my MacBook Pro (running Mountain Lion). And have installed my configuration into Tunnelblick fine. When I click connect, it connects, but I cannot access the internet. After a while I will get a message from Tunnelblick stating that it appears that I cannot connect to the internet.

I do not think that it is a 

Here is my configuration:

client
dev tun
proto udp
remote <server-ip> <server-port>
resolv-retry infinite
nobind
persist-key
persist-tun
ca ca.crt
cert <cert-name>.crt
key <key-name>.key
ns-cert-type server
cipher AES-128-CBC
comp-lzo
verb 3

Here is the log:

*Tunnelblick: OS X 10.8.4; Tunnelblick 3.4beta04 (build 3555); Admin user


Configuration file for /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk:


##############################################

# Sample client-side OpenVPN 2.0 config file #

# for connecting to multi-client server.     #

#                                            #

# This configuration can be used by multiple #

# clients, however each client should have   #

# its own cert and key files.                #

#                                            #

# On Windows, you might want to rename this  #

# file so it has a .ovpn extension           #

##############################################


# Specify that we are a client and that we

# will be pulling certain config file directives

# from the server.

client


# Use the same setting as you are using on

# the server.

# On most systems, the VPN will not function

# unless you partially or fully disable

# the firewall for the TUN/TAP interface.

;dev tap

dev tun


# Windows needs the TAP-Win32 adapter name

# from the Network Connections panel

# if you have more than one.  On XP SP2,

# you may need to disable the firewall

# for the TAP adapter.

;dev-node MyTap


# Are we connecting to a TCP or

# UDP server?  Use the same setting as

# on the server.

;proto tcp

proto udp


# The hostname/IP and port of the server.

# You can have multiple remote entries

# to load balance between the servers.

remote <server-ip> <server-port>

;remote my-server-2 1194


# Choose a random host from the remote

# list for load-balancing.  Otherwise

# try hosts in the order specified.

;remote-random


# Keep trying indefinitely to resolve the

# host name of the OpenVPN server.  Very useful

# on machines which are not permanently connected

# to the internet such as laptops.

resolv-retry infinite


# Most clients don't need to bind to

# a specific local port number.

nobind


# Downgrade privileges after initialization (non-Windows only)

;user nobody

;group nobody


# Try to preserve some state across restarts.

persist-key

persist-tun


# If you are connecting through an

# HTTP proxy to reach the actual OpenVPN

# server, put the proxy server/IP and

# port number here.  See the man page

# if your proxy server requires

# authentication.

;http-proxy-retry # retry on connection failures

;http-proxy [proxy server] [proxy port #]


# Wireless networks often produce a lot

# of duplicate packets.  Set this flag

# to silence duplicate packet warnings.

;mute-replay-warnings


# SSL/TLS parms.

# See the server config file for more

# description.  It's best to use

# a separate .crt/.key file pair

# for each client.  A single ca

# file can be used for all clients.

ca ca.crt

cert <cert-name>.cert

key <key-name>.key


# Verify server certificate by checking

# that the certicate has the nsCertType

# field set to "server".  This is an

# important precaution to protect against

# a potential attack discussed here:

http://openvpn.net/howto.html#mitm

#

# To use this feature, you will need to generate

# your server certificates with the nsCertType

# field set to "server".  The build-key-server

# script in the easy-rsa folder will do this.

ns-cert-type server


# If a tls-auth key is used on the server

# then every client must also have the key.

;tls-auth ta.key 1


# Select a cryptographic cipher.

# If the cipher option is used on the server

# then you must also specify it here.

cipher AES-128-CBC


# Enable compression on the VPN link.

# Don't enable this unless it is also

# enabled in the server config file.

comp-lzo


# Set log file verbosity.

verb 3


# Silence repeating messages

;mute 20




================================================================================


Tunnelblick Log:


2013-08-29 02:27:07 *Tunnelblick: openvpnstart starting OpenVPN:

                    *                    /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn --cd /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources --daemon --management 127.0.0.1 1337 --config /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources/config.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-SName-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<client-name>.tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_305.1337.openvpn.log --management-query-passwords --management-hold --script-security 2 --up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWradsgnw --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw --up-restart --route-pre-down /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw

2013-08-29 02:27:08 OpenVPN 2.3.2 i386-apple-darwin10.8.0 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [MH] [IPv6] built on Aug 20 2013

2013-08-29 02:27:08 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337

2013-08-29 02:27:08 Need hold release from management interface, waiting...

2013-08-29 02:27:08 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1337

2013-08-29 02:27:08 MANAGEMENT: CMD 'pid'

2013-08-29 02:27:08 MANAGEMENT: CMD 'state on'

2013-08-29 02:27:08 MANAGEMENT: CMD 'state'

2013-08-29 02:27:08 MANAGEMENT: CMD 'bytecount 1'

2013-08-29 02:27:08 MANAGEMENT: CMD 'hold release'

2013-08-29 02:27:08 *Tunnelblick: Established communication with OpenVPN

2013-08-29 02:27:08 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-29 02:27:08 Socket Buffers: R=[196724->65536] S=[9216->65536]

2013-08-29 02:27:08 UDPv4 link local: [undef]

2013-08-29 02:27:08 UDPv4 link remote: [AF_INET]<server-ip>:<server-port>

2013-08-29 02:27:08 MANAGEMENT: >STATE:1377739628,WAIT,,,

2013-08-29 02:27:08 MANAGEMENT: >STATE:1377739628,AUTH,,,

2013-08-29 02:27:08 TLS: Initial packet from [AF_INET]<server-ip>:<server-port>, sid=9bbc6d7b 185fd388

2013-08-29 02:27:08 VERIFY OK: depth=1, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-29 02:27:08 VERIFY OK: nsCertType=SERVER

2013-08-29 02:27:08 VERIFY OK: depth=0, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-29 02:27:08 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-29 02:27:08 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-29 02:27:08 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-29 02:27:08 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-29 02:27:08 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA

2013-08-29 02:27:08 [<server-name>] Peer Connection Initiated with [AF_INET]<server-ip>:<server-port>

2013-08-29 02:27:09 MANAGEMENT: >STATE:1377739629,GET_CONFIG,,,

2013-08-29 02:27:11 SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)

2013-08-29 02:27:11 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'

2013-08-29 02:27:11 OPTIONS IMPORT: timers and/or timeouts modified

2013-08-29 02:27:11 OPTIONS IMPORT: --ifconfig/up options modified

2013-08-29 02:27:11 OPTIONS IMPORT: route options modified

2013-08-29 02:27:11 TUN/TAP device /dev/tun0 opened

2013-08-29 02:27:11 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0

2013-08-29 02:27:11 MANAGEMENT: >STATE:1377739631,ASSIGN_IP,,10.8.0.6,

2013-08-29 02:27:11 /sbin/ifconfig tun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address

2013-08-29 02:27:11 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure

2013-08-29 02:27:11 /sbin/ifconfig tun0 10.8.0.6 10.8.0.5 mtu 1500 netmask 255.255.255.255 up

2013-08-29 02:27:11 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWradsgnw tun0 1500 1558 10.8.0.6 10.8.0.5 init

2013-08-29 02:27:13 *Tunnelblick client.up.tunnelblick.sh: No network configuration changes need to be made.

2013-08-29 02:27:13 *Tunnelblick client.up.tunnelblick.sh: Will NOT monitor for other network configuration changes.

2013-08-29 02:27:13 /sbin/route add -net <server-ip> 192.168.1.254 255.255.255.255

                                        add net <server-ip>: gateway 192.168.1.254

2013-08-29 02:27:13 /sbin/route add -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        add net 0.0.0.0: gateway 10.8.0.5

2013-08-29 02:27:13 /sbin/route add -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        add net 128.0.0.0: gateway 10.8.0.5

2013-08-29 02:27:13 MANAGEMENT: >STATE:1377739633,ADD_ROUTES,,,

2013-08-29 02:27:13 /sbin/route add -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        add net 10.8.0.1: gateway 10.8.0.5

2013-08-29 02:27:13 Initialization Sequence Completed

2013-08-29 02:27:13 MANAGEMENT: >STATE:1377739633,CONNECTED,SUCCESS,10.8.0.6,<server-ip>

2013-08-29 02:27:13 *Tunnelblick: No 'connected.sh' script to execute

2013-08-29 02:27:20 *Tunnelblick: Disconnecting; 'disconnect' button pressed

2013-08-29 02:27:20 *Tunnelblick: Disconnecting using 'killall'

2013-08-29 02:27:20 event_wait : Interrupted system call (code=4)

2013-08-29 02:27:20 /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw tun0 1500 1558 10.8.0.6 10.8.0.5 init

2013-08-29 02:27:21 *Tunnelblick client.route-pre-down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-29 02:27:21 /sbin/route delete -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        delete net 10.8.0.1: gateway 10.8.0.5

2013-08-29 02:27:21 /sbin/route delete -net <server-ip> 192.168.1.254 255.255.255.255

                                        delete net <server-ip>: gateway 192.168.1.254

2013-08-29 02:27:21 /sbin/route delete -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 0.0.0.0: gateway 10.8.0.5

2013-08-29 02:27:21 /sbin/route delete -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 128.0.0.0: gateway 10.8.0.5

2013-08-29 02:27:21 Closing TUN/TAP interface

2013-08-29 02:27:21 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw tun0 1500 1558 10.8.0.6 10.8.0.5 init

2013-08-29 02:27:22 *Tunnelblick client.down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-29 02:27:22 SIGTERM[hard,] received, process exiting

2013-08-29 02:27:22 MANAGEMENT: >STATE:1377739642,EXITING,SIGTERM,,

2013-08-29 02:27:23 *Tunnelblick: No 'post-disconnect.sh' script to execute


================================================================================


Console Log:


2013-08-29 01:49:42 Tunnelblick[52609] DEBUG: checkIPAddressAfterConnectedThread: Delaying 5.000000 seconds before checking connection

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: threadID '36907520-98211580934249' removed from the active list and added to the cancelling list

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: has checked for active daemons

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: includeDaemons = 0; noUnknownOpenVPNsRunning = 1; noActiveDaemons = 1; noDownRootsActive = 1 

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: will use killAll

2013-08-29 01:49:59 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: requested killAll

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:01 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:50:02 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:02 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: killAll finished

2013-08-29 01:50:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:50:03 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info was fetched in 15797 milliseconds

2013-08-29 01:50:03 Tunnelblick[52609] DEBUG: currentIPInfo(Name): [<server-ip>, 50104, 205.233.73.116]

2013-08-29 01:50:03 Tunnelblick[52609] DEBUG: isOnCancellingListIPCheckThread: threadID '36907520-98211580934249' is on the the cancelling list

2013-08-29 01:50:03 Tunnelblick[52609] DEBUG: haveFinishedIPCheckThread: threadID '36907520-98211580934249' removed from cancelling list

2013-08-29 01:50:05 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info was fetched in 274 milliseconds

2013-08-29 01:50:05 Tunnelblick[52609] DEBUG: currentIPInfo(Name): [<server-ip>, 50104, 205.233.73.116]

2013-08-29 01:50:05 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:11 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:11 Tunnelblick[52609] DEBUG: addActiveIPCheckThread: threadID '36902912-98240217472385' added to the active list

2013-08-29 01:50:11 Tunnelblick[52609] DEBUG: checkIPAddressAfterConnectedThread: Delaying 5.000000 seconds before checking connection

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36902912

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: threadID '36902912-98240217472385' removed from the active list and added to the cancelling list

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: has checked for active daemons

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: includeDaemons = 0; noUnknownOpenVPNsRunning = 1; noActiveDaemons = 1; noDownRootsActive = 1 

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: will use killAll

2013-08-29 01:50:34 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: requested killAll

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36902912

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36902912

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:36 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36902912

2013-08-29 01:50:36 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:37 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: killAll finished

2013-08-29 01:50:37 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:50:37 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36902912

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info was fetched in 21934 milliseconds

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: currentIPInfo(Name): [<server-ip>, 50143, 205.233.73.116]

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: isOnCancellingListIPCheckThread: threadID '36902912-98240217472385' is on the the cancelling list

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: haveFinishedIPCheckThread: threadID '36902912-98240217472385' removed from cancelling list

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info was fetched in 258 milliseconds

2013-08-29 01:50:38 Tunnelblick[52609] DEBUG: currentIPInfo(Name): [<server-ip>, 50143, 205.233.73.116]

2013-08-29 01:50:38 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:45 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:50:45 Tunnelblick[52609] DEBUG: addActiveIPCheckThread: threadID '36907520-98274324198807' added to the active list

2013-08-29 01:50:45 Tunnelblick[52609] DEBUG: checkIPAddressAfterConnectedThread: Delaying 5.000000 seconds before checking connection

2013-08-29 01:51:20 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 01:51:20 Tunnelblick[52609] DEBUG: isOnCancellingListIPCheckThread: threadID '36907520-98274324198807' is not on the the cancelling list

2013-08-29 01:51:20 Tunnelblick[52609] DEBUG: Timeout getting IP address using the ipInfo host's name; retrying by IP address

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: threadID '36907520-98274324198807' removed from the active list and added to the cancelling list

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: has checked for active daemons

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: includeDaemons = 0; noUnknownOpenVPNsRunning = 1; noActiveDaemons = 1; noDownRootsActive = 1 

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: will use killAll

2013-08-29 01:51:43 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: requested killAll

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:51:45 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:51:45 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:51:46 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: killAll finished

2013-08-29 01:51:46 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:51:46 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:51:50 Tunnelblick[52609] DEBUG: currentIPInfo(Address): IP address info could not be fetched within 30.0 seconds

2013-08-29 01:51:50 Tunnelblick[52609] DEBUG: isOnCancellingListIPCheckThread: threadID '36907520-98274324198807' is on the the cancelling list

2013-08-29 01:51:50 Tunnelblick[52609] DEBUG: haveFinishedIPCheckThread: threadID '36907520-98274324198807' removed from cancelling list

2013-08-29 01:53:06 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info was fetched in 513 milliseconds

2013-08-29 01:53:06 Tunnelblick[52609] DEBUG: currentIPInfo(Name): [<server-ip>, 50232, 205.233.73.116]

2013-08-29 01:53:06 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:53:10 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:53:10 Tunnelblick[52609] DEBUG: addActiveIPCheckThread: threadID '36907520-98419260489787' added to the active list

2013-08-29 01:53:10 Tunnelblick[52609] DEBUG: checkIPAddressAfterConnectedThread: Delaying 5.000000 seconds before checking connection

2013-08-29 01:53:45 Tunnelblick[52609] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 01:53:45 Tunnelblick[52609] DEBUG: isOnCancellingListIPCheckThread: threadID '36907520-98419260489787' is not on the the cancelling list

2013-08-29 01:53:45 Tunnelblick[52609] DEBUG: Timeout getting IP address using the ipInfo host's name; retrying by IP address

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: threadID '36907520-98419260489787' removed from the active list and added to the cancelling list

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: has checked for active daemons

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: includeDaemons = 0; noUnknownOpenVPNsRunning = 1; noActiveDaemons = 1; noDownRootsActive = 1 

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: will use killAll

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: requested killAll

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:54:02 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:54:03 Tunnelblick[52609] openvpnstart status from compareShadowCopy: 251

2013-08-29 01:54:03 Tunnelblick[52609] DEBUG: killAllConnectionsIncludingDaemons: killAll finished

2013-08-29 01:54:03 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: Entered

2013-08-29 01:54:03 Tunnelblick[52609] DEBUG: cancelAllIPCheckThreadsForConnection: No active threads for connection 36907520

2013-08-29 01:54:05 Tunnelblick[52609] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:54:05 Tunnelblick[52609] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:54:13 Tunnelblick[52609] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: shutDownTunnelblick: started.

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: shutDownTunnelblick: Starting cleanup.

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Entering cleanup

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Setting callDelegateOnNetworkChange: NO

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Unloading kexts

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Deleting logs

2013-08-29 01:54:13 Tunnelblick[52609] Deleted log files for <server-name>(local)

2013-08-29 01:54:13 Tunnelblick[52609] Deleted log files for <server-name>

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Removing status bar item

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: Cleanup: Unregistering hotKeyEventHandler

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: shutDownTunnelblick: Cleanup finished.

2013-08-29 01:54:13 Tunnelblick[52609] Finished shutting down Tunnelblick; allowing termination

2013-08-29 01:54:13 Tunnelblick[52609] DEBUG: applicationWillTerminate: invoked

2013-08-29 01:56:21 coreservicesd[31] Application App:"Tunnelblick Uninstaller" [ 0x0/0x5ae5ae]  @ 0x0x7fbfe0487530 tried to be brought forward, but isn't in fPermittedFrontASNs ( ( ASN:0x0-0x5b05b0:) ), so denying.

2013-08-29 01:56:21 WindowServer[618] [cps/setfront] Failed setting the front application to Tunnelblick Uninstaller, psn 0x0-0x5ae5ae, securitySessionID=0x186ac, err=-13066

2013-08-29 01:56:35 coreservicesd[31] Application App:"Tunnelblick Uninstaller" [ 0x0/0x5b15b1]  @ 0x0x7fbfe047c3e0 tried to be brought forward, but isn't in fPermittedFrontASNs ( ( ASN:0x0-0x5b35b3:) ), so denying.

2013-08-29 01:56:35 WindowServer[618] [cps/setfront] Failed setting the front application to Tunnelblick Uninstaller, psn 0x0-0x5b15b1, securitySessionID=0x186ac, err=-13066

2013-08-29 01:57:17 coreservicesd[31] Application App:"Tunnelblick Uninstaller" [ 0x0/0x5b45b4]  @ 0x0x7fbfe1929750 tried to be brought forward, but isn't in fPermittedFrontASNs ( ( ASN:0x0-0x5b55b5:) ), so denying.

2013-08-29 01:57:17 WindowServer[618] [cps/setfront] Failed setting the front application to Tunnelblick Uninstaller, psn 0x0-0x5b45b4, securitySessionID=0x186ac, err=-13066

2013-08-29 01:57:35 Tunnelblick[55824] Created a symbolic link to /Users/Name/Library/Application Support/Tunnelblick/Configurations at /Users/Name/Library/openvpn

2013-08-29 01:57:35 Tunnelblick[55824] Tunnelblick cannot run when it is on /Volumes because the volume has the MNT_NOSUID statfs flag set.

2013-08-29 01:57:40 Tunnelblick[55824] Beginning installation or repair

2013-08-29 01:57:40 authexec[55842] executing /Volumes/Tunnelblick/Tunnelblick.app/Contents/Resources/installer

2013-08-29 01:57:41 Tunnelblick[55824] Installation or repair succeeded; Log:

                                       Tunnelblick installer started 2013-08-29 01:57:40. 1 arguments: 0x001f

                                       Created directory /Library/Application Support/Tunnelblick with owner 0:80 and permissions 755

                                       Changed ownership of /Library/Application Support/Tunnelblick to 0:0

                                       Created directory /Library/Application Support/Tunnelblick/Logs with owner 0:0 and permissions 755

                                       Created directory /Library/Application Support/Tunnelblick/Shared with owner 0:0 and permissions 755

                                       Created directory /Library/Application Support/Tunnelblick/Users with owner 0:0 and permissions 750

                                       Created directory /Library/Application Support/Tunnelblick/Users/Name with owner 0:0 and permissions 750

                                       Changed ownership of /Users/Name/Library/Application Support/Tunnelblick to 501:80

                                       Changed ownership of /Users/Name/Library/Application Support/Tunnelblick/Configurations to 501:80

                                       Copied /Volumes/Tunnelblick/Tunnelblick.app to /Applications/Tunnelblick.app

                                       Changed ownership of /Applications/Tunnelblick.app and its contents to 0:0

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/atsystemstart

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/installer

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/leasewatch

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/leasewatch3

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/process-network-changes

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/standardize-scutil-output

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh

                                       Changed permissions from 644 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh

                                       Changed permissions from 644 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.1.up.tunnelblick.sh

                                       Changed permissions from 644 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.1.down.tunnelblick.sh

                                       Changed permissions from 644 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.2.up.tunnelblick.sh

                                       Changed permissions from 644 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.2.down.tunnelblick.sh

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.3.up.tunnelblick.sh

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/client.3.down.tunnelblick.sh

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.2.1/openvpn-down-root.so

                                       Changed permissions from 755 to 744 on /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn-down-root.so

                                       Changed permissions from 755 to 4555 on /Applications/Tunnelblick.app/Contents/Resources/openvpnstart

2013-08-29 01:57:43 Tunnelblick[55824] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes

2013-08-29 01:57:43 Tunnelblick[55824] Finished shutting down Tunnelblick; allowing termination

2013-08-29 01:57:43 Tunnelblick[55857] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 01:57:50 Tunnelblick[55857] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes

2013-08-29 01:57:50 Tunnelblick[55857] Finished shutting down Tunnelblick; allowing termination

2013-08-29 01:57:54 Tunnelblick[55887] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 01:57:54 Tunnelblick[55887] /private/var/folders/yy/rqqk1mf10ds4sh6yngftzd7w0000gn/T/TunnelblickTemporaryDotTblk-69k1FB/<server-name>.tblk/Contents/Resources/config.ovpn: Did not need to modify configuration file; no path information to remove

2013-08-29 01:57:57 Tunnelblick[55887] Beginning installation or repair

2013-08-29 01:57:57 authexec[55904] executing /Applications/Tunnelblick.app/Contents/Resources/installer

2013-08-29 01:57:58 Tunnelblick[55887] Installation or repair succeeded; Log:

                                       Tunnelblick installer started 2013-08-29 01:57:57. 3 arguments: 0x0001 /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk /private/var/folders/yy/rqqk1mf10ds4sh6yngftzd7w0000gn/T/TunnelblickTemporaryDotTblk-69k1FB/<server-name>.tblk

                                       Copied /private/var/folders/yy/rqqk1mf10ds4sh6yngftzd7w0000gn/T/TunnelblickTemporaryDotTblk-69k1FB/<server-name>.tblk to /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk.temp

                                       Copied /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk.temp to /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk

                                       Changed ownership of /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk and its contents to 501:80

                                       Changed permissions from 755 to 750 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk

                                       Changed permissions from 755 to 750 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents

                                       Changed permissions from 755 to 750 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents/Resources

                                       Changed permissions from 755 to 640 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents/Resources/<cert-name>.cert

                                       Changed permissions from 755 to 640 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents/Resources/<key-name>.key

                                       Changed permissions from 644 to 640 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents/Resources/ca.crt

                                       Changed permissions from 644 to 640 on /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk/Contents/Resources/config.ovpn

                                       Copied /Users/Name/Library/Application Support/Tunnelblick/Configurations/<server-name>.tblk to /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk.temp

                                       Copied /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk.temp to /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk

                                       Changed ownership of /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk and its contents to 0:0

                                       Changed permissions from 640 to 600 on /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources/<cert-name>.cert

                                       Changed permissions from 640 to 600 on /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources/<key-name>.key

                                       Changed permissions from 640 to 600 on /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources/ca.crt

                                       Changed permissions from 640 to 600 on /Library/Application Support/Tunnelblick/Users/Name/<server-name>.tblk/Contents/Resources/config.ovpn

                                       Created secure (shadow) copy of <server-name>.tblk

2013-08-29 01:58:03 Tunnelblick[55887] Copied easy-rsa

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 700 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-ca

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-dh

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-inter

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-key

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-key-pass

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-key-pkcs12

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-key-server

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-req

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/build-req-pass

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/clean-all

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/inherit-inter

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 700 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/keys

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/list-crl

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 644 to 600 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/openssl-0.9.6.cnf

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 644 to 600 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/openssl-0.9.8.cnf

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 644 to 600 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/openssl-1.0.0.cnf

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/pkitool

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 644 to 400 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/README

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/revoke-full

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/sign-req

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 644 to 400 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/TB-version.txt

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 600 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/vars

2013-08-29 01:58:03 Tunnelblick[55887] Changed permissions from 755 to 500 on /Users/Name/Library/Application Support/Tunnelblick/easy-rsa/whichopensslcnf

2013-08-29 01:58:06 Tunnelblick[55887] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:58:06 Tunnelblick[55887] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:58:50 ReportCrash[56044] Saved crash report for Tunnelblick[55887] version 3.4beta04 [build 3555] (3555) to /Users/Name/Library/Logs/DiagnosticReports/Tunnelblick_2013-08-29-015850_<client-name>.crash

2013-08-29 01:58:59 Tunnelblick[56068] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 01:58:59 Tunnelblick[56068] No keys in myConfigDictionary for /Users/Name/Library/Application Support/Tunnelblick/Configurations/<name>-/ERVER.tblk

2013-08-29 01:59:11 Tunnelblick[56068] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:59:11 Tunnelblick[56068] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:59:26 Tunnelblick[56068] activate/makeKeyAndOrderFront; window = <NSWindow: 0x1cf3400>

2013-08-29 01:59:34 ReportCrash[56044] Saved crash report for Tunnelblick[56068] version 3.4beta04 [build 3555] (3555) to /Users/Name/Library/Logs/DiagnosticReports/Tunnelblick_2013-08-29-015934_<client-name>.crash

2013-08-29 01:59:43 Tunnelblick[56179] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 01:59:44 Tunnelblick[56179] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:59:44 Tunnelblick[56179] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 01:59:52 ReportCrash[56235] Saved crash report for Tunnelblick[56179] version 3.4beta04 [build 3555] (3555) to /Users/Name/Library/Logs/DiagnosticReports/Tunnelblick_2013-08-29-015952_<client-name>.crash

2013-08-29 01:59:57 Tunnelblick[56247] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 01:59:57 Tunnelblick[56247] No keys in myConfigDictionary for /Users/Name/Library/Application Support/Tunnelblick/Configurations/<name>-/ERVER.tblk

2013-08-29 02:00:06 Tunnelblick[56247] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 5.0 seconds

2013-08-29 02:00:06 Tunnelblick[56247] After 5.0 seconds, gave up trying to fetch IP address information before connecting

2013-08-29 02:00:21 Tunnelblick[56247] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:00:21 Tunnelblick[56247] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:01:28 Tunnelblick[56247] applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes

2013-08-29 02:01:28 Tunnelblick[56247] Finished shutting down Tunnelblick; allowing termination

2013-08-29 02:01:30 Tunnelblick[56519] Set program update feedURL to https:/www.tunnelblick.net/appcast-b.rss

2013-08-29 02:01:32 Tunnelblick[56519] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:01:32 Tunnelblick[56519] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:02:15 Tunnelblick[56519] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:02:45 Tunnelblick[56519] DEBUG: currentIPInfo(Address): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:07:46 Tunnelblick[56519] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:07:46 Tunnelblick[56519] DEBUG: Updater: systemVersion 10.8.4 satisfies minimumSystemVersion 10.4.0

2013-08-29 02:08:24 Tunnelblick[56519] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:08:54 Tunnelblick[56519] DEBUG: currentIPInfo(Address): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:10:57 Tunnelblick[56519] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:11:27 Tunnelblick[56519] DEBUG: currentIPInfo(Address): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:14:53 Tunnelblick[56519] DEBUG: currentIPInfo(Name): IP address info could not be fetched within 30.0 seconds

2013-08-29 02:15:23 Tunnelblick[56519] DEBUG: currentIPInfo(Address): IP address info could not be fetched within 30.0 seconds


I hope that you guys will be able to help me with this issue.


-Oliver Crow

jkbull...gmail.com

unread,
Aug 28, 2013, 10:01:15 PM8/28/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
Thanks for supplying the full diagnostic info.

Try reverting to 3.3.0 (the latest stable version), and then putting a check in the "Route all traffic through the VPN" checkbox on the "While Connected" tab of the Advanced window (from the "VPN Details" window, select your configuration in the list on the left, then click the "Advanced" button).

2013-08-29 02:27:08 VERIFY OK: depth=1, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=me@myhost.mydomain

2013-08-29 02:27:08 VERIFY OK: nsCertType=SERVER

2013-08-29 02:27:08 VERIFY OK: depth=0, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=me@myhost.mydomain

Oliver Crow

unread,
Aug 29, 2013, 9:45:57 AM8/29/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
OK, I have just done that. It seems to work. But only for a little while, after which I get a popup saying something about DNS or something, and then the internet browsing doesn't work. I assume this is now a different issue.

Oliver Crow

unread,
Aug 29, 2013, 11:02:41 AM8/29/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
Here is what it is saying now:

2013-08-29 15:59:51 *Tunnelblick: OS X 10.8.4; Tunnelblick 3.3.0 (build 3518)

2013-08-29 15:59:51 *Tunnelblick: Attempting connection with <server-name> (Public) using shadow copy; Set nameserver = 1; monitoring connection

2013-08-29 15:59:51 *Tunnelblick: openvpnstart start <server-name>\ (Public).tblk 1338 1 0 1 0 817 -atADGNWrdsgnw -

2013-08-29 15:59:51 *Tunnelblick: openvpnstart log:

     Loading tun.kext

     

     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):

     

          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn

          --cd

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources

          --daemon

          --management

          127.0.0.1

          1338

          --config

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources/config.ovpn

          --log

          /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name> (Public).tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_817.1338.openvpn.log

          --management-query-passwords

          --management-hold

          --redirect-gateway

          def1

          --script-security

          2

          --up

          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw

          --down

          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw

          --up-restart

          --route-pre-down

          /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw


2013-08-29 15:59:51 *Tunnelblick: Established communication with OpenVPN

2013-08-29 15:59:51 *Tunnelblick: openvpnstart starting OpenVPN:

                    *                    /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn --cd /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources --daemon --management 127.0.0.1 1338 --config /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources/config.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name> (Public).tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_817.1338.openvpn.log --management-query-passwords --management-hold --redirect-gateway def1 --script-security 2 --up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw --up-restart --route-pre-down /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw

2013-08-29 15:59:51 OpenVPN 2.3.2 i386-apple-darwin10.8.0 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [MH] [IPv6] built on Jul 22 2013

2013-08-29 15:59:51 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1338

2013-08-29 15:59:51 Need hold release from management interface, waiting...

2013-08-29 15:59:51 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1338

2013-08-29 15:59:51 MANAGEMENT: CMD 'pid'

2013-08-29 15:59:51 MANAGEMENT: CMD 'state on'

2013-08-29 15:59:51 MANAGEMENT: CMD 'state'

2013-08-29 15:59:51 MANAGEMENT: CMD 'bytecount 1'

2013-08-29 15:59:51 MANAGEMENT: CMD 'hold release'

2013-08-29 15:59:51 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-29 15:59:51 Socket Buffers: R=[131072->65536] S=[131072->65536]

2013-08-29 15:59:51 Attempting to establish TCP connection with [AF_INET]<server-ip>:<server-port> [nonblock]

2013-08-29 15:59:51 MANAGEMENT: >STATE:1377788391,TCP_CONNECT,,,

2013-08-29 15:59:52 TCP connection established with [AF_INET]<server-ip>:<server-port>

2013-08-29 15:59:52 TCPv4_CLIENT link local: [undef]

2013-08-29 15:59:52 TCPv4_CLIENT link remote: [AF_INET]<server-ip>:<server-port>

2013-08-29 15:59:52 MANAGEMENT: >STATE:1377788392,WAIT,,,

2013-08-29 15:59:52 MANAGEMENT: >STATE:1377788392,AUTH,,,

2013-08-29 15:59:52 TLS: Initial packet from [AF_INET]<server-ip>:<server-port>, sid=74bb47f3 b2dd7337

2013-08-29 15:59:53 VERIFY OK: depth=1, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-29 15:59:53 VERIFY OK: nsCertType=SERVER

2013-08-29 15:59:53 VERIFY OK: depth=0, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-29 15:59:54 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-29 15:59:54 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-29 15:59:54 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-29 15:59:54 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-29 15:59:54 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA

2013-08-29 15:59:54 [<server-name>] Peer Connection Initiated with [AF_INET]<server-ip>:<server-port>

2013-08-29 15:59:55 MANAGEMENT: >STATE:1377788395,GET_CONFIG,,,

2013-08-29 15:59:56 SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)

2013-08-29 15:59:56 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'

2013-08-29 15:59:56 OPTIONS IMPORT: timers and/or timeouts modified

2013-08-29 15:59:56 OPTIONS IMPORT: --ifconfig/up options modified

2013-08-29 15:59:56 OPTIONS IMPORT: route options modified

2013-08-29 15:59:56 TUN/TAP device /dev/tun0 opened

2013-08-29 15:59:56 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0

2013-08-29 15:59:56 MANAGEMENT: >STATE:1377788396,ASSIGN_IP,,10.8.0.6,

2013-08-29 15:59:56 /sbin/ifconfig tun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address

2013-08-29 15:59:56 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure

2013-08-29 15:59:56 /sbin/ifconfig tun0 10.8.0.6 10.8.0.5 mtu 1500 netmask 255.255.255.255 up

2013-08-29 15:59:56 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-29 15:59:58 *Tunnelblick client.up.tunnelblick.sh: No network configuration changes need to be made.

2013-08-29 15:59:58 *Tunnelblick client.up.tunnelblick.sh: Will NOT monitor for other network configuration changes.

2013-08-29 15:59:58 /sbin/route add -net <server-ip> 192.168.1.254 255.255.255.255

                                        add net <server-ip>: gateway 192.168.1.254

2013-08-29 15:59:58 /sbin/route add -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        add net 0.0.0.0: gateway 10.8.0.5

2013-08-29 15:59:58 /sbin/route add -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        add net 128.0.0.0: gateway 10.8.0.5

2013-08-29 15:59:58 MANAGEMENT: >STATE:1377788398,ADD_ROUTES,,,

2013-08-29 15:59:58 /sbin/route add -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        add net 10.8.0.1: gateway 10.8.0.5

2013-08-29 15:59:58 Initialization Sequence Completed

2013-08-29 15:59:58 MANAGEMENT: >STATE:1377788398,CONNECTED,SUCCESS,10.8.0.6,<server-ip>

2013-08-29 15:59:58 *Tunnelblick: No 'connected.sh' script to execute

2013-08-29 15:59:59 *Tunnelblick: Disconnecting; 'disconnect' button pressed

2013-08-29 15:59:59 *Tunnelblick: Disconnecting using 'killall'

2013-08-29 15:59:59 event_wait : Interrupted system call (code=4)

2013-08-29 15:59:59 /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-29 16:00:00 *Tunnelblick client.route-pre-down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-29 16:00:00 /sbin/route delete -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        delete net 10.8.0.1: gateway 10.8.0.5

2013-08-29 16:00:00 /sbin/route delete -net <server-ip> 192.168.1.254 255.255.255.255

                                        delete net <server-ip>: gateway 192.168.1.254

2013-08-29 16:00:00 /sbin/route delete -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 0.0.0.0: gateway 10.8.0.5

2013-08-29 16:00:00 /sbin/route delete -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 128.0.0.0: gateway 10.8.0.5

2013-08-29 16:00:00 Closing TUN/TAP interface

2013-08-29 16:00:00 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-29 16:00:01 *Tunnelblick client.down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-29 16:00:01 SIGTERM[hard,] received, process exiting

2013-08-29 16:00:01 MANAGEMENT: >STATE:1377788401,EXITING,SIGTERM,,

2013-08-29 16:00:02 *Tunnelblick: No 'post-disconnect.sh' script to execute


On Thursday, 29 August 2013 03:01:15 UTC+1, jkbull...gmail.com wrote:

jkbull...gmail.com

unread,
Aug 30, 2013, 7:22:32 PM8/30/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
Can you be more specific about the "popup saying something about DNS or something"?

The log you provided (starting with "2013-08-29 15:59:51 *Tunnelblick: OS X 10.8.4; Tunnelblick 3.3.0 (build 3518)") shows that you connected, then immediately clicked "Disconnect". If you want help diagnosing the "popup" issue, it would be more helpful to have a log showing a connection, some time during which Internet activity worked, then whatever Tunnelblick or OpenVPN says about "DNS or something" (if anything), and only then should you click disconnect (and wait for the log output from the disconnect).

Oliver Crow

unread,
Aug 31, 2013, 10:18:00 AM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
It no longer shows the DNS issue. Now it connects for exactly 5 seconds, then disconnects, and attempts to connect again. This goes on until I tell it to stop.

Here is the log:

2013-08-31 15:14:16 *Tunnelblick: OS X 10.8.4; Tunnelblick 3.3.0 (build 3518)

2013-08-31 15:14:16 *Tunnelblick: Attempting connection with <server-name> (Public) using shadow copy; Set nameserver = 1; monitoring connection

2013-08-31 15:14:16 *Tunnelblick: openvpnstart start <server-name>\ (Public).tblk 1337 1 0 1 0 947 -atADGNWrdsgnw -

2013-08-31 15:14:17 *Tunnelblick: openvpnstart log:

     Loading tap.kext

     Loading tun.kext

     

     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):

     

          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn

          --cd

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources

          --daemon

          --management

          127.0.0.1

          1337

          --config

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources/config.ovpn

          --log

          /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name> (Public).tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_947.1337.openvpn.log

          --management-query-passwords

          --management-hold

          --redirect-gateway

          def1

          --script-security

          2

          --up

          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw

          --down

          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw

          --up-restart

          --route-pre-down

          /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw


2013-08-31 15:14:16 *Tunnelblick: openvpnstart starting OpenVPN:

                    *                    /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn --cd /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources --daemon --management 127.0.0.1 1337 --config /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name> (Public).tblk/Contents/Resources/config.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name> (Public).tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_947.1337.openvpn.log --management-query-passwords --management-hold --redirect-gateway def1 --script-security 2 --up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw --up-restart --route-pre-down /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw

2013-08-31 15:14:17 *Tunnelblick: Established communication with OpenVPN

2013-08-31 15:14:17 OpenVPN 2.3.2 i386-apple-darwin10.8.0 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [MH] [IPv6] built on Jul 22 2013

2013-08-31 15:14:17 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337

2013-08-31 15:14:17 Need hold release from management interface, waiting...

2013-08-31 15:14:17 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1337

2013-08-31 15:14:17 MANAGEMENT: CMD 'pid'

2013-08-31 15:14:17 MANAGEMENT: CMD 'state on'

2013-08-31 15:14:17 MANAGEMENT: CMD 'state'

2013-08-31 15:14:17 MANAGEMENT: CMD 'bytecount 1'

2013-08-31 15:14:17 MANAGEMENT: CMD 'hold release'

2013-08-31 15:14:17 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-31 15:14:17 Socket Buffers: R=[131072->65536] S=[131072->65536]

2013-08-31 15:14:17 MANAGEMENT: >STATE:1377958457,RESOLVE,,,

2013-08-31 15:14:17 Attempting to establish TCP connection with [AF_INET]<server-ip>:<server-port> [nonblock]

2013-08-31 15:14:17 MANAGEMENT: >STATE:1377958457,TCP_CONNECT,,,

2013-08-31 15:14:18 TCP connection established with [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:18 TCPv4_CLIENT link local: [undef]

2013-08-31 15:14:18 TCPv4_CLIENT link remote: [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:18 MANAGEMENT: >STATE:1377958458,WAIT,,,

2013-08-31 15:14:18 MANAGEMENT: >STATE:1377958458,AUTH,,,

2013-08-31 15:14:18 TLS: Initial packet from [AF_INET]<server-ip>:<server-port>, sid=d9665b2a d7e660fa

2013-08-31 15:14:19 VERIFY OK: depth=1, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-31 15:14:19 VERIFY OK: nsCertType=SERVER

2013-08-31 15:14:19 VERIFY OK: depth=0, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-31 15:14:20 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 15:14:20 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 15:14:20 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 15:14:20 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 15:14:20 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA

2013-08-31 15:14:20 [<server-name>] Peer Connection Initiated with [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:21 MANAGEMENT: >STATE:1377958461,GET_CONFIG,,,

2013-08-31 15:14:22 SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)

2013-08-31 15:14:22 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'

2013-08-31 15:14:22 OPTIONS IMPORT: timers and/or timeouts modified

2013-08-31 15:14:22 OPTIONS IMPORT: --ifconfig/up options modified

2013-08-31 15:14:22 OPTIONS IMPORT: route options modified

2013-08-31 15:14:22 TUN/TAP device /dev/tun0 opened

2013-08-31 15:14:22 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0

2013-08-31 15:14:22 MANAGEMENT: >STATE:1377958462,ASSIGN_IP,,10.8.0.6,

2013-08-31 15:14:22 /sbin/ifconfig tun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address

2013-08-31 15:14:22 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure

2013-08-31 15:14:22 /sbin/ifconfig tun0 10.8.0.6 10.8.0.5 mtu 1500 netmask 255.255.255.255 up

2013-08-31 15:14:22 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-31 15:14:24 *Tunnelblick client.up.tunnelblick.sh: No network configuration changes need to be made.

2013-08-31 15:14:24 *Tunnelblick client.up.tunnelblick.sh: Will NOT monitor for other network configuration changes.

2013-08-31 15:14:24 /sbin/route add -net <server-ip> 192.168.1.254 255.255.255.255

                                        add net <server-ip>: gateway 192.168.1.254

2013-08-31 15:14:24 *Tunnelblick: No 'connected.sh' script to execute

2013-08-31 15:14:24 /sbin/route add -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        add net 0.0.0.0: gateway 10.8.0.5

2013-08-31 15:14:24 /sbin/route add -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        add net 128.0.0.0: gateway 10.8.0.5

2013-08-31 15:14:24 MANAGEMENT: >STATE:1377958464,ADD_ROUTES,,,

2013-08-31 15:14:24 /sbin/route add -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        add net 10.8.0.1: gateway 10.8.0.5

2013-08-31 15:14:24 Initialization Sequence Completed

2013-08-31 15:14:24 MANAGEMENT: >STATE:1377958464,CONNECTED,SUCCESS,10.8.0.6,<server-ip>

2013-08-31 15:14:27 Connection reset, restarting [0]

2013-08-31 15:14:27 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 restart

2013-08-31 15:14:28 *Tunnelblick client.down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-31 15:14:28 SIGUSR1[soft,connection-reset] received, process restarting

2013-08-31 15:14:28 MANAGEMENT: >STATE:1377958468,RECONNECTING,connection-reset,,

2013-08-31 15:14:29 *Tunnelblick: No 'reconnecting.sh' script to execute

2013-08-31 15:14:29 MANAGEMENT: CMD 'hold release'

2013-08-31 15:14:29 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-31 15:14:29 Socket Buffers: R=[131072->65536] S=[131072->65536]

2013-08-31 15:14:29 MANAGEMENT: >STATE:1377958469,RESOLVE,,,

2013-08-31 15:14:29 Attempting to establish TCP connection with [AF_INET]<server-ip>:<server-port> [nonblock]

2013-08-31 15:14:29 MANAGEMENT: >STATE:1377958469,TCP_CONNECT,,,

2013-08-31 15:14:30 TCP connection established with [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:30 TCPv4_CLIENT link local: [undef]

2013-08-31 15:14:30 TCPv4_CLIENT link remote: [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:30 MANAGEMENT: >STATE:1377958470,WAIT,,,

2013-08-31 15:14:30 MANAGEMENT: >STATE:1377958470,AUTH,,,

2013-08-31 15:14:30 TLS: Initial packet from [AF_INET]<server-ip>:<server-port>, sid=947f854d fb23388e

2013-08-31 15:14:30 VERIFY OK: depth=1, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-31 15:14:30 VERIFY OK: nsCertType=SERVER

2013-08-31 15:14:30 VERIFY OK: depth=0, C=UK, ST=LON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=m...@myhost.mydomain

2013-08-31 15:14:31 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 15:14:31 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 15:14:31 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 15:14:31 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 15:14:31 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA

2013-08-31 15:14:31 [<server-name>] Peer Connection Initiated with [AF_INET]<server-ip>:<server-port>

2013-08-31 15:14:32 MANAGEMENT: >STATE:1377958472,GET_CONFIG,,,

2013-08-31 15:14:33 SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)

2013-08-31 15:14:33 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'

2013-08-31 15:14:33 OPTIONS IMPORT: timers and/or timeouts modified

2013-08-31 15:14:33 OPTIONS IMPORT: --ifconfig/up options modified

2013-08-31 15:14:33 OPTIONS IMPORT: route options modified

2013-08-31 15:14:33 Preserving previous TUN/TAP instance: tun0

2013-08-31 15:14:33 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 restart

2013-08-31 15:14:35 *Tunnelblick client.up.tunnelblick.sh: No network configuration changes need to be made.

2013-08-31 15:14:35 *Tunnelblick client.up.tunnelblick.sh: Will NOT monitor for other network configuration changes.

2013-08-31 15:14:35 Initialization Sequence Completed

2013-08-31 15:14:35 MANAGEMENT: >STATE:1377958475,CONNECTED,SUCCESS,10.8.0.6,<server-ip>

2013-08-31 15:14:35 *Tunnelblick: No 'connected.sh' script to execute

2013-08-31 15:14:39 Connection reset, restarting [-1]

2013-08-31 15:14:39 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 restart

2013-08-31 15:14:40 *Tunnelblick client.down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-31 15:14:40 SIGUSR1[soft,connection-reset] received, process restarting

2013-08-31 15:14:40 MANAGEMENT: >STATE:1377958480,RECONNECTING,connection-reset,,

2013-08-31 15:14:40 *Tunnelblick: No 'reconnecting.sh' script to execute

2013-08-31 15:14:40 MANAGEMENT: CMD 'hold release'

2013-08-31 15:14:40 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-31 15:14:40 Socket Buffers: R=[131072->65536] S=[131072->65536]

2013-08-31 15:14:40 MANAGEMENT: >STATE:1377958480,RESOLVE,,,

2013-08-31 15:14:40 Attempting to establish TCP connection with [AF_INET]<server-ip>:<server-port> [nonblock]

2013-08-31 15:14:40 MANAGEMENT: >STATE:1377958480,TCP_CONNECT,,,

2013-08-31 15:14:40 *Tunnelblick: Disconnecting; 'disconnect' button pressed

2013-08-31 15:14:40 *Tunnelblick: Disconnecting using 'killall'

2013-08-31 15:14:41 /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-31 15:14:42 *Tunnelblick client.route-pre-down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-31 15:14:42 /sbin/route delete -net 10.8.0.1 10.8.0.5 255.255.255.255

                                        delete net 10.8.0.1: gateway 10.8.0.5

2013-08-31 15:14:42 /sbin/route delete -net <server-ip> 192.168.1.254 255.255.255.255

                                        delete net <server-ip>: gateway 192.168.1.254

2013-08-31 15:14:42 /sbin/route delete -net 0.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 0.0.0.0: gateway 10.8.0.5

2013-08-31 15:14:42 /sbin/route delete -net 128.0.0.0 10.8.0.5 128.0.0.0

                                        delete net 128.0.0.0: gateway 10.8.0.5

2013-08-31 15:14:42 Closing TUN/TAP interface

2013-08-31 15:14:42 /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -p -f -atADGNWrdsgnw tun0 1500 1560 10.8.0.6 10.8.0.5 init

2013-08-31 15:14:43 *Tunnelblick client.down.tunnelblick.sh: WARNING: No existing OpenVPN DNS configuration found; not tearing down anything; exiting.

2013-08-31 15:14:43 SIGTERM[hard,init_instance] received, process exiting

2013-08-31 15:14:43 MANAGEMENT: >STATE:1377958483,EXITING,init_instance,,

2013-08-31 15:14:43 *Tunnelblick: No 'post-disconnect.sh' script to execute

jkbull...gmail.com

unread,
Aug 31, 2013, 10:35:21 AM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
OK. From the log, the OpenVPN server (or possibly a device between the server and your client computer) is resetting the connection:

2013-08-31 15:14:24 MANAGEMENT: >STATE:1377958464,CONNECTED,SUCCESS,10.8.0.6,<server-ip>
2013-08-31 15:14:27 Connection reset, restarting [0]

I have seen this (or something similar) when the server already has a connection established with a different client (maybe your Windows computer) that uses the same credentials.

So make sure your Windows computer (and all others) are not connected to the VPN, and see if that prevents this. Otherwise you might need to look on the OpenVPN server logs to see if it is in fact OpenVPN that is resetting the connection, and if so, why.

(I don't know if you can tell OpenVPN to allow multiple connections with the same credentials, but that may be a possibility.)



2013-08-31 15:14:24 MANAGEMENT: >STATE:1377958464,CONNECTED,SUCCESS,10.8.0.6,<server-ip>

2013-08-31 15:14:27 Connection reset, restarting [0]

xx

xx

Oliver Crow

unread,
Aug 31, 2013, 11:37:35 AM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
OK, so I have just made individual credentials for each user, and now both the Mac and Windows are on at the same time. The Windows can access the internet (as usual), but the Mac still cannot access the internet.

Here is the log now (by the way, the internet seems to work when I don't have "Route all traffic through the VPN" checked, but doesn't when I do have it checked):

2013-08-31 16:33:25 *Tunnelblick: OS X 10.8.4; Tunnelblick 3.3.0 (build 3518)

2013-08-31 16:33:25 *Tunnelblick: Attempting connection with <server-name> using shadow copy; Set nameserver = 1; monitoring connection

2013-08-31 16:33:25 *Tunnelblick: openvpnstart start <server-name>.tblk 1337 1 0 1 0 817 -atADGNWradsgnw -

2013-08-31 16:33:26 *Tunnelblick: openvpnstart log:

     Loading tun.kext

     

     OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):

     

          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn

          --cd

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name>.tblk/Contents/Resources

          --daemon

          --management

          127.0.0.1

          1337

          --config

          /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name>.tblk/Contents/Resources/config.ovpn

          --log

          /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name>.tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_817.1337.openvpn.log

          --management-query-passwords

          --management-hold

          --redirect-gateway

          def1

          --script-security

          2

          --up

          /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWradsgnw

          --down

          /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw

          --up-restart

          --route-pre-down

          /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw


2013-08-31 16:33:25 *Tunnelblick: openvpnstart starting OpenVPN:

                    *                    /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.3.2/openvpn --cd /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name>.tblk/Contents/Resources --daemon --management 127.0.0.1 1337 --config /Library/Application Support/Tunnelblick/Users/OliverCrow/<server-name>.tblk/Contents/Resources/config.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-SOliverCrow-SLibrary-SApplication Support-STunnelblick-SConfigurations-S<server--name>.tblk-SContents-SResources-Sconfig.ovpn.1_0_1_0_817.1337.openvpn.log --management-query-passwords --management-hold --redirect-gateway def1 --script-security 2 --up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWradsgnw --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw --up-restart --route-pre-down /Applications/Tunnelblick.app/Contents/Resources/client.route-pre-down.tunnelblick.sh -m -w -d -f -atADGNWradsgnw

2013-08-31 16:33:26 *Tunnelblick: Established communication with OpenVPN

2013-08-31 16:33:26 OpenVPN 2.3.2 i386-apple-darwin10.8.0 [SSL (OpenSSL)] [LZO] [PKCS11] [eurephia] [MH] [IPv6] built on Jul 22 2013

2013-08-31 16:33:26 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:1337

2013-08-31 16:33:26 Need hold release from management interface, waiting...

2013-08-31 16:33:26 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:1337

2013-08-31 16:33:26 MANAGEMENT: CMD 'pid'

2013-08-31 16:33:26 MANAGEMENT: CMD 'state on'

2013-08-31 16:33:26 MANAGEMENT: CMD 'state'

2013-08-31 16:33:26 MANAGEMENT: CMD 'bytecount 1'

2013-08-31 16:33:26 MANAGEMENT: CMD 'hold release'

2013-08-31 16:33:26 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts

2013-08-31 16:33:26 Socket Buffers: R=[131072->65536] S=[131072->65536]

2013-08-31 16:33:26 MANAGEMENT: >STATE:1377963206,RESOLVE,,,

2013-08-31 16:33:26 Attempting to establish TCP connection with [AF_INET]<server-ip>:<server-port> [nonblock]

2013-08-31 16:33:26 MANAGEMENT: >STATE:1377963206,TCP_CONNECT,,,

2013-08-31 16:33:27 TCP connection established with [AF_INET]<server-ip>:<server-port>

2013-08-31 16:33:27 TCPv4_CLIENT link local: [undef]

2013-08-31 16:33:27 TCPv4_CLIENT link remote: [AF_INET]<server-ip>:<server-port>

2013-08-31 16:33:27 MANAGEMENT: >STATE:1377963207,WAIT,,,

2013-08-31 16:33:27 MANAGEMENT: >STATE:1377963207,AUTH,,,

2013-08-31 16:33:27 TLS: Initial packet from [AF_INET]<server-ip>:<server-port>, sid=cbf8410f f43aaaaf

2013-08-31 16:33:28 VERIFY OK: depth=1, C=UK, ST=LONDON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=ma...@host.domain

2013-08-31 16:33:28 VERIFY OK: nsCertType=SERVER

2013-08-31 16:33:28 VERIFY OK: depth=0, C=UK, ST=LONDON, L=LONDON, O=<name>, OU=<name>, CN=<server-name>, name=<server-name>, emailAddress=ma...@host.domain

2013-08-31 16:33:29 Data Channel Encrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 16:33:29 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 16:33:29 Data Channel Decrypt: Cipher 'AES-128-CBC' initialized with 128 bit key

2013-08-31 16:33:29 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-08-31 16:33:29 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA

2013-08-31 16:33:29 [<server-name>] Peer Connection Initiated with [AF_INET]<server-ip>:<server-port>

2013-08-31 16:33:30 MANAGEMENT: >STATE:1377963210,GET_CONFIG,,,

2013-08-31 16:33:31 SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)

2013-08-31 16:33:31 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 8.8.8.8,dhcp-option DNS 8.8.4.4,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.10 10.8.0.9'

2013-08-31 16:33:31 OPTIONS IMPORT: timers and/or timeouts modified

2013-08-31 16:33:31 OPTIONS IMPORT: --ifconfig/up options modified

2013-08-31 16:33:31 OPTIONS IMPORT: route options modified

2013-08-31 16:33:31 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified

2013-08-31 16:33:31 TUN/TAP device /dev/tun0 opened

2013-08-31 16:33:31 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0

2013-08-31 16:33:31 MANAGEMENT: >STATE:1377963211,ASSIGN_IP,,10.8.0.10,

2013-08-31 16:33:31 /sbin/ifconfig tun0 delete

                                        ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address

2013-08-31 16:33:31 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure

2013-08-31 16:33:31 /sbin/ifconfig tun0 10.8.0.10 10.8.0.9 mtu 1500 netmask 255.255.255.255 up

2013-08-31 16:33:31 /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -f -atADGNWradsgnw tun0 1500 1560 10.8.0.10 10.8.0.9 init

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: Retrieved from OpenVPN: name server(s) [ 8.8.8.8 8.8.4.4 ], search domain(s) [ ] and SMB server(s) [ ] and using default domain name [ openvpn ]

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: MAN_DNS_CONFIG = <dictionary> { SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: MAN_SMB_CONFIG = <dictionary> { NetBIOSName : <name>-MBP Workgroup : WORKGROUP }

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: CUR_DNS_CONFIG = <dictionary> { SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: CUR_SMB_CONFIG = <dictionary> { NetBIOSName : <name>-MBP Workgroup : WORKGROUP }

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: DYN_DNS_DN = openvpn; DYN_DNS_SA = 8.8.8.8 8.8.4.4; DYN_DNS_SD =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: DYN_SMB_NN = ; DYN_SMB_WG = ; DYN_SMB_WA =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: MAN_DNS_DN = ; MAN_DNS_SA = 8.8.8.8 8.8.4.4; MAN_DNS_SD = home

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: MAN_SMB_NN = <name>-MBP; MAN_SMB_WG = WORKGROUP; MAN_SMB_WA =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: CUR_DNS_DN = ; CUR_DNS_SA = 8.8.8.8 8.8.4.4; CUR_DNS_SD = home

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: CUR_SMB_NN = <name>-MBP; CUR_SMB_WG = WORKGROUP; CUR_SMB_WA =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: ServerAddresses '8.8.8.8 8.8.4.4' ignored because ServerAddresses was set manually

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: Did not replace search domains 'home' with 'openvpn' because running under OS X 10.6 or higher and the search domains were set manually and 'Prepend domain name to search domains' was not selected

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: FIN_DNS_DN = openvpn; FIN_DNS_SA = 8.8.8.8 8.8.4.4; FIN_DNS_SD = home

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: FIN_SMB_NN = <name>-MBP; FIN_SMB_WG = WORKGROUP; FIN_SMB_WA =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: OS X 10.8 or higher, so will modify DNS settings using Setup: in addition to State:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: SKP_DNS = ; SKP_DNS_SA = ; SKP_DNS_SD = ; SKP_DNS_DN =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: SKP_SETUP_DNS =

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: SKP_SMB = #; SKP_SMB_NN = #; SKP_SMB_WG = #; SKP_SMB_WA = #

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: /etc/resolve = search home nameserver 8.8.8.8 nameserver 8.8.4.4

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: scutil --dns BEFORE CHANGES = DNS configuration resolver #1 search domain[0] : home nameserver[0] : 8.8.8.8 nameserver[1] : 8.8.4.4 reach : Reachable resolver #2 domain : local options : mdns timeout : 5 order : 300000 resolver #3 domain : 254.169.in-addr.arpa options : mdns timeout : 5 order : 300200 resolver #4 domain : 8.e.f.ip6.arpa options : mdns timeout : 5 order : 300400 resolver #5 domain : 9.e.f.ip6.arpa options : mdns timeout : 5 order : 300600 resolver #6 domain : a.e.f.ip6.arpa options : mdns timeout : 5 order : 300800 resolver #7 domain : b.e.f.ip6.arpa options : mdns timeout : 5 order : 301000 DNS configuration (for scoped queries) resolver #1 search domain[0] : home nameserver[0] : 8.8.8.8 nameserver[1] : 8.8.4.4 if_index : 4 (en0) flags : Scoped reach : Reachable

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Configuration changes:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD State: ServerAddresses 8.8.8.8 8.8.4.4

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD State: SearchDomains home

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD State: DomainName openvpn

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD Setup: ServerAddresses 8.8.8.8 8.8.4.4

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD Setup: SearchDomains home

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ADD Setup: DomainName openvpn

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ##ADD State: NetBIOSName <name>-MBP

2013-08-31 16:33:33 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ##ADD State: Workgroup WORKGROUP

2013-08-31 16:33:34 *Tunnelblick client.up.tunnelblick.sh: DEBUG: ##ADD State: WINSAddresses

2013-08-31 16:33:34 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:34 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Pause for configuration changes to be propagated to State:/Network/Global/DNS and .../SMB

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Configurations as read back after changes:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/.../DNS = <dictionary> { DomainName : openvpn SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/.../SMB = No such key

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Setup:/.../DNS = <dictionary> { DomainName : openvpn SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Setup:/.../SMB = <dictionary> { NetBIOSName : <name>-MBP Workgroup : WORKGROUP }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/Network/Global/DNS = <dictionary> { DomainName : openvpn SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/Network/Global/SMB = <dictionary> { NetBIOSName : <name>-MBP Workgroup : WORKGROUP }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: Expected by process-network-changes:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/Network/OpenVPN/DNS = <dictionary> { DomainName : openvpn SearchDomains : <array> { home } ServerAddresses : <array> { 8.8.8.8 8.8.4.4 } }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: State:/Network/OpenVPN/SMB = <dictionary> { NetBIOSName : <name>-MBP Workgroup : WORKGROUP }

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: /etc/resolve = search home nameserver 8.8.8.8 nameserver 8.8.4.4

2013-08-31 16:33:35 *Tunnelblick: No 'connected.sh' script to execute

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG: scutil --dns AFTER CHANGES = DNS configuration resolver #1 search domain[0] : home nameserver[0] : 8.8.8.8 nameserver[1] : 8.8.4.4 reach : Reachable resolver #2 domain : local options : mdns timeout : 5 order : 300000 resolver #3 domain : 254.169.in-addr.arpa options : mdns timeout : 5 order : 300200 resolver #4 domain : 8.e.f.ip6.arpa options : mdns timeout : 5 order : 300400 resolver #5 domain : 9.e.f.ip6.arpa options : mdns timeout : 5 order : 300600 resolver #6 domain : a.e.f.ip6.arpa options : mdns timeout : 5 order : 300800 resolver #7 domain : b.e.f.ip6.arpa options : mdns timeout : 5 order : 301000 DNS configuration (for scoped queries) resolver #1 search domain[0] : home nameserver[0] : 8.8.8.8 nameserver[1] : 8.8.4.4 if_index : 4 (en0) flags : Scoped reach : Reachable

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: DEBUG:

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: Saved the DNS and SMB configurations for later use

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: Flushed the DNS Cache

2013-08-31 16:33:35 *Tunnelblick client.up.tunnelblick.sh: Set up to monitor system configuration with leasewatch

2013-08-31 16:33:40 *Tunnelblick leasewatch: A system configuration change was ignored because it was not relevant

jkbull...gmail.com

unread,
Aug 31, 2013, 12:11:10 PM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com


On Saturday, August 31, 2013 11:37:35 AM UTC-4, Oliver Crow wrote:
by the way, the internet seems to work when I don't have "Route all traffic through the VPN" checked, but doesn't when I do have it checked

Without "Route all traffic through the VPN" checked, only traffic destined for the VPN goes through the VPN. All other traffic (for example, general web browsing) goes via the normal route that is used when the VPN is not connected.

So it makes sense that if there is a problem with the VPN, that:
  • Browsing works when "Route all traffic through the VPN" is not checked -- because the browsing traffic isn't going through the VPN; and
  • Browsing doesn't work when it is checked -- because the browsing traffic is going through the VPN (and since the VPN has a problem, dies there).
So, even though browsing doesn't work if it is checked, put a check in "Route all traffic through the VPN".

In addition, on the "Preferences" tab, make sure that "Check if the apparent public IP address changed after connection" is checked. That can help diagnose problems with the VPN. You should have one of two results: either Tunnelblick will say that DNS is not working, or Tunnelblick will say that the Internet is not reachable. That is important information for figuring out why the VPN isn't working.

Assuming it is not a DNS problem, your best bet for debugging this is to compare the OpenVPN output on the Windows client to the output from Tunnelblick. You need to look at the OpenVPN messages between the PUSH_REQUEST message like:
SENT CONTROL [<server-name>]: 'PUSH_REQUEST' (status=1)
and the "CONNECTED" message like:
MANAGEMENT: >STATE:1377739633,CONNECTED,SUCCESS,10.8.0.6,<server-ip>
(and ignore all the messages that contain "*Tunnelblick:"  because they come from Tunnelblick, not OpenPVN, and probably aren't relevant to this problem).

So get that log info from Windows, and compare it to the output from Tunnelblick.



Oliver Crow

unread,
Aug 31, 2013, 12:44:19 PM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
I will do that.

I currently have the "Check if the apparent public IP address changed after connection" unchecked because I would like to get everything set up on my network before I can use it on another network, as I assume that if it doesn't work locally, then it isn't going to work externally. I also think that there is little point in ticking this box locally because I will just get a load of messages saying that my IP hasn't changed, which it shouldn't as we are on the same network.

jkbull...gmail.com

unread,
Aug 31, 2013, 12:57:00 PM8/31/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
I understand you want to get things working "locally" before trying to connect from outside your LAN. However, you should be aware that connecting to an OpenVPN server from a client that is on the same LAN subnet can cause problems. You might actually be better off getting it working from outside the LAN.

The "Check if the apparent public IP address changed after connection" tests are helpful even if the address doesn't change because the test does the following:
  • Before connecting, it connects to tunnelblick.net to get the client's apparent public IP address and tunnelblick.net's public IP address
  • After connecting, it first tries (for 30 seconds, I thnk) to connect to tunnelblick.net by using the name. For this to work, DNS needs to be working and routing needs to be working.
  • If that fails, it tries to connect to tunnelblick.net by using the (saved) IP address; again, for 30 seconds. For this to work, routing needs to be working but DNS does not need to be working.
So if, after connecting, routing works but DNS doesn't, then there is a DNS problem. If neither works, then there is a routing problem (and there may also be a DNS problem, too, but the routing problem must be fixed first).

Oliver Crow

unread,
Sep 1, 2013, 8:52:47 AM9/1/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
Thanks for all of your help, but I have managed to rectify the issue and now everything is working perfectly!

It turned out to be a pretty big issue on the server side!

tom...@gmail.com

unread,
Oct 23, 2013, 1:28:55 PM10/23/13
to tunnelbli...@googlegroups.com, cro...@gmail.com
Oliver, how did you fix it? I have similar issues, and also suspect it's server side

tom...@gmail.com

unread,
Jan 26, 2014, 1:30:56 PM1/26/14
to tunnelbli...@googlegroups.com, cro...@gmail.com, tom...@gmail.com
same here, what was the issue plz?

Tomas
Reply all
Reply to author
Forward
0 new messages