DaemonForums  

Go Back   DaemonForums > OpenBSD > OpenBSD Security

OpenBSD Security Functionally paranoid!

Reply
 
Thread Tools Display Modes
  #1   (View Single Post)  
Old 28th December 2022
stanl stanl is offline
Real Name: Stan
Package Pilot
 
Join Date: Jun 2019
Location: New York
Posts: 163
Default ProtonVPN OpenBSD and DNS leaks

I am running OpenBSD -current and last night I managed to install ProtonVPN.
I went into my router configuration (I use Verizon FiOS) and changed the setting to obtain IPv4 DNS addresses automatically.
Went to dnsleaktest.com to check for DNS leaks and everything looked OK - the only server shown was one provided by the VPN.

This morning I booted up and again checked dnsleaktest.com and all I see is line after line of Verizon servers.

I am at a loss to explain everything looked good last night but not today.
If anyone has any ideas of where I should be looking I would be grateful.

Thank you
Reply With Quote
  #2   (View Single Post)  
Old 28th December 2022
jggimi's Avatar
jggimi jggimi is offline
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 7,978
Default

Quote:
Originally Posted by stanl View Post
...I managed to install ProtonVPN....
What software did you install, and how did you provision it?
Reply With Quote
  #3   (View Single Post)  
Old 28th December 2022
stanl stanl is offline
Real Name: Stan
Package Pilot
 
Join Date: Jun 2019
Location: New York
Posts: 163
Default

I simply followed the instructions in:
https://irondesign.dev/protonvpnopen...vpn-on-openbsd

This morning I wiped out all of it and started again step by step. So far thru several shutdown/startup sequences it now seems to be working. I am keeping my fingers crossed.

I see errors in /var/log/messages:
Dec 28 08:39:35 eddie openvpn[34521]: ERROR: OpenBSD/NetBSD route add command failed: external program exited with error status: 1
Dec 28 08:39:35 eddie openvpn[34521]: /sbin/route add -net 0.0.0.0 -netmask 128.0.0.0 10.18.0.1
Dec 28 08:39:35 eddie openvpn[34521]: ERROR: OpenBSD/NetBSD route add command failed: external program exited with error status: 1
Dec 28 08:39:35 eddie openvpn[34521]: /sbin/route add -net 128.0.0.0 -netmask 128.0.0.0 10.18.0.1
Dec 28 08:39:35 eddie openvpn[34521]: ERROR: OpenBSD/NetBSD route add command failed: external program exited with error status: 1
Dec 28 08:39:35 eddie openvpn[34521]: Initialization Sequence Completed

And ifconfig shows me both a tun0 and a tun1.

i have no idea what any of it means but since things seem to be working I am not going to worry abut. it.

Thank you as always for your concern.
Reply With Quote
  #4   (View Single Post)  
Old 28th December 2022
jggimi's Avatar
jggimi jggimi is offline
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 7,978
Default

When following any sort of third-party "how to" document, it's best to ask the author for assistance directly when you run into any procedural confusion or operational concern. In this case, only another user of your service -- or someone with significant OpenVPN client experience -- might be able to answer provisioning and operational questions. There don't seem to be any knowledgeable OpenVPN users active on this forum (ref: https://daemonforums.org/showthread.php?t=12291).

Last edited by jggimi; 28th December 2022 at 11:50 PM. Reason: typos
Reply With Quote
  #5   (View Single Post)  
Old 29th December 2022
stanl stanl is offline
Real Name: Stan
Package Pilot
 
Join Date: Jun 2019
Location: New York
Posts: 163
Default

Thanks, jggimi. I will keep that in mind in the future.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
firefox quantum leaks buildId Scripter General software and network 0 4th May 2018 01:03 PM
RSA breach leaks data for hacking SecurID tokens J65nko News 1 25th March 2011 03:57 PM
China censorship leaks outside Great Firewall via DNS root server J65nko News 0 25th March 2010 08:23 PM


All times are GMT. The time now is 07:49 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Content copyright © 2007-2010, the authors
Daemon image copyright ©1988, Marshall Kirk McKusick