Bonjour
Âpres la vérification de la configuration au niveau de machine client .je pense qui 'il y a une problème de routage .
car si je tape #openvpn client.conf
[root@tarek openvpn]# openvpn client.conf
Wed May 5 08:17:46 2010 OpenVPN 2.1.1 i586-redhat-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] built on Jan 12 2010
Wed May 5 08:17:46 2010 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Wed May 5 08:17:46 2010 WARNING: file 'client.key' is group or others accessible
Wed May 5 08:17:46 2010 WARNING: file 'ta.key' is group or others accessible
Wed May 5 08:17:46 2010 Control Channel Authentication: using 'ta.key' as a OpenVPN static key file
Wed May 5 08:17:46 2010 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed May 5 08:17:46 2010 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed May 5 08:17:46 2010 LZO compression initialized
Wed May 5 08:17:46 2010 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
Wed May 5 08:17:46 2010 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
Wed May 5 08:17:46 2010 Local Options hash (VER=V4): 'ee93268d'
Wed May 5 08:17:46 2010 Expected Remote Options hash (VER=V4): 'bd577cd1'
Wed May 5 08:17:46 2010 Attempting to establish TCP connection with 192.168.10.1:8080 [nonblock]
Wed May 5 08:17:47 2010 TCP connection established with 192.168.10.1:8080
Wed May 5 08:17:47 2010 Send to HTTP proxy: 'CONNECT 192.168.13.159:443 HTTP/1.0'
Wed May 5 08:17:48 2010 HTTP proxy returned: 'HTTP/1.0 200 Connection established'
Wed May 5 08:17:50 2010 Socket Buffers: R=[87380->131072] S=[16384->131072]
Wed May 5 08:17:50 2010 TCPv4_CLIENT link local: [undef]
Wed May 5 08:17:50 2010 TCPv4_CLIENT link remote: 192.168.10.1:8080
Wed May 5 08:17:50 2010 TLS: Initial packet from 192.168.10.1:8080, sid=e89966f6 6fefc293
Wed May 5 08:17:50 2010 VERIFY OK: depth=1, /C=TN/ST=CA/L=sousse/O=isitcom/OU=reseau/CN=isitcom_CA/emailAddress=taieb.8599@yahoo.fr
Wed May 5 08:17:50 2010 VERIFY OK: nsCertType=SERVER
Wed May 5 08:17:50 2010 VERIFY OK: depth=0, /C=TN/ST=CA/L=sousse/O=isitcom/OU=reseau/CN=server/emailAddress=taieb.8599@yahoo.fr
Wed May 5 08:17:50 2010 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Wed May 5 08:17:50 2010 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed May 5 08:17:50 2010 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Wed May 5 08:17:50 2010 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Wed May 5 08:17:50 2010 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
Wed May 5 08:17:50 2010 [server] Peer Connection Initiated with 192.168.10.1:8080
Wed May 5 08:17:52 2010 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Wed May 5 08:17:52 2010 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
Wed May 5 08:17:52 2010 OPTIONS IMPORT: timers and/or timeouts modified
Wed May 5 08:17:52 2010 OPTIONS IMPORT: --ifconfig/up options modified
Wed May 5 08:17:52 2010 OPTIONS IMPORT: route options modified
Wed May 5 08:17:52 2010 ROUTE default_gateway=192.168.10.1
Wed May 5 08:17:52 2010 TUN/TAP device tun2 opened
Wed May 5 08:17:52 2010 TUN/TAP TX queue length set to 100
Wed May 5 08:17:52 2010 /sbin/ip link set dev tun2 up mtu 1500
Wed May 5 08:17:52 2010 /sbin/ip addr add dev tun2 local 10.8.0.6 peer 10.8.0.5
Wed May 5 08:17:52 2010 OpenVPN ROUTE: omitted no-op route: 192.168.10.1/255.255.255.255 -> 192.168.10.1
Wed May 5 08:17:52 2010 /sbin/ip route add 0.0.0.0/1 via 10.8.0.5
RTNETLINK answers: File exists
[color=#D02E6F]Wed May 5 08:17:52 2010 ERROR: Linux route add command failed: external program exited with error status: 2
Wed May 5 08:17:52 2010 /sbin/ip route add 128.0.0.0/1 via 10.8.0.5
RTNETLINK answers: File exists
Wed May 5 08:17:52 2010 ERROR: Linux route add command failed: external program exited with error status: 2
Wed May 5 08:17:52 2010 /sbin/ip route add 10.8.0.1/32 via 10.8.0.5
RTNETLINK answers: File exists
Wed May 5 08:17:52 2010 ERROR: Linux route add command failed: external program exited with error status: 2[/color]
Wed May 5 08:17:52 2010 Initialization Sequence Completed
Wed May 5 08:18:43 2010 Restart pause, 5 second(s)
Wed May 5 08:17:52 2010 ERROR: Linux route add command failed: external program exited with error status: 2
Wed May 5 08:17:52 2010 /sbin/ip route add 10.8.0.1/32 via 10.8.0.5
RTNETLINK answers: File exists
Wed May 5 08:17:52 2010 ERROR: Linux route add command failed: external program exited with error status: 2[/color]
Wed May 5 08:17:52 2010 Initialization Sequence Completed
NB:ce séquence se répète plusieurs fois (en un boucle )
[root@tarek openvpn]# ifconfig
eth0 Link encap:Ethernet HWaddr 00:21:85:68:92:CE
inet adr:192.168.13.95 Bcast:192.168.255.255 Masque:255.255.0.0
adr inet6: fe80::221:85ff:fe68:92ce/64 Scope:Lien
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:32395 errors:0 dropped:0 overruns:0 frame:0
TX packets:5004 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:1000
RX bytes:7001827 (6.6 MiB) TX bytes:859021 (838.8 KiB)
Interruption:28 Adresse de base:0x4000
lo Link encap:Boucle locale
inet adr:127.0.0.1 Masque:255.0.0.0
adr inet6: ::1/128 Scope:Hôte
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:16 errors:0 dropped:0 overruns:0 frame:0
TX packets:16 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:0
RX bytes:1040 (1.0 KiB) TX bytes:1040 (1.0 KiB)
tun0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet adr:10.8.0.6 P-t-P:10.8.0.5 Masque:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:3 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:100
RX bytes:0 (0.0 b) TX bytes:201 (201.0 b)
[root@tarek openvpn]#