我尝试在OpenVPN客户机中使用Win10,并获得以下日志:
[Dec 13, 2021, 21:32:41] Tunnel Options:V4,dev-type tun,link-mtu 1524,tun-mtu 1500,proto
TCPv4_CLIENT,comp-lzo,cipher AES-256-GCM,auth [null-digest],keysize 256,key-method 2,tls-client
[Dec 13, 2021, 21:32:41] Creds: UsernameEmpty/PasswordEmpty
[Dec 13, 2021, 21:32:41] Peer Info:
IV_VER=3.git::d3f8b18b
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=30
IV_CIPHERS=AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305
IV_LZO_STUB=1
IV_COMP_STUB=1
IV_COMP_STUBv2=1
IV_IPv6=0
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.3.3-2562
IV_SSO=webauth,openurl,crtext
[Dec 13, 2021, 21:32:41] EVENT: EPKI_ERROR External Certificate Signing Failed⏎
[Dec 13, 2021, 21:32:41] Client exception in transport_recv_excode:
OpenSSLContext::SSL::read_cleartext: BIO_read failed, cap=2576 status=-1: error:0607907F:digital envelope routines:EVP_PKEY_get0_RSA:expecting an rsa key / error:141F0006:SSL routines:tls_construct_cert_verify:EVP lib
[Dec 13, 2021, 21:32:41] EVENT: DISCONNECTED ⏎
客户端配置是:
port 1194
proto tcp
dev tun
ifconfig 10.3.0.1 255.255.255.0
ca C:\\Users\\User1\\openvpnkeys\\ca.crt
tls-crypt C:\\Users\\User1\\openvpnkeys\\tls.key
cipher AES-256-GCM
auth SHA256
ping 10
comp-lzo
verb 4
mute 10
客户端和服务器证书是由安装在服务器comp上的轻松rsa创建的。有什么问题吗?
发布于 2021-12-14 11:59:53
解决了。问题就在链接上。我已经在配置文件的正文中放置了证书,并且客户端已经成功地连接了。
我不得不说原木相当差。
https://stackoverflow.com/questions/70339627
复制相似问题