Re: [Openvpn-users] --user specified but lacking CAP_SETPCAP

2023-10-23 Thread Peter Davis via Openvpn-users
Hi, I see the same message. Linux capabilities? Should I install any package or...? Sent with Proton Mail secure email. --- Original Message --- On Monday, October 23rd, 2023 at 8:24 PM, Gert Doering wrote: > Hi, > > On Mon, Oct 23, 2023 at 11:03:27AM +, Jason Long via Openvpn-

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Peter Davis via Openvpn-users
Hi, Thanks. Problem solved. Sent with Proton Mail secure email. --- Original Message --- On Monday, October 23rd, 2023 at 3:58 PM, Gert Doering wrote: > Hi, > > On Mon, Oct 23, 2023 at 12:20:06PM +, Peter Davis wrote: > > > 2023-10-23 15:46:59 Authenticate/Decrypt packet erro

Re: [Openvpn-users] --user specified but lacking CAP_SETPCAP

2023-10-23 Thread Gert Doering
Hi, On Mon, Oct 23, 2023 at 11:03:27AM +, Jason Long via Openvpn-users wrote: > Hello, > My OpenVPN server started, but I got the following message in the > "openvpn.log": > > --user specified but lacking CAP_SETPCAP. Cannot retain CAP_NET_ADMIN. > Disabling data channel offload Well, you

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Mathias Jeschke
Hi Peter, Peter Davis wrote: Hi, The server log showed me: 2023-10-23 15:46:59 Authenticate/Decrypt packet error: packet HMAC authentication failed 2023-10-23 15:46:59 TLS Error: incoming packet authentication failed from [AF_INET]192.168.1.3:51999 2023-10-23 15:47:02 Authenticate/Decrypt pac

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Jochen Bern
On 23.10.23 14:10, Peter Davis via Openvpn-users wrote: Hello, I installed the OpenVPN on Debian 12 and configured it as below: [...] tls-auth /etc/openvpn/server/ta.key 0 [...] Client configuration is: [...] tls-crypt "C:\\Program Files\\OpenVPN\\config\\ta.key" 1 [...] How to solve

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Gert Doering
Hi, On Mon, Oct 23, 2023 at 12:20:06PM +, Peter Davis wrote: > 2023-10-23 15:46:59 Authenticate/Decrypt packet error: packet HMAC > authentication failed > 2023-10-23 15:46:59 TLS Error: incoming packet authentication failed from > [AF_INET]192.168.1.3:51999 tls-auth/tls-crypt is not matchi

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Peter Davis via Openvpn-users
Hi, The server log showed me: 2023-10-23 15:46:59 Authenticate/Decrypt packet error: packet HMAC authentication failed 2023-10-23 15:46:59 TLS Error: incoming packet authentication failed from [AF_INET]192.168.1.3:51999 2023-10-23 15:47:02 Authenticate/Decrypt packet error: packet HMAC authenti

Re: [Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Gert Doering
Hi, On Mon, Oct 23, 2023 at 12:10:28PM +, Peter Davis via Openvpn-users wrote: > How to solve it? Look in the server logs if the server receives any packets at all. If yes, check the server logs what it does not like. If not, check the firewall rules. gert -- "If was one thing all people

[Openvpn-users] How to solve the TLS key negotiation failed error?

2023-10-23 Thread Peter Davis via Openvpn-users
Hello, I installed the OpenVPN on Debian 12 and configured it as below: port 1194 proto udp dev tun0 server 10.11.0.0 255.255.255.0 push "dhcp-option DNS 1.1.1.1" push "dhcp-option DNS 8.8.8.8" topology subnet push "redirect-gateway def1 bypass-dhcp" keepalive 10 120 tls-auth /etc/openvpn/server/t

[Openvpn-users] --user specified but lacking CAP_SETPCAP

2023-10-23 Thread Jason Long via Openvpn-users
Hello, My OpenVPN server started, but I got the following message in the "openvpn.log": --user specified but lacking CAP_SETPCAP. Cannot retain CAP_NET_ADMIN. Disabling data channel offload My server.conf is: port 2023 proto udp dev tun1 ca /etc/openvpn/server/ca.crt cert /etc/openvpn/server/Se