New Forum system requires email address which you used to apply for your account to replace your original username. Password stays the same.Please see this post for more details
http://forum.yealink.com/forum/showthread.php?tid=40344


Post Reply 
 
Thread Rating:
  • 0 Votes - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
OpenVPN Error with PfSense
Author Message
Peleska Offline
Junior Member
**

Posts: 2
Joined: Nov 2013
Reputation: 0
Post: #1
OpenVPN Error with PfSense
Hi Guys,
I am using PFsense with a Yealink-T38G, Firmware 38.70.150.2.
I Created the Pfsense Side according to the Yealink Documentation, with the Wizard and with sscardefield´s really,really Great Documentation - but nothing works.
I have even reinstalled Pfsense from Scratch....

I have found three things which doesnt´t work if you use the Export Utility
1. You have to unpack and repack the generated client.tar with 7zip on Windows - if you don´t your Phone wouldn´t import the File.
2. If you leave the Line "verify-x509-name PhoneServer name" in the generated vpn.cnf the Phone can´t import the file either.
3. There seems to be a problem with the generated Certificates, the Phone (If you set Phone >Configuration > Log Level to 6 you get a usable Logfile which you can export)
It shows the following Error:
Nov 7 21:20:48 openvpn[289]: IMPORTANT: OpenVPN's default port number is now 1194, based on an official port number assignment by IANA. OpenVPN 2.0-beta16 and earlier used 5000 as the default port.
Nov 7 21:20:48 openvpn[289]: NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Nov 7 21:20:48 openvpn[289]: Re-using SSL/TLS context
Nov 7 21:20:48 openvpn[289]: LZO compression initialized
Nov 7 21:20:48 openvpn[289]: UDPv4 link local (bound): [undef]:1194
Nov 7 21:20:48 openvpn[289]: UDPv4 link remote: 213.221.100.187:1194
Nov 7 21:20:48 openvpn[289]: VERIFY ERROR: depth=1, error=certificate signature failure: /C=DE/ST=Hessen/L=Floersheim/O=Lorenzgroup/emailAddress=support@lorenzgroup.com/CN=PhoneCA
Nov 7 21:20:48 openvpn[289]: TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Nov 7 21:20:48 openvpn[289]: TLS Error: TLS object -> incoming plaintext read error
Nov 7 21:20:48 openvpn[289]: TLS Error: TLS handshake failed

IOS, Android and PC Clients connect without Problems,i am now really out of Ideas - Anybody else please?!
11-08-2013 05:43 AM
Find all posts by this user    like0    dislike0 Quote this message in a reply
Post Reply 


Messages In This Thread
OpenVPN Error with PfSense - Peleska - 11-08-2013 05:43 AM
RE: OpenVPN Error with PfSense - Peleska - 11-09-2013, 04:42 AM
RE: OpenVPN Error with PfSense - bk6662 - 08-24-2016, 08:25 AM
RE: OpenVPN Error with PfSense - mahan77 - 03-26-2014, 11:20 AM

Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  T38G File Format Error w03zd8rc 3 2,368 03-25-2016 09:52 PM
Last Post: w03zd8rc
  Action URL entry is causing a "File Format Error" lazlototh 8 6,754 01-25-2015 12:17 AM
Last Post: psichel
  OpenVPN and PfSense paulhuynh 1 5,863 06-26-2013 02:22 PM
Last Post: Yealink Support
  transfers error whith exp mod, and blfs in t38g whit firmware 38.70.0.125 rleon 2 4,371 04-18-2013 11:21 PM
Last Post: rleon
  Help with T38G OpenVPN moakhtar 2 5,381 03-12-2013 12:58 PM
Last Post: rfrantik@rfcinc.com

Forum Jump:


User(s) browsing this thread: 1 Guest(s)

Contact Us   Yealink   Return to Top   Return to Content   Lite (Archive) Mode   RSS Syndication