Today i set up Mikrotik device as OpenVPN client for PFSense gateway.
All is ok, but i have one trouble - tls-auth.
When i choose "Enable authentication of TLS packets." in PFSense, Mikrotik not connecting.
What wrong?
Mikrotik config:
Code: Select all
/interface ovpn-client print
Flags: X - disabled, R - running
0 R name="ovpn-out1" mac-address=02:F5:F7:FA:XX:XX max-mtu=1500
connect-to=83.X.X.X port=1194 mode=ip user="superman"
password="blablabla" profile=default certificate=superman auth=sha1
cipher=aes128 add-default-route=no
Code: Select all
Aug 28 14:53:34 openvpn[55144]: 1.8.14.2:47861 Fatal TLS error (check_tls_errors_co), restarting
Aug 28 14:53:34 openvpn[55144]: 1.8.14.2:47861 TLS Error: cannot locate HMAC in incoming packet from [AF_INET]1.8.14.2:47861