****First start after 2.6.0 to 2.7.0 upgrade**** Sep 28 18:32:05 openvpn 31937 Note: --data-cipher-fallback with cipher 'AES-256-CBC' disables data channel offload. Sep 28 18:32:05 openvpn 31937 Current Parameter Settings: Sep 28 18:32:05 openvpn 31937 config = '/var/etc/openvpn/client1/config.ovpn' Sep 28 18:32:05 openvpn 31937 mode = 0 Sep 28 18:32:05 openvpn 31937 show_ciphers = DISABLED Sep 28 18:32:05 openvpn 31937 show_digests = DISABLED Sep 28 18:32:05 openvpn 31937 show_engines = DISABLED Sep 28 18:32:05 openvpn 31937 genkey = DISABLED Sep 28 18:32:05 openvpn 31937 genkey_filename = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 key_pass_file = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 show_tls_ciphers = DISABLED Sep 28 18:32:05 openvpn 31937 connect_retry_max = 0 Sep 28 18:32:05 openvpn 31937 Connection profiles [0]: Sep 28 18:32:05 openvpn 31937 proto = udp4 Sep 28 18:32:05 openvpn 31937 local = '10.141.11.200' Sep 28 18:32:05 openvpn 31937 local_port = '0' Sep 28 18:32:05 openvpn 31937 remote = '192.168.129.250' Sep 28 18:32:05 openvpn 31937 remote_port = '1194' Sep 28 18:32:05 openvpn 31937 remote_float = DISABLED Sep 28 18:32:05 openvpn 31937 bind_defined = DISABLED Sep 28 18:32:05 openvpn 31937 bind_local = ENABLED Sep 28 18:32:05 openvpn 31937 bind_ipv6_only = DISABLED Sep 28 18:32:05 openvpn 31937 connect_retry_seconds = 1 Sep 28 18:32:05 openvpn 31937 connect_timeout = 120 Sep 28 18:32:05 openvpn 31937 socks_proxy_server = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 socks_proxy_port = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 tun_mtu = 1500 Sep 28 18:32:05 openvpn 31937 tun_mtu_defined = ENABLED Sep 28 18:32:05 openvpn 31937 link_mtu = 1500 Sep 28 18:32:05 openvpn 31937 link_mtu_defined = DISABLED Sep 28 18:32:05 openvpn 31937 tun_mtu_extra = 32 Sep 28 18:32:05 openvpn 31937 tun_mtu_extra_defined = ENABLED Sep 28 18:32:05 openvpn 31937 tls_mtu = 1250 Sep 28 18:32:05 openvpn 31937 mtu_discover_type = -1 Sep 28 18:32:05 openvpn 31937 fragment = 0 Sep 28 18:32:05 openvpn 31937 mssfix = 1492 Sep 28 18:32:05 openvpn 31937 mssfix_encap = ENABLED Sep 28 18:32:05 openvpn 31937 mssfix_fixed = DISABLED Sep 28 18:32:05 openvpn 31937 explicit_exit_notification = 1 Sep 28 18:32:05 openvpn 31937 tls_auth_file = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 key_direction = not set Sep 28 18:32:05 openvpn 31937 tls_crypt_file = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 tls_crypt_v2_file = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 Connection profiles END Sep 28 18:32:05 openvpn 31937 remote_random = DISABLED Sep 28 18:32:05 openvpn 31937 ipchange = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 dev = 'ovpnc1' Sep 28 18:32:05 openvpn 31937 dev_type = 'tap' Sep 28 18:32:05 openvpn 31937 dev_node = '/dev/tap1' Sep 28 18:32:05 openvpn 31937 tuntap_options.disable_dco = ENABLED Sep 28 18:32:05 openvpn 31937 lladdr = '[UNDEF]' Sep 28 18:32:05 openvpn 31937 topology = 1 Sep 28 18:32:07 openvpn 32051 write UDPv4: No route to host (fd=5,code=65) Sep 28 18:32:21 openvpn 32051 TLS: Initial packet from [AF_INET]192.168.129.250:1194, sid=61a33f13 c266bad0 Sep 28 18:32:21 openvpn 32051 VERIFY WARNING: depth=0, unable to get certificate CRL: CN=ExampleServer Sep 28 18:32:21 openvpn 32051 VERIFY WARNING: depth=1, unable to get certificate CRL: CN=Example-CA Sep 28 18:32:21 openvpn 32051 VERIFY OK: depth=1, CN=Example-CA Sep 28 18:32:21 openvpn 32051 VERIFY KU OK Sep 28 18:32:21 openvpn 32051 Validating certificate extended key usage Sep 28 18:32:21 openvpn 32051 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication Sep 28 18:32:21 openvpn 32051 VERIFY EKU OK Sep 28 18:32:21 openvpn 32051 VERIFY OK: depth=0, CN=ExampleServer Sep 28 18:32:21 openvpn 32051 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256 Sep 28 18:32:21 openvpn 32051 [ExampleServer] Peer Connection Initiated with [AF_INET]192.168.129.250:1194 Sep 28 18:32:21 openvpn 32051 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1 Sep 28 18:32:21 openvpn 32051 TLS: tls_multi_process: initial untrusted session promoted to trusted Sep 28 18:32:21 openvpn 32051 PUSH: Received control message: 'PUSH_REPLY,route-gateway 172.16.10.1,ping 10,ping-restart 60,ifconfig 172.16.10.2 255.255.255.0,peer-id 0,cipher AES-256-GCM' Sep 28 18:32:21 openvpn 32051 OPTIONS IMPORT: --ifconfig/up options modified Sep 28 18:32:21 openvpn 32051 OPTIONS IMPORT: route-related options modified Sep 28 18:32:21 openvpn 32051 TUN/TAP device ovpnc1 exists previously, keep at program end Sep 28 18:32:21 openvpn 32051 TUN/TAP device /dev/tap1 opened Sep 28 18:32:21 openvpn 32051 do_ifconfig, ipv4=1, ipv6=0 Sep 28 18:32:21 openvpn 32051 /sbin/ifconfig ovpnc1 172.16.10.2/24 mtu 1500 up Sep 28 18:32:21 openvpn 32051 /usr/local/sbin/ovpn-linkup ovpnc1 1500 0 172.16.10.2 255.255.255.0 init Sep 28 18:32:21 openvpn 32051 Data Channel MTU parms [ mss_fix:1368 max_frag:0 tun_mtu:1500 tun_max_mtu:1600 headroom:136 payload:1800 tailroom:568 ET:32 ] Sep 28 18:32:21 openvpn 32051 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Sep 28 18:32:21 openvpn 32051 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key Sep 28 18:32:21 openvpn 32051 Initialization Sequence Completed Sep 28 18:32:21 openvpn 32051 Data Channel: cipher 'AES-256-GCM', peer-id: 0 Sep 28 18:32:21 openvpn 32051 Timers: ping 10, ping-restart 60 Sep 28 18:32:21 openvpn 32051 Protocol options: explicit-exit-notify 1