trouble with PIA on freenas

Hello,

Today I finally got my freenas 11 jail with transmission and OpenVPN.
However after about 5min my vpn connection dies and i need to restart it, if I want to get any traffic.

My openvpn.conf is this:client                                                                                                                              
dev tun                                                                                                                             
proto udp                                                                                                                           
remote japan.privateinternetaccess.com 1198                                                                                         
resolv-retry infinite                                                                                                               
nobind                                                                                                                              
persist-key                                                                                                                         
persist-tun                                                                                                                         
cipher aes-128-cbc                                                                                                                  
auth sha1                                                                                                                           
tls-client                                                                                                                          
remote-cert-tls server                                                                                                              
auth-user-pass /usr/local/etc/openvpn/pass.txt                                                                                      
comp-lzo                                                                                                                            
verb 1                                                                                                                              
reneg-sec 0                                                                                                                         
crl-verify /usr/local/etc/openvpn/crl.pem                                                                                           
ca /usr/local/etc/openvpn/ca.crt                                                                                                    
disable-occ 

The logfile looks something like this - "..." meaning spammed log entry:

Dec 26 17:53:48 transmission_1 openvpn[81780]: OpenVPN 2.4.4 amd64-portbld-freebsd11.1 [SSL (OpenSSL)] [LZO] [LZ4] [MH/RECVDA] [AEAD] built on Dec 10 2017
Dec 26 17:53:48 transmission_1 openvpn[81780]: library versions: OpenSSL 1.0.2j-freebsd  26 Sep 2016, LZO 2.10
Dec 26 17:53:48 transmission_1 openvpn[81781]: TCP/UDP: Preserving recently used remote address: [AF_INET]103.208.220.134:1198
Dec 26 17:53:48 transmission_1 openvpn[81781]: UDP link local: (not bound)
Dec 26 17:53:48 transmission_1 openvpn[81781]: UDP link remote: [AF_INET]103.208.220.134:1198
Dec 26 17:53:48 transmission_1 openvpn[81781]: WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Dec 26 17:53:48 transmission_1 openvpn[81781]: [ce4e3c1ce1ee1101bee5bc210f67fc1c] Peer Connection Initiated with [AF_INET]103.208.220.134:1198
Dec 26 17:53:50 transmission_1 openvpn[81781]: TUN/TAP device /dev/tun0 opened
Dec 26 17:53:50 transmission_1 openvpn[81781]: do_ifconfig, tt->did_ifconfig_ipv6_setup=0
Dec 26 17:53:50 transmission_1 openvpn[81781]: /sbin/ifconfig tun0 10.54.10.6 10.54.10.5 mtu 1500 netmask 255.255.255.255 up
Dec 26 17:53:50 transmission_1 openvpn[81781]: Initialization Sequence Completed
....
Dec 26 17:57:53 transmission_1 openvpn[81781]: Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #123429 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Dec 26 17:57:56 transmission_1 openvpn[81781]: Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #126557 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Dec 26 17:57:56 transmission_1 openvpn[81781]: Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #126547 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
Dec 26 17:57:56 transmission_1 openvpn[81781]: Authenticate/Decrypt packet error: bad packet ID (may be a replay): [ #126565 ] -- see the man page entry for --no-replay and --replay-window for more info or silence this warning with --mute-replay-warnings
...
...
Dec 26 17:59:56 transmission_1 openvpn[81781]: [ce4e3c1ce1ee1101bee5bc210f67fc1c] Inactivity timeout (--ping-restart), restarting
Dec 26 17:59:56 transmission_1 openvpn[81781]: SIGUSR1[soft,ping-restart] received, process restarting
Dec 26 18:00:01 transmission_1 openvpn[81781]: TCP/UDP: Preserving recently used remote address: [AF_INET]103.208.220.134:1198
Dec 26 18:00:01 transmission_1 openvpn[81781]: UDP link local: (not bound)
Dec 26 18:00:01 transmission_1 openvpn[81781]: UDP link remote: [AF_INET]103.208.220.134:1198
Dec 26 18:01:01 transmission_1 openvpn[81781]: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Dec 26 18:01:01 transmission_1 openvpn[81781]: TLS Error: TLS handshake failed
Dec 26 18:01:01 transmission_1 openvpn[81781]: SIGUSR1[soft,tls-error] received, process restarting
...

Help !!!
Sign In or Register to comment.