LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 06-23-2010, 12:37 AM   #1
claude56
LQ Newbie
 
Registered: Jun 2004
Distribution: Linux Mandrake 9.2/Mandriva Spring '08
Posts: 15

Rep: Reputation: 0
Thumbs up Samba client shares disconnect over openvpn connection


Hi All-

I need help. I can't even think of anything else to try. My network is barely functional.

I'm running 2 linux servers connected by openvpn (tun) through routers on both sides. There are Windows clients (98 and XP) on both subnets. One server (ls3) acting as PDC for the domain. The Windows clients use the respective linux boxes as gateways.

On the server side (ls3 which is both openvpn server and samba server), all the clients can read/write properly to shares on both sides.

The problems are all on the client side. Share connections to the server side disconnect after a few moments.

Browsing on the client side windows machines is fine. I can see shares on the server side. Some server side files open and are readable, writable, other server side files will not open. Some samba logon scripts on the server side can be opened from the client side. Others open after a long wait to a blank file!

Permissions on server side files are set to 777 for testing.

If a file won't open or reads "blank", that doesn't change no matter how many times you try. A non-readable/writable file overwritten by a readable/writable one can be read and written to!

I can ping successfully from any client on either side to any other client by either ip address or workstation name.

Firewalls on both side are set to forward tcp and udp traffic going to port 1194 to the respective gateway linux boxes.

Iptables on both linux gateways are down for testing.

I tried reversing the openvpn server/client roles with the same result; the same physical side of the network had the problem.

On one of the windows 98 clients, I wiped out the networking configuration completely and rebuilt it from scratch. Same result.

One one of the windows xp clients, I tried to rejoin the domain. It went through successfully but the result was the same as above.

The network was operating smoothly for several years until the client side dsl modem broke last week. It was replaced with a newer model and at the same time I migrated from a pptp connection to openvpn.

Please if you can't specifically tell me how to resolve this, point me in the right direction. Is this something to do with openvpn? Is this a network hardware problem? Am I missing something in the port forwarding on the routers?

My smb.conf files are ancient except I added interface tun0.

I have never seen 2 files sitting next to each other in the same directory where one opens and the other doesn't!

I'm running Mandrake 9.2 on the client side and Mandriva 2008 on the server side.

I have a Sonicwall firewall on the server side, a Westell 7500 on the
client side.

I note that during the modem install, the http port was opened to the linux box on the client side and the access log got huge over the weekend and I ran out of disk space until I closed it down and deleted the log.

I'll post anything that you need to help analyze.

Claude


More:

I tried a simple test while viewing /var/log/daemons/errors on the client side. From a windows workstation in the client subnet, I opened a dos window and tried to print a file located on the samba server on the openvpn server machine which I knew NOT to be problematic. THe file printed and there were no errors reported in the log. I repeated the test with a known problematic file. The file would not print. The errors log noted:

Authenticate/Decrypt packet error: packet HMAC authentication failed

I regenerated the static.key file on the server side and scp'd it to the client side and restarted both openvpn's. I checked for duplicate files named static.key on both sides.

Same error.
Attached Files
File Type: txt tcpdumpnix.txt (15.1 KB, 11 views)
File Type: txt tcpdumpdos.txt (15.6 KB, 11 views)

Last edited by claude56; 06-24-2010 at 10:34 AM. Reason: More information
 
Old 06-24-2010, 11:14 AM   #2
claude56
LQ Newbie
 
Registered: Jun 2004
Distribution: Linux Mandrake 9.2/Mandriva Spring '08
Posts: 15

Original Poster
Rep: Reputation: 0
Solved

I found it in the openvpn docs. I was running 1.x on the client and 2.0 on the server. I added the lines to the client conf file as instructed in the docs. The port directive was already there. It wouldn't take the mmsfix and key-method directives but apparently the tun- directives did the trick. I couldn't believe my eyes when it worked!


Code:
While OpenVPN 2.0 is compatible with OpenVPN 1.x, some of the default options have changed. For this reason, if you want to connect OpenVPN 1.x to 2.0, add the following to your 1.x config file to set it to the defaults which 2.0 is already using:

      port 1194
      tun-mtu 1500
      tun-mtu-extra 32
      mssfix 1450
      key-method 2

Also note that OpenVPN 1.x cannot connect as a client to an OpenVPN 2.0 server running in the new --mode server mode. This is because OpenVPN 1.x lacks the --pull directive which is essential to the operation of OpenVPN 2.0's client/server mode.

Last edited by claude56; 06-24-2010 at 11:15 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
OpenVPN client connection error ddaas Linux - Networking 2 01-14-2008 03:06 PM
OpenVPN disconnect allelopath Linux - Networking 2 02-07-2005 10:46 PM
Samba client and Windows shares proton666 Linux - Software 1 12-26-2004 02:10 PM
Samba:Unable to connect shares from win2k client vikram_cvk Linux - Software 8 03-22-2004 12:14 AM
Windows 98 client won't connect to Samba shares ehedman Linux - Software 1 02-26-2004 07:41 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 01:19 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration