Please see below for updated logs regarding the issue, from the VPN start to 
it's timeout.

1 Jun 04 19:15:13 $hostname NetworkManager[531]: <info> [1496621713.5396] 
audit: op="connection-activate" uuid="$uuid" name="$vpn_name" pid=28504 
uid=1000 result="success"
2 Jun 04 19:15:13 $hostname NetworkManager[531]: <info> [1496621713.5457] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: Started the VPN service, 
PID 28510
3 Jun 04 19:15:13 $hostname NetworkManager[531]: <info> [1496621713.5583] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: Saw the service appear; 
activating connection
4 Jun 04 19:15:13 $hostname NetworkManager[531]: <info> [1496621713.5967] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: state changed: 
starting (3)
5 Jun 04 19:15:13 $hostname NetworkManager[531]: <info> [1496621713.5968] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN connection: 
(ConnectInteractive) reply rec
6 Jun 04 19:15:13 $hostname nm-openvpn[28513]: OpenVPN 2.4.0 
[git:master/d73f7253d939e293+] x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] 
[EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 22 2017
7 Jun 04 19:15:13 $hostname nm-openvpn[28513]: library versions: OpenSSL 1.0.2k 
26 Jan 2017, LZO 2.08
8 Jun 04 19:15:13 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
9 Jun 04 19:15:13 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
10 Jun 04 19:15:13 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
11 Jun 04 19:15:13 $hostname nm-openvpn[28513]: UDP link local: (not bound)
12 Jun 04 19:15:13 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
13 Jun 04 19:15:13 $hostname nm-openvpn[28513]: NOTE: chroot will be delayed 
because of --client, --pull, or --up-delay
14 Jun 04 19:15:13 $hostname nm-openvpn[28513]: NOTE: UID/GID downgrade will be 
delayed because of --client, --pull, or --up-delay
15 Jun 04 19:15:15 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
16 Jun 04 19:15:15 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
17 Jun 04 19:15:15 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
18 Jun 04 19:15:16 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
19 Jun 04 19:15:16 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
20 Jun 04 19:15:21 $hostname NetworkManager[531]: <info> [1496621721.8481] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
21 Jun 04 19:15:21 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
22 Jun 04 19:15:21 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
23 Jun 04 19:15:21 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
24 Jun 04 19:15:21 $hostname nm-openvpn[28513]: UDP link local: (not bound)
25 Jun 04 19:15:21 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
26 Jun 04 19:15:23 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
27 Jun 04 19:15:23 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
28 Jun 04 19:15:23 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
29 Jun 04 19:15:24 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
30 Jun 04 19:15:24 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
31 Jun 04 19:15:29 $hostname NetworkManager[531]: <info> [1496621729.7477] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
32 Jun 04 19:15:29 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
33 Jun 04 19:15:29 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
34 Jun 04 19:15:29 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
35 Jun 04 19:15:29 $hostname nm-openvpn[28513]: UDP link local: (not bound)
36 Jun 04 19:15:29 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
37 Jun 04 19:15:31 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
38 Jun 04 19:15:31 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
39 Jun 04 19:15:31 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
40 Jun 04 19:15:32 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
41 Jun 04 19:15:32 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
42 Jun 04 19:15:37 $hostname NetworkManager[531]: <info> [1496621737.7231] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
43 Jun 04 19:15:37 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
44 Jun 04 19:15:37 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
45 Jun 04 19:15:37 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
46 Jun 04 19:15:37 $hostname nm-openvpn[28513]: UDP link local: (not bound)
47 Jun 04 19:15:37 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
48 Jun 04 19:15:39 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
49 Jun 04 19:15:39 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
50 Jun 04 19:15:39 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
51 Jun 04 19:15:40 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
52 Jun 04 19:15:40 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
53 Jun 04 19:15:45 $hostname NetworkManager[531]: <info> [1496621745.5380] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
54 Jun 04 19:15:45 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
55 Jun 04 19:15:45 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
56 Jun 04 19:15:45 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
57 Jun 04 19:15:45 $hostname nm-openvpn[28513]: UDP link local: (not bound)
58 Jun 04 19:15:45 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
59 Jun 04 19:15:47 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
60 Jun 04 19:15:47 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
61 Jun 04 19:15:47 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
62 Jun 04 19:15:48 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
63 Jun 04 19:15:48 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
64 Jun 04 19:15:53 $hostname NetworkManager[531]: <info> [1496621753.4227] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
65 Jun 04 19:15:53 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
66 Jun 04 19:15:53 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
67 Jun 04 19:15:53 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
68 Jun 04 19:15:53 $hostname nm-openvpn[28513]: UDP link local: (not bound)
69 Jun 04 19:15:53 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
70 Jun 04 19:15:55 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
71 Jun 04 19:15:55 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
72 Jun 04 19:15:55 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
73 Jun 04 19:15:56 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
74 Jun 04 19:15:56 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
75 Jun 04 19:16:01 $hostname NetworkManager[531]: <info> [1496621761.5015] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
76 Jun 04 19:16:01 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
77 Jun 04 19:16:01 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
78 Jun 04 19:16:01 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
79 Jun 04 19:16:01 $hostname nm-openvpn[28513]: UDP link local: (not bound)
80 Jun 04 19:16:01 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
81 Jun 04 19:16:03 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
82 Jun 04 19:16:03 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
83 Jun 04 19:16:03 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
84 Jun 04 19:16:04 $hostname nm-openvpn[28513]: AUTH: Received control message: 
AUTH_FAILED
85 Jun 04 19:16:04 $hostname nm-openvpn[28513]: SIGUSR1[soft,auth-failure] 
received, process restarting
86 Jun 04 19:16:09 $hostname NetworkManager[531]: <info> [1496621769.3185] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: requested 
secrets; state connect (
87 Jun 04 19:16:09 $hostname nm-openvpn[28513]: WARNING: --ping should normally 
be used with --ping-restart or --ping-exit
88 Jun 04 19:16:09 $hostname nm-openvpn[28513]: NOTE: the current 
--script-security setting may allow this configuration to call user-defined 
scripts
89 Jun 04 19:16:09 $hostname nm-openvpn[28513]: TCP/UDP: Preserving recently 
used remote address: [AF_INET]$ip
90 Jun 04 19:16:09 $hostname nm-openvpn[28513]: UDP link local: (not bound)
91 Jun 04 19:16:09 $hostname nm-openvpn[28513]: UDP link remote: [AF_INET]$ip
92 Jun 04 19:16:12 $hostname nm-openvpn[28513]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
93 Jun 04 19:16:12 $hostname nm-openvpn[28513]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
94 Jun 04 19:16:12 $hostname nm-openvpn[28513]: [$server] Peer Connection 
Initiated with [AF_INET]$ip
95 Jun 04 19:16:13 $hostname NetworkManager[531]: <warn> [1496621773.9558] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN connection: connect 
timeout exceeded.
96 Jun 04 19:16:13 $hostname nm-openvpn[28513]: SIGTERM[hard,] received, 
process exiting
97 Jun 04 19:16:13 $hostname NetworkManager[531]: <warn> [1496621773.9635] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: failed: 
connect-failed (1)
98 Jun 04 19:16:13 $hostname NetworkManager[531]: <info> [1496621773.9636] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: state changed: 
stopping (5)
99 Jun 04 19:16:13 $hostname NetworkManager[531]: <info> [1496621773.9636] 
vpn-connection[0x5639c894a360,$uuid,"$vpn_name",0]: VPN plugin: state changed: 
stopped (6)

Regards,
Prescott

-------- Original Message --------
Subject: Re: Bug#863110: openvpn: VPN remains connected, but network is 
unreachable after 30-45 min and requires reconnect
Local Time: May 25, 2017 8:20 PM
UTC Time: May 26, 2017 1:20 AM
From: presc...@hidalgo-monroy.com
To: Alberto Gonzalez Iniesta <a...@inittab.org>, 863...@bugs.debian.org 
<863...@bugs.debian.org>

It seemed to take longer (almost exactly an hour since starting the VPN), but 
the issue came back up. This was the only message in the logs:

May 25 20:11:51 $hostname nm-openvpn[26356]: WARNING: 'link-mtu' is used 
inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
May 25 20:11:51 $hostname nm-openvpn[26356]: WARNING: 'tun-mtu' is used 
inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'

Regards,
Prescott

-------- Original Message --------
Subject: Re: Bug#863110: openvpn: VPN remains connected, but network is 
unreachable after 30-45 min and requires reconnect
Local Time: May 25, 2017 5:03 AM
UTC Time: May 25, 2017 10:03 AM
From: a...@inittab.org
To: Prescott Hidalgo-Monroy <presc...@hidalgo-monroy.com>
863...@bugs.debian.org <863...@bugs.debian.org>

Hi, could you test this using a wired connection?

On Tue, May 23, 2017 at 10:25:16PM -0400, Prescott Hidalgo-Monroy wrote:
> Despite the update to 2.4.0-6, I'm still experiencing the same issue as 
> before.
>
> The only information could find are from these errors from the syslog. It 
> took approximately 15-20 minutes for the display to shut off for power saving 
> (19:57), based off of the first error message.
>
> May 23 20:15:35 $hostname kernel: [ 1399.479807] perf: interrupt took too 
> long (2515 > 2500), lowering kernel.perf_event_max_sample_rate to 79500
> May 23 20:25:26 $hostname kernel: [ 1989.911138] perf: interrupt took too 
> long (3145 > 3143), lowering kernel.perf_event_max_sample_rate to 63500
> May 23 20:34:46 $hostname wpa_supplicant[639]: wlan0: 
> CTRL-EVENT-REGDOM-CHANGE init=BEACON_HINT type=UNKNOWN
> May 23 20:34:47 $hostname wpa_supplicant[639]: dbus: 
> wpa_dbus_get_object_properties: failed to get object properties: 
> (org.freedesktop.DBus.Error.Failed) failed to parse RSN IE
> May 23 20:34:47 $hostname wpa_supplicant[639]: dbus: Failed to construct 
> signal
> May 23 20:38:03 $hostname kernel: [ 2747.578044] perf: interrupt took too 
> long (3936 > 3931), lowering kernel.perf_event_max_sample_rate to 50750
> May 23 20:53:10 $hostname nm-openvpn[1242]: WARNING: 'link-mtu' is used 
> inconsistently, local='link-mtu 1602', remote='link-mtu 1634'
> May 23 20:53:10 $hostname nm-openvpn[1242]: WARNING: 'tun-mtu' is used 
> inconsistently, local='tun-mtu 1500', remote='tun-mtu 1532'
> May 23 20:56:46 $hostname wpa_supplicant[639]: nl80211: 
> send_and_recv->nl_recvmsgs failed: -33
>
> The final message is due to the ping I used to test the connection.
>
> Regards,
>
> Prescott
>
> -------- Original Message --------
> Subject: Re: Bug#863110: openvpn: VPN remains connected, but network is 
> unreachable after 30-45 min and requires reconnect
> Local Time: May 22, 2017 8:58 AM
> UTC Time: May 22, 2017 1:58 PM
> From: a...@inittab.org
> To: Prescott <presc...@hidalgo-monroy.com>, 863...@bugs.debian.org
> Debian Bug Tracking System <sub...@bugs.debian.org>
>
> On Sun, May 21, 2017 at 06:40:31PM -0500, Prescott wrote:
> > Package: openvpn
> > Version: 2.4.0-5
> > Severity: important
> >
> > Dear Maintainer,
> >
> > After the upgrade to openvpn 2.4.0-5 (from *-4), an issue has been
> > occuring where after having been connected to the VPN for an
> > approximate amount of time of around 30-45 minutes, the network
> > connection will drop. NetworkManager continues to state that the VPN
> > is currently active, but no network is reachable. The only way to
> > restart the VPN network is to bring the connection up again.
> >
> > As stated before, I am using openvpn through NetworkManger, and use
> > nmcli with a configured VPN config file and a separate password file from a 
> > paid service I
> > subscribe to.
> >
>
> Hi,
>
> Could you try 2.4.0-6 just uploaded to unstable? It fixes an issue that
> matches your symptoms.
>
> Regards,
>
> Alberto
>

--
Alberto Gonzalez Iniesta | Formación, consultoría y soporte técnico
mailto/sip: a...@inittab.org | en GNU/Linux y software libre
Encrypted mail preferred | http://inittab.com

Key fingerprint = 5347 CBD8 3E30 A9EB 4D7D 4BF2 009B 3375 6B9A AA55

Reply via email to