+ Responder ao Tópico



  1. #1

    Padrão Erro VPN filial " Operation not permitted"

    Srs.

    BOm dia!

    A vpn de uma determinada filial esta funcionando blz, mas todo dia cedo é preciso reboot no servidor para ela voltar a funcionar (ja tentei restart no servico openvpn e nao obtive sucesso). axo que o cliente esta desligando a maquina anoite, ma isso nao seria problema pois em outras filiais acontece a mesma coisa e a vpn volta a funcionar blz... dei uma olhada no log e apresentou a seguinte msg de erro:

    Fri Jan 7 09:25:12 2011 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
    Fri Jan 7 09:25:12 2011 TLS Error: TLS handshake failed
    Fri Jan 7 09:25:12 2011 SIGUSR1[soft,tls-error] received, process restarting
    Fri Jan 7 09:25:14 2011 Re-using SSL/TLS context
    Fri Jan 7 09:25:14 2011 LZO compression initialized
    Fri Jan 7 09:25:15 2011 UDPv4 link local (bound): [undef]:5200
    Fri Jan 7 09:25:15 2011 UDPv4 link remote: 189.114.22.44:5200
    Fri Jan 7 09:25:15 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:17 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:19 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:21 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:23 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:25 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:27 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:29 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:31 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:33 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:35 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:38 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:40 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:43 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:45 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:48 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:50 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:52 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:54 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:56 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:25:58 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:00 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:02 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:04 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:06 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:08 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:10 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:12 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:14 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:15 2011 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
    Fri Jan 7 09:26:15 2011 TLS Error: TLS handshake failed
    Fri Jan 7 09:26:15 2011 SIGUSR1[soft,tls-error] received, process restarting
    Fri Jan 7 09:26:17 2011 Re-using SSL/TLS context
    Fri Jan 7 09:26:17 2011 LZO compression initialized
    Fri Jan 7 09:26:17 2011 UDPv4 link local (bound): [undef]:5200
    Fri Jan 7 09:26:17 2011 UDPv4 link remote: 189.114.22.44:5200
    Fri Jan 7 09:26:17 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:19 2011 write UDPv4 []: Operation not permitted (code=1)
    Fri Jan 7 09:26:21 2011 write UDPv4 []: Operation not permitted (code=1)


    alguma sugestao??

    Amaia voce esta por ai?
    Última edição por sowbra; 07-01-2011 às 14:15. Razão: RESOLVIDO

  2. #2

    Padrão Re: Erro VPN filial " Operation not permitted"

    Firewall ou SELinux está barrando (Operation not permitted)

  3. #3

    Cool RESOLVIDO - Re: Erro VPN filial " Operation not permitted"

    Falha no script do firewalll

    tinha esquecido o trecho abaixo comentado.

    #iptables -A OUTPUT -o eth0 -p UDP --dport 5200 -j ACCEPT

    valeu pela dica