<div class="bbWrapper">Configured the Plugin with this <a href="https://github.com/amussey/FreeNAS-Transmission-OpenVPN" target="_blank" class="link link--external" rel="nofollow ugc noopener">https://github.com/amussey/FreeNAS-Transmission-OpenVPN</a> over UDP.<br />
<br />
my openvpn log :<br />
<div class="bbCodeBlock bbCodeCode"><div class="type">Code:</div><pre>Tue Oct 27 17:57:51 2015 us=54220 Data Channel MTU parms [ L:1558 D:1300 EF:58 EB:143 ET:0 EL:3 AF:3/1 ]
Tue Oct 27 17:57:51 2015 us=54233 Fragmentation MTU parms [ L:1558 D:1300 EF:57 EB:143 ET:1 EL:3 AF:3/1 ]
Tue Oct 27 17:57:51 2015 us=54258 Local Options String: 'V4,dev-type tun,link-mtu 1558,tun-mtu 1500,proto UDPv4,comp-lzo,mtu-dynamic,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-client'
Tue Oct 27 17:57:51 2015 us=54267 Expected Remote Options String: 'V4,dev-type tun,link-mtu 1558,tun-mtu 1500,proto UDPv4,comp-lzo,mtu-dynamic,cipher AES-256-CBC,auth MD5,keysize 256,key-method 2,tls-server'
Tue Oct 27 17:57:51 2015 us=54286 Local Options hash (VER=V4): '8f40a5db'
Tue Oct 27 17:57:51 2015 us=54297 Expected Remote Options hash (VER=V4): '6ce7e20d'
Tue Oct 27 17:58:06 2015 us=56183 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 17:58:26 2015 us=59165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 17:58:46 2015 us=62166 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 17:59:06 2015 us=65167 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 17:59:26 2015 us=68166 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 17:59:46 2015 us=71165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:00:06 2015 us=74170 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:00:26 2015 us=77165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:00:46 2015 us=80165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:01:06 2015 us=83178 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:01:26 2015 us=86165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:01:46 2015 us=89166 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:02:06 2015 us=92167 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:02:26 2015 us=95167 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:02:46 2015 us=98166 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:03:06 2015 us=101165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:03:26 2015 us=104165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:03:46 2015 us=107165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:04:06 2015 us=110167 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:04:26 2015 us=113167 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:04:46 2015 us=116166 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:05:06 2015 us=119165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:05:26 2015 us=122169 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:05:46 2015 us=125164 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:06:06 2015 us=128164 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:06:26 2015 us=131163 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:06:46 2015 us=143158 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:07:06 2015 us=146165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:07:26 2015 us=149165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:07:46 2015 us=152165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:08:06 2015 us=155168 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:08:26 2015 us=158165 RESOLVE: Cannot resolve host address: 1-ro.cg-dialup.net: hostname nor servname provided, or not known
Tue Oct 27 18:08:31 2015 us=172569 UDPv4 link local: [undef]
Tue Oct 27 18:08:31 2015 us=172604 UDPv4 link remote: [AF_INET]5.254.97.83:443
Tue Oct 27 18:08:31 2015 us=218576 TLS: Initial packet from [AF_INET]5.254.97.83:443, sid=0ecf611f 2384bbcc
Tue Oct 27 18:08:31 2015 us=218623 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Tue Oct 27 18:08:31 2015 us=470068 VERIFY OK: depth=1, C=DE, O=CyberGhost VPN, OU=CyberGhost, CN=CyberGhost
Tue Oct 27 18:08:31 2015 us=470226 Validating certificate key usage
Tue Oct 27 18:08:31 2015 us=470239 ++ Certificate has key usage 00a0, expects 00a0
Tue Oct 27 18:08:31 2015 us=470249 VERIFY KU OK
Tue Oct 27 18:08:31 2015 us=470259 Validating certificate extended key usage
Tue Oct 27 18:08:31 2015 us=470268 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Tue Oct 27 18:08:31 2015 us=470276 VERIFY EKU OK
Tue Oct 27 18:08:31 2015 us=470283 VERIFY OK: depth=0, C=RO, ST=RO, L=Bucharest, O=CyberGhost VPN, OU=CyberGhost, CN=CyberGhost, name=CyberGhost VPN, emailAddress=webmaster@cyberghostvpn.com
Tue Oct 27 18:08:32 2015 us=348673 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Tue Oct 27 18:08:32 2015 us=348709 Data Channel Encrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Tue Oct 27 18:08:32 2015 us=348721 Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Tue Oct 27 18:08:32 2015 us=348731 Data Channel Decrypt: Using 128 bit message hash 'MD5' for HMAC authentication
Tue Oct 27 18:08:32 2015 us=348756 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES256-SHA, 2048 bit RSA
Tue Oct 27 18:08:32 2015 us=348797 [CyberGhost] Peer Connection Initiated with [AF_INET]5.254.97.83:443
Tue Oct 27 18:08:34 2015 us=642167 SENT CONTROL [CyberGhost]: 'PUSH_REQUEST' (status=1)
Tue Oct 27 18:08:34 2015 us=685788 PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1,dhcp-option DNS 95.169.183.219,dhcp-option DNS 89.41.60.38,dhcp-option DNS 37.221.175.198,comp-lzo yes,route 10.129.0.1,topology net30,ping 10,ping-restart 60,ifconfig 10.129.39.246 10.129.39.245'
Tue Oct 27 18:08:34 2015 us=685872 OPTIONS IMPORT: timers and/or timeouts modified
Tue Oct 27 18:08:34 2015 us=685883 OPTIONS IMPORT: LZO parms modified
Tue Oct 27 18:08:34 2015 us=685891 OPTIONS IMPORT: --ifconfig/up options modified
Tue Oct 27 18:08:34 2015 us=685899 OPTIONS IMPORT: route options modified
Tue Oct 27 18:08:34 2015 us=685906 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Tue Oct 27 18:08:34 2015 us=685949 ROUTE_GATEWAY 192.168.99.1
Tue Oct 27 18:08:34 2015 us=686046 TUN/TAP device /dev/tun0 opened
Tue Oct 27 18:08:34 2015 us=686063 do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Tue Oct 27 18:08:34 2015 us=686081 /sbin/ifconfig tun0 10.129.39.246 10.129.39.245 mtu 1500 netmask 255.255.255.255 up
Tue Oct 27 18:08:34 2015 us=687018 /FreeNAS-Transmission-OpenVPN/scripts/start_transmission.sh tun0 1500 1558 10.129.39.246 10.129.39.245 init</pre></div><br />
<br />
my var/log/messages:<br />
<div class="bbCodeBlock bbCodeCode"><div class="type">Code:</div><pre>Oct 27 09:12:55 transmission_1 transmission-daemon[65865]: UDP Failed to set receive buffer: No buffer space available (tr-udp.c:59)
Oct 27 09:12:55 transmission_1 transmission-daemon[65865]: UDP Failed to set receive buffer: requested 4194304, got 42080 (tr-udp.c:78)
Oct 27 09:13:05 transmission_1 transmission-daemon[70119]: UDP Failed to set receive buffer: No buffer space available (tr-udp.c:59)
Oct 27 09:13:05 transmission_1 transmission-daemon[70119]: UDP Failed to set receive buffer: requested 4194304, got 42080 (tr-udp.c:78)
Oct 27 09:43:39 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 09:44:50 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 09:45:42 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 09:46:20 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 09:47:09 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 09:47:44 transmission_1 transmission-daemon[70119]: DHT dht.transmissionbt.com:6881: hostname nor servname provided, or not known (tr-dht.c:126)
Oct 27 18:08:36 transmission_1 transmission-daemon[45459]: UDP Failed to set receive buffer: No buffer space available (tr-udp.c:59)
Oct 27 18:08:36 transmission_1 transmission-daemon[45459]: UDP Failed to set receive buffer: requested 4194304, got 42080 (tr-udp.c:78)</pre></div><br />
<br />
i found a few threads about this issue and they told to change the sysctl.conf:<br />
<a href="https://falkhusemann.de/blog/2012/07/transmission-utp-and-udp-buffer-optimizations/" target="_blank" class="link link--external" rel="nofollow ugc noopener">https://falkhusemann.de/blog/2012/07/transmission-utp-and-udp-buffer-optimizations/</a><br />
here are other options to change:<br />
<a href="https://forums.freenas.org/index.php?threads/transmission-error-udp-failed-to-set-receive-buffer-please-help.15203/" target="_blank" class="link link--external" rel="nofollow ugc noopener">https://forums.freenas.org/index.ph...iled-to-set-receive-buffer-please-help.15203/</a><br />
<br />
Now the Jail stops working every hour and stay online one day when i am lucky.<br />
So now i am asking: What is the correct way to change the value in the sysctl <a href="https://doc.freenas.org/9.3/freenas_system.html#tunables" target="_blank" class="link link--external" rel="nofollow ugc noopener">https://doc.freenas.org/9.3/freenas_system.html#tunables</a> with the same values as above or is there a new way to do this? <br />
I really don't want to break anything so i am asking you guys...<br />
<br />
THANKS!</div>
<div class="bbWrapper">Please post a summary of your hardware platform, especially including your Ethernet hardware and whatever switch you're using. It is not normal to lose connectivity on a network interface, which seems like what is happening here. We request that users always post this information when describing problems because it is so often relevant to resolving their issues.</div>
<div class="bbWrapper">Mainboard is a Asrock E3C224D2I<br />
Networking Hardware one of the onboard network cards<br />
16 gb Ecc Ram<br />
Cat6e wired to an R7000 Router with stock firmware<br />
behind the R7000 is an cheapo Modem from my ISP (i hate this thing but here in Germany you are forced to take this crap when you want to have fast internet)<br />
<br />
Things i've tried so far:<br />
<ul>
<li data-xf-list-type="ul">reinstall the Transmission Jail</li>
<li data-xf-list-type="ul">reinstall the FreeNAS OS</li>
<li data-xf-list-type="ul">change the two values in the Sysctl --> See Exit code above</li>
<li data-xf-list-type="ul">checked randomized Port on launch</li>
<li data-xf-list-type="ul">unchecked uTP</li>
</ul>The Network interface is tun0, i could set up a second jail and seed a lot of Unix dvds over the normal interface or install my traceroute to see any packet errors.<br />
Sometimes the Connection here has timeouts i talk every 2 Weeks to the ISP but this house is from pre-war times and i am lucky to have a fast connection here.<br />
If there is no other solution to get rid of this error, i could talk to my roommates about a fallback internet connection. Forgot to mention that.<br />
And i have a spare switch here i could wire up to the modem, but the r7000 is not so slow and the most times my roommates access Plex via AC-Wifi.<br />
<br />
Thank you for your advice this problem drives me crazy...</div>
<div class="bbWrapper">i try to setup the VPN with this guide <a href="https://forums.freenas.org/index.php?threads/guide-setting-up-transmission-with-openvpn-and-pia.24566/" target="_blank" class="link link--external" rel="nofollow ugc noopener">https://forums.freenas.org/index.ph...g-up-transmission-with-openvpn-and-pia.24566/</a> tomorow</div>
<div class="bbWrapper">Okay, so I should clarify this: it's the Transmission jail and not the NAS itself that's losing connectivity, right?<br />
<br />
When the OpenVPN instance cannot connect to "1-ro.cg-dialup.net" ... can you resolve that name from the FreeNAS CLI? ("host 1-ro.cg-dialup.net")<br />
<br />
Because what I'm thinking is that this is some sort of thing where OpenVPN gets stuck not being able to reinitialize when it loses a connection. That means that packet data intended to be sent would be piling up in the tunnel buffer, because the connection's down, until ultimately it fills and emits a completely reasonable error.<br />
<br />
I make extensive use of jails and OpenVPN here, but not for this sort of thing, so I'm kind of trolling around for an answer.<br />
<br />
Guessing that maybe you're pointing the jail's default route out the OpenVPN, in order to avoid packet inspection by your ISP? What's the routing table look like in the jail? "netstat -rn"?</div>
<div class="bbWrapper">The buffer size has nothing to do with it. If you have a water pipe that's capped at one end, it doesn't matter how long or what the diameter of the pipe is, eventually if you put water into it, it'll fill and have nowhere to go.<br />
<br />
What you need is to allow your OpenVPN to do the things it needs in order to establish a connection. You're breaking that by sending 0/1 and 128/1 down the VPN tunnel.<br />
<br />
Type the following within the jail:<br />
<br />
# /sbin/route add -net 5.254.97.0 -netmask 0xffffff00 192.168.99.1 <br />
<br />
This will at least allow the OpenVPN client to reach its servers. However, you probably also need to add a route for whatever nameserver you're using. If you're using Google, 8.8.8.8 for example, in /etc/resolv.conf, then do<br />
<br />
# /sbin/route add 8.8.8.8 192.168.99.1<br />
<br />
Lather/rinse/repeat until OpenVPN can work. Then modify your rc script in the jail accordingly. Then you're about 80% more likely to have this work for you.</div>
<div class="bbWrapper"><blockquote data-attributes="member: 115" data-quote="jgreco" data-source="post: 238047"
class="bbCodeBlock bbCodeBlock--expandable bbCodeBlock--quote js-expandWatch">
<div class="bbCodeBlock-title">
<a href="/community/goto/post?id=238047"
class="bbCodeBlock-sourceJump"
rel="nofollow"
data-xf-click="attribution"
data-content-selector="#post-238047">jgreco said:</a>
</div>
<div class="bbCodeBlock-content">
<div class="bbCodeBlock-expandContent js-expandContent ">
The buffer size has nothing to do with it. If you have a water pipe that's capped at one end, it doesn't matter how long or what the diameter of the pipe is, eventually if you put water into it, it'll fill and have nowhere to go.<br />
<br />
What you need is to allow your OpenVPN to do the things it needs in order to establish a connection. You're breaking that by sending 0/1 and 128/1 down the VPN tunnel.<br />
<br />
Type the following within the jail:<br />
<br />
# /sbin/route add -net 5.254.97.0 -netmask 0xffffff00 192.168.99.1<br />
<br />
This will at least allow the OpenVPN client to reach its servers. However, you probably also need to add a route for whatever nameserver you're using. If you're using Google, 8.8.8.8 for example, in /etc/resolv.conf, then do<br />
<br />
# /sbin/route add 8.8.8.8 192.168.99.1<br />
<br />
Lather/rinse/repeat until OpenVPN can work. Then modify your rc script in the jail accordingly. Then you're about 80% more likely to have this work for you.
</div>
<div class="bbCodeBlock-expandLink js-expandLink"><a role="button" tabindex="0">Click to expand...</a></div>
</div>
</blockquote><br />
Where 5.254.97.0 is what exactly?</div>