2022-10-12 10:48:58 |
John |
description |
Downloaded ovpn file from watchguard device.
Get this error in system logs:
Oct 12 11:38:19 DXXXX nm-openvpn[14241]: OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
Using the VPN GUI I:
Went To Advanced -> Security
The Cipher was already set as AES-256-CBC.
Changing the value for Cipher has no impact on the error message. "Tried disable cypher negotion" but this immediately failed due to:
Options error: Unrecognized option or missing or extra parameter(s) in [CMD-LINE]:1: ncp-disable (2.6_git)
ncp-disable was depreciated in openvpn 2.5 and removed in openvpn 2.6 so I think this flag will never work.
ProblemType: Bug
DistroRelease: Ubuntu 22.10
Package: openvpn 2.6.0~git20220818-1ubuntu1
ProcVersionSignature: Ubuntu 5.19.0-19.19-generic 5.19.7
Uname: Linux 5.19.0-19-generic x86_64
NonfreeKernelModules: nvidia_modeset nvidia
ApportVersion: 2.23.1-0ubuntu2
Architecture: amd64
CasperMD5CheckResult: pass
CurrentDesktop: ubuntu:GNOME
Date: Wed Oct 12 11:34:00 2022
InstallationDate: Installed on 2022-10-11 (0 days ago)
InstallationMedia: Ubuntu 22.10 "Kinetic Kudu" - Beta amd64 (20220927.1)
ProcEnviron:
LANGUAGE=en_GB:en
PATH=(custom, no user)
XDG_RUNTIME_DIR=<set>
LANG=en_GB.UTF-8
SHELL=/bin/bash
SourcePackage: openvpn
UpgradeStatus: No upgrade log present (probably fresh install) |
Downloaded ovpn file from watchguard device.
Get this error in system logs:
Oct 12 11:38:19 DXXXX nm-openvpn[14241]: OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
Using the VPN GUI I:
Went To Advanced -> Security
The Cipher was already set as AES-256-CBC.
Changing the value for Cipher has no impact on the error message. "Tried disable cypher negotion" but this immediately failed due to:
Options error: Unrecognized option or missing or extra parameter(s) in [CMD-LINE]:1: ncp-disable (2.6_git)
ncp-disable was depreciated in openvpn 2.5 and removed in openvpn 2.6 so I think this flag will never work.
Looking in the .ovpn file it has the following lines:
cipher AES-256-CBC
auth SHA1
ProblemType: Bug
DistroRelease: Ubuntu 22.10
Package: openvpn 2.6.0~git20220818-1ubuntu1
ProcVersionSignature: Ubuntu 5.19.0-19.19-generic 5.19.7
Uname: Linux 5.19.0-19-generic x86_64
NonfreeKernelModules: nvidia_modeset nvidia
ApportVersion: 2.23.1-0ubuntu2
Architecture: amd64
CasperMD5CheckResult: pass
CurrentDesktop: ubuntu:GNOME
Date: Wed Oct 12 11:34:00 2022
InstallationDate: Installed on 2022-10-11 (0 days ago)
InstallationMedia: Ubuntu 22.10 "Kinetic Kudu" - Beta amd64 (20220927.1)
ProcEnviron:
LANGUAGE=en_GB:en
PATH=(custom, no user)
XDG_RUNTIME_DIR=<set>
LANG=en_GB.UTF-8
SHELL=/bin/bash
SourcePackage: openvpn
UpgradeStatus: No upgrade log present (probably fresh install) |
|
2022-10-27 09:48:35 |
John |
description |
Downloaded ovpn file from watchguard device.
Get this error in system logs:
Oct 12 11:38:19 DXXXX nm-openvpn[14241]: OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
Using the VPN GUI I:
Went To Advanced -> Security
The Cipher was already set as AES-256-CBC.
Changing the value for Cipher has no impact on the error message. "Tried disable cypher negotion" but this immediately failed due to:
Options error: Unrecognized option or missing or extra parameter(s) in [CMD-LINE]:1: ncp-disable (2.6_git)
ncp-disable was depreciated in openvpn 2.5 and removed in openvpn 2.6 so I think this flag will never work.
Looking in the .ovpn file it has the following lines:
cipher AES-256-CBC
auth SHA1
ProblemType: Bug
DistroRelease: Ubuntu 22.10
Package: openvpn 2.6.0~git20220818-1ubuntu1
ProcVersionSignature: Ubuntu 5.19.0-19.19-generic 5.19.7
Uname: Linux 5.19.0-19-generic x86_64
NonfreeKernelModules: nvidia_modeset nvidia
ApportVersion: 2.23.1-0ubuntu2
Architecture: amd64
CasperMD5CheckResult: pass
CurrentDesktop: ubuntu:GNOME
Date: Wed Oct 12 11:34:00 2022
InstallationDate: Installed on 2022-10-11 (0 days ago)
InstallationMedia: Ubuntu 22.10 "Kinetic Kudu" - Beta amd64 (20220927.1)
ProcEnviron:
LANGUAGE=en_GB:en
PATH=(custom, no user)
XDG_RUNTIME_DIR=<set>
LANG=en_GB.UTF-8
SHELL=/bin/bash
SourcePackage: openvpn
UpgradeStatus: No upgrade log present (probably fresh install) |
Downloaded ovpn file from watchguard device.
Get this error in system logs:
Oct 12 11:38:19 DXXXX nm-openvpn[14241]: OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
Using the VPN GUI I:
Went To Advanced -> Security
The Cipher was already set as AES-256-CBC.
Changing the value for Cipher has no impact on the error message. "Tried disable cypher negotion" but this immediately failed due to:
Options error: Unrecognized option or missing or extra parameter(s) in [CMD-LINE]:1: ncp-disable (2.6_git)
ncp-disable was depreciated in openvpn 2.5 and removed in openvpn 2.6 so I think this flag will never work.
Looking in the .ovpn file it has the following lines:
cipher AES-256-CBC
auth SHA1
ProblemType: Bug
DistroRelease: Ubuntu 22.10
Package: openvpn 2.6.0~git20220818-1ubuntu1
ProcVersionSignature: Ubuntu 5.19.0-19.19-generic 5.19.7
Uname: Linux 5.19.0-19-generic x86_64
NonfreeKernelModules: nvidia_modeset nvidia
ApportVersion: 2.23.1-0ubuntu2
Architecture: amd64
CasperMD5CheckResult: pass
CurrentDesktop: ubuntu:GNOME
Date: Wed Oct 12 11:34:00 2022
InstallationDate: Installed on 2022-10-11 (0 days ago)
InstallationMedia: Ubuntu 22.10 "Kinetic Kudu" - Beta amd64 (20220927.1)
ProcEnviron:
LANGUAGE=en_GB:en
PATH=(custom, no user)
XDG_RUNTIME_DIR=<set>
LANG=en_GB.UTF-8
SHELL=/bin/bash
SourcePackage: openvpn
UpgradeStatus: No upgrade log present (probably fresh install) |
|