Server Elastix with Openvpn and SIP-T21P - Printable Version +- Yealink Forums (http://forum.yealink.com/forum) +-- Forum: IP Phone Series (/forumdisplay.php?fid=4) +--- Forum: Configuration (/forumdisplay.php?fid=24) +--- Thread: Server Elastix with Openvpn and SIP-T21P (/showthread.php?tid=3794) |
Server Elastix with Openvpn and SIP-T21P - betobono - 05-12-2015 10:36 AM hello I have a problem with the T21P and SIP phone to connect my server Elastix VPN with OpenVPN and EasyVPN ( Graphic Manager ) Everything indicates that the server is properly configured for that if I can connect to vpn clients Windows, Linux and Iphone / Ipad but I can not connect a phone T21P Genero the cliente.tar and get into the phone settings and the OpenVPN server is not detected At the time this detecting other clients I would like to indicate which is exactly the configuration of vpn.cfg ( which is what differs from other clients ) I think in that direction is the solution of the problem If you have suggestions I ask you to please make me know Thank you in advance for your support RE: Server Elastix with Openvpn and SIP-T21P - James_Yealink - 05-12-2015 05:13 PM Hi, to Yealink OpenVPN please note: 1. SHA256 is not supported now. 2. Make sure that the "keys" folder and "vpn.cnf" file are compressed directly, don't put them into any folders. 3. Make sure that the parameter in cnf file is filled correctly, you can send the cnf file to us. 4. If it still doesn't work, please set the syslog level to 6, reproduce the issue and export it to us. Regards, James RE: Server Elastix with Openvpn and SIP-T21P - voipsistemi - 08-23-2015 03:45 PM hi, I have the same problem on my server Elastix (2.5) with EasyVPN, exporting files for Windows works , but on T21P not. this is my t21p log Aug 23 07:35:59 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:00 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:00 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:00 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:00 openvpn[362]: LZO compression initialized Aug 23 07:36:00 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:00 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:00 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:00 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:00 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:00 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:00 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:00 openvpn[362]: TLS: Initial packet from Myip:1194, sid=1cb8c868 794d0bb1 Aug 23 07:36:01 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:01 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:01 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:01 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:01 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:01 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:01 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:03 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:03 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:03 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:03 openvpn[362]: LZO compression initialized Aug 23 07:36:03 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:03 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:03 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:03 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:03 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:03 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:03 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060 Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060) Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Expires: 3600^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Content-Length: 0^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] ^M Aug 23 07:36:03 SIP [239]: SDL <6+info > [000] Aug 23 07:36:03 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:03 openvpn[362]: TLS: Initial packet from Myip:1194, sid=ff16ad6e 01d5bfdc Aug 23 07:36:04 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:04 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:04 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:04 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:04 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:04 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:04 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:06 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:06 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:06 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:06 openvpn[362]: LZO compression initialized Aug 23 07:36:06 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:06 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:06 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:06 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:06 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:06 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:06 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:06 openvpn[362]: TLS: Initial packet from Myip:1194, sid=a985ef25 248c9c4e Aug 23 07:36:06 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:06 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:06 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:06 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:06 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:06 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:06 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060 Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060) Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Expires: 3600^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Content-Length: 0^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] ^M Aug 23 07:36:07 SIP [239]: SDL <6+info > [000] Aug 23 07:36:07 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:08 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:08 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:08 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:08 openvpn[362]: LZO compression initialized Aug 23 07:36:08 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:08 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:08 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:08 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:08 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:08 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:08 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:08 openvpn[362]: TLS: Initial packet from Myip:1194, sid=8b4451b3 b2239823 Aug 23 07:36:09 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:09 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:09 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:09 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:09 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:09 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:09 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:11 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:11 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:11 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:11 openvpn[362]: LZO compression initialized Aug 23 07:36:11 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:11 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:11 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:11 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:11 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:11 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:11 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060 Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060) Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Expires: 3600^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Content-Length: 0^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] ^M Aug 23 07:36:11 SIP [239]: SDL <6+info > [000] Aug 23 07:36:11 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:11 openvpn[362]: TLS: Initial packet from Myip:1194, sid=2465b3af 28d53536 Aug 23 07:36:12 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:12 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:12 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:12 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:12 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:12 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:12 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:14 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:14 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:14 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:14 openvpn[362]: LZO compression initialized Aug 23 07:36:14 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:14 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:14 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:14 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:14 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:14 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:14 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:14 openvpn[362]: TLS: Initial packet from Myip:1194, sid=9ddff1c8 b6b095b8 Aug 23 07:36:15 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:15 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:15 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:15 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:15 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:15 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:15 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060 Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060) Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Expires: 3600^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Content-Length: 0^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] ^M Aug 23 07:36:15 SIP [239]: SDL <6+info > [000] Aug 23 07:36:15 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:17 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:17 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:17 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:17 openvpn[362]: LZO compression initialized Aug 23 07:36:17 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:17 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:17 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:17 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:17 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:17 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:17 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:17 openvpn[362]: TLS: Initial packet from Myip:1194, sid=1023c6f5 89e3e80a Aug 23 07:36:18 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:18 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:18 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:18 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:18 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:18 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:18 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] DNS resolution with 10.0.8.1:5060 Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Message sent: (to dest=10.0.8.1:5060) Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] REGISTER sip:10.0.8.1:5060 SIP/2.0^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Via: SIP/2.0/UDP 192.168.1.109:5062;branch=z9hG4bK1731431620^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] From: "300" <sip:300@10.0.8.1>;tag=1328100632^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] To: "300" <sip:300@10.0.8.1>^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Call-ID: 1780913442@192.168.1.109^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] CSeq: 1 REGISTER^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Contact: <sip:300@192.168.1.109:5062>^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Allow: INVITE, INFO, PRACK, ACK, BYE, CANCEL, OPTIONS, NOTIFY, REGISTER, SUBSCRIBE, REFER, PUBLISH, UPDATE, MESSAGE^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Max-Forwards: 70^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] User-Agent: Yealink SIP-T21P 34.72.0.75^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Expires: 3600^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Allow-Events: talk,hold,conference,refer,check-sync^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Content-Length: 0^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] ^M Aug 23 07:36:19 SIP [239]: SDL <6+info > [000] Aug 23 07:36:19 SIP [239]: SDL <5+notice> [000] send request retransmission (id=1)^M Aug 23 07:36:19 Log [253]: WEB <6+info > step1:lpsz1[admin],lpsz2[admin],len=5 Aug 23 07:36:19 Log [253]: WEB <6+info > step2:IN[uoCbM.VEiKQto],GET[uoCbM.VEiKQto],R=1 Aug 23 07:36:19 Log [253]: WEB <6+info > ip:192.168.1.100 Login in success! Aug 23 07:36:20 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:20 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:20 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:20 openvpn[362]: LZO compression initialized Aug 23 07:36:20 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:20 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:20 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:20 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:20 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:20 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:20 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:20 openvpn[362]: TLS: Initial packet from Myip:1194, sid=271a6930 238a6751 Aug 23 07:36:20 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:20 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:20 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:20 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:20 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:20 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:20 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:22 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:22 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:22 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:22 openvpn[362]: LZO compression initialized Aug 23 07:36:22 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:22 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:22 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:22 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:22 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:22 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:22 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:23 openvpn[362]: TLS: Initial packet from Myip:1194, sid=859a0fd7 a96a73af Aug 23 07:36:23 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:23 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:23 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:23 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:23 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:23 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:23 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:24 SIP [239]: SUA <6+info > [000] Emb event:[0x00000002] recv Aug 23 07:36:24 TR9 [324]: TR9 <6+info > Message Recieved: 10006, 0, 3 Aug 23 07:36:24 Log [134]: ACCU<6+info > CAccountManager::OnLineStateChange wParam[0] lParam[3] Aug 23 07:36:24 Log [134]: FWDD<6+info > FWD:account0 CFA:0 CFB:0 CFNA:0 Aug 23 07:36:24 Log [134]: ACCU<4+warnin> Register failid: [<info failid="408" failreason="request timout!"/>] Aug 23 07:36:24 Log [134]: CC <6+info > Received message[0x71100002] Aug 23 07:36:24 Log [134]: CC <6+info > OnBCMessage BROAD_MSG_LINE_STATE_CHANGE LPARAM[3], wParam[0] Aug 23 07:36:24 TR9 [324]: TR9 <6+info > Message Recieved: 10006, 0, 3 Aug 23 07:36:24 SIP [239]: SIP <5+notice> [SIP] Main Recv:[0x0004000e] wParam:(0x0000),lParam:(0x0000) SIP_MSG_QUERY_BLF_STATUS Aug 23 07:36:24 Log [134]: SCA <6+info > Init BS SCA Manager[0]. Aug 23 07:36:24 Log [134]: CUIT<6+info > SetStaus Type[11], Status[0] Aug 23 07:36:24 SIP [239]: SUA <5+notice> [000] reg status changed to [(LS_REGISTER_FAIL) -- (3)], reason=[<info failid="408" failreason="request timout!"/>] Aug 23 07:36:24 Log [134]: CUIT<6+info > Power Light *OFF* by Common Setting. Aug 23 07:36:24 SIP [239]: SUA <3+error > [000] [Server0]: try reg again after (30) s Aug 23 07:36:24 Log [134]: CUIT<6+info > Set Power Light Status to [0] Aug 23 07:36:24 SIP [239]: SUA <6+info > [016] App event:[0x80000005] wParam:(0x0000),lParam:(0x0000) SIP_MSG_BLF_LIST_STATUS_UPDATE Aug 23 07:36:24 Log [134]: CCET<6+info > Controller ProcessMessage(65542),objMessage.wParam(0) Aug 23 07:36:24 SIP [239]: SUA <6+info > [000] App event:[0x80000005] wParam:(0x0000),lParam:(0x0000) SIP_MSG_BLF_LIST_STATUS_UPDATE Aug 23 07:36:24 Log [134]: TALK<6+info > [MSG:SIP==>Talklogic] message=[PHONE_MSG_BLF_STATUS_UPDATE][a0012] wParam=[0] lParam=[0] Aug 23 07:36:25 Log [134]: DSSK<6+info > CDssKeyManager: RemoteStatus:{3,3,3,3,3,3,3,3,3,3,3,3,3,3,3,3} Aug 23 07:36:25 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:25 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:25 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:25 openvpn[362]: LZO compression initialized Aug 23 07:36:25 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:25 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:25 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:25 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:25 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:25 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:25 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:25 openvpn[362]: TLS: Initial packet from Myip:1194, sid=396cf6ef 2cec8725 Aug 23 07:36:26 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:26 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:26 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:26 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:26 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:26 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:26 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:28 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:28 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:28 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:28 openvpn[362]: LZO compression initialized Aug 23 07:36:28 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:28 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:28 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:28 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:28 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:28 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:28 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:28 openvpn[362]: TLS: Initial packet from Myip:1194, sid=9820d648 c2ab2180 Aug 23 07:36:28 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:28 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:28 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:28 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:28 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:28 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:28 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:30 openvpn[362]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Aug 23 07:36:30 openvpn[362]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables Aug 23 07:36:30 openvpn[362]: Re-using SSL/TLS context Aug 23 07:36:30 openvpn[362]: LZO compression initialized Aug 23 07:36:30 openvpn[362]: Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ] Aug 23 07:36:30 openvpn[362]: Socket Buffers: R=[110592->131072] S=[110592->131072] Aug 23 07:36:30 openvpn[362]: Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ] Aug 23 07:36:30 openvpn[362]: Local Options hash (VER=V4): '41690919' Aug 23 07:36:31 openvpn[362]: Expected Remote Options hash (VER=V4): '530fdded' Aug 23 07:36:31 openvpn[362]: UDPv4 link local: [undef] Aug 23 07:36:31 openvpn[362]: UDPv4 link remote: Myip:1194 Aug 23 07:36:31 openvpn[362]: TLS: Initial packet from Myip:1194, sid=5a35ebcc 6c4c2952 Aug 23 07:36:31 openvpn[362]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=it/ST=it/L=roma/O=suore/OU=suore/CN=suore/name=pbx.local/emailAddress=pinnasat@hotmail.com Aug 23 07:36:31 openvpn[362]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Aug 23 07:36:31 openvpn[362]: TLS Error: TLS object -> incoming plaintext read error Aug 23 07:36:31 openvpn[362]: TLS Error: TLS handshake failed Aug 23 07:36:31 openvpn[362]: TCP/UDP: Closing socket Aug 23 07:36:31 openvpn[362]: SIGUSR1[soft,tls-error] received, process restarting Aug 23 07:36:31 openvpn[362]: Restart pause, 2 second(s) Aug 23 07:36:33 Log [134]: CUIT<6+info > TalkLogic: PHONE_MSG_GETWORKSTATUS[0][1]! eth0 Link encap:Ethernet HWaddr 00:15:65:6A4:B2 inet addr:192.168.1.109 Bcast:192.168.1.255 Mask:255.255.255.0 inet6 addr: fe80::215:65ff:fe6a:d4b2/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:635 errors:0 dropped:0 overruns:0 frame:0 TX packets:499 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:97648 (95.3 KiB) TX bytes:165020 (161.1 KiB) Interrupt:22 Base address:0x2000 lo Link encap:Local Loopback inet addr:127.0.0.1 Mask:255.0.0.0 inet6 addr: ::1/128 Scope:Host UP LOOPBACK RUNNING MTU:16436 Metric:1 RX packets:0 errors:0 dropped:0 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) this is my server.conf on elastix easyvpn port 1194 proto udp dev tun ca ca.crt cert server.crt key server.key dh dh1024.pem server 10.0.8.0 255.255.255.0 ifconfig-pool-persist ipp.txt keepalive 10 120 comp-lzo user asterisk group asterisk persist-key persist-tun status openvpn-status.log verb 3 client-to-client #111crl-verify /etc/openvpn/crl.pem this is my vpn.cnf client dev tun proto udp remote myip 1194 resolv-retry infinite nobind persist-key persist-tun mute-replay-warnings ca /config/openvpn/keys/ca.crt cert /config/openvpn/keys/client2.crt key /config/openvpn/keys/client2.key comp-lzo verb 3 I also changed from SHA256 to openssl md5 in the server but nothing . if I connect with Windows works , by telephone no . I am desperate esto crazy . sorry for my english but I'm Italian and I do not speak well thank you |