<---- template headericclude ----->
openvpn problems with Network Manager and nonroot account
FedoraForum.org - Fedora Support Forums and Community
Results 1 to 2 of 2
  1. #1
    Join Date
    Oct 2004
    Location
    Istanbul Turkey
    Age
    50
    Posts
    93
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)

    openvpn problems with Network Manager and nonroot account

    Hello,

    I am having using Network manager in GNOME with vpnc and wireless /wired networks no prob.

    But I do have problems with Network Manager with openvpn and also from terminal as non root user.

    As root I can connect to openvpn. As I run as non root account that's what I have:

    Enter Private Key Password:
    Sat Jun 16 18:12:35 2007 us=545341 LZO compression initialized
    Sat Jun 16 18:12:35 2007 us=545484 Control Channel MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
    Sat Jun 16 18:12:35 2007 us=546792 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
    Sat Jun 16 18:12:35 2007 us=546823 Local Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
    Sat Jun 16 18:12:35 2007 us=546836 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1542,tun-mtu 1500,proto UDPv4,comp-lzo,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
    Sat Jun 16 18:12:35 2007 us=546859 Local Options hash (VER=V4): '41690919'
    Sat Jun 16 18:12:35 2007 us=546878 Expected Remote Options hash (VER=V4): '530fdded'
    Sat Jun 16 18:12:35 2007 us=546904 Socket Buffers: R=[110592->131072] S=[110592->131072]
    Sat Jun 16 18:12:35 2007 us=546922 UDPv4 link local: [undef]
    Sat Jun 16 18:12:35 2007 us=546935 UDPv4 link remote: 64.85.160.120:1194
    WRSat Jun 16 18:12:35 2007 us=762718 TLS: Initial packet from 64.85.160.120:1194, sid=2dfcc0f7 980645f1
    WWWRRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRSat Jun 16 18:12:36 2007 us=882298 VERIFY OK: depth=1, /C=TR/ST=IS/L=Istanbul/O=batoo.org/OU=server/CN=batoo.org_CA/emailAddress=hceylan@batoo.org
    Sat Jun 16 18:12:36 2007 us=882782 VERIFY OK: depth=0, /C=TR/ST=IS/L=Istanbul/O=batoo.org/OU=server/CN=server/emailAddress=hceylan@batoo.org
    WRWRWRWRWRWRWWWWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRWRW RWRWRRRRWWWWRRRRWRWRSat Jun 16 18:12:38 2007 us=898275 Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
    Sat Jun 16 18:12:38 2007 us=898321 Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
    Sat Jun 16 18:12:38 2007 us=898457 Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
    Sat Jun 16 18:12:38 2007 us=898485 Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
    WSat Jun 16 18:12:38 2007 us=898596 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 1024 bit RSA
    Sat Jun 16 18:12:38 2007 us=898651 [server] Peer Connection Initiated with 64.85.160.120:1194
    Sat Jun 16 18:12:40 2007 us=97976 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
    WRRWRSat Jun 16 18:12:40 2007 us=317492 PUSH: Received control message: 'PUSH_REPLY,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5'
    Sat Jun 16 18:12:40 2007 us=317583 OPTIONS IMPORT: timers and/or timeouts modified
    Sat Jun 16 18:12:40 2007 us=317606 OPTIONS IMPORT: --ifconfig/up options modified
    Sat Jun 16 18:12:40 2007 us=317623 OPTIONS IMPORT: route options modified
    Sat Jun 16 18:12:40 2007 us=317975 Note: Cannot ioctl TUNSETIFF tun: Operation not permitted (errno=1)
    Sat Jun 16 18:12:40 2007 us=318000 Note: Attempting fallback to kernel 2.2 TUN/TAP interface
    Sat Jun 16 18:12:40 2007 us=319665 Cannot allocate TUN/TAP dev dynamically
    Sat Jun 16 18:12:40 2007 us=319685 Exiting

    As suggested somewhere I do have permissions for others on /dev/net/tun

    Also when I login as root to gnome, still I cannot connect from Network manager.

    anyone using Network manager and openvpn together successfully?

    Hasan Ceylan
    Hasan Ceylan
    Istanbul, Turkey

  2. #2
    Join Date
    Oct 2004
    Location
    Istanbul Turkey
    Age
    50
    Posts
    93
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Solved...

    adding sticky bits to openvpn and ip binaries as root user I got it to work. No kernel hacking is necessary.

    Just posting for others having the same problem...

    Hasan Ceylan

Similar Threads

  1. FC9 Network manager and openvpn passwords
    By gjanssens in forum Servers & Networking
    Replies: 0
    Last Post: 12th August 2008, 05:55 PM
  2. Network Manager Openvpn bug?
    By Jeep24 in forum Servers & Networking
    Replies: 1
    Last Post: 11th February 2008, 03:44 PM
  3. Replies: 4
    Last Post: 5th February 2008, 11:22 AM
  4. FC8, network manager, openvpn
    By Greeny in forum Using Fedora
    Replies: 1
    Last Post: 28th December 2007, 06:06 PM
  5. Network Manager/OpenVPN Problem
    By casket88 in forum Using Fedora
    Replies: 1
    Last Post: 9th October 2007, 02:13 AM

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
[[template footer(Guest)]]