Hi Doctor,

HMAC indicates that your --tls-auth settings are incorrect.

I point out the fault below.

Shameless plug:
https://github.com/TinCanTech/easy-tls/wiki

FTR:
  "# This file is secret"
could be better explained as
  "# This file is shared secret"

HTH
tct


On 04/04/2020 00:30, The Doctor via Openvpn-users wrote:
All right.

Trying to set up a  radius based authentication openvpn on
Freebsd 12.!

.

Server file:
-----------------------------------------------------


<snip>


tls-auth /usr/local/etc/openvpn/server/ta.key 0 # This file is secret


<snip>

-----------------------------------------------

Trying either LDAP or Radius authentication methphds.

I have the following client file:

------------------------------------------------------------


<snip>

;tls-auth /usr/local/etc/openvpn/server/ta.key 1

<snip>

----------------------------------------------------------------



server log is gving me this:

----------------------------------------------------------------



<snip>

Apr  3 17:13:41 doctor kernel: <118>Apr  3 17:13:41 doctor openvpn[80649]: TLS 
Error: cannot locate HMAC in incoming packet from [AF_INET]75.156.190.254:58210

<snip>


--------------------------------------------------------

what is needed to get this to work?



_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to