Portál AbcLinuxu, 9. května 2025 00:39
mode server tls-server dev tap0 ifconfig 10.0.0.100 255.255.255.0 ifconfig-pool 10.0.0.1 10.0.0.90 255.255.255.0 duplicate-cn ca /etc/openvpn/cacert.pem cert /etc/vpn/vpn.crt key /etc/openvpn/vpn.key dh /etc/openvpn/dh1024.pem log-append /var/log/openvpn status /var/run/openvpn/vpn.status 10 user openvpn group openvpn comp-lzo verb3Pokud spustim openvpn prikazem
openvpn --config /cesta/ke/konfigurakutak se mi stejne nevytvori zarizeni tapO nevyte nekdo co s tim.... Diky za kazdou radu
Sat Mar 19 15:10:14 2005 OpenVPN 2.0_rc16 i586-pc-linux \ [SSL] [LZO] built on Mar 19 2005 Sat Mar 19 15:10:14 2005 IMPORTANT: OpenVPN's default port \ number is now 1194, based on an official port number \ assignment by IANA. OpenVPN 2.0-beta16 and earlier used \ 5000 as the default port. Sat Mar 19 15:10:14 2005 WARNING: you are using \ user/group/chroot without persist-key/persist-tun \ -- this may cause restarts to fail Sat Mar 19 15:10:14 2005 WARNING: --keepalive option is \ missing from server config Sat Mar 19 15:10:14 2005 Diffie-Hellman initialized with \ 1024 bit key Sat Mar 19 15:10:15 2005 WARNING: file '/etc/openvpn/cert/server.key' \ is group or others accessible Sat Mar 19 15:10:15 2005 TLS-Auth MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ] Sat Mar 19 15:10:15 2005 Note: Cannot open TUN/TAP dev /dev/net/tun: No such file or directory (errno=2) Sat Mar 19 15:10:15 2005 Note: Attempting fallback to kernel 2.2 TUN/TAP interface Sat Mar 19 15:10:15 2005 Cannot allocate TUN/TAP dev dynamically Sat Mar 19 15:10:15 2005 Exiting Sat Mar 19 15:27:34 2005 OpenVPN 2.0_rc16 i586-pc-linux [SSL] [LZO] built on Mar 19 2005 Sat Mar 19 15:27:34 2005 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port. Sat Mar 19 15:27:34 2005 WARNING: you are using user/group/chroot without persist-key/persist-tun -- this may cause restarts to fail Sat Mar 19 15:27:34 2005 WARNING: --keepalive option is missing from server config Sat Mar 19 15:27:34 2005 Diffie-Hellman initialized with 1024 bit key Sat Mar 19 15:27:34 2005 WARNING: file '/etc/openvpn/cert/server.key' is group or others accessible Sat Mar 19 15:27:34 2005 TLS-Auth MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ] Sat Mar 19 15:27:34 2005 Note: Cannot open TUN/TAP dev /dev/net/tun: No such file or directory (errno=2) Sat Mar 19 15:27:34 2005 Note: Attempting fallback to kernel 2.2 TUN/TAP interface Sat Mar 19 15:27:34 2005 Cannot allocate TUN/TAP dev dynamically Sat Mar 19 15:27:34 2005 Exitingv /dev/net mi chybi zarizeni tun Distro RedHat 7.3
Module Size Used by Not tainted tun 5088 0 (unused) autofs 11940 0 (autoclean) (unused) 8139too 16768 2 mii 2280 0 [8139too] ipt_mac 1440 2 (autoclean) ipt_state 1408 1 (autoclean) ipt_MASQUERADE 2272 1 (autoclean) iptable_nat 19348 1 (autoclean) [ipt_MASQUERADE] ip_conntrack 20044 2 (autoclean) \ [ipt_state ipt_MASQUERADE iptable_nat] iptable_mangle 3008 1 (autoclean) iptable_filter 2624 1 (autoclean) ip_tables 13536 8 [ipt_mac ipt_state \ ipt_MASQUERADE iptable_nat iptable_mangle iptable_filter] ide-cd 29856 0 (autoclean) cdrom 33184 0 (autoclean) [ide-cd] ext3 64448 2 jbd 47608 2 [ext3]
mknod /dev/net/tun c 10 200
/etc/openvpn/vpn.conf dev tun0Dám:
mknod /dev/net/tun c 10 200
modprobe tunA zařízení se mi v routovací tabulce neobjeví. Poraďte mi prosím.
modprobe tun modprobe ethertapv /etc/openvpn/vpn_server.conf mam tohle
mode server tls-server dev tap ifconfig 10.0.0.100 255.255.255.0 ifconfig-pool 10.0.0.1 10.0.0.90 255.255.255.0 duplicate-cn ca /etc/openvpn/cert/tmp-ca.crt cert /etc/openvpn/cert/server.crt key /etc/openvpn/cert/server.key dh /etc/openvpn/cert/dh1024.pem log-append /var/log/openvpn status /var/run/vpn.status 10 user root group root comp-lzo verb 3VPN spoustim
openvpn --config /etc/openvpn/vpn_server.confPorad mam v logu nejaky Warning, ale ty se vztahuji na certifikaty. s temi vam moc nepomohu protoze v nich plavu tez a zkousim pokus omyl. tenhle postup co jsem popsal mi ale funguje a zarizeni tap0 se vytvori. Pro tun mi to chodilo taky ale je malinko jiny konfiguracni soubor.
mode server tls-server dev tap0 ifconfig 10.0.0.100 255.255.255.0 ifconfig-pool 10.0.0.1 10.0.0.90 255.255.255.0 duplicate-cn ca /etc/openvpn/cert/ca.crt cert /etc/openvpn/cert/server.crt key /etc/openvpn/cert/server.key dh /etc/openvpn/cert/dh1024.pem log-append /var/log/openvpn status /var/run/vpn.status 10 user openvpn group openvpn comp-lzo verb 3Po spusteni VPN takhle:
openvpn --config /etc/openvpn/vpn_server.confse mi v logu objeví toto:
Wed May 18 09:38:15 2005 OpenVPN 2.0_beta11 i686-pc-linux [SSL] [LZO] built on Oct 26 2004 Wed May 18 09:38:15 2005 Diffie-Hellman initialized with 1024 bit key Wed May 18 09:38:15 2005 TLS-Auth MTU parms [ L:1574 D:138 EF:38 EB:0 ET:0 EL:0 ] Wed May 18 09:38:15 2005 Note: Cannot ioctl TUNSETIFF tap0: Device or resource busy (errno=16) Wed May 18 09:38:15 2005 Note: Attempting fallback to kernel 2.2 TUN/TAP interface Wed May 18 09:38:15 2005 Cannot open TUN/TAP dev /dev/tap0: No such device (errno=19) Wed May 18 09:38:15 2005 ExitingNevíte co s tím?
dev tap0dejte
dev tappotom by to melo uz konecne fungovat
Tue May 24 09:34:35 2005 OpenVPN 2.0 i586-pc-linux [SSL] [LZO] built on May 18 2005 Tue May 24 09:34:35 2005 IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port. Tue May 24 09:34:35 2005 WARNING: you are using user/group/chroot without persist-key/persist-tun -- this may cause restarts to fail Tue May 24 09:34:35 2005 WARNING: --keepalive option is missing from server config Tue May 24 09:34:35 2005 Diffie-Hellman initialized with 1024 bit key Tue May 24 09:34:35 2005 TLS-Auth MTU parms [ L:1573 D:138 EF:38 EB:0 ET:0 EL:0 ] Tue May 24 09:34:35 2005 TUN/TAP device tap1 opened Tue May 24 09:34:35 2005 /sbin/ifconfig tap1 10.0.1.100 netmask 255.255.255.0 mtu 1500 broadcast 10.0.1.255 Tue May 24 09:34:35 2005 Data Channel MTU parms [ L:1573 D:1450 EF:41 EB:4 ET:32 EL:0 ] Tue May 24 09:34:35 2005 GID set to openvpn Tue May 24 09:34:35 2005 UID set to openvpn Tue May 24 09:34:35 2005 UDPv4 link local (bound): [undef]:1194 Tue May 24 09:34:35 2005 UDPv4 link remote: [undef] Tue May 24 09:34:35 2005 MULTI: multi_init called, r=256 v=256 Tue May 24 09:34:35 2005 IFCONFIG POOL: base=10.0.1.1 size=90 Tue May 24 09:34:35 2005 Initialization Sequence Completed Tue May 24 09:34:36 2005 event_wait : Interrupted system call (code=4) Tue May 24 09:34:36 2005 TCP/UDP: Closing socket Tue May 24 09:34:36 2005 Closing TUN/TAP interface Tue May 24 09:34:36 2005 SIGINT[hard,] received, process exitingPing na 10.0.1.100 mi vypíše
PING 10.0.1.100 (10.0.1.100) 56(84) bytes of data. ping: sendmsg: Operation not permitted ping: sendmsg: Operation not permitted ping: sendmsg: Operation not permittedNevíte co s tím?
modprobe tun openvpn --mktun --dev tap0 openvpn --mktun --dev tun0
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.