Yealink Forums

Full Version: Server Elastix with Openvpn and SIP-T21P
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
hello

I have a problem with the T21P and SIP phone to connect my server Elastix VPN with OpenVPN and EasyVPN ( Graphic Manager )

Everything indicates that the server is properly configured for that if I can connect to vpn clients Windows, Linux and Iphone / Ipad but I can not connect a phone T21P
Genero the cliente.tar and get into the phone settings and the OpenVPN server is not detected
At the time this detecting other clients

I would like to indicate which is exactly the configuration of vpn.cfg ( which is what differs from other clients )

I think in that direction is the solution of the problem

If you have suggestions I ask you to please make me know

Thank you in advance for your support
Hi, to Yealink OpenVPN please note:

1. SHA256 is not supported now.
2. Make sure that the "keys" folder and "vpn.cnf" file are compressed directly, don't put them into any folders.
3. Make sure that the parameter in cnf file is filled correctly, you can send the cnf file to us.
4. If it still doesn't work, please set the syslog level to 6, reproduce the issue and export it to us.

Regards,
James
hi,
I have the same problem on my server Elastix (2.5) with EasyVPN,
exporting files for Windows works , but on T21P not.
this is my t21p log

Aug 23 07:35:59 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:00 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:00 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:00 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:00 openvpn[362]: LZO compression initialized
Aug 23 07:36:00 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:00 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:00 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:00 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:00 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:00 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:00 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:00 openvpn[362]: TLS: Initial packet from Myip:1194, sid=1cb8c868 794d0bb1
Aug 23 07:36:01 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:01 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:01 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:01 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:01 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:01 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:01 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:03 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:03 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:03 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:03 openvpn[362]: LZO compression initialized
Aug 23 07:36:03 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:03 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:03 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:03 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:03 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:03 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:03 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060)
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Expires: 3600^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Content-Length: 0^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] ^M
Aug 23 07:36:03 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:03 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:03 openvpn[362]: TLS: Initial packet from Myip:1194, sid=ff16ad6e 01d5bfdc
Aug 23 07:36:04 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:04 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:04 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:04 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:04 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:04 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:04 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:06 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:06 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:06 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:06 openvpn[362]: LZO compression initialized
Aug 23 07:36:06 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:06 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:06 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:06 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:06 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:06 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:06 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:06 openvpn[362]: TLS: Initial packet from Myip:1194, sid=a985ef25 248c9c4e
Aug 23 07:36:06 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:06 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:06 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:06 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:06 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:06 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:06 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060)
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Expires: 3600^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Content-Length: 0^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] ^M
Aug 23 07:36:07 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:07 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:08 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:08 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:08 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:08 openvpn[362]: LZO compression initialized
Aug 23 07:36:08 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:08 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:08 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:08 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:08 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:08 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:08 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:08 openvpn[362]: TLS: Initial packet from Myip:1194, sid=8b4451b3 b2239823
Aug 23 07:36:09 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:09 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:09 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:09 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:09 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:09 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:09 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:11 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:11 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:11 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:11 openvpn[362]: LZO compression initialized
Aug 23 07:36:11 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:11 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:11 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:11 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:11 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:11 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:11 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060)
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Expires: 3600^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Content-Length: 0^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] ^M
Aug 23 07:36:11 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:11 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:11 openvpn[362]: TLS: Initial packet from Myip:1194, sid=2465b3af 28d53536
Aug 23 07:36:12 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:12 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:12 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:12 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:12 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:12 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:12 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:14 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:14 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:14 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:14 openvpn[362]: LZO compression initialized
Aug 23 07:36:14 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:14 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:14 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:14 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:14 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:14 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:14 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:14 openvpn[362]: TLS: Initial packet from Myip:1194, sid=9ddff1c8 b6b095b8
Aug 23 07:36:15 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:15 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:15 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:15 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:15 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:15 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:15 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060)
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Expires: 3600^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Content-Length: 0^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] ^M
Aug 23 07:36:15 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:15 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:17 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:17 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:17 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:17 openvpn[362]: LZO compression initialized
Aug 23 07:36:17 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:17 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:17 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:17 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:17 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:17 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:17 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:17 openvpn[362]: TLS: Initial packet from Myip:1194, sid=1023c6f5 89e3e80a
Aug 23 07:36:18 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:18 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:18 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:18 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:18 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:18 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:18 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060)
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Expires: 3600^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Content-Length: 0^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] ^M
Aug 23 07:36:19 SIP [239]: SDL <6+info > [000]
Aug 23 07:36:19 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M
Aug 23 07:36:19 Log [253]: WEB <6+info > step1:lpsz1[admin],lpsz2[admin],len=5
Aug 23 07:36:19 Log [253]: WEB <6+info > step2:IN[uoCbM.VEiKQto],GET[uoCbM.VEiKQto],R=1
Aug 23 07:36:19 Log [253]: WEB <6+info > ip:192.168.1.100 Login in success!
Aug 23 07:36:20 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:20 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:20 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:20 openvpn[362]: LZO compression initialized
Aug 23 07:36:20 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:20 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:20 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:20 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:20 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:20 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:20 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:20 openvpn[362]: TLS: Initial packet from Myip:1194, sid=271a6930 238a6751
Aug 23 07:36:20 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:20 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:20 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:20 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:20 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:20 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:20 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:22 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:22 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:22 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:22 openvpn[362]: LZO compression initialized
Aug 23 07:36:22 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:22 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:22 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:22 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:22 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:22 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:22 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:23 openvpn[362]: TLS: Initial packet from Myip:1194, sid=859a0fd7 a96a73af
Aug 23 07:36:23 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:23 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:23 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:23 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:23 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:23 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:23 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:24 SIP [239]: SUA <6+info > [000] Emb event:[0x00000002] recv
Aug 23 07:36:24 TR9 [324]: TR9 <6+info > Message Recieved: 10006, 0, 3
Aug 23 07:36:24 Log [134]: ACCU<6+info > CAccountManager::OnLineStateChange wParam[0] lParam[3]
Aug 23 07:36:24 Log [134]: FWDD<6+info > FWD:account0 CFA:0 CFB:0 CFNA:0
Aug 23 07:36:24 Log [134]: ACCU<4+warnin> Register failid: [<info failid="408" failreason="request timout!"/>]
Aug 23 07:36:24 Log [134]: CC <6+info > Received message[0x71100002]
Aug 23 07:36:24 Log [134]: CC <6+info > OnBCMessage BROAD_MSG_LINE_STATE_CHANGE LPARAM[3], wParam[0]
Aug 23 07:36:24 TR9 [324]: TR9 <6+info > Message Recieved: 10006, 0, 3
Aug 23 07:36:24 SIP [239]: SIP <5+notice> [SIP] Main Recv:[0x0004000e] wParam:(0x0000),lParam:(0x0000) SIP_MSG_QUERY_BLF_STATUS
Aug 23 07:36:24 Log [134]: SCA <6+info > Init BS SCA Manager[0].
Aug 23 07:36:24 Log [134]: CUIT<6+info > SetStaus Type[11], Status[0]
Aug 23 07:36:24 SIP [239]: SUA <5+notice> [000] reg status changed to [(LS_REGISTER_FAIL) -- (3)], reason=[<info failid="408" failreason="request timout!"/>]
Aug 23 07:36:24 Log [134]: CUIT<6+info > Power Light *OFF* by Common Setting.
Aug 23 07:36:24 SIP [239]: SUA <3+error > [000] [Server0]: try reg again after (30) s
Aug 23 07:36:24 Log [134]: CUIT<6+info > Set Power Light Status to [0]
Aug 23 07:36:24 SIP [239]: SUA <6+info > [016] App event:[0x80000005] wParam:(0x0000),lParam:(0x0000) SIP_MSG_BLF_LIST_STATUS_UPDATE
Aug 23 07:36:24 Log [134]: CCET<6+info > Controller ProcessMessage(65542),objMessage.wParam(0)
Aug 23 07:36:24 SIP [239]: SUA <6+info > [000] App event:[0x80000005] wParam:(0x0000),lParam:(0x0000) SIP_MSG_BLF_LIST_STATUS_UPDATE
Aug 23 07:36:24 Log [134]: TALK<6+info > [MSG:SIP==>Talklogic] message=[PHONE_MSG_BLF_STATUS_UPDATE][a0012] wParam=[0] lParam=[0]
Aug 23 07:36:25 Log [134]: DSSK<6+info > CDssKeyManager: RemoteStatus:{3,3,3,3,3,3,3,3,3,3,3,3,3,3,3,3}
Aug 23 07:36:25 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:25 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:25 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:25 openvpn[362]: LZO compression initialized
Aug 23 07:36:25 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:25 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:25 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:25 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:25 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:25 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:25 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:25 openvpn[362]: TLS: Initial packet from Myip:1194, sid=396cf6ef 2cec8725
Aug 23 07:36:26 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:26 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:26 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:26 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:26 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:26 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:26 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:28 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:28 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:28 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:28 openvpn[362]: LZO compression initialized
Aug 23 07:36:28 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:28 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:28 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:28 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:28 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:28 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:28 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:28 openvpn[362]: TLS: Initial packet from Myip:1194, sid=9820d648 c2ab2180
Aug 23 07:36:28 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:28 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:28 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:28 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:28 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:28 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:28 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:30 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 23 07:36:30 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Aug 23 07:36:30 openvpn[362]: Re-using SSL/TLS context
Aug 23 07:36:30 openvpn[362]: LZO compression initialized
Aug 23 07:36:30 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Aug 23 07:36:30 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072]
Aug 23 07:36:30 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Aug 23 07:36:30 openvpn[362]: Local Options hash (VER=V4): '41690919'
Aug 23 07:36:31 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded'
Aug 23 07:36:31 openvpn[362]: UDPv4 link local: [undef]
Aug 23 07:36:31 openvpn[362]: UDPv4 link remote: Myip:1194
Aug 23 07:36:31 openvpn[362]: TLS: Initial packet from Myip:1194, sid=5a35ebcc 6c4c2952
Aug 23 07:36:31 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com
Aug 23 07:36:31 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Aug 23 07:36:31 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error
Aug 23 07:36:31 openvpn[362]: TLS Error: TLS handshake failed
Aug 23 07:36:31 openvpn[362]: TCP/UDP: Closing socket
Aug 23 07:36:31 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting
Aug 23 07:36:31 openvpn[362]: Restart pause, 2 second(s)
Aug 23 07:36:33 Log [134]: CUIT<6+info > TalkLogic: PHONE_MSG_GETWORKSTATUS[0][1]!
eth0 Link encap:Ethernet HWaddr 00:15:65:6ABig Grin4:B2
inet addr:192.168.1.109 Bcast:192.168.1.255 Mask:255.255.255.0
inet6 addr: fe80::215:65ff:fe6a:d4b2/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:635 errors:0 dropped:0 overruns:0 frame:0
TX packets:499 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:97648 (95.3 KiB) TX bytes:165020 (161.1 KiB)
Interrupt:22 Base address:0x2000

lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)


this is my server.conf on elastix easyvpn

port 1194
proto udp
dev tun
ca ca.crt
cert server.crt
key server.key
dh dh1024.pem
server 10.0.8.0 255.255.255.0
ifconfig-pool-persist ipp.txt
keepalive 10 120
comp-lzo
user asterisk
group asterisk
persist-key
persist-tun
status openvpn-status.log
verb 3
client-to-client
#111crl-verify /etc/openvpn/crl.pem


this is my vpn.cnf

client
dev tun
proto udp
remote myip 1194
resolv-retry infinite
nobind
persist-key
persist-tun
mute-replay-warnings
ca /config/openvpn/keys/ca.crt
cert /config/openvpn/keys/client2.crt
key /config/openvpn/keys/client2.key
comp-lzo
verb 3

I also changed from SHA256 to openssl md5 in the server but nothing .
if I connect with Windows works , by telephone no .
I am desperate esto crazy .
sorry for my english but I'm Italian and I do not speak well
thank you
Reference URL's