[Oct 7, 2024, 23:09:39] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 7, 2024, 23:09:39] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 7, 2024, 23:09:39] EVENT: RESOLVE ⏎[Oct 7, 2024, 23:09:39] Contacting 45.67.35.247:1194 via UDP
⏎[Oct 7, 2024, 23:09:39] EVENT: WAIT ⏎[Oct 7, 2024, 23:09:39] WinCommandAgent: transmitting bypass route to 45.67.35.247
{
	"host" : "45.67.35.247",
	"ipv6" : false
}

⏎[Oct 7, 2024, 23:09:40] Connecting to [45.67.35.247]:1194 (45.67.35.247) via UDP
⏎[Oct 7, 2024, 23:09:40] EVENT: CONNECTING ⏎[Oct 7, 2024, 23:09:40] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 7, 2024, 23:09:40] Creds: Username/PasswordEmpty
⏎[Oct 7, 2024, 23:09:40] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 7, 2024, 23:09:40] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 7, 2024, 23:09:40] Session is ACTIVE
⏎[Oct 7, 2024, 23:09:40] EVENT: GET_CONFIG ⏎[Oct 7, 2024, 23:09:40] Sending PUSH_REQUEST to server...
⏎[Oct 7, 2024, 23:09:41] Sending PUSH_REQUEST to server...
⏎[Oct 7, 2024, 23:09:41] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dns] [server] [10] [address] [8.8.8.8]
14 [dns] [server] [11] [address] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.134] [255.255.248.0]
19 [peer-id] [2]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 7, 2024, 23:09:41] Session token: [redacted]
⏎[Oct 7, 2024, 23:09:41] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 2
  control channel: tls-crypt enabled
⏎[Oct 7, 2024, 23:09:41] EVENT: ASSIGN_IP ⏎[Oct 7, 2024, 23:09:41] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 7, 2024, 23:09:41] CAPTURED OPTIONS:
Session Name: 45.67.35.247
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 45.67.35.247
Tunnel Addresses:
  172.27.232.134/21 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1
Search Domains:

⏎[Oct 7, 2024, 23:09:42] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "c408000000000000",
	"destroy_event" : "ec0b000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "45.67.35.247",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "45.67.35.247",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.134",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 21
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 172.27.232.134 255.255.248.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 45.67.35.247/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 1.1.1.1 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,1.1.1.1]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 340d000000000000
⏎[Oct 7, 2024, 23:09:42] Connected via TUN_WIN
⏎[Oct 7, 2024, 23:09:42] fixed mssfix=1380
⏎[Oct 7, 2024, 23:09:42] EVENT: CONNECTED openvpn@45.67.35.247:1194 (45.67.35.247) via /UDP on TUN_WIN/172.27.232.134/ gw=[172.27.232.1/] mtu=1500⏎[Oct 7, 2024, 23:47:07] SetupClient: signaling tun destroy event
⏎[Oct 7, 2024, 23:47:07] EVENT: DISCONNECTED ⏎[Oct 8, 2024, 24:10:57] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 8, 2024, 24:10:57] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 8, 2024, 24:10:57] EVENT: RESOLVE ⏎[Oct 8, 2024, 24:10:57] Contacting 45.67.35.247:1194 via UDP
⏎[Oct 8, 2024, 24:10:57] EVENT: WAIT ⏎[Oct 8, 2024, 24:10:57] WinCommandAgent: transmitting bypass route to 45.67.35.247
{
	"host" : "45.67.35.247",
	"ipv6" : false
}

⏎[Oct 8, 2024, 24:10:57] Connecting to [45.67.35.247]:1194 (45.67.35.247) via UDP
⏎[Oct 8, 2024, 24:10:57] EVENT: CONNECTING ⏎[Oct 8, 2024, 24:10:57] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 8, 2024, 24:10:57] Creds: Username/PasswordEmpty
⏎[Oct 8, 2024, 24:10:57] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 8, 2024, 24:10:57] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 8, 2024, 24:10:57] Session is ACTIVE
⏎[Oct 8, 2024, 24:10:57] EVENT: GET_CONFIG ⏎[Oct 8, 2024, 24:10:57] Sending PUSH_REQUEST to server...
⏎[Oct 8, 2024, 24:10:58] Sending PUSH_REQUEST to server...
⏎[Oct 8, 2024, 24:10:58] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dns] [server] [10] [address] [8.8.8.8]
14 [dns] [server] [11] [address] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.143] [255.255.248.0]
19 [peer-id] [2]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 8, 2024, 24:10:58] Session token: [redacted]
⏎[Oct 8, 2024, 24:10:58] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 2
  control channel: tls-crypt enabled
⏎[Oct 8, 2024, 24:10:58] EVENT: ASSIGN_IP ⏎[Oct 8, 2024, 24:10:58] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 8, 2024, 24:10:58] CAPTURED OPTIONS:
Session Name: 45.67.35.247
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 45.67.35.247
Tunnel Addresses:
  172.27.232.143/21 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1
Search Domains:

⏎[Oct 8, 2024, 24:11:00] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "fc0c000000000000",
	"destroy_event" : "b80d000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "45.67.35.247",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "45.67.35.247",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.143",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 21
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 172.27.232.143 255.255.248.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 45.67.35.247/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 1.1.1.1 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,1.1.1.1]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 0007000000000000
⏎[Oct 8, 2024, 24:11:00] Connected via TUN_WIN
⏎[Oct 8, 2024, 24:11:00] fixed mssfix=1380
⏎[Oct 8, 2024, 24:11:00] EVENT: CONNECTED openvpn@45.67.35.247:1194 (45.67.35.247) via /UDP on TUN_WIN/172.27.232.143/ gw=[172.27.232.1/] mtu=1500⏎[Oct 8, 2024, 24:34:41] SetupClient: signaling tun destroy event
⏎[Oct 8, 2024, 24:34:41] EVENT: DISCONNECTED ⏎[Oct 8, 2024, 23:22:41] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 8, 2024, 23:22:41] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 8, 2024, 23:22:41] EVENT: RESOLVE ⏎[Oct 8, 2024, 23:22:41] Contacting 45.67.35.247:1194 via UDP
⏎[Oct 8, 2024, 23:22:41] EVENT: WAIT ⏎[Oct 8, 2024, 23:22:41] WinCommandAgent: transmitting bypass route to 45.67.35.247
{
	"host" : "45.67.35.247",
	"ipv6" : false
}

⏎[Oct 8, 2024, 23:22:41] Connecting to [45.67.35.247]:1194 (45.67.35.247) via UDP
⏎[Oct 8, 2024, 23:22:41] EVENT: CONNECTING ⏎[Oct 8, 2024, 23:22:41] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 8, 2024, 23:22:41] Creds: Username/PasswordEmpty
⏎[Oct 8, 2024, 23:22:41] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 8, 2024, 23:22:41] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 8, 2024, 23:22:41] Session is ACTIVE
⏎[Oct 8, 2024, 23:22:41] EVENT: GET_CONFIG ⏎[Oct 8, 2024, 23:22:41] Sending PUSH_REQUEST to server...
⏎[Oct 8, 2024, 23:22:42] Sending PUSH_REQUEST to server...
⏎[Oct 8, 2024, 23:22:42] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dns] [server] [10] [address] [8.8.8.8]
14 [dns] [server] [11] [address] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.155] [255.255.248.0]
19 [peer-id] [124]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 8, 2024, 23:22:42] Session token: [redacted]
⏎[Oct 8, 2024, 23:22:42] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 124
  control channel: tls-crypt enabled
⏎[Oct 8, 2024, 23:22:42] EVENT: ASSIGN_IP ⏎[Oct 8, 2024, 23:22:42] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 8, 2024, 23:22:42] CAPTURED OPTIONS:
Session Name: 45.67.35.247
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 45.67.35.247
Tunnel Addresses:
  172.27.232.155/21 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1
Search Domains:

⏎[Oct 8, 2024, 23:22:43] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "5c09000000000000",
	"destroy_event" : "140e000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "45.67.35.247",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "45.67.35.247",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.155",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 21
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 172.27.232.155 255.255.248.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 45.67.35.247/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 1.1.1.1 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,1.1.1.1]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 6c0e000000000000
⏎[Oct 8, 2024, 23:22:44] Connected via TUN_WIN
⏎[Oct 8, 2024, 23:22:44] fixed mssfix=1380
⏎[Oct 8, 2024, 23:22:44] EVENT: CONNECTED openvpn@45.67.35.247:1194 (45.67.35.247) via /UDP on TUN_WIN/172.27.232.155/ gw=[172.27.232.1/] mtu=1500⏎[Oct 8, 2024, 23:37:26] SetupClient: signaling tun destroy event
⏎[Oct 8, 2024, 23:37:26] EVENT: DISCONNECTED ⏎[Oct 9, 2024, 19:46:41] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 9, 2024, 19:46:41] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 9, 2024, 19:46:41] EVENT: RESOLVE ⏎[Oct 9, 2024, 19:46:41] Contacting 45.67.35.247:1194 via UDP
⏎[Oct 9, 2024, 19:46:41] EVENT: WAIT ⏎[Oct 9, 2024, 19:46:41] WinCommandAgent: transmitting bypass route to 45.67.35.247
{
	"host" : "45.67.35.247",
	"ipv6" : false
}

⏎[Oct 9, 2024, 19:46:41] Connecting to [45.67.35.247]:1194 (45.67.35.247) via UDP
⏎[Oct 9, 2024, 19:46:42] EVENT: CONNECTING ⏎[Oct 9, 2024, 19:46:42] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 9, 2024, 19:46:42] Creds: Username/PasswordEmpty
⏎[Oct 9, 2024, 19:46:42] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 9, 2024, 19:46:42] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 9, 2024, 19:46:42] Session is ACTIVE
⏎[Oct 9, 2024, 19:46:42] EVENT: GET_CONFIG ⏎[Oct 9, 2024, 19:46:42] Sending PUSH_REQUEST to server...
⏎[Oct 9, 2024, 19:46:43] Sending PUSH_REQUEST to server...
⏎[Oct 9, 2024, 19:46:43] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dns] [server] [10] [address] [8.8.8.8]
14 [dns] [server] [11] [address] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.233.123] [255.255.248.0]
19 [peer-id] [26]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 9, 2024, 19:46:43] Session token: [redacted]
⏎[Oct 9, 2024, 19:46:43] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 26
  control channel: tls-crypt enabled
⏎[Oct 9, 2024, 19:46:43] EVENT: ASSIGN_IP ⏎[Oct 9, 2024, 19:46:43] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 9, 2024, 19:46:43] CAPTURED OPTIONS:
Session Name: 45.67.35.247
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 45.67.35.247
Tunnel Addresses:
  172.27.233.123/21 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1
Search Domains:

⏎[Oct 9, 2024, 19:46:44] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "680d000000000000",
	"destroy_event" : "640d000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "45.67.35.247",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "45.67.35.247",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.233.123",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 21
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 172.27.233.123 255.255.248.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 45.67.35.247/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 1.1.1.1 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,1.1.1.1]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: bc0c000000000000
⏎[Oct 9, 2024, 19:46:44] Connected via TUN_WIN
⏎[Oct 9, 2024, 19:46:44] fixed mssfix=1380
⏎[Oct 9, 2024, 19:46:44] EVENT: CONNECTED openvpn@45.67.35.247:1194 (45.67.35.247) via /UDP on TUN_WIN/172.27.233.123/ gw=[172.27.232.1/] mtu=1500⏎[Oct 9, 2024, 20:44:00] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 9, 2024, 20:44:00] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 9, 2024, 20:44:00] Creds: Username/SessionID
⏎[Oct 9, 2024, 20:44:00] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 9, 2024, 20:44:00] fixed mssfix=1380
⏎[Oct 9, 2024, 20:44:01] Session token: [redacted]
⏎[Oct 9, 2024, 21:41:19] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 9, 2024, 21:41:19] Creds: Username/SessionID
⏎[Oct 9, 2024, 21:41:19] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 9, 2024, 21:41:19] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 9, 2024, 21:41:19] fixed mssfix=1380
⏎[Oct 9, 2024, 21:41:49] Session token: [redacted]
⏎[Oct 9, 2024, 21:57:16] SetupClient: signaling tun destroy event
⏎[Oct 9, 2024, 21:57:16] EVENT: DISCONNECTED ⏎[Oct 9, 2024, 23:37:08] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 9, 2024, 23:37:08] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 9, 2024, 23:37:08] EVENT: RESOLVE ⏎[Oct 9, 2024, 23:37:08] Contacting 45.67.35.247:1194 via UDP
⏎[Oct 9, 2024, 23:37:08] EVENT: WAIT ⏎[Oct 9, 2024, 23:37:08] WinCommandAgent: transmitting bypass route to 45.67.35.247
{
	"host" : "45.67.35.247",
	"ipv6" : false
}

⏎[Oct 9, 2024, 23:37:09] Connecting to [45.67.35.247]:1194 (45.67.35.247) via UDP
⏎[Oct 9, 2024, 23:37:09] EVENT: CONNECTING ⏎[Oct 9, 2024, 23:37:09] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 9, 2024, 23:37:09] Creds: Username/PasswordEmpty
⏎[Oct 9, 2024, 23:37:09] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
UV_ASCLI_VER=3.4.4-3412
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7
IV_SSL=OpenSSL 3.1.4 24 Oct 2023

⏎[Oct 9, 2024, 23:37:09] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 9, 2024, 23:37:09] Session is ACTIVE
⏎[Oct 9, 2024, 23:37:09] EVENT: GET_CONFIG ⏎[Oct 9, 2024, 23:37:09] Sending PUSH_REQUEST to server...
⏎[Oct 9, 2024, 23:37:10] Sending PUSH_REQUEST to server...
⏎[Oct 9, 2024, 23:37:10] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dns] [server] [10] [address] [8.8.8.8]
14 [dns] [server] [11] [address] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.129] [255.255.248.0]
19 [peer-id] [17]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 9, 2024, 23:37:10] Session token: [redacted]
⏎[Oct 9, 2024, 23:37:10] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 17
  control channel: tls-crypt enabled
⏎[Oct 9, 2024, 23:37:10] EVENT: ASSIGN_IP ⏎[Oct 9, 2024, 23:37:10] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 9, 2024, 23:37:10] CAPTURED OPTIONS:
Session Name: 45.67.35.247
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 45.67.35.247
Tunnel Addresses:
  172.27.232.129/21 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1
Search Domains:

⏎[Oct 9, 2024, 23:37:11] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "bc0f000000000000",
	"destroy_event" : "480f000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "45.67.35.247",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "45.67.35.247",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.129",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 21
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 172.27.232.129 255.255.248.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 45.67.35.247/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 1.1.1.1 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,1.1.1.1]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: f40c000000000000
⏎[Oct 9, 2024, 23:37:11] Connected via TUN_WIN
⏎[Oct 9, 2024, 23:37:11] fixed mssfix=1380
⏎[Oct 9, 2024, 23:37:11] EVENT: CONNECTED openvpn@45.67.35.247:1194 (45.67.35.247) via /UDP on TUN_WIN/172.27.232.129/ gw=[172.27.232.1/] mtu=1500⏎[Oct 10, 2024, 24:02:19] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 24:02:19] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 22:19:59] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 22:19:59] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 22:19:59] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 22:19:59] Unsupported option (ignored)
⏎[Oct 10, 2024, 22:19:59] 4 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 22:19:59] 8 [persist-key]
⏎[Oct 10, 2024, 22:19:59] 9 [persist-tun]
⏎[Oct 10, 2024, 22:19:59] 18 [auth-nocache]
⏎[Oct 10, 2024, 22:19:59] 20 [mute] [20]
⏎[Oct 10, 2024, 22:19:59] EVENT: RESOLVE ⏎[Oct 10, 2024, 22:19:59] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 22:19:59] EVENT: WAIT ⏎[Oct 10, 2024, 22:19:59] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 22:19:59] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 22:19:59] EVENT: CONNECTING ⏎[Oct 10, 2024, 22:19:59] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 22:19:59] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 22:19:59] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 22:19:59] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 22:19:59] Session is ACTIVE
⏎[Oct 10, 2024, 22:19:59] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 22:19:59] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 22:19:59] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.26] [10.8.0.25]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 22:19:59] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled
⏎[Oct 10, 2024, 22:19:59] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 22:19:59] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.26/30 -> 10.8.0.25 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222
Search Domains:

⏎[Oct 10, 2024, 22:20:00] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "3809000000000000",
	"destroy_event" : "b009000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.26",
				"gateway" : "10.8.0.25",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 10.8.0.26 255.255.255.252 gateway=10.8.0.25 store=active
IPHelper: add route 10.8.0.1/32 18 10.8.0.25 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip set dnsservers 18 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 18 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 18 208.67.222.222 3 validate=no
NRPT::ActionCreate names=[.] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 3c07000000000000
⏎[Oct 10, 2024, 22:20:00] Connected via TUN_WIN
⏎[Oct 10, 2024, 22:20:00] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 22:20:00] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.26/ gw=[10.8.0.25/] mtu=(default)⏎[Oct 10, 2024, 22:20:00] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 22:23:27] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 22:23:27] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 22:23:46] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 22:23:46] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 22:23:46] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 22:23:46] Unsupported option (ignored)
⏎[Oct 10, 2024, 22:23:46] 4 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 22:23:46] 8 [persist-key]
⏎[Oct 10, 2024, 22:23:46] 9 [persist-tun]
⏎[Oct 10, 2024, 22:23:46] 18 [auth-nocache]
⏎[Oct 10, 2024, 22:23:46] 20 [mute] [20]
⏎[Oct 10, 2024, 22:23:46] EVENT: RESOLVE ⏎[Oct 10, 2024, 22:23:46] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 22:23:46] EVENT: WAIT ⏎[Oct 10, 2024, 22:23:46] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 22:23:46] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 22:23:46] EVENT: CONNECTING ⏎[Oct 10, 2024, 22:23:46] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 22:23:46] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 22:23:46] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 22:23:46] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 22:23:46] Session is ACTIVE
⏎[Oct 10, 2024, 22:23:46] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 22:23:46] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 22:23:46] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.30] [10.8.0.29]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 22:23:46] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled
⏎[Oct 10, 2024, 22:23:46] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 22:23:46] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.30/30 -> 10.8.0.29 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222
Search Domains:

⏎[Oct 10, 2024, 22:23:47] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "5009000000000000",
	"destroy_event" : "7c0d000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.30",
				"gateway" : "10.8.0.29",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 10.8.0.30 255.255.255.252 gateway=10.8.0.29 store=active
IPHelper: add route 10.8.0.1/32 18 10.8.0.29 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 10.8.0.29 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 10.8.0.29 store=active
Ok.
netsh interface ip set dnsservers 18 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 18 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 18 208.67.222.222 3 validate=no
NRPT::ActionCreate names=[.] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 840d000000000000
⏎[Oct 10, 2024, 22:23:47] Connected via TUN_WIN
⏎[Oct 10, 2024, 22:23:47] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 22:23:47] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.30/ gw=[10.8.0.29/] mtu=(default)⏎[Oct 10, 2024, 22:23:47] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 22:25:49] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 22:25:49] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 22:26:29] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 22:26:29] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 22:26:29] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 22:26:29] Unsupported option (ignored)
⏎[Oct 10, 2024, 22:26:29] 4 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 22:26:29] 8 [persist-key]
⏎[Oct 10, 2024, 22:26:29] 9 [persist-tun]
⏎[Oct 10, 2024, 22:26:29] 18 [auth-nocache]
⏎[Oct 10, 2024, 22:26:29] 20 [mute] [20]
⏎[Oct 10, 2024, 22:26:29] EVENT: RESOLVE ⏎[Oct 10, 2024, 22:26:29] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 22:26:29] EVENT: WAIT ⏎[Oct 10, 2024, 22:26:29] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 22:26:30] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 22:26:30] EVENT: CONNECTING ⏎[Oct 10, 2024, 22:26:30] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 22:26:30] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 22:26:30] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 22:26:30] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 22:26:30] Session is ACTIVE
⏎[Oct 10, 2024, 22:26:30] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 22:26:30] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 22:26:30] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.34] [10.8.0.33]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 22:26:30] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled
⏎[Oct 10, 2024, 22:26:30] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 22:26:30] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.34/30 -> 10.8.0.33 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222
Search Domains:

⏎[Oct 10, 2024, 22:26:31] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "cc04000000000000",
	"destroy_event" : "6006000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.34",
				"gateway" : "10.8.0.33",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 10.8.0.34 255.255.255.252 gateway=10.8.0.33 store=active
IPHelper: add route 10.8.0.1/32 18 10.8.0.33 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 10.8.0.33 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 10.8.0.33 store=active
Ok.
netsh interface ip set dnsservers 18 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 18 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 18 208.67.222.222 3 validate=no
NRPT::ActionCreate names=[.] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: e40c000000000000
⏎[Oct 10, 2024, 22:26:31] Connected via TUN_WIN
⏎[Oct 10, 2024, 22:26:31] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 22:26:31] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.34/ gw=[10.8.0.33/] mtu=(default)⏎[Oct 10, 2024, 22:26:31] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 22:27:28] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 22:27:28] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 22:35:34] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 22:35:34] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 22:35:34] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 22:35:34] Unsupported option (ignored)
⏎[Oct 10, 2024, 22:35:34] 5 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 22:35:34] 7 [persist-key]
⏎[Oct 10, 2024, 22:35:34] 8 [persist-tun]
⏎[Oct 10, 2024, 22:35:34] EVENT: RESOLVE ⏎[Oct 10, 2024, 22:35:35] Contacting 185.107.71.100:10975 via UDP
⏎[Oct 10, 2024, 22:35:35] EVENT: WAIT ⏎[Oct 10, 2024, 22:35:35] WinCommandAgent: transmitting bypass route to 185.107.71.100
{
	"host" : "185.107.71.100",
	"ipv6" : false
}

⏎[Oct 10, 2024, 22:35:35] Connecting to [vpn473224676.v4.softether.net]:10975 (185.107.71.100) via UDP
⏎[Oct 10, 2024, 22:35:37] EVENT: CONNECTING ⏎[Oct 10, 2024, 22:35:37] Tunnel Options:V4,dev-type tun,link-mtu 1557,tun-mtu 1500,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 10, 2024, 22:35:37] Creds: Username/Password
⏎[Oct 10, 2024, 22:35:37] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 22:35:37] SSL Handshake: peer certificate: CN=dannyhazz85.openvpnudp, 2048 bit RSA, cipher: ECDHE-RSA-AES256-GCM-SHA384    TLSv1.2 Kx=ECDH     Au=RSA   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 22:35:37] Session is ACTIVE
⏎[Oct 10, 2024, 22:35:37] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 22:35:37] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 22:35:37] OPTIONS:
0 [ping] [3]
1 [ping-restart] [10]
2 [ifconfig] [192.168.30.13] [192.168.30.14]
3 [dhcp-option] [DOMAIN] [myprivatevpn]
4 [dhcp-option] [DNS] [8.8.8.8]
5 [dhcp-option] [DNS] [83.149.80.123]
6 [route-gateway] [192.168.30.14]
7 [redirect-gateway] [def1]

⏎[Oct 10, 2024, 22:35:37] PROTOCOL OPTIONS:
  cipher: AES-256-CBC
  digest: SHA1
  key-derivation: OpenVPN PRF
  compress: NONE
  peer ID: -1
⏎[Oct 10, 2024, 22:35:37] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 22:35:37] CAPTURED OPTIONS:
Session Name: vpn473224676.v4.softether.net
Layer: OSI_LAYER_3
Remote Address: 185.107.71.100
Tunnel Addresses:
  192.168.30.13/30 -> 192.168.30.14 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  83.149.80.123
Search Domains:
  myprivatevpn

⏎[Oct 10, 2024, 22:35:38] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "b00e000000000000",
	"destroy_event" : "ac0e000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "83.149.80.123",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "185.107.71.100",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 275,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"search_domains" : 
		[
			{
				"domain" : "myprivatevpn"
			}
		],
		"session_name" : "vpn473224676.v4.softether.net",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "192.168.30.13",
				"gateway" : "192.168.30.14",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 192.168.30.13 255.255.255.252 gateway=192.168.30.14 store=active
netsh interface ip add route 185.107.71.100/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 192.168.30.14 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 192.168.30.14 store=active
Ok.
netsh interface ip set dnsservers 18 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 18 83.149.80.123 2 validate=no
NRPT::ActionCreate names=[.] dns_servers=[8.8.8.8,83.149.80.123]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 200f000000000000
⏎[Oct 10, 2024, 22:35:38] Connected via TUN_WIN
⏎[Oct 10, 2024, 22:35:38] EVENT: CONNECTED dannyhazz85@vpn473224676.v4.softether.net:10975 (185.107.71.100) via /UDP on TUN_WIN/192.168.30.13/ gw=[192.168.30.14/] mtu=(default)⏎[Oct 10, 2024, 22:37:08] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 22:37:08] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 23:20:06] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 23:20:06] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 23:20:06] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 23:20:06] Unsupported option (ignored)
⏎[Oct 10, 2024, 23:20:06] 4 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 23:20:06] 8 [persist-key]
⏎[Oct 10, 2024, 23:20:06] 9 [persist-tun]
⏎[Oct 10, 2024, 23:20:06] 18 [auth-nocache]
⏎[Oct 10, 2024, 23:20:06] 20 [mute] [20]
⏎[Oct 10, 2024, 23:20:06] EVENT: RESOLVE ⏎[Oct 10, 2024, 23:20:06] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 23:20:06] EVENT: WAIT ⏎[Oct 10, 2024, 23:20:06] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 23:20:06] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 23:20:06] EVENT: CONNECTING ⏎[Oct 10, 2024, 23:20:06] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 23:20:06] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 23:20:06] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 23:20:06] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 23:20:06] Session is ACTIVE
⏎[Oct 10, 2024, 23:20:06] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 23:20:06] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 23:20:06] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.26] [10.8.0.25]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 23:20:06] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled
⏎[Oct 10, 2024, 23:20:06] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 23:20:06] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.26/30 -> 10.8.0.25 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222
Search Domains:

⏎[Oct 10, 2024, 23:20:07] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "9c0d000000000000",
	"destroy_event" : "180f000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.26",
				"gateway" : "10.8.0.25",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 10.8.0.26 255.255.255.252 gateway=10.8.0.25 store=active
IPHelper: add route 10.8.0.1/32 18 10.8.0.25 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip set dnsservers 18 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 18 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 18 208.67.222.222 3 validate=no
NRPT::ActionCreate names=[.] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 100c000000000000
⏎[Oct 10, 2024, 23:20:07] Connected via TUN_WIN
⏎[Oct 10, 2024, 23:20:07] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 23:20:07] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.26/ gw=[10.8.0.25/] mtu=(default)⏎[Oct 10, 2024, 23:20:07] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 23:20:09] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 23:20:09] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 23:20:10] OpenVPN core 3.8.2connect3 win x86_64 64-bit OVPN-DCO built on Jan 31 2024 12:05:53
⏎[Oct 10, 2024, 23:20:10] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 23:20:10] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 23:20:10] Unsupported option (ignored)
⏎[Oct 10, 2024, 23:20:10] 4 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 23:20:10] 8 [persist-key]
⏎[Oct 10, 2024, 23:20:10] 9 [persist-tun]
⏎[Oct 10, 2024, 23:20:10] 18 [auth-nocache]
⏎[Oct 10, 2024, 23:20:10] 20 [mute] [20]
⏎[Oct 10, 2024, 23:20:10] EVENT: RESOLVE ⏎[Oct 10, 2024, 23:20:10] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 23:20:10] EVENT: WAIT ⏎[Oct 10, 2024, 23:20:10] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 23:20:10] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 23:20:10] EVENT: CONNECTING ⏎[Oct 10, 2024, 23:20:10] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 23:20:10] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 23:20:10] Sending Peer Info:
IV_VER=3.8.2connect3
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=990
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.4.4-3412
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 23:20:10] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 23:20:10] Session is ACTIVE
⏎[Oct 10, 2024, 23:20:10] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 23:20:10] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 23:20:10] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.26] [10.8.0.25]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 23:20:10] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: NONE
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled
⏎[Oct 10, 2024, 23:20:10] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 23:20:10] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.26/30 -> 10.8.0.25 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222
Search Domains:

⏎[Oct 10, 2024, 23:20:11] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "c00e000000000000",
	"destroy_event" : "2c0f000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.26",
				"gateway" : "10.8.0.25",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}' index=18 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{E1301E0B-DDC9-40C6-8C01-A0673BF9992E}.tap" SUCCEEDED
TAP-Windows Driver Version 9.26
ActionDeleteAllRoutesOnInterface iface_index=18
netsh interface ip set interface 18 metric=9000
Ok.
netsh interface ip set address 18 static 10.8.0.26 255.255.255.252 gateway=10.8.0.25 store=active
IPHelper: add route 10.8.0.1/32 18 10.8.0.25 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 18 10.8.0.25 store=active
Ok.
netsh interface ip set dnsservers 18 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 18 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 18 208.67.222.222 3 validate=no
NRPT::ActionCreate names=[.] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222]
ActionWFP openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=18 enable=1
permit IPv4 DNS requests from OpenVPN app
permit IPv6 DNS requests from OpenVPN app
block IPv4 DNS requests from other apps
block IPv6 DNS requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: b808000000000000
⏎[Oct 10, 2024, 23:20:11] Connected via TUN_WIN
⏎[Oct 10, 2024, 23:20:11] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 23:20:11] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.26/ gw=[10.8.0.25/] mtu=(default)⏎[Oct 10, 2024, 23:20:11] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 23:20:15] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 23:20:15] EVENT: DISCONNECTED ⏎[Oct 10, 2024, 23:28:56] OpenVPN core 3.10_qa win x86_64 64-bit OVPN-DCO built on Jul 17 2024 14:22:15
⏎[Oct 10, 2024, 23:28:56] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 10, 2024, 23:28:56] NOTE: This configuration contains options that were not used:
⏎[Oct 10, 2024, 23:28:56] Unsupported option (ignored)
⏎[Oct 10, 2024, 23:28:56] 0 [resolv-retry] [infinite]
⏎[Oct 10, 2024, 23:28:56] 1 [persist-key]
⏎[Oct 10, 2024, 23:28:56] 2 [persist-tun]
⏎[Oct 10, 2024, 23:28:56] 3 [mute] [20]
⏎[Oct 10, 2024, 23:28:56] EVENT: RESOLVE ⏎[Oct 10, 2024, 23:28:56] Contacting 149.40.59.137:1194 via UDP
⏎[Oct 10, 2024, 23:28:56] EVENT: WAIT ⏎[Oct 10, 2024, 23:28:56] WinCommandAgent: transmitting bypass route to 149.40.59.137
{
	"host" : "149.40.59.137",
	"ipv6" : false
}

⏎[Oct 10, 2024, 23:28:56] Connecting to [149.40.59.137]:1194 (149.40.59.137) via UDP
⏎[Oct 10, 2024, 23:28:56] EVENT: CONNECTING ⏎[Oct 10, 2024, 23:28:56] Tunnel Options:V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client
⏎[Oct 10, 2024, 23:28:56] Creds: UsernameEmpty/PasswordEmpty
⏎[Oct 10, 2024, 23:28:56] Sending Peer Info:
IV_VER=3.10_qa
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=2974
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_LZO=1
IV_AUTO_SESS=1
IV_GUI_VER=OCWindows_3.5.0-3818
IV_SSO=webauth,crtext

⏎[Oct 10, 2024, 23:28:56] SSL Handshake: peer certificate: CN=server, 2048 bit RSA, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 10, 2024, 23:28:56] Session is ACTIVE
⏎[Oct 10, 2024, 23:28:56] EVENT: GET_CONFIG ⏎[Oct 10, 2024, 23:28:56] Sending PUSH_REQUEST to server...
⏎[Oct 10, 2024, 23:28:56] OPTIONS:
0 [redirect-gateway] [def1] [bypass-dhcp]
1 [dhcp-option] [DNS] [1.1.1.1]
2 [dhcp-option] [DNS] [208.67.220.220]
3 [dhcp-option] [DNS] [208.67.222.222]
4 [sndbuf] [393216]
5 [rcvbuf] [393216]
6 [route] [10.8.0.1]
7 [topology] [net30]
8 [ping] [10]
9 [ping-restart] [60]
10 [ifconfig] [10.8.0.26] [10.8.0.25]
11 [peer-id] [0]
12 [cipher] [AES-256-GCM]

⏎[Oct 10, 2024, 23:28:56] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: none
  key-derivation: OpenVPN PRF
  compress: LZO
  peer ID: 0
  control channel: tls-auth enabled

⏎[Oct 10, 2024, 23:28:56] EVENT: ASSIGN_IP ⏎[Oct 10, 2024, 23:28:56] CAPTURED OPTIONS:
Session Name: 149.40.59.137
Layer: OSI_LAYER_3
Remote Address: 149.40.59.137
Tunnel Addresses:
  10.8.0.26/30 -> 10.8.0.25 [net30]
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: no
Block local DNS: no
Add Routes:
  10.8.0.1/32
Exclude Routes:
DNS Servers:
  1.1.1.1
  208.67.220.220
  208.67.222.222

⏎[Oct 10, 2024, 23:28:57] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "1c0e000000000000",
	"destroy_event" : "7419000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"add_routes" : 
		[
			{
				"address" : "10.8.0.1",
				"gateway" : "",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 32
			}
		],
		"block_ipv6" : false,
		"block_outside_dns" : false,
		"dns_options" : 
		{
			"servers" : {}
		},
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "208.67.220.220",
				"ipv6" : false
			},
			{
				"address" : "208.67.222.222",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 0,
		"remote_address" : 
		{
			"address" : "149.40.59.137",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 307,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : -1,
		"session_name" : "149.40.59.137",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "10.8.0.26",
				"gateway" : "10.8.0.25",
				"ipv6" : false,
				"metric" : -1,
				"net30" : true,
				"prefix_length" : 30
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{951E9533-3354-4200-A5D8-F5385829B4FB}' index=9 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{951E9533-3354-4200-A5D8-F5385829B4FB}.tap" SUCCEEDED
TAP-Windows Driver Version 9.27
ActionDeleteAllRoutesOnInterface iface_index=9
netsh interface ip set interface 9 metric=9000
Ok.
netsh interface ip set address 9 static 10.8.0.26 255.255.255.252 gateway=10.8.0.25 store=active
IPHelper: add route 10.8.0.1/32 9 10.8.0.25 metric=-1
netsh interface ip add route 149.40.59.137/32 12 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 9 10.8.0.25 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 9 10.8.0.25 store=active
Ok.
netsh interface ip set dnsservers 9 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 9 208.67.220.220 2 validate=no
netsh interface ip add dnsservers 9 208.67.222.222 3 validate=no
NRPT::ActionCreate pid=[15684] domains=[] dns_servers=[1.1.1.1,208.67.220.220,208.67.222.222] dnssec=[0] id=[OpenVPNDNSRouting-15684]
ActionBase openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=9 enable=1
permit IPv4 requests from OpenVPN app
permit IPv6 requests from OpenVPN app
block IPv4 requests from other apps
block IPv6 requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
block IPv4 DNS requests to loopback from other apps
block IPv6 DNS requests to loopback from other apps
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: d819000000000000
⏎[Oct 10, 2024, 23:28:57] Connected via TUN_WIN
⏎[Oct 10, 2024, 23:28:57] LZO-ASYM init swap=0 asym=1
⏎[Oct 10, 2024, 23:28:57] EVENT: CONNECTED 149.40.59.137:1194 (149.40.59.137) via /UDP on TUN_WIN/10.8.0.26/ gw=[10.8.0.25/] mtu=(default)⏎[Oct 10, 2024, 23:28:57] EVENT: COMPRESSION_ENABLED Asymmetric compression enabled.  Server may send compressed data.  This may be a potential security issue.⏎[Oct 10, 2024, 23:34:45] SetupClient: signaling tun destroy event
⏎[Oct 10, 2024, 23:34:45] EVENT: DISCONNECTED ⏎[Oct 11, 2024, 20:54:20] OpenVPN core 3.10_qa win x86_64 64-bit OVPN-DCO built on Jul 17 2024 14:22:15
⏎[Oct 11, 2024, 20:54:20] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 11, 2024, 20:54:20] EVENT: RESOLVE ⏎[Oct 11, 2024, 20:54:20] Contacting 95.164.1.241:1194 via UDP
⏎[Oct 11, 2024, 20:54:20] EVENT: WAIT ⏎[Oct 11, 2024, 20:54:20] WinCommandAgent: transmitting bypass route to 95.164.1.241
{
	"host" : "95.164.1.241",
	"ipv6" : false
}

⏎[Oct 11, 2024, 20:54:21] Connecting to [95.164.1.241]:1194 (95.164.1.241) via UDP
⏎[Oct 11, 2024, 20:54:21] EVENT: CONNECTING ⏎[Oct 11, 2024, 20:54:21] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 11, 2024, 20:54:21] Creds: Username/PasswordEmpty
⏎[Oct 11, 2024, 20:54:21] Sending Peer Info:
IV_VER=3.10_qa
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=2974
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
IV_SSL=OpenSSL 3.2.1 30 Jan 2024
UV_ASCLI_VER=3.5.0-3818
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.5.0-3818
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7

⏎[Oct 11, 2024, 20:54:21] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 11, 2024, 20:54:21] Session is ACTIVE
⏎[Oct 11, 2024, 20:54:21] EVENT: GET_CONFIG ⏎[Oct 11, 2024, 20:54:21] Sending PUSH_REQUEST to server...
⏎[Oct 11, 2024, 20:54:21] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dhcp-option] [DNS] [1.1.1.1]
14 [dhcp-option] [DNS] [8.8.8.8]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.17] [255.255.252.0]
19 [peer-id] [8]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 11, 2024, 20:54:21] Session token: [redacted]
⏎[Oct 11, 2024, 20:54:21] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: none
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 8
  control channel: tls-crypt enabled

⏎[Oct 11, 2024, 20:54:21] EVENT: ASSIGN_IP ⏎[Oct 11, 2024, 20:54:21] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 11, 2024, 20:54:21] CAPTURED OPTIONS:
Session Name: 95.164.1.241
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 95.164.1.241
Tunnel Addresses:
  172.27.232.17/22 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Block local DNS: no
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  1.1.1.1
  8.8.8.8

⏎[Oct 11, 2024, 20:54:22] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "a00e000000000000",
	"destroy_event" : "9c0e000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"block_outside_dns" : false,
		"dns_options" : 
		{
			"servers" : {}
		},
		"dns_servers" : 
		[
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			},
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "95.164.1.241",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "95.164.1.241",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.17",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 22
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{951E9533-3354-4200-A5D8-F5385829B4FB}' index=13 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{951E9533-3354-4200-A5D8-F5385829B4FB}.tap" SUCCEEDED
TAP-Windows Driver Version 9.27
ActionDeleteAllRoutesOnInterface iface_index=13
netsh interface ip set interface 13 metric=9000
Ok.
netsh interface ip set address 13 static 172.27.232.17 255.255.252.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 95.164.1.241/32 11 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 13 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 13 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 13 static 1.1.1.1 register=primary validate=no
netsh interface ip add dnsservers 13 8.8.8.8 2 validate=no
NRPT::ActionCreate pid=[23104] domains=[] dns_servers=[1.1.1.1,8.8.8.8] dnssec=[0] id=[OpenVPNDNSRouting-23104]
ActionBase openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=13 enable=1
permit IPv4 requests from OpenVPN app
permit IPv6 requests from OpenVPN app
block IPv4 requests from other apps
block IPv6 requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
block IPv4 DNS requests to loopback from other apps
block IPv6 DNS requests to loopback from other apps
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 140e000000000000
⏎[Oct 11, 2024, 20:54:22] Connected via TUN_WIN
⏎[Oct 11, 2024, 20:54:22] fixed mssfix=1380
⏎[Oct 11, 2024, 20:54:22] EVENT: CONNECTED xcvpn@95.164.1.241:1194 (95.164.1.241) via /UDP on TUN_WIN/172.27.232.17/ gw=[172.27.232.1/] mtu=1500⏎[Oct 11, 2024, 21:00:59] SetupClient: signaling tun destroy event
⏎[Oct 11, 2024, 21:00:59] EVENT: DISCONNECTED ⏎[Oct 11, 2024, 21:24:25] OpenVPN core 3.10_qa win x86_64 64-bit OVPN-DCO built on Jul 17 2024 14:22:15
⏎[Oct 11, 2024, 21:24:25] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 11, 2024, 21:24:25] EVENT: RESOLVE ⏎[Oct 11, 2024, 21:24:25] Contacting 94.232.247.173:1194 via UDP
⏎[Oct 11, 2024, 21:24:25] EVENT: WAIT ⏎[Oct 11, 2024, 21:24:25] WinCommandAgent: transmitting bypass route to 94.232.247.173
{
	"host" : "94.232.247.173",
	"ipv6" : false
}

⏎[Oct 11, 2024, 21:24:25] Connecting to [94.232.247.173]:1194 (94.232.247.173) via UDP
⏎[Oct 11, 2024, 21:24:25] EVENT: CONNECTING ⏎[Oct 11, 2024, 21:24:25] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 11, 2024, 21:24:25] Creds: Username/PasswordEmpty
⏎[Oct 11, 2024, 21:24:25] Sending Peer Info:
IV_VER=3.10_qa
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=2974
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
IV_SSL=OpenSSL 3.2.1 30 Jan 2024
UV_ASCLI_VER=3.5.0-3818
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.5.0-3818
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7

⏎[Oct 11, 2024, 21:24:25] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 11, 2024, 21:24:25] Session is ACTIVE
⏎[Oct 11, 2024, 21:24:25] EVENT: GET_CONFIG ⏎[Oct 11, 2024, 21:24:25] Sending PUSH_REQUEST to server...
⏎[Oct 11, 2024, 21:24:26] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.236.1]
13 [dhcp-option] [DNS] [8.8.8.8]
14 [dhcp-option] [DNS] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.236.18] [255.255.252.0]
19 [peer-id] [5]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 11, 2024, 21:24:26] Session token: [redacted]
⏎[Oct 11, 2024, 21:24:26] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: none
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 5
  control channel: tls-crypt enabled

⏎[Oct 11, 2024, 21:24:26] EVENT: ASSIGN_IP ⏎[Oct 11, 2024, 21:24:26] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 11, 2024, 21:24:26] CAPTURED OPTIONS:
Session Name: 94.232.247.173
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 94.232.247.173
Tunnel Addresses:
  172.27.236.18/22 -> 172.27.236.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Block local DNS: no
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1

⏎[Oct 11, 2024, 21:24:27] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "ec0e000000000000",
	"destroy_event" : "240d000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"block_outside_dns" : false,
		"dns_options" : 
		{
			"servers" : {}
		},
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "94.232.247.173",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "94.232.247.173",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.236.18",
				"gateway" : "172.27.236.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 22
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{951E9533-3354-4200-A5D8-F5385829B4FB}' index=13 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{951E9533-3354-4200-A5D8-F5385829B4FB}.tap" SUCCEEDED
TAP-Windows Driver Version 9.27
ActionDeleteAllRoutesOnInterface iface_index=13
netsh interface ip set interface 13 metric=9000
Ok.
netsh interface ip set address 13 static 172.27.236.18 255.255.252.0 gateway=172.27.236.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 94.232.247.173/32 11 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 13 172.27.236.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 13 172.27.236.1 store=active
Ok.
netsh interface ip set dnsservers 13 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 13 1.1.1.1 2 validate=no
NRPT::ActionCreate pid=[23104] domains=[] dns_servers=[8.8.8.8,1.1.1.1] dnssec=[0] id=[OpenVPNDNSRouting-23104]
ActionBase openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=13 enable=1
permit IPv4 requests from OpenVPN app
permit IPv6 requests from OpenVPN app
block IPv4 requests from other apps
block IPv6 requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
block IPv4 DNS requests to loopback from other apps
block IPv6 DNS requests to loopback from other apps
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: 3805000000000000
⏎[Oct 11, 2024, 21:24:27] Connected via TUN_WIN
⏎[Oct 11, 2024, 21:24:27] fixed mssfix=1380
⏎[Oct 11, 2024, 21:24:27] EVENT: CONNECTED xcvpn@94.232.247.173:1194 (94.232.247.173) via /UDP on TUN_WIN/172.27.236.18/ gw=[172.27.236.1/] mtu=1500⏎[Oct 11, 2024, 21:24:45] SetupClient: signaling tun destroy event
⏎[Oct 11, 2024, 21:24:45] EVENT: DISCONNECTED ⏎[Oct 11, 2024, 21:29:56] OpenVPN core 3.10_qa win x86_64 64-bit OVPN-DCO built on Jul 17 2024 14:22:15
⏎[Oct 11, 2024, 21:29:56] Frame=512/2112/512 mssfix-ctrl=1250
⏎[Oct 11, 2024, 21:29:56] EVENT: RESOLVE ⏎[Oct 11, 2024, 21:29:56] Contacting 94.232.247.173:1194 via UDP
⏎[Oct 11, 2024, 21:29:56] EVENT: WAIT ⏎[Oct 11, 2024, 21:29:56] WinCommandAgent: transmitting bypass route to 94.232.247.173
{
	"host" : "94.232.247.173",
	"ipv6" : false
}

⏎[Oct 11, 2024, 21:29:56] Connecting to [94.232.247.173]:1194 (94.232.247.173) via UDP
⏎[Oct 11, 2024, 21:29:56] EVENT: CONNECTING ⏎[Oct 11, 2024, 21:29:56] Tunnel Options:V4,dev-type tun,link-mtu 1477,tun-mtu 1420,proto UDPv4,cipher AES-256-CBC,auth SHA1,keysize 256,key-method 2,tls-client
⏎[Oct 11, 2024, 21:29:56] Creds: Username/PasswordEmpty
⏎[Oct 11, 2024, 21:29:56] Sending Peer Info:
IV_VER=3.10_qa
IV_PLAT=win
IV_NCP=2
IV_TCPNL=1
IV_PROTO=2974
IV_MTU=1600
IV_CIPHERS=AES-128-CBC:AES-192-CBC:AES-256-CBC:AES-128-GCM:AES-192-GCM:AES-256-GCM:CHACHA20-POLY1305
IV_AUTO_SESS=1
IV_SSL=OpenSSL 3.2.1 30 Jan 2024
UV_ASCLI_VER=3.5.0-3818
UV_PLAT_REL=Microsoft Windows 11 Home_10.0.22631
UV_UUID=3DC56C4F-2CF2-98DF-2291-F02F741505C7
IV_GUI_VER=OCWindows_3.5.0-3818
IV_SSO=webauth,crtext
IV_HWADDR=f0:2f:74:15:05:c7

⏎[Oct 11, 2024, 21:29:56] SSL Handshake: peer certificate: CN=OpenVPN Server, 384 bit EC, group:secp384r1, cipher: TLS_AES_256_GCM_SHA384         TLSv1.3 Kx=any      Au=any   Enc=AESGCM(256)            Mac=AEAD

⏎[Oct 11, 2024, 21:29:56] Session is ACTIVE
⏎[Oct 11, 2024, 21:29:56] EVENT: GET_CONFIG ⏎[Oct 11, 2024, 21:29:56] Sending PUSH_REQUEST to server...
⏎[Oct 11, 2024, 21:29:57] Sending PUSH_REQUEST to server...
⏎[Oct 11, 2024, 21:29:57] OPTIONS:
0 [explicit-exit-notify]
1 [topology] [subnet]
2 [route-delay] [5] [30]
3 [dhcp-pre-release]
4 [dhcp-renew]
5 [dhcp-release]
6 [route-metric] [101]
7 [ping] [12]
8 [ping-restart] [50]
9 [redirect-gateway] [def1]
10 [redirect-gateway] [bypass-dhcp]
11 [redirect-gateway] [autolocal]
12 [route-gateway] [172.27.232.1]
13 [dhcp-option] [DNS] [8.8.8.8]
14 [dhcp-option] [DNS] [1.1.1.1]
15 [dhcp-option] [NBT] [1]
16 [register-dns]
17 [block-ipv6]
18 [ifconfig] [172.27.232.19] [255.255.252.0]
19 [peer-id] [13]
20 [auth-token] ...
21 [cipher] [AES-256-GCM]
22 [protocol-flags] [cc-exit] [tls-ekm] [dyn-tls-crypt]
23 [tun-mtu] [1500]

⏎[Oct 11, 2024, 21:29:57] Session token: [redacted]
⏎[Oct 11, 2024, 21:29:57] PROTOCOL OPTIONS:
  cipher: AES-256-GCM
  digest: none
  key-derivation: TLS Keying Material Exporter [RFC5705]
  compress: NONE
  peer ID: 13
  control channel: tls-crypt enabled

⏎[Oct 11, 2024, 21:29:57] EVENT: ASSIGN_IP ⏎[Oct 11, 2024, 21:29:57] Unknown pushed DHCP option: [dhcp-option] [NBT] [1]
⏎[Oct 11, 2024, 21:29:57] CAPTURED OPTIONS:
Session Name: 94.232.247.173
Layer: OSI_LAYER_3
MTU: 1500
Remote Address: 94.232.247.173
Tunnel Addresses:
  172.27.232.19/22 -> 172.27.232.1
Reroute Gateway: IPv4=1 IPv6=0 flags=[ ENABLE REROUTE_GW AUTO_LOCAL DEF1 BYPASS_DHCP IPv4 ]
Block IPv4: no
Block IPv6: yes
Block local DNS: no
Route Metric Default: 101
Add Routes:
Exclude Routes:
DNS Servers:
  8.8.8.8
  1.1.1.1

⏎[Oct 11, 2024, 21:29:58] SetupClient: transmitting tun setup list to \\.\pipe\agent_ovpnconnect
{
	"allow_local_dns_resolvers" : false,
	"confirm_event" : "000f000000000000",
	"destroy_event" : "2c0d000000000000",
	"tun" : 
	{
		"adapter_domain_suffix" : "",
		"block_ipv6" : true,
		"block_outside_dns" : false,
		"dns_options" : 
		{
			"servers" : {}
		},
		"dns_servers" : 
		[
			{
				"address" : "8.8.8.8",
				"ipv6" : false
			},
			{
				"address" : "1.1.1.1",
				"ipv6" : false
			}
		],
		"layer" : 3,
		"mtu" : 1500,
		"remote_address" : 
		{
			"address" : "94.232.247.173",
			"ipv6" : false
		},
		"reroute_gw" : 
		{
			"flags" : 315,
			"ipv4" : true,
			"ipv6" : false
		},
		"route_metric_default" : 101,
		"session_name" : "94.232.247.173",
		"tunnel_address_index_ipv4" : 0,
		"tunnel_address_index_ipv6" : -1,
		"tunnel_addresses" : 
		[
			{
				"address" : "172.27.232.19",
				"gateway" : "172.27.232.1",
				"ipv6" : false,
				"metric" : -1,
				"net30" : false,
				"prefix_length" : 22
			}
		]
	},
	"tun_type" : 0
}
POST np://[\\.\pipe\agent_ovpnconnect]/tun-setup : 200 OK
TAP ADAPTERS:
guid='{951E9533-3354-4200-A5D8-F5385829B4FB}' index=13 name='Local Area Connection'
Open TAP device "Local Area Connection" PATH="\\.\Global\{951E9533-3354-4200-A5D8-F5385829B4FB}.tap" SUCCEEDED
TAP-Windows Driver Version 9.27
ActionDeleteAllRoutesOnInterface iface_index=13
netsh interface ip set interface 13 metric=9000
Ok.
netsh interface ip set address 13 static 172.27.232.19 255.255.252.0 gateway=172.27.232.1 gwmetric=101 store=active
netsh interface ipv6 add route 2000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route 3000::/4 interface=1 store=active
Ok.
netsh interface ipv6 add route fc00::/7 interface=1 store=active
Ok.
netsh interface ip add route 94.232.247.173/32 11 192.168.0.1 store=active
The object already exists.
netsh interface ip add route 0.0.0.0/1 13 172.27.232.1 store=active
Ok.
netsh interface ip add route 128.0.0.0/1 13 172.27.232.1 store=active
Ok.
netsh interface ip set dnsservers 13 static 8.8.8.8 register=primary validate=no
netsh interface ip add dnsservers 13 1.1.1.1 2 validate=no
NRPT::ActionCreate pid=[23104] domains=[] dns_servers=[8.8.8.8,1.1.1.1] dnssec=[0] id=[OpenVPNDNSRouting-23104]
ActionBase openvpn_app_path=C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe tap_index=13 enable=1
permit IPv4 requests from OpenVPN app
permit IPv6 requests from OpenVPN app
block IPv4 requests from other apps
block IPv6 requests from other apps
allow IPv4 traffic from TAP
allow IPv6 traffic from TAP
block IPv4 DNS requests to loopback from other apps
block IPv6 DNS requests to loopback from other apps
ipconfig /flushdns
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
TAP: ARP flush succeeded
TAP handle: ac0d000000000000
⏎[Oct 11, 2024, 21:29:58] Connected via TUN_WIN
⏎[Oct 11, 2024, 21:29:58] fixed mssfix=1380
⏎[Oct 11, 2024, 21:29:58] EVENT: CONNECTED xcvpn@94.232.247.173:1194 (94.232.247.173) via /UDP on TUN_WIN/172.27.232.19/ gw=[172.27.232.1/] mtu=1500⏎