Re: [Openvpn-users] Default behaviour of ncp-ciphers on the server

2017-06-29 Thread Gert Doering
Hi, On Fri, Jun 30, 2017 at 07:27:14AM +0200, SaAtomic wrote: > If the server does not explicitly define the `ncp-ciphers` option in the > configuration, just `cipher AES-128-CBC`, I assume the default of the > `ncp-ciphers` is enabled (AES-256-GCM:AES-128-GCM), right? Right. > The client has

[Openvpn-users] Default behaviour of ncp-ciphers on the server

2017-06-29 Thread SaAtomic
Hello! I have a question regarding the default behaviour of the ncp-ciphers option on the server. In the example, both client and server use OpenVPN 2.4.0. If the server does not explicitly define the `ncp-ciphers` option in the configuration, just `cipher AES-128-CBC`, I assume the default of

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread Philipp Helo Rehs
Thank you, this fixed the problem! On 29.06.2017 15:09, debbie10t wrote: > > > On 29/06/17 14:06, debbie10t wrote: >> >> >> On 29/06/17 08:55, Philipp Helo Rehs wrote: >>> >>> Do you have any idea to fix this? > > You probably want to use --ncp-disable for your particular setup > because *you*

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread debbie10t
On 29/06/17 14:06, debbie10t wrote: On 29/06/17 08:55, Philipp Helo Rehs wrote: Do you have any idea to fix this? You probably want to use --ncp-disable for your particular setup because *you* do not want to negotiate your ciphers. --

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread Mathias Jeschke
Hi Philipp, Philipp Helo Rehs wrote: Do you have any further idea? I have downgraded to 2.3.14 and it works again. Why have you added this to the config? keysize 128 Try to comment out and run again. Cheers, Mathias --

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread debbie10t
On 29/06/17 08:55, Philipp Helo Rehs wrote: Hello, i am running Redhat 7 and use openvpn 2.4.3 from epel but i have got a big problem since the update from 2.3.x Jun 28 18:32:38 vpn openvpn-zuvsupport[23218]: TCP connection established with [AF_INET]x.x.x.x:39682 Jun 28 18:32:39 vpn openvp

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread Philipp Helo Rehs
Hello, yes I am running RHEL7. I have fixed the issues about unknown options but still the connection fails with an openssl error: OpenSSL: error:0607A082:digital envelope routines:EVP_CIPHER_CTX_set_key_length:invalid key length Do you have any further idea? I have downgraded to 2.3.14 and it

Re: [Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread David Sommerseth
On 29/06/17 09:55, Philipp Helo Rehs wrote: > Hello, > > i am running Redhat 7 and use openvpn 2.4.3 from epel but i have got a > big problem since the update from 2.3.x I hope you mean RHEL 7 (Red Hat Enterprise Linux 7) and not Red Hat Linux 7 (released in September 2000). > Jun 28 18:32:38 vp

[Openvpn-users] OpenVPN 2.4.3 OpenSSL: error:0607A082

2017-06-29 Thread Philipp Helo Rehs
Hello, i am running Redhat 7 and use openvpn 2.4.3 from epel but i have got a big problem since the update from 2.3.x Jun 28 18:32:38 vpn openvpn-zuvsupport[23218]: TCP connection established with [AF_INET]x.x.x.x:39682 Jun 28 18:32:39 vpn openvpn-zuvsupport[23218]: x.x.x.x:39682 peer info: IV_VE