<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<atom:link href="https://dev1galaxy.org/extern.php?action=feed&amp;tid=2601&amp;type=rss" rel="self" type="application/rss+xml" />
		<title><![CDATA[Dev1 Galaxy Forum / VPN with networkmanger on KDE (openrc)]]></title>
		<link>https://dev1galaxy.org/viewtopic.php?id=2601</link>
		<description><![CDATA[The most recent posts in VPN with networkmanger on KDE (openrc).]]></description>
		<lastBuildDate>Fri, 18 Jan 2019 06:00:53 +0000</lastBuildDate>
		<generator>FluxBB</generator>
		<item>
			<title><![CDATA[Re: VPN with networkmanger on KDE (openrc)]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=13733#p13733</link>
			<description><![CDATA[<p>Ok, session permissions seems to be OK. Im stumbling across</p><div class="codebox"><pre><code>Jan 18 01:02:48 shook3r nm-openvpn[3642]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.</code></pre></div><p>and later</p><div class="codebox"><pre><code>Jan 18 01:03:48 shook3r nm-openvpn[3642]: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)</code></pre></div><p>I think the permissions of <span class="bbc">/home/matteol/.local/share/networkmanagement/certificates/it.protonvpn.com.udp/tls_auth.key</span> need to be 0600. (You can change that using chmod). Also it might be required to manually copy <span class="bbc">tls_auth.key</span> to <span class="bbc">/home/matteol/.cert/</span>. See</p><p><a href="https://ask.fedoraproject.org/en/question/103635/timeout-issues-while-trying-to-conect-to-an-openvpn-server/" rel="nofollow">https://ask.fedoraproject.org/en/questi … pn-server/</a></p><p>If you have selinux installed, maybe this applies too. (But please check other things first)<br /><a href="https://unix.stackexchange.com/questions/267789/selinux-not-allowing-read-files-on-cert" rel="nofollow">https://unix.stackexchange.com/question … es-on-cert</a></p>]]></description>
			<author><![CDATA[dummy@example.com (amesser)]]></author>
			<pubDate>Fri, 18 Jan 2019 06:00:53 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=13733#p13733</guid>
		</item>
		<item>
			<title><![CDATA[Re: VPN with networkmanger on KDE (openrc)]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=13732#p13732</link>
			<description><![CDATA[<p>Thanks for help <img src="https://dev1galaxy.org/img/smilies/smile.png" width="15" height="15" alt="smile" />)&#160; sry if something miss or wrong but im newbie</p><p>dpkg --list |grep libpolkit<br /> ii&#160; libpolkit-agent-1-0:amd64<br /> ii&#160; libpolkit-backend-1-0<br /> ii&#160; libpolkit-backend-elogind-1-0:amd64<br /> ii&#160; libpolkit-gobject-1-0<br /> ii&#160; libpolkit-gobject-elogind-1-0:amd64<br /> ii&#160; libpolkit-qt-1-1:amd64<br /> ii&#160; libpolkit-qt5-1-1:amd64</p><p>loginctl show-session 2<br /> Id=2<br /> User=1000&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;<br /> Name=matteol&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; <br /> Timestamp=Fri 2019-01-18 00:25:00 CET&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;<br /> TimestampMonotonic=13969528&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; <br /> VTNr=7&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;<br /> Seat=seat0<br /> Display=:0<br /> Remote=no<br /> Service=sddm<br /> Leader=2654<br /> Audit=2<br /> Type=x11<br /> Class=user<br /> Active=yes<br /> State=active<br /> IdleHint=no<br /> IdleSinceHint=0<br /> IdleSinceHintMonotonic=0<br /> LockedHint=no</p><p>the graphical popup on KDE notification tell me &quot;The connection attempt to the VPN service timed out.<br />The service providing the VPN connection was stopped&quot;</p><p>&amp; i found this daemon.conf </p><p>Jan 18 01:02:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769768.4113] audit: op=&quot;connection-activate&quot; uuid=&quot;d5e36906-c70a-43d5-b23b-759c76f3decc&quot; name=&quot;it.protonvpn.com.udp&quot; pid=2829 uid=1000 result=&quot;success&quot;<br />Jan 18 01:02:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769768.4159] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: Started the VPN service, PID 3635<br />Jan 18 01:02:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769768.4299] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: Saw the service appear; activating connection<br />Jan 18 01:02:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769768.4415] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN plugin: state changed: starting (3)<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: WARNING: file &#039;/home/matteol/.local/share/networkmanagement/certificates/it.protonvpn.com.udp/tls_auth.key&#039; is group or others accessible<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: OpenVPN 2.4.0 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Jul 18 2017<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: library versions: OpenSSL 1.0.2q&#160; 20 Nov 2018, LZO 2.08<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: WARNING: No server certificate verification method has been enabled.&#160; See <a href="http://openvpn.net/howto.html#mitm" rel="nofollow">http://openvpn.net/howto.html#mitm</a> for more info.<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: TCP/UDP: Preserving recently used remote address: [AF_INET]185.128.27.100:5060<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: UDP link local: (not bound)<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: UDP link remote: [AF_INET]185.128.27.100:5060<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: NOTE: chroot will be delayed because of --client, --pull, or --up-delay<br />Jan 18 01:02:48 shook3r nm-openvpn[3642]: NOTE: UID/GID downgrade will be delayed because of --client, --pull, or --up-delay<br />Jan 18 01:02:48 shook3r ModemManager[2454]: &lt;info&gt;&#160; Creating modem with plugin &#039;Generic&#039; and &#039;1&#039; ports<br />Jan 18 01:02:48 shook3r ModemManager[2454]: &lt;warn&gt;&#160; Could not grab port (tty/ttyACM0): &#039;Cannot add port &#039;tty/ttyACM0&#039;, unhandled serial type&#039;<br />Jan 18 01:02:48 shook3r ModemManager[2454]: &lt;warn&gt;&#160; Couldn&#039;t create modem for device at &#039;/sys/devices/pci0000:00/0000:00:14.0/usb1/1-8&#039;: Failed to find primary AT port<br />Jan 18 01:03:48 shook3r nm-openvpn[3642]: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)<br />Jan 18 01:03:48 shook3r nm-openvpn[3642]: TLS Error: TLS handshake failed<br />Jan 18 01:03:48 shook3r nm-openvpn[3642]: SIGUSR1[soft,tls-error] received, process restarting<br />Jan 18 01:03:48 shook3r nm-openvpn[3642]: SIGTERM[hard,init_instance] received, process exiting<br />Jan 18 01:03:48 shook3r NetworkManager[2336]: &lt;warn&gt;&#160; [1547769828.7206] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN connection: connect timeout exceeded.<br />Jan 18 01:03:48 shook3r NetworkManager[2336]: &lt;warn&gt;&#160; [1547769828.7231] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN plugin: failed: connect-failed (1)<br />Jan 18 01:03:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769828.7231] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN plugin: state changed: stopping (5)<br />Jan 18 01:03:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769828.7233] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN plugin: state changed: stopped (6)<br />Jan 18 01:03:48 shook3r NetworkManager[2336]: &lt;info&gt;&#160; [1547769828.7245] vpn-connection[0x55e9c8f94260,d5e36906-c70a-43d5-b23b-759c76f3decc,&quot;it.protonvpn.com.udp&quot;,0]: VPN service disappeared<br />Jan 18 01:03:49 shook3r PackageKit: get-updates transaction /65_ebecebec from uid 1000 finished with success after 384ms</p>]]></description>
			<author><![CDATA[dummy@example.com (id5485)]]></author>
			<pubDate>Fri, 18 Jan 2019 00:22:29 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=13732#p13732</guid>
		</item>
		<item>
			<title><![CDATA[Re: VPN with networkmanger on KDE (openrc)]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=13730#p13730</link>
			<description><![CDATA[<p>On terminal it won&#039;t work as normal user because modifying network settings usually requires root permissions. By gui it should work indeed, since network-manger daemon itself runs with root permission and the gui should forward all requests through d-bus to the daemon. Can you please provide the exact error message or problem with KDE gui?</p><p>In the meanwhile, please check that elogind, libpolkit*elogind and polkit is installed. (Re-login if you had to install one of these) Then please run:</p><div class="codebox"><pre><code>$ loginctl</code></pre></div><p>should show a list of session (one probably). From that list get session number and run</p><div class="codebox"><pre><code>$ loginctl show-session &lt;session number here&gt;</code></pre></div><p>and post output of that command here.</p><p>If you had to install one of the packages above, please try again configuring the vpn through gui. (After re-login!)</p>]]></description>
			<author><![CDATA[dummy@example.com (amesser)]]></author>
			<pubDate>Thu, 17 Jan 2019 18:47:01 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=13730#p13730</guid>
		</item>
		<item>
			<title><![CDATA[VPN with networkmanger on KDE (openrc)]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=13728#p13728</link>
			<description><![CDATA[<p>Hi,<br />first of all, sorry for my badly english</p><p>Packages installed:<br /> network-manager<br /> network-manager-openconnect<br /> network-manager-openvpn<br /> network-manager-vpnc <br /> openvpn<br /> plasma-nm</p><p>i import the .opvn file with the username &amp; password copied on graphical KDE network but not work<br />i do the same thing with openvpn on terminal but same thing (ERROR: Cannot ioctl TUNSETIFF tun: Operation not permitted (errno=1))</p><p>but with sudo openvpn work fine, so maybe some permission/polkit is wrong ?</p><p>Please help me, i need the vpn i use it very frequently for my job, thanks a lot for all possible answer</p>]]></description>
			<author><![CDATA[dummy@example.com (id5485)]]></author>
			<pubDate>Thu, 17 Jan 2019 12:42:09 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=13728#p13728</guid>
		</item>
	</channel>
</rss>
