Config file hash failure followed by build-tls-crypt-v2 failure #220
Replies: 12 comments 38 replies
-
Hi, first, thanks for trying Easy-TLS. I hope it is ok for me to edit your post to make the correct formatting for the problem here? I'll take a very close look at this because something is clearly wrong. |
Beta Was this translation helpful? Give feedback.
-
Initial thought: Have you installed OpenVPN from an official installer ? |
Beta Was this translation helpful? Give feedback.
-
Please paste the public certificate for your WRE-OpenVPN server, so that I can verify if it is valid. The public certificate is public data and there are no security risks to publishing it. |
Beta Was this translation helpful? Give feedback.
-
Your certificate is corrupted. |
Beta Was this translation helpful? Give feedback.
-
No .. you have corrupted the file manually. |
Beta Was this translation helpful? Give feedback.
-
The certificate has been corrupted by human error. If it was not human then you have some very untrustworthy software on your computer which has edited the file behind your back. I suggest you start from scratch with Easy-RSA and then Easy-TLS. |
Beta Was this translation helpful? Give feedback.
-
You could try |
Beta Was this translation helpful? Give feedback.
-
|
Beta Was this translation helpful? Give feedback.
-
If you are prepared to keep on testing, which is great for me because you are finding bugs, then I'm happy to help out. On this occasion, the error is in the script with option |
Beta Was this translation helpful? Give feedback.
-
With regard to your server certificate, the file that you have posted and are feeding to Easy-TLS is corrupted. It is not a valid certificate for OpenSSL. You should check your source files. Use |
Beta Was this translation helpful? Give feedback.
-
What output do you get from |
Beta Was this translation helpful? Give feedback.
-
For future reference, if you are using Windows then you must install OpenVPN and Easy-RSA-3 by using the official Openvpn-installer. See: Download and install Easy-TLS |
Beta Was this translation helpful? Give feedback.
-
Environment is Windows Server 2019
Experience/familiarity level with OpenVPN, EasyRSA, Easy-tls is minimal
I am attempting to follow an OpenVPN setup guide, and am stumped by errors at the easy-tls step.
The initial speed bump was an error message indicating failure to locate openssl.exe... Fortunately, the error disclosed where it was looking (in OpenVPN's bin dir), so I copied the exe and conf file from the EasyRSA dir into that dir. Next, I was confronted with another error message. When attempting any command (example: ./easytls init-tls), errors follow:
In the course of troubleshooting this error, I happened upon the --why-disable-file-hash option and to test, I used that option to see what else might come up. That command and subsequent commands completed (only when adding that same option)... up to the build-tls-crypt-v2-server command. When running that command (with the above option, in verbose mode), the following error occurs:
Assistance? Thoughts?
Thanks
Beta Was this translation helpful? Give feedback.
All reactions