voila ce que j’obtient sur ma vm
iptables -L -v -n
Chain INPUT (policy ACCEPT 786 packets, 80552 bytes)
pkts bytes target prot opt in out source destination
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
Chain OUTPUT (policy ACCEPT 638 packets, 76400 bytes)
pkts bytes target prot opt in out source destination
donc il y a bien des trucs qui passent mais toujours par de VPN actif
et
lsmod | grep tables
lsmod | grep ip
ne me retourne aucune reponse
edit:
bon voila le contenu de openvpn.log aprés un restart de la vm
less openvpn.log
Mon Aug 10 17:07:51 2015 event_wait : Interrupted system call (code=4)
Mon Aug 10 17:07:51 2015 TCP/UDP: Closing socket
Mon Aug 10 17:07:51 2015 /sbin/route del -net 10.66.0.0 netmask 255.255.255.0
SIOCDELRT: Operation not permitted
Mon Aug 10 17:07:51 2015 ERROR: Linux route delete command failed: external program exited with error status: 7
Mon Aug 10 17:07:51 2015 /sbin/route del -net 10.2.0.0 netmask 255.255.255.0
SIOCDELRT: Operation not permitted
Mon Aug 10 17:07:51 2015 ERROR: Linux route delete command failed: external program exited with error status: 7
Mon Aug 10 17:07:51 2015 /sbin/route del -net 10.1.0.0 netmask 255.255.255.0
SIOCDELRT: Operation not permitted
Mon Aug 10 17:07:51 2015 ERROR: Linux route delete command failed: external program exited with error status: 7
Mon Aug 10 17:07:51 2015 Closing TUN/TAP interface
Mon Aug 10 17:07:51 2015 /sbin/ifconfig tun0 0.0.0.0
SIOCSIFADDR: Permission denied
SIOCSIFFLAGS: Permission denied
Mon Aug 10 17:07:51 2015 Linux ip addr del failed: external program exited with error status: 255
Mon Aug 10 17:07:51 2015 PLUGIN_CLOSE: /usr/lib/openvpn/openvpn-auth-pam.so
Mon Aug 10 17:07:51 2015 SIGTERM[hard,] received, process exiting
Mon Aug 10 17:07:52 2015 OpenVPN 2.2.1 x86_64-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [eurephia] [MH] [PF_INET6] [IPv6 payload 20110424-2 (2.2RC2)] built on Dec 1 2014
Mon Aug 10 17:07:52 2015 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables
Mon Aug 10 17:07:52 2015 PLUGIN_INIT: POST /usr/lib/openvpn/openvpn-auth-pam.so '[/usr/lib/openvpn/openvpn-auth-pam.so] [common-auth]' intercepted=PLUGIN_AUTH_USER_PASS_VERIFY
Mon Aug 10 17:07:52 2015 Diffie-Hellman initialized with 1024 bit key
Mon Aug 10 17:07:52 2015 WARNING: file 'vpn.key' is group or others accessible
Mon Aug 10 17:07:52 2015 TLS-Auth MTU parms [ L:1542 D:138 EF:38 EB:0 ET:0 EL:0 ]
Mon Aug 10 17:07:52 2015 Socket Buffers: R=[245760->131072] S=[245760->131072]
Mon Aug 10 17:07:52 2015 ROUTE: default_gateway=UNDEF
Mon Aug 10 17:07:52 2015 TUN/TAP device tun0 opened
Mon Aug 10 17:07:52 2015 TUN/TAP TX queue length set to 100
Mon Aug 10 17:07:52 2015 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Mon Aug 10 17:07:52 2015 /sbin/ifconfig tun0 10.66.0.1 pointopoint 10.66.0.2 mtu 1500
Mon Aug 10 17:07:52 2015 /sbin/route add -net 10.1.0.0 netmask 255.255.255.0 gw 10.66.0.2
Mon Aug 10 17:07:52 2015 /sbin/route add -net 10.2.0.0 netmask 255.255.255.0 gw 10.66.0.2
Mon Aug 10 17:07:52 2015 /sbin/route add -net 10.66.0.0 netmask 255.255.255.0 gw 10.66.0.2
Mon Aug 10 17:07:52 2015 Data Channel MTU parms [ L:1542 D:1450 EF:42 EB:135 ET:0 EL:0 AF:3/1 ]
Mon Aug 10 17:07:52 2015 GID set to nogroup
Mon Aug 10 17:07:52 2015 UID set to nobody
Mon Aug 10 17:07:52 2015 UDPv4 link local (bound): [undef]
Mon Aug 10 17:07:52 2015 UDPv4 link remote: [undef]
Mon Aug 10 17:07:52 2015 MULTI: multi_init called, r=256 v=256
Mon Aug 10 17:07:52 2015 IFCONFIG POOL: base=10.66.0.4 size=62, ipv6=0
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.4', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.8', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.12', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.16', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.20', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.24', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.28', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.32', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.36', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.40', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.44', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.48', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.52', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.56', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.60', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.64', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.68', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.72', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.76', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.80', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.84', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.88', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.92', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 ifconfig_pool_read(), in='xxx,10.66.0.96', TODO: IPv6
Mon Aug 10 17:07:52 2015 succeeded -> ifconfig_pool_set()
Mon Aug 10 17:07:52 2015 IFCONFIG POOL LIST
Mon Aug 10 17:07:52 2015 xxx,10.66.0.4
Mon Aug 10 17:07:52 2015 xxx,10.66.0.8
Mon Aug 10 17:07:52 2015 xxx,10.66.0.12
Mon Aug 10 17:07:52 2015 xxx,10.66.0.16
Mon Aug 10 17:07:52 2015 xxx,10.66.0.20
Mon Aug 10 17:07:52 2015 xxx,10.66.0.24
Mon Aug 10 17:07:52 2015 xxx,10.66.0.28
Mon Aug 10 17:07:52 2015 xxx,10.66.0.32
Mon Aug 10 17:07:52 2015 xxx,10.66.0.36
Mon Aug 10 17:07:52 2015 xxx,10.66.0.40
Mon Aug 10 17:07:52 2015 xxx,10.66.0.44
Mon Aug 10 17:07:52 2015 xxx,10.66.0.48
Mon Aug 10 17:07:52 2015 xxx,10.66.0.52
Mon Aug 10 17:07:52 2015 xxx,10.66.0.56
Mon Aug 10 17:07:52 2015 xxx,10.66.0.60
Mon Aug 10 17:07:52 2015 xxx,10.66.0.64
Mon Aug 10 17:07:52 2015 xxx,10.66.0.68
Mon Aug 10 17:07:52 2015 xxx,10.66.0.72
Mon Aug 10 17:07:52 2015 xxx,10.66.0.76
Mon Aug 10 17:07:52 2015 xxx,10.66.0.80
Mon Aug 10 17:07:52 2015 xxx,10.66.0.84
Mon Aug 10 17:07:52 2015 xxx,10.66.0.88
Mon Aug 10 17:07:52 2015 xxx,10.66.0.92
Mon Aug 10 17:07:52 2015 xxx,10.66.0.96
Mon Aug 10 17:07:52 2015 Initialization Sequence Completed
et les info vpn dans syslog
grep VPN /var/log/syslog
Aug 10 16:06:56 VPN ntpd[1616]: ntpd exiting on signal 15
Aug 10 16:06:59 VPN kernel: imklog 5.8.11, log source = /proc/kmsg started.
Aug 10 16:06:59 VPN rsyslogd: [origin software="rsyslogd" swVersion="5.8.11" x-pid="1501" x-info="http://www.rsyslog.com"] start
Aug 10 16:06:59 VPN ntpd[1620]: ntpd 4.2.6p5@1.2349-o Fri Apr 10 18:48:35 UTC 2015 (1)
Aug 10 16:06:59 VPN ntpd[1621]: proto: precision = 0.109 usec
Aug 10 16:06:59 VPN ntpd[1621]: Listen and drop on 0 v4wildcard 0.0.0.0 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen and drop on 1 v6wildcard :: UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen normally on 2 lo 127.0.0.1 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen normally on 3 venet0 127.0.0.2 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen normally on 4 venet0:0 172.16.0.101 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen normally on 5 tun0 10.66.0.1 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: Listen normally on 6 lo ::1 UDP 123
Aug 10 16:06:59 VPN ntpd[1621]: peers refreshed
Aug 10 16:06:59 VPN ntpd[1621]: Listening on routing socket on fd #23 for interface updates
Aug 10 16:15:35 VPN ntpd[1621]: ntpd exiting on signal 15
Aug 10 16:15:39 VPN kernel: imklog 5.8.11, log source = /proc/kmsg started.
Aug 10 16:15:39 VPN rsyslogd: [origin software="rsyslogd" swVersion="5.8.11" x-pid="1500" x-info="http://www.rsyslog.com"] start
Aug 10 16:15:39 VPN ntpd[1619]: ntpd 4.2.6p5@1.2349-o Fri Apr 10 18:48:35 UTC 2015 (1)
Aug 10 16:15:39 VPN ntpd[1620]: proto: precision = 0.109 usec
Aug 10 16:15:39 VPN ntpd[1620]: Listen and drop on 0 v4wildcard 0.0.0.0 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen and drop on 1 v6wildcard :: UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen normally on 2 lo 127.0.0.1 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen normally on 3 venet0 127.0.0.2 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen normally on 4 venet0:0 172.16.0.101 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen normally on 5 tun0 10.66.0.1 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: Listen normally on 6 lo ::1 UDP 123
Aug 10 16:15:39 VPN ntpd[1620]: peers refreshed
Aug 10 16:15:39 VPN ntpd[1620]: Listening on routing socket on fd #23 for interface updates
Aug 10 16:17:32 VPN ntpd[1620]: ntpd exiting on signal 15
Aug 10 16:18:59 VPN kernel: imklog 5.8.11, log source = /proc/kmsg started.
Aug 10 16:18:59 VPN rsyslogd: [origin software="rsyslogd" swVersion="5.8.11" x-pid="1502" x-info="http://www.rsyslog.com"] start
Aug 10 16:18:59 VPN ntpd[1621]: ntpd 4.2.6p5@1.2349-o Fri Apr 10 18:48:35 UTC 2015 (1)
Aug 10 16:18:59 VPN ntpd[1622]: proto: precision = 0.112 usec
Aug 10 16:18:59 VPN ntpd[1622]: Listen and drop on 0 v4wildcard 0.0.0.0 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen and drop on 1 v6wildcard :: UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen normally on 2 lo 127.0.0.1 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen normally on 3 venet0 127.0.0.2 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen normally on 4 venet0:0 172.16.0.101 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen normally on 5 tun0 10.66.0.1 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: Listen normally on 6 lo ::1 UDP 123
Aug 10 16:18:59 VPN ntpd[1622]: peers refreshed
Aug 10 16:18:59 VPN ntpd[1622]: Listening on routing socket on fd #23 for interface updates
la config reseau du serveur physique qui heberge la vm VPN
ifconfig -a
br0 Link encap:Ethernet HWaddr 00:19:b9:b9:a2:0b
inet adr:172.16.0.1 Bcast:172.16.0.255 Masque:255.255.255.0
adr inet6: fe80::219:b9ff:feb9:a20b/64 Scope:Lien
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:348905444 errors:0 dropped:0 overruns:0 frame:0
TX packets:246696100 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:0
RX bytes:495750443743 (461.7 GiB) TX bytes:193110956631 (179.8 GiB)
eth0 Link encap:Ethernet HWaddr 00:19:b9:b9:a2:0b
adr inet6: fe80::219:b9ff:feb9:a20b/64 Scope:Lien
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:437757775 errors:0 dropped:0 overruns:0 frame:0
TX packets:347422954 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:1000
RX bytes:511526026305 (476.3 GiB) TX bytes:202035561026 (188.1 GiB)
eth1 Link encap:Ethernet HWaddr 00:19:b9:b9:a2:0d
BROADCAST MULTICAST MTU:1500 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:1000
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
lo Link encap:Boucle locale
inet adr:127.0.0.1 Masque:255.0.0.0
adr inet6: ::1/128 Scope:Hôte
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:31162248 errors:0 dropped:0 overruns:0 frame:0
TX packets:31162248 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:0
RX bytes:7072181201 (6.5 GiB) TX bytes:7072181201 (6.5 GiB)
venet0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
adr inet6: fe80::1/128 Scope:Lien
UP BROADCAST POINTOPOINT RUNNING NOARP MTU:1500 Metric:1
RX packets:9795 errors:0 dropped:0 overruns:0 frame:0
TX packets:9152 errors:0 dropped:3 overruns:0 carrier:0
collisions:0 lg file transmission:0
RX bytes:2763171 (2.6 MiB) TX bytes:2425699 (2.3 MiB)
vnet1 Link encap:Ethernet HWaddr fe:04:76:9f:02:54
adr inet6: fe80::fc04:76ff:fe9f:254/64 Scope:Lien
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:4340697 errors:0 dropped:0 overruns:0 frame:0
TX packets:20802324 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 lg file transmission:500
RX bytes:1084615650 (1.0 GiB) TX bytes:5089492643 (4.7 GiB)
la config reseau de la vm VPN
ifconfig -a
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
tun0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:10.66.0.1 P-t-P:10.66.0.2 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
venet0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:127.0.0.2 P-t-P:127.0.0.2 Bcast:0.0.0.0 Mask:255.255.255.255
UP BROADCAST POINTOPOINT RUNNING NOARP MTU:1500 Metric:1
RX packets:4340 errors:0 dropped:0 overruns:0 frame:0
TX packets:3907 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:465976 (455.0 KiB) TX bytes:606712 (592.4 KiB)
venet0:0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
inet addr:172.16.0.101 P-t-P:172.16.0.101 Bcast:172.16.0.101 Mask:255.255.255.255
UP BROADCAST POINTOPOINT RUNNING NOARP MTU:1500 Metric:1