Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Tunnelblick freezes when no internet and multiple connections at time used #505

Open
JulyIghor opened this issue Nov 14, 2018 · 35 comments
Open

Comments

@JulyIghor
Copy link

Describe the bug
Tunnelblick icon and menus become unrensponsible while no Internet connection, if multiple connections at time used.

To Reproduce
Steps to reproduce the behavior:

  1. Setup muptiple openvpn connections with default settings, no DNS and only some subnets
  2. Disable Wi-Fi
  3. Tunnelblick become unresponsible and using 3-5% of CPU until Internet back

Expected behavior
Tunnelblick not freeze on Internet disconnected

Screenshots
image

Diagnostic information
*Tunnelblick: OS X 10.14.0; Tunnelblick 3.7.7 (build 5150); prior version 3.7.6a (build 5080); Admin user

Console Log:
2018-11-14 13:40:21 com.apple.xpc.launchd[1] Service exited due to SIGPIPE | sent by tunnelblickd[83649]
2018-11-14 13:40:25 Tunnelblick[83723] Tunnelblick: OS X 10.14.0; Tunnelblick 3.7.7 (build 5150)
2018-11-14 13:40:26 Tunnelblick[83723] Warning: preferences contain unknown preference 'NSStatusItem Preferred Position Item-0'
2018-11-14 13:40:27 Tunnelblick[83723] DEPRECATED USE in libdispatch client: dispatch source activated with no event handler set; set a breakpoint on dispatch_bug_deprecated to debug
2018-11-14 13:40:34 Tunnelblick[83723] The 'Online/a2.myserver
.com 443-notMonitoringConnection' preference was changed to TRUE because that was encoded in the filename of the log file
2018-11-14 13:40:34 Tunnelblick[83723] The 'Online/a1.myserver_.com 443-notMonitoringConnection' preference was changed to TRUE because that was encoded in the filename of the log file
2018-11-14 13:40:34 Tunnelblick[83723] The 'Online/a3.myserver_.com 443-notMonitoringConnection' preference was changed to TRUE because that was encoded in the filename of the log file
2018-11-14 13:40:34 Tunnelblick[83723] Stopped trying to establish communications with an existing OpenVPN process for 'Online/ovpn2.myserver_.com 443' after 5 seconds
2018-11-14 13:40:36 Tunnelblick[83723] Stopped trying to establish communications with an existing OpenVPN process for 'Online/m8.myserver_.com 1194' after 5 seconds
2018-11-14 13:40:37 Tunnelblick[83723] Stopped trying to establish communications with an existing OpenVPN process for 'Online/ovpn1.myserver_.com 443' after 5 seconds
2018-11-14 13:40:38 Tunnelblick[83723] Stopped trying to establish communications with an existing OpenVPN process for 'Online/ovpn3.myserver_.com 443' after 5 seconds
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/m2.myserver_.com 443' account = 'username'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/m2.myserver_.com 443' account = 'password'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt2.myserver_.com' account = 'username'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt2.myserver_.com' account = 'password'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/a1.myserver_.com 443' account = 'username'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/a1.myserver_.com 443' account = 'password'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt3.myserver_.com' account = 'username'
2018-11-14 13:40:41 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt3.myserver_.com' account = 'password'
2018-11-14 13:40:41 Tunnelblick[83723] pthread_mutex_lock( &unloadKextsMutex ) failed; status = 16, errno = 9
2018-11-14 13:40:42 Tunnelblick[83723] pthread_mutex_lock( &unloadKextsMutex ) failed; status = 16, errno = 9
2018-11-14 13:40:42 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt1.myserver_.com' account = 'username'
2018-11-14 13:40:42 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt1.myserver_.com' account = 'password'
2018-11-14 13:40:42 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt5.myserver_.com' account = 'username'
2018-11-14 13:40:42 Tunnelblick[83723] Keychain item retrieved successfully for service = 'Tunnelblick-Auth-Online/mt5.myserver_.com' account = 'password'

@JulyIghor
Copy link
Author

Here is video
IMG_6321-SD for Apple Devices.m4v.zip

@jkbullard
Copy link
Contributor

@JulyIghor - The Issue Template (the instructions for posting an Issue) asks for the diagnostic info but you did not provide it. I have asked you for the diagnostic information at least six times in #503 and #504.

One last time: Please post or attach the diagnostic info obtained by following the instructions at Read Before You Post.

@JulyIghor
Copy link
Author

I sent diagnostic here #504 (comment)
Is it ok or do you need diagnostic again right after it got frozen?

@JulyIghor
Copy link
Author

This #504 (comment) doesn't help at least in current issue.
Tunnelblick still freezing while there is no Internet.
Here is log that I got right after it unfrozen.

*Tunnelblick: OS X 10.14.0; Tunnelblick 3.7.7 (build 5150); prior version 3.7.6a (build 5080)
2018-11-15 09:18:42 *Tunnelblick: Attempting connection with Online/sdfasdfa.asdfasdfasdf.com using shadow copy; Set nameserver = 768; not monitoring connection
2018-11-15 09:18:42 *Tunnelblick: openvpnstart start Online/sdfasdfa.asdfasdfasdf.com.tblk 55209 768 0 1 1 1065264 -ptADGNWradsgnw 2.4.6-openssl-1.0.2p
2018-11-15 09:18:42 *Tunnelblick: openvpnstart starting OpenVPN
2018-11-15 09:18:43 *Tunnelblick: openvpnstart log:
OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):

      /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.4.6-openssl-1.0.2p/openvpn
      --daemon
      --log
      /Library/Application Support/Tunnelblick/Logs/-SUsers-SIGHOR-SLibrary-SApplication Support-STunnelblick-SConfigurations-SOnline-Ssdfasdfa.asdfasdfasdf.com.tblk-SContents-SResources-Sconfig.ovpn.768_0_1_1_1065264.55209.openvpn.log
      --cd
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources
      --setenv
      IV_GUI_VER
      "net.tunnelblick.tunnelblick 5150 3.7.7 (build 5150)"
      --verb
      3
      --config
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources/config.ovpn
      --verb
      3
      --cd
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources
      --management
      127.0.0.1
      55209
      /Library/Application Support/Tunnelblick/gbjibobiokgikaioccllhngemiiddhmgeaodmkla.mip
      --management-query-passwords
      --management-hold
      --script-security
      2

2018-11-15 09:18:43 OpenVPN 2.4.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [MH/RECVDA] [AEAD] built on Sep 29 2018
2018-11-15 09:18:43 library versions: OpenSSL 1.0.2p 14 Aug 2018, LZO 2.10
2018-11-15 09:18:43 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:55209
2018-11-15 09:18:43 Need hold release from management interface, waiting...
2018-11-15 09:18:43 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:55209
2018-11-15 09:18:50 *Tunnelblick: Established communication with OpenVPN
2018-11-15 09:18:50 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 09:18:50 MANAGEMENT: CMD 'pid'
2018-11-15 09:18:50 MANAGEMENT: CMD 'auth-retry interact'
2018-11-15 09:18:50 MANAGEMENT: CMD 'state on'
2018-11-15 09:18:50 MANAGEMENT: CMD 'state'
2018-11-15 09:18:50 MANAGEMENT: CMD 'bytecount 1'
2018-11-15 09:18:50 MANAGEMENT: CMD 'hold release'
2018-11-15 09:18:50 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 09:18:50 MANAGEMENT: CMD 'password [...]'
2018-11-15 09:18:50 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 09:18:50 MANAGEMENT: >STATE:1542266330,RESOLVE,,,,,,
2018-11-15 09:18:50 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 09:18:50 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 09:18:50 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 09:18:50 MANAGEMENT: >STATE:1542266330,TCP_CONNECT,,,,,,
2018-11-15 09:18:51 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 09:18:51 TCP_CLIENT link local: (not bound)
2018-11-15 09:18:51 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 09:18:51 MANAGEMENT: >STATE:1542266331,WAIT,,,,,,
2018-11-15 09:18:51 MANAGEMENT: >STATE:1542266331,AUTH,,,,,,
2018-11-15 09:18:51 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=e157dfcf e398db02
2018-11-15 09:18:52 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 09:18:52 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 09:18:53 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 09:18:53 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 09:18:54 MANAGEMENT: >STATE:1542266334,GET_CONFIG,,,,,,
2018-11-15 09:18:54 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:18:59 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:19:05 *Tunnelblick: No 'connected.sh' script to execute
2018-11-15 09:19:05 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:19:05 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.158.0.1,ping 20,ping-restart 60,topology subnet,route-gateway 192.158.0.1,ifconfig 192.158.0.146 255.255.255.0'
2018-11-15 09:19:05 OPTIONS IMPORT: timers and/or timeouts modified
2018-11-15 09:19:05 OPTIONS IMPORT: --ifconfig/up options modified
2018-11-15 09:19:05 OPTIONS IMPORT: route-related options modified
2018-11-15 09:19:05 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2018-11-15 09:19:05 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:19:05 Outgoing Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:19:05 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:19:05 Incoming Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opened utun device utun5
2018-11-15 09:19:05 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,ASSIGN_IP,,192.158.0.146,,,,
2018-11-15 09:19:05 /sbin/ifconfig utun5 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-11-15 09:19:05 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-11-15 09:19:05 /sbin/ifconfig utun5 192.158.0.146 192.158.0.146 netmask 255.255.255.0 mtu 1500 up
2018-11-15 09:19:05 /sbin/route add -net 192.158.0.0 192.158.0.146 255.255.255.0
add net 192.158.0.0: gateway 192.158.0.146
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,ADD_ROUTES,,,,,,
2018-11-15 09:19:05 /sbin/route add -net 192.158.0.0 192.158.0.1 255.255.0.0
add net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:19:05 Initialization Sequence Completed
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,CONNECTED,SUCCESS,192.158.0.146,58.71.11.203,444,72.10.50.11,60115
2018-11-15 09:48:58 *Tunnelblick: No 'reconnecting.sh' script to execute
2018-11-15 09:48:58 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 09:48:58 [sdfasdfa.asdfasdfasdf.com] Inactivity timeout (--ping-restart), restarting
2018-11-15 09:48:58 /sbin/route delete -net 192.158.0.0 192.158.0.1 255.255.0.0
delete net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:48:58 Closing TUN/TAP interface
2018-11-15 09:48:58 SIGUSR1[soft,ping-restart] received, process restarting
2018-11-15 09:48:58 MANAGEMENT: >STATE:1542268138,RECONNECTING,ping-restart,,,,,
2018-11-15 09:48:58 MANAGEMENT: CMD 'hold release'
2018-11-15 09:48:58 MANAGEMENT: CMD 'hold release'
2018-11-15 09:48:58 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 09:48:58 MANAGEMENT: CMD 'password [...]'
2018-11-15 09:48:58 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 09:48:58 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 09:48:58 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 09:48:58 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 09:48:58 MANAGEMENT: >STATE:1542268138,TCP_CONNECT,,,,,,
2018-11-15 09:48:59 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 09:48:59 TCP_CLIENT link local: (not bound)
2018-11-15 09:48:59 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 09:48:59 MANAGEMENT: >STATE:1542268139,WAIT,,,,,,
2018-11-15 09:48:59 MANAGEMENT: >STATE:1542268139,AUTH,,,,,,
2018-11-15 09:48:59 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=cb30d5ba 69e4fc2a
2018-11-15 09:49:00 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 09:49:00 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 09:49:00 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 09:49:00 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 09:49:01 MANAGEMENT: >STATE:1542268141,GET_CONFIG,,,,,,
2018-11-15 09:49:01 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:07 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:12 *Tunnelblick: No 'connected.sh' script to execute
2018-11-15 09:49:12 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:12 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.158.0.1,ping 20,ping-restart 60,topology subnet,route-gateway 192.158.0.1,ifconfig 192.158.0.145 255.255.255.0'
2018-11-15 09:49:12 OPTIONS IMPORT: timers and/or timeouts modified
2018-11-15 09:49:12 OPTIONS IMPORT: --ifconfig/up options modified
2018-11-15 09:49:12 OPTIONS IMPORT: route-related options modified
2018-11-15 09:49:12 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2018-11-15 09:49:12 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:49:12 Outgoing Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:49:12 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:49:12 Incoming Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opened utun device utun5
2018-11-15 09:49:12 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,ASSIGN_IP,,192.158.0.145,,,,
2018-11-15 09:49:12 /sbin/ifconfig utun5 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-11-15 09:49:12 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-11-15 09:49:12 /sbin/ifconfig utun5 192.158.0.145 192.158.0.145 netmask 255.255.255.0 mtu 1500 up
2018-11-15 09:49:12 /sbin/route add -net 192.158.0.0 192.158.0.145 255.255.255.0
add net 192.158.0.0: gateway 192.158.0.145
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,ADD_ROUTES,,,,,,
2018-11-15 09:49:12 /sbin/route add -net 192.158.0.0 192.158.0.1 255.255.0.0
add net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:49:12 Initialization Sequence Completed
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,CONNECTED,SUCCESS,192.158.0.145,58.71.11.203,444,72.10.50.4,60966
2018-11-15 09:59:09 read TCP_CLIENT: Operation timed out (code=60)
2018-11-15 09:59:09 Connection reset, restarting [0]
2018-11-15 09:59:09 /sbin/route delete -net 192.158.0.0 192.158.0.1 255.255.0.0
delete net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:59:09 Closing TUN/TAP interface
2018-11-15 09:59:09 SIGUSR1[soft,connection-reset] received, process restarting
2018-11-15 09:59:09 MANAGEMENT: >STATE:1542268749,RECONNECTING,connection-reset,,,,,
2018-11-15 10:03:23 *Tunnelblick: No 'reconnecting.sh' script to execute
2018-11-15 10:03:23 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 10:03:23 MANAGEMENT: CMD 'hold release'
2018-11-15 10:03:23 MANAGEMENT: CMD 'hold release'
2018-11-15 10:03:23 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 10:03:23 MANAGEMENT: CMD 'password [...]'
2018-11-15 10:03:23 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 10:03:23 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 10:03:23 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 10:03:23 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 10:03:23 MANAGEMENT: >STATE:1542269003,TCP_CONNECT,,,,,,
2018-11-15 10:03:24 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 10:03:24 TCP_CLIENT link local: (not bound)
2018-11-15 10:03:24 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 10:03:24 MANAGEMENT: >STATE:1542269004,WAIT,,,,,,
2018-11-15 10:03:24 MANAGEMENT: >STATE:1542269004,AUTH,,,,,,
2018-11-15 10:03:24 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=9d71e161 2daf0ce4
2018-11-15 10:03:25 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 10:03:25 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 10:03:25 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 10:03:25 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 10:03:26 MANAGEMENT: >STATE:1542269006,GET_CONFIG,,,,,,
2018-11-15 10:03:26 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 10:03:31 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)

*Tunnelblick: OS X 10.14.0; Tunnelblick 3.7.7 (build 5150); prior version 3.7.6a (build 5080)
2018-11-15 09:18:42 *Tunnelblick: Attempting connection with Online/sdfasdfa.asdfasdfasdf.com using shadow copy; Set nameserver = 768; not monitoring connection
2018-11-15 09:18:42 *Tunnelblick: openvpnstart start Online/sdfasdfa.asdfasdfasdf.com.tblk 55209 768 0 1 1 1065264 -ptADGNWradsgnw 2.4.6-openssl-1.0.2p
2018-11-15 09:18:42 *Tunnelblick: openvpnstart starting OpenVPN
2018-11-15 09:18:43 *Tunnelblick: openvpnstart log:
OpenVPN started successfully. Command used to start OpenVPN (one argument per displayed line):

      /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.4.6-openssl-1.0.2p/openvpn
      --daemon
      --log
      /Library/Application Support/Tunnelblick/Logs/-SUsers-SIGHOR-SLibrary-SApplication Support-STunnelblick-SConfigurations-SOnline-Ssdfasdfa.asdfasdfasdf.com.tblk-SContents-SResources-Sconfig.ovpn.768_0_1_1_1065264.55209.openvpn.log
      --cd
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources
      --setenv
      IV_GUI_VER
      "net.tunnelblick.tunnelblick 5150 3.7.7 (build 5150)"
      --verb
      3
      --config
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources/config.ovpn
      --verb
      3
      --cd
      /Library/Application Support/Tunnelblick/Users/IGHOR/Online/sdfasdfa.asdfasdfasdf.com.tblk/Contents/Resources
      --management
      127.0.0.1
      55209
      /Library/Application Support/Tunnelblick/gbjibobiokgikaioccllhngemiiddhmgeaodmkla.mip
      --management-query-passwords
      --management-hold
      --script-security
      2

2018-11-15 09:18:43 OpenVPN 2.4.6 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [MH/RECVDA] [AEAD] built on Sep 29 2018
2018-11-15 09:18:43 library versions: OpenSSL 1.0.2p 14 Aug 2018, LZO 2.10
2018-11-15 09:18:43 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:55209
2018-11-15 09:18:43 Need hold release from management interface, waiting...
2018-11-15 09:18:43 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:55209
2018-11-15 09:18:50 *Tunnelblick: Established communication with OpenVPN
2018-11-15 09:18:50 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 09:18:50 MANAGEMENT: CMD 'pid'
2018-11-15 09:18:50 MANAGEMENT: CMD 'auth-retry interact'
2018-11-15 09:18:50 MANAGEMENT: CMD 'state on'
2018-11-15 09:18:50 MANAGEMENT: CMD 'state'
2018-11-15 09:18:50 MANAGEMENT: CMD 'bytecount 1'
2018-11-15 09:18:50 MANAGEMENT: CMD 'hold release'
2018-11-15 09:18:50 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 09:18:50 MANAGEMENT: CMD 'password [...]'
2018-11-15 09:18:50 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 09:18:50 MANAGEMENT: >STATE:1542266330,RESOLVE,,,,,,
2018-11-15 09:18:50 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 09:18:50 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 09:18:50 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 09:18:50 MANAGEMENT: >STATE:1542266330,TCP_CONNECT,,,,,,
2018-11-15 09:18:51 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 09:18:51 TCP_CLIENT link local: (not bound)
2018-11-15 09:18:51 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 09:18:51 MANAGEMENT: >STATE:1542266331,WAIT,,,,,,
2018-11-15 09:18:51 MANAGEMENT: >STATE:1542266331,AUTH,,,,,,
2018-11-15 09:18:51 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=e157dfcf e398db02
2018-11-15 09:18:52 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 09:18:52 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 09:18:53 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 09:18:53 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 09:18:54 MANAGEMENT: >STATE:1542266334,GET_CONFIG,,,,,,
2018-11-15 09:18:54 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:18:59 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:19:05 *Tunnelblick: No 'connected.sh' script to execute
2018-11-15 09:19:05 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:19:05 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.158.0.1,ping 20,ping-restart 60,topology subnet,route-gateway 192.158.0.1,ifconfig 192.158.0.146 255.255.255.0'
2018-11-15 09:19:05 OPTIONS IMPORT: timers and/or timeouts modified
2018-11-15 09:19:05 OPTIONS IMPORT: --ifconfig/up options modified
2018-11-15 09:19:05 OPTIONS IMPORT: route-related options modified
2018-11-15 09:19:05 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2018-11-15 09:19:05 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:19:05 Outgoing Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:19:05 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:19:05 Incoming Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:19:05 Opened utun device utun5
2018-11-15 09:19:05 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,ASSIGN_IP,,192.158.0.146,,,,
2018-11-15 09:19:05 /sbin/ifconfig utun5 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-11-15 09:19:05 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-11-15 09:19:05 /sbin/ifconfig utun5 192.158.0.146 192.158.0.146 netmask 255.255.255.0 mtu 1500 up
2018-11-15 09:19:05 /sbin/route add -net 192.158.0.0 192.158.0.146 255.255.255.0
add net 192.158.0.0: gateway 192.158.0.146
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,ADD_ROUTES,,,,,,
2018-11-15 09:19:05 /sbin/route add -net 192.158.0.0 192.158.0.1 255.255.0.0
add net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:19:05 Initialization Sequence Completed
2018-11-15 09:19:05 MANAGEMENT: >STATE:1542266345,CONNECTED,SUCCESS,192.158.0.146,58.71.11.203,444,72.10.50.11,60115
2018-11-15 09:48:58 *Tunnelblick: No 'reconnecting.sh' script to execute
2018-11-15 09:48:58 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 09:48:58 [sdfasdfa.asdfasdfasdf.com] Inactivity timeout (--ping-restart), restarting
2018-11-15 09:48:58 /sbin/route delete -net 192.158.0.0 192.158.0.1 255.255.0.0
delete net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:48:58 Closing TUN/TAP interface
2018-11-15 09:48:58 SIGUSR1[soft,ping-restart] received, process restarting
2018-11-15 09:48:58 MANAGEMENT: >STATE:1542268138,RECONNECTING,ping-restart,,,,,
2018-11-15 09:48:58 MANAGEMENT: CMD 'hold release'
2018-11-15 09:48:58 MANAGEMENT: CMD 'hold release'
2018-11-15 09:48:58 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 09:48:58 MANAGEMENT: CMD 'password [...]'
2018-11-15 09:48:58 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 09:48:58 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 09:48:58 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 09:48:58 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 09:48:58 MANAGEMENT: >STATE:1542268138,TCP_CONNECT,,,,,,
2018-11-15 09:48:59 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 09:48:59 TCP_CLIENT link local: (not bound)
2018-11-15 09:48:59 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 09:48:59 MANAGEMENT: >STATE:1542268139,WAIT,,,,,,
2018-11-15 09:48:59 MANAGEMENT: >STATE:1542268139,AUTH,,,,,,
2018-11-15 09:48:59 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=cb30d5ba 69e4fc2a
2018-11-15 09:49:00 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 09:49:00 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 09:49:00 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 09:49:00 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 09:49:01 MANAGEMENT: >STATE:1542268141,GET_CONFIG,,,,,,
2018-11-15 09:49:01 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:07 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:12 *Tunnelblick: No 'connected.sh' script to execute
2018-11-15 09:49:12 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 09:49:12 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.158.0.1,ping 20,ping-restart 60,topology subnet,route-gateway 192.158.0.1,ifconfig 192.158.0.145 255.255.255.0'
2018-11-15 09:49:12 OPTIONS IMPORT: timers and/or timeouts modified
2018-11-15 09:49:12 OPTIONS IMPORT: --ifconfig/up options modified
2018-11-15 09:49:12 OPTIONS IMPORT: route-related options modified
2018-11-15 09:49:12 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2018-11-15 09:49:12 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:49:12 Outgoing Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:49:12 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 09:49:12 Incoming Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 09:49:12 Opened utun device utun5
2018-11-15 09:49:12 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,ASSIGN_IP,,192.158.0.145,,,,
2018-11-15 09:49:12 /sbin/ifconfig utun5 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-11-15 09:49:12 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-11-15 09:49:12 /sbin/ifconfig utun5 192.158.0.145 192.158.0.145 netmask 255.255.255.0 mtu 1500 up
2018-11-15 09:49:12 /sbin/route add -net 192.158.0.0 192.158.0.145 255.255.255.0
add net 192.158.0.0: gateway 192.158.0.145
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,ADD_ROUTES,,,,,,
2018-11-15 09:49:12 /sbin/route add -net 192.158.0.0 192.158.0.1 255.255.0.0
add net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:49:12 Initialization Sequence Completed
2018-11-15 09:49:12 MANAGEMENT: >STATE:1542268152,CONNECTED,SUCCESS,192.158.0.145,58.71.11.203,444,72.10.50.4,60966
2018-11-15 09:59:09 read TCP_CLIENT: Operation timed out (code=60)
2018-11-15 09:59:09 Connection reset, restarting [0]
2018-11-15 09:59:09 /sbin/route delete -net 192.158.0.0 192.158.0.1 255.255.0.0
delete net 192.158.0.0: gateway 192.158.0.1
2018-11-15 09:59:09 Closing TUN/TAP interface
2018-11-15 09:59:09 SIGUSR1[soft,connection-reset] received, process restarting
2018-11-15 09:59:09 MANAGEMENT: >STATE:1542268749,RECONNECTING,connection-reset,,,,,
2018-11-15 10:03:23 *Tunnelblick: No 'reconnecting.sh' script to execute
2018-11-15 10:03:23 *Tunnelblick: Obtained VPN username and password from the Keychain
2018-11-15 10:03:23 MANAGEMENT: CMD 'hold release'
2018-11-15 10:03:23 MANAGEMENT: CMD 'hold release'
2018-11-15 10:03:23 MANAGEMENT: CMD 'username "Auth" "ighor@asdfasdfasdf.com"'
2018-11-15 10:03:23 MANAGEMENT: CMD 'password [...]'
2018-11-15 10:03:23 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
2018-11-15 10:03:23 TCP/UDP: Preserving recently used remote address: [AF_INET]58.71.11.203:444
2018-11-15 10:03:23 Socket Buffers: R=[131072->131072] S=[131072->131072]
2018-11-15 10:03:23 Attempting to establish TCP connection with [AF_INET]58.71.11.203:444 [nonblock]
2018-11-15 10:03:23 MANAGEMENT: >STATE:1542269003,TCP_CONNECT,,,,,,
2018-11-15 10:03:24 TCP connection established with [AF_INET]58.71.11.203:444
2018-11-15 10:03:24 TCP_CLIENT link local: (not bound)
2018-11-15 10:03:24 TCP_CLIENT link remote: [AF_INET]58.71.11.203:444
2018-11-15 10:03:24 MANAGEMENT: >STATE:1542269004,WAIT,,,,,,
2018-11-15 10:03:24 MANAGEMENT: >STATE:1542269004,AUTH,,,,,,
2018-11-15 10:03:24 TLS: Initial packet from [AF_INET]58.71.11.203:444, sid=9d71e161 2daf0ce4
2018-11-15 10:03:25 VERIFY OK: depth=1, C=UA, ST=Ivano-Frankivsk, L=Burshtyn, O=GigaSOFT Group, OU=Hosting, CN=GSG Certification Authority, emailAddress=sdfasdf@live.com
2018-11-15 10:03:25 VERIFY OK: depth=0, C=CH, ST=Zurich, L=Zug, O=asdfasdfasdf, OU=Hosting, CN=sdfasdfa.asdfasdfasdf.com, emailAddress=sdfasdf@asdfasdfasdf.com
2018-11-15 10:03:25 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
2018-11-15 10:03:25 [sdfasdfa.asdfasdfasdf.com] Peer Connection Initiated with [AF_INET]58.71.11.203:444
2018-11-15 10:03:26 MANAGEMENT: >STATE:1542269006,GET_CONFIG,,,,,,
2018-11-15 10:03:26 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 10:03:31 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 10:03:36 SENT CONTROL [sdfasdfa.asdfasdfasdf.com]: 'PUSH_REQUEST' (status=1)
2018-11-15 10:03:37 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 192.158.0.1,ping 20,ping-restart 60,topology subnet,route-gateway 192.158.0.1,ifconfig 192.158.0.145 255.255.255.0'
2018-11-15 10:03:37 OPTIONS IMPORT: timers and/or timeouts modified
2018-11-15 10:03:37 OPTIONS IMPORT: --ifconfig/up options modified
2018-11-15 10:03:37 OPTIONS IMPORT: route-related options modified
2018-11-15 10:03:37 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2018-11-15 10:03:37 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 10:03:37 Outgoing Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 10:03:37 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2018-11-15 10:03:37 Incoming Data Channel: Using 160 bit message hash 'SHA1' for HMAC authentication
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opening utun (connect(AF_SYS_CONTROL)): Resource busy (errno=16)
2018-11-15 10:03:37 Opened utun device utun6
2018-11-15 10:03:37 do_ifconfig, tt->did_ifconfig_ipv6_setup=0
2018-11-15 10:03:37 MANAGEMENT: >STATE:1542269017,ASSIGN_IP,,192.158.0.145,,,,
2018-11-15 10:03:37 /sbin/ifconfig utun6 delete
ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2018-11-15 10:03:37 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2018-11-15 10:03:37 /sbin/ifconfig utun6 192.158.0.145 192.158.0.145 netmask 255.255.255.0 mtu 1500 up
2018-11-15 10:03:37 /sbin/route add -net 192.158.0.0 192.158.0.145 255.255.255.0
2018-11-15 10:03:37 *Tunnelblick: No 'connected.sh' script to execute
add net 192.158.0.0: gateway 192.158.0.145
2018-11-15 10:03:37 MANAGEMENT: >STATE:1542269017,ADD_ROUTES,,,,,,
2018-11-15 10:03:37 /sbin/route add -net 192.158.0.0 192.158.0.1 255.255.0.0
add net 192.158.0.0: gateway 192.158.0.1
2018-11-15 10:03:37 Initialization Sequence Completed
2018-11-15 10:03:37 MANAGEMENT: >STATE:1542269017,CONNECTED,SUCCESS,192.158.0.145,58.71.11.203,444,72.10.50.4,64990

@dandaka
Copy link

dandaka commented Jan 10, 2019

Can confirm the same bug. Pretty annoying. Practically blocks my Macbook. I have to Force Quit Tunnelblick and restart it to get going again. Anything I could help with?

@jkbullard
Copy link
Contributor

@JulyIghor , @dandaka : Tunnelblick 3.7.9beta02 contains several changes to the way Tunnelblick handles the situation of not having a network connection. Please see if it helps.

@dandaka
Copy link

dandaka commented Jan 11, 2019

@jkbullard Same story. How to reproduce:

  1. Connect with Tunnelblick to VPN
  2. Disable Wi-Fi
  3. Hover on Tunnelblick icon in menubar
  4. See rotating candy icon
  5. Can't click on Tunnelblick icon in menubar
  6. Popup with information regarding VPN connection is frozen, not updating information

@jkbullard
Copy link
Contributor

@dandaka - Thanks for your simple instructions. But following them does not freeze Tunnelblick for me.

(At least, Tunnelblick doesn't freeze when I connect one VPN. Does it require multiple VPNs to be connected for the problem to happen? That's what the original post described.)

You could help by:

(A) Getting the diagnostic info for a successful connect/disconnect sequence by following the instructions at Before You Post. Paste the Clipboard into a file to save it for emailing as an attachment (see step 7. below).

and

(B) Getting a "spin dump" while Tunnelblick is frozen:

  1. Open /Applications/Utilities/Activity Manager
  2. Click to highlight Tunnelblick in the list of processes
  3. Click "View", then "Run Spindump"
  4. If asked, enter your computer admin password
  5. Wait for the report window to appear (it may take a minute or two)
  6. Click the "Save…" button in the upper right corner and save the report as a file
  7. Email the spindump report file along with the file containing the diagnostic info as attachments to developers@tunnelblick.net with a subject of "Issue 505"

Thanks in advance!

@darrenmhill
Copy link

darrenmhill commented Feb 12, 2019

Same issue on latest High Sierra with beta2. Happens when moving from one WiFi network to another. Usually after closing my MBP's lid (sleep?) and then physically moving to a new location where I have had a previous connection - usually from home (with VPN connected) and then to work. Or vica versa.

So to reproduce, ensure two known WiFi locations then:

  1. On fresh startup connect to WiFi and connect to VPN
  2. Close lid of laptop
  3. Move to new location with a different router and WiFi name
  4. Open lid and allow Mac to auto-connect to known WiFi
  5. Note VPN unable to connect and freezing. Unable to close or attempt to cancel/disconnect.

@jkbullard
Copy link
Contributor

@JulyIghor @dandaka, @darrenmhill, and anyone else having this problem should try two things:

  • In the "Settings" tab, set VPN log level to "No OpenVPN or Tunnelblick logging"; and

  • In the "Advanced" settings window, un-check "Disconnect when computer goes to sleep".

@darrenmhill
Copy link

I'll give those settings a try...

@darrenmhill
Copy link

Just to note, I use the OpenVPN client on iOS and have zero issues. Same client settings file.

@darrenmhill
Copy link

darrenmhill commented Feb 15, 2019

Just changed to these settings. Restarted my MBP, made a Wifi/VPN connection, then closed the lid. Moved home to a new Wifi/Router connection and now it's just failing again to reconnect ("Making TCP connection", then "Reconnecting").

It's really not liking going from one Wifi connection to another via sleep. The only way to resolve is to restart the Mac and make a new connection. I think the openvpn processes are not resetting/restarting correctly.

This is pretty fundamental for a VPN client and it's just not playing ball. I'll wait for the next beta, otherwise I'll be looking for a new solution.

@jkbullard
Copy link
Contributor

@darrenmhill - Please try to pinpoint the issue:

  1. Connect, sleep your MBP, then awaken it (in the same location) and see if that works.
  2. Whether or not that works, add back "Disconnect on sleep" (and not "Reconnect on wake"), and see what happens when you sleep it and then awaken it again and wait a minute or so, then try to reconnect manually.
  3. If that works, check "Reconnect on wake" and try the sleep/wake cycle.

(Are you using Tunnelblick 3.7.9beta02? That's what you should be using.)

@JulyIghor
Copy link
Author

@JulyIghor @dandaka, @darrenmhill, and anyone else having this problem should try two things:

  • In the "Settings" tab, set VPN log level to "No OpenVPN or Tunnelblick logging"; and
  • In the "Advanced" settings window, un-check "Disconnect when computer goes to sleep".

I did this. 3.7.9beta02 works fine, no freezes.
Thank you!

@jkbullard
Copy link
Contributor

Sorry, I didn't mean to close this issue until @darrenmhill has had a chance to try to pinpoint the issue he is experiencing.

@jkbullard jkbullard reopened this Feb 15, 2019
@JulyIghor
Copy link
Author

JulyIghor commented Feb 16, 2019

I have disabled sleep mode to keep MacBook running all the time while I'm out of home.
So I went out of home and left Tunnelblick connected also.
When I come back, Wi-Fi router stopped working and any connection failed with error "there is no route for host..".
Tunnelblick frozen again, and it won't unfreeze even when I connect to other working Wi-Fi. I have to kill process and restart it.
Looks like problem is fixed only for cases when adapter goes disabled/disconnected, but not if Internet gone.

image

@darrenmhill
Copy link

Sorry, I didn't mean to close this issue until @darrenmhill has had a chance to try to pinpoint the issue he is experiencing.

This did not fix the issue for me unfortunately.

@darrenmhill
Copy link

image
These are my settings here.

@darrenmhill
Copy link

And here:

image

@darrenmhill
Copy link

I’ve been experimenting with settings and may have found a workaround/solution. Again, my issue is specifically the following:

  1. Restart MacBookPro to a new WiFi connection.
  2. Connect VPN
  3. Close Lid/Sleep MBP
  4. Move to a new location with previously known WiFi (with a different router/DNS) to preciously, ie, from work to home.
  5. Wake/Open MBP
  6. After the new WiFi connection, note problems reconnecting to VPN via TB. Application basically locks up. Activity Monitor showing openvpn process and TB basically required a force close.
  7. Only way to reconnect via VPN is via a full macOS restart.

All above on latest beta2 and Latest High Sierra.

@jkbullard
Copy link
Contributor

@darrenmhill - Thanks for your report. Here are a bunch of things for you (and others) to try

(A) Please try connecting your Mac to the VPN, sleeping it for two or three minutes, and then waking it up in the same location -- that is, without moving it to a new network. Does that work?

(B) Please try the following:

  1. Restart your computer
  2. Connect to the VPN
  3. Disconnect from the VPN
  4. Connect to the VPN a second time

Does that second connection work?

(C) When you say "Only way to reconnect via VPN is via a full macOS restart", what have you tried? In particular, have you tried turning Wi-Fi off, waiting a few seconds, and then turning it back on? (Or, for an Ethernet connection, unplugging and then plugging it back in?)

(D) When Tunnelblick/OpenVPN lock up, can you quit OpenVPN using Activity Monitor? If OpenVPN won't quit normally, can you force quit it? If OpenVPN does quit, does Tunnelblick then start responding or does it stay "frozen"?

@darrenmhill
Copy link

Tests A and B work fine (I'm now on beta 3).

c) Generally, I'm just sleeping the Mac with a VPN connection, moving to a new location with known Wifi and then letting the VPN reconnect (usually with no success)

D) With Activity Monitor, I normally need to force-quit Tunnelblick AND openvpn before I'm able to get connectivity. Starting up tunnelbick again, it fails to connect until a hard restart of macOS.

I will try steps C and D again with beta 3 in the next few days.

@jkbullard
Copy link
Contributor

@darrenmhill - Thanks!

D) With Activity Monitor, I normally need to force-quit Tunnelblick AND openvpn before I'm able to get connectivity. Starting up tunnelbick again, it fails to connect until a hard restart of macOS.

It isn't enough to quit or force-quit only OpenVPN? Tunnelblick should be able to recover if you force-quit OpenVPN, and then you should be able to quit it via the Tunnelblick menu. In that situation (you've quit or force-quit OpenVPN but Tunnelblick is still not responding), please "sample" the Tunnelblick process in Activity Monitor and post the results or email them to developers@tunnelblick.net.

@darrenmhill
Copy link

A) Sleeping and reconnecting to the same network is fine. It's only an issue when waking to another available access point (with the previous no longer available).

B) This is totally fine, unless the wifi connection is different (and on a different router/location)

@jkbullard no force-quitting doesn't fix it - a full restart is required in this situation. I'll get back to you on the logging.

All the above has been re-tested on beta3. Note that I'm on a Mid-2010 MBP, running macOS 10.13.6 (17G6015)

@jkbullard
Copy link
Contributor

jkbullard commented Mar 5, 2019

@darrenmhill wrote:

force-quitting doesn't fix it - a full restart is required in this situation. I'll get back to you on the logging.

(1) Do you need to force quit the "openvpn" process? Or will a regular quit work?

(2) If you quit or force-quit the "openvpn" process, does Tunnelblick stop responding (freeze)?

  • If so, please highlight the Tunnelblick process and do a "Spin Dump" in Activity Monitor and send the results to developers@tunnelblick.net.
  • If not, please attempt to connect. When it fails (or after 30 seconds if it is still attempting to connect, click "Disconnect and wait up to 30 seconds for it to disconnect), click "Copy Diagnostic Info to Clipboard" button, then paste the results into a reply or email them to developers@tunnelblick.net. Please remove any sensitive info such as your server's IP address before posting/sending.

@webus
Copy link

webus commented Mar 29, 2023

Same thing... Any chance to fix it?

@ramazangirgin
Copy link

ramazangirgin commented Apr 14, 2023

Hi, I am having the same issue with the version "Tunnelblick 3.8.8a (build 5776)" on MacOS Monterey as well. ( exactly same issue defined in #505 (comment) )
Tried suggested solution by #505 (comment) but didn't help.
All of my colleagues in the company using MacOS have the same issue.
Since a lot of users reporting the same issue, @jkbullard do you have some plans to prioritise it ?
Thanks in advance
Ramazan

@JulyIghor
Copy link
Author

Hi, I am having the same issue

As for me, I solved that by switching to Wireguard, there is no issues at all

@jkbullard
Copy link
Contributor

This problem may have been fixed in Tunnelblick 4.0.0beta05, released yesterday.

  • It limits the amount of the OpenVPN log that is displayed in the log in the "VPN Details" window. When OpenVPN adds too many entries to the log file too quickly, Tunnelblick displays a note instead of displaying all of the entries.
  • Separately, whenever the OpenVPN log file becomes too large, Tunnelblick truncates (clears) it – see Large log file fills up hard drive space #739.

@danidoedel
Copy link

@jkbullard this is still happening with 4.0.0beta09 for me. Losing internet connection while being connected to a VPN freezes Tunnelblick for about 5 minutes. Might be too many reconnection attempts in a short period of time?
In case it's helpful:

*Tunnelblick: macOS 14.0 (23A344); Tunnelblick 4.0.0beta09 (build 5890); prior version 4.0.0beta07 (build 5870); Admin user
git commit d4c907ed5f2455cbcb02337274644837945dab7a
The Tunnelblick.app process is not being translated (arm64)
System Integrity Protection is enabled
Model: MacBookPro17,1

Configuration VPN

"Sanitized" condensed configuration file for /Users/xxxx/Library/Application Support/Tunnelblick/Configurations/VPN.tblk:

client
proto udp
explicit-exit-notify
remote xxxx 1194
dev tun
resolv-retry infinite
nobind
persist-key
persist-tun
remote-cert-tls server
auth-user-pass
ignore-unknown-option block-outside-dns
setenv opt block-outside-dns # Prevent Windows 10 DNS leak
verb 3
<ca>
[Security-related line(s) omitted]
</ca>


================================================================================

Files in VPN.tblk:
      Contents/Resources/config.ovpn

================================================================================

Tunnelblick Kext Policy Data:



================================================================================

Configuration preferences:

-doNotReconnectOnFastUserSwitch = 1
-doNotReconnectOnWakeFromSleep = 1
-resetPrimaryInterfaceAfterUnexpectedDisconnect = 1
-routeAllTrafficThroughVpn = 0
-keychainHasUsernameAndPassword = 1
-notOKToCheckThatIPAddressDidNotChangeAfterConnection = 1
-loggingLevel = 3
-disableNetworkAccessAfterUnexpectedDisconnect = 0
-consecutiveSuccessfulIPAddressChanges = 5
-loginWindowSecurityTokenCheckboxIsChecked = 0
-lastConnectionSucceeded = 1

================================================================================

Wildcard preferences:

-notOKToCheckThatIPAddressDidNotChangeAfterConnection = 0

================================================================================

Program preferences:

launchAtNextLogin = 1
tunnelblickVersionHistory = (
    "4.0.0beta09 (build 5890)",
    "4.0.0beta07 (build 5870)",
    "3.8.8c (build 5778)",
    "3.8.8b (build 5777)",
    "3.8.8a (build 5776)",
    "3.8.8 (build 5775)",
    "4.0.0beta01 (build 5810)",
    "3.8.8beta04 (build 5800)",
    "3.8.8beta03 (build 5790)",
    "3.8.8beta02 (build 5780)"
)
statusDisplayNumber = 0
lastLaunchTime = 717527650.259663
doNotShowNotificationWindowOnMouseover = 1
doNotShowDisconnectedNotificationWindows = 1
lastLanguageAtLaunchWasRTL = 0
connectionWindowDisplayCriteria = showWhenChanges
maxLogDisplaySize = 102400
lastConnectedDisplayName = VPN
keyboardShortcutIndex = 1
updateCheckAutomatically = 1
NSWindow Frame SettingsSheetWindow = 1332 336 829 548 0 0 3440 1415 
NSWindow Frame ConnectingWindow = 1085 1033 389 217 0 0 2560 1575 
NSWindow Frame SUStatusFrame = 1080 1095 400 135 0 0 2560 1575 
NSWindow Frame SUUpdateAlert = 970 897 620 398 0 0 2560 1575 
detailsWindowFrameVersion = 5890
detailsWindowFrame = {{820, 805}, {920, 522}}
detailsWindowLeftFrame = {{0, 0}, {167, 390}}
detailsWindowViewIndex = 0
detailsWindowConfigurationsTabIdentifier = log
leftNavSelectedDisplayName = VPN
AdvancedWindowTabIdentifier = connectingAndDisconnecting
haveDealtWithOldTunTapPreferences = 1
haveDealtWithAlwaysShowLoginWindow = 1
haveDealtWithOldLoginItem = 1
haveDealtWithAfterDisconnect = 1
SUEnableAutomaticChecks = 1
SUScheduledCheckInterval = 86400
SULastCheckTime = 2023-09-27 17:14:11 +0000
SUHasLaunchedBefore = 1

================================================================================

Forced preferences:

(None)

================================================================================

Deployed forced preferences:

(None)

================================================================================

Tunnelblick Log:

2023-09-28 00:20:48.712069 *Tunnelblick: macOS 14.0 (23A344); Tunnelblick 4.0.0beta09 (build 5890); prior version 4.0.0beta07 (build 5870)
2023-09-28 00:20:49.166776 *Tunnelblick: Cannot recognize the VPN-loadTap preference value of '(null)', so Tunnelblick will not load the tap kext
2023-09-28 00:20:49.191661 *Tunnelblick: Attempting connection with VPN using shadow copy; Set nameserver = 0x00000301; monitoring connection
2023-09-28 00:20:49.192793 *Tunnelblick: openvpnstart start VPN.tblk 60733 0x00000301 0 1 0 0x0290c130 -ptADGNWradsgnw 2.5.9-openssl-1.1.1w <password>
2023-09-28 00:20:49.226143 *Tunnelblick: openvpnstart starting OpenVPN
2023-09-28 00:20:49.586738 Unrecognized option or missing or extra parameter(s) in /Library/Application Support/Tunnelblick/Users/xxxx/VPN.tblk/Contents/Resources/config.ovpn:13: block-outside-dns (2.5.9)
2023-09-28 00:20:49.587277 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-09-28 00:20:49.587783 OpenVPN 2.5.9 x86_64-apple-darwin [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [MH/RECVDA] [AEAD] built on Sep 11 2023
2023-09-28 00:20:49.587876 library versions: OpenSSL 1.1.1w  11 Sep 2023, LZO 2.10
2023-09-28 00:20:49.589206 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:60733
2023-09-28 00:20:49.589229 Need hold release from management interface, waiting...
2023-09-28 00:20:50.460072 *Tunnelblick: openvpnstart log:
     OpenVPN started successfully.
     Command used to start OpenVPN (one argument per displayed line):
          /Applications/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.5.9-openssl-1.1.1w/openvpn
          --daemon
          --log-append /Library/Application Support/Tunnelblick/Logs/-SUsers-Sxxxx-SLibrary-SApplication Support-STunnelblick-SConfigurations-SVPN.tblk-SContents-SResources-Sconfig.ovpn.769_0_1_0_43041072.60733.openvpn.log
          --cd /Library/Application Support/Tunnelblick/Users/xxxx/VPN.tblk/Contents/Resources
          --machine-readable-output
          --setenv IV_GUI_VER "net.tunnelblick.tunnelblick 5890 4.0.0beta09 (build 5890)"
          --verb 3
          --config /Library/Application Support/Tunnelblick/Users/xxxx/VPN.tblk/Contents/Resources/config.ovpn
          --setenv TUNNELBLICK_CONFIG_FOLDER /Library/Application Support/Tunnelblick/Users/xxxx/VPN.tblk/Contents/Resources
          --verb 3
          --cd /Library/Application Support/Tunnelblick/Users/xxxx/VPN.tblk/Contents/Resources
          --management 127.0.0.1 60733 /Library/Application Support/Tunnelblick/Mips/VPN.tblk.mip
          --management-query-passwords
          --management-hold
          --script-security 2
          --route-up /Applications/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -9 -d -f -m -ru -w -ptADGNWradsgnw
          --down /Applications/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -9 -d -f -m -ru -w -ptADGNWradsgnw
2023-09-28 00:20:50.473329 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:60733
2023-09-28 00:20:50.511019 MANAGEMENT: CMD 'pid'
2023-09-28 00:20:50.511081 MANAGEMENT: CMD 'auth-retry interact'
2023-09-28 00:20:50.511124 MANAGEMENT: CMD 'state on'
2023-09-28 00:20:50.511149 MANAGEMENT: CMD 'state'
2023-09-28 00:20:50.511204 MANAGEMENT: CMD 'bytecount 1'
2023-09-28 00:20:50.513328 *Tunnelblick: Established communication with OpenVPN
2023-09-28 00:20:50.514043 *Tunnelblick: >INFO:OpenVPN Management Interface Version 3 -- type 'help' for more info
2023-09-28 00:20:50.515095 MANAGEMENT: CMD 'hold release'
2023-09-28 00:20:50.521269 *Tunnelblick: Obtained VPN username and password from the Keychain
2023-09-28 00:20:50.522512 MANAGEMENT: CMD 'username "Auth" "xxxx"'
2023-09-28 00:20:50.522630 MANAGEMENT: CMD 'password [...]'
2023-09-28 00:20:50.523572 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:20:50.528846 MANAGEMENT: >STATE:1695835250,RESOLVE,,,,,,
2023-09-28 00:20:50.933713 TCP/UDP: Preserving recently used remote address: [AF_INET]xxxx:1194
2023-09-28 00:20:50.933851 Socket Buffers: R=[786896->786896] S=[9216->9216]
2023-09-28 00:20:50.933875 UDP link local: (not bound)
2023-09-28 00:20:50.933892 UDP link remote: [AF_INET]xxxx:1194
2023-09-28 00:20:50.933923 MANAGEMENT: >STATE:1695835250,WAIT,,,,,,
2023-09-28 00:20:51.141718 MANAGEMENT: >STATE:1695835251,AUTH,,,,,,
2023-09-28 00:20:51.141899 TLS: Initial packet from [AF_INET]xxxx:1194, sid=b62c61d3 c0644309
2023-09-28 00:20:51.142287 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2023-09-28 00:20:51.352633 VERIFY OK: depth=1, CN=cn_oBh9uCAQxb9a1K7G
2023-09-28 00:20:51.354111 VERIFY KU OK
2023-09-28 00:20:51.354139 Validating certificate extended key usage
2023-09-28 00:20:51.354155 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-09-28 00:20:51.354170 VERIFY EKU OK
2023-09-28 00:20:51.354183 VERIFY OK: depth=0, CN=server_DO1sdU2Os2xsk20X
2023-09-28 00:20:51.750560 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 256 bit EC, curve prime256v1, signature: ecdsa-with-SHA256
2023-09-28 00:20:51.750747 [server_DO1sdU2Os2xsk20X] Peer Connection Initiated with [AF_INET]xxxx:1194
2023-09-28 00:20:52.059759 MANAGEMENT: >STATE:1695835252,GET_CONFIG,,,,,,
2023-09-28 00:20:52.059888 SENT CONTROL [server_DO1sdU2Os2xsk20X]: 'PUSH_REQUEST' (status=1)
2023-09-28 00:20:52.268015 OPTIONS IMPORT: timers and/or timeouts modified
2023-09-28 00:20:52.268040 OPTIONS IMPORT: --ifconfig/up options modified
2023-09-28 00:20:52.268056 OPTIONS IMPORT: route options modified
2023-09-28 00:20:52.268073 OPTIONS IMPORT: route-related options modified
2023-09-28 00:20:52.268090 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2023-09-28 00:20:52.268109 OPTIONS IMPORT: peer-id set
2023-09-28 00:20:52.268137 OPTIONS IMPORT: adjusting link_mtu to 1624
2023-09-28 00:20:52.268153 OPTIONS IMPORT: data channel crypto options modified
2023-09-28 00:20:52.268185 Data Channel: using negotiated cipher 'AES-256-GCM'
2023-09-28 00:20:52.268459 Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2023-09-28 00:20:52.268483 Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
2023-09-28 00:20:52.273302 Opened utun device utun7
2023-09-28 00:20:52.273407 MANAGEMENT: >STATE:1695835252,ASSIGN_IP,,192.168.100.195,,,,
2023-09-28 00:20:52.273440 /sbin/ifconfig utun7 delete
                           ifconfig: ioctl (SIOCDIFADDR): Can't assign requested address
2023-09-28 00:20:52.309376 NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2023-09-28 00:20:52.309416 /sbin/ifconfig utun7 192.168.100.195 192.168.100.195 netmask 255.255.255.0 mtu 1500 up
2023-09-28 00:20:52.328754 /sbin/route add -net 192.168.100.0 192.168.100.195 255.255.255.0
                           add net 192.168.100.0: gateway 192.168.100.195
2023-09-28 00:20:52.343965 MANAGEMENT: >STATE:1695835252,ADD_ROUTES,,,,,,
                           00:20:52 *Tunnelblick:  **********************************************
                           00:20:52 *Tunnelblick:  Start of output from client.up.tunnelblick.sh
                           00:20:54 *Tunnelblick:  Retrieved from OpenVPN: name server(s) [ 192.168.100.1 ], search domain(s) [ ] and SMB server(s) [ ] and using default domain name [ openvpn ]
                           00:20:54 *Tunnelblick:  Not aggregating ServerAddresses because running on macOS 10.6 or higher
                           00:20:54 *Tunnelblick:  Setting search domains to 'openvpn' because the search domains were not set manually (or are allowed to be changed) and 'Prepend domain name to search domains' was not selected
                           00:20:56 *Tunnelblick:  Saved the DNS and SMB configurations so they can be restored
                           00:20:56 *Tunnelblick:  Changed DNS ServerAddresses setting from '192.168.1.1' to '192.168.100.1'
                           00:20:56 *Tunnelblick:  Changed DNS SearchDomains setting from '' to 'openvpn'
                           00:20:56 *Tunnelblick:  Changed DNS DomainName setting from '' to 'openvpn'
                           00:20:56 *Tunnelblick:  Did not change SMB NetBIOSName setting of ''
                           00:20:56 *Tunnelblick:  Did not change SMB Workgroup setting of ''
                           00:20:56 *Tunnelblick:  Did not change SMB WINSAddresses setting of ''
                           00:20:56 *Tunnelblick:  DNS servers '192.168.100.1' will be used for DNS queries when the VPN is active
                           00:20:56 *Tunnelblick:  NOTE: The DNS servers do not include any free public DNS servers known to Tunnelblick. This may cause DNS queries to fail or be intercepted or falsified even if they are directed through the VPN. Specify only known public DNS servers or DNS servers located on the VPN network to avoid such problems.
                           00:20:56 *Tunnelblick:  Flushed the DNS cache via dscacheutil
                           00:20:56 *Tunnelblick:  /usr/sbin/discoveryutil not present. Not flushing the DNS cache via discoveryutil
                           00:20:56 *Tunnelblick:  Notified mDNSResponder that the DNS cache was flushed
                           00:20:56 *Tunnelblick:  Notified mDNSResponderHelper that the DNS cache was flushed
                           00:20:56 *Tunnelblick:  Setting up to monitor system configuration with process-network-changes
                           00:20:56 *Tunnelblick:  End of output from client.up.tunnelblick.sh
                           00:20:56 *Tunnelblick:  **********************************************
2023-09-28 00:20:56.335969 Initialization Sequence Completed
2023-09-28 00:20:56.335992 MANAGEMENT: >STATE:1695835256,CONNECTED,SUCCESS,192.168.100.195,xxxx,1194,,
2023-09-28 00:20:57.566223 *Tunnelblick: DNS address 192.168.100.1 is being routed through the VPN
2023-09-28 00:21:34.796143 write UDP: Can't assign requested address (code=49)
2023-09-28 00:21:42.477402 *Tunnelblick: process-network-changes: ServerAddresses changed from
                           *<array> {
                           *0 : 192.168.100.1
                           *}
                           * to
                           *
                           *pre-VPN was
                           *<array> {
                           *0 : 192.168.1.1
                           *}
2023-09-28 00:21:42.478231 *Tunnelblick: process-network-changes: SearchDomains changed from
                           *<array> {
                           *0 : openvpn
                           *}
                           * to (pre-VPN)
                           *
2023-09-28 00:21:42.478692 *Tunnelblick: process-network-changes: ServerAddresses changed; sending USR1 to OpenVPN (process ID 10472) to restart the connection.
2023-09-28 00:21:43.549221 event_wait : Interrupted system call (code=4)
2023-09-28 00:21:43.549562 SIGUSR1[hard,] received, process restarting
2023-09-28 00:21:43.549604 MANAGEMENT: >STATE:1695835303,RECONNECTING,SIGUSR1,,,,,
2023-09-28 00:21:43.896419 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:43.896592 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:43.896766 MANAGEMENT: >STATE:1695835303,RESOLVE,,,,,,
2023-09-28 00:21:43.898929 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:43.899020 MANAGEMENT: >STATE:1695835303,RESOLVE,,,,,,
2023-09-28 00:21:43.900328 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:43.900376 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:43.900538 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:43.900556 MANAGEMENT: >STATE:1695835303,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:43.900688 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:43.900760 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:43.900881 MANAGEMENT: >STATE:1695835303,RESOLVE,,,,,,
2023-09-28 00:21:43.902190 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:43.902266 MANAGEMENT: >STATE:1695835303,RESOLVE,,,,,,
2023-09-28 00:21:43.903750 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:43.903812 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:43.903995 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:43.904012 MANAGEMENT: >STATE:1695835303,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.079304 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.079399 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.079490 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.080881 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.080932 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.082710 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.082743 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.082903 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.082931 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.083132 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.083213 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.083310 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.085501 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.085549 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.086914 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.086960 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.087127 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.087148 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.224879 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.225240 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.225479 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.228334 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.228423 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.229784 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.229836 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.229948 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.229964 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.230019 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.230042 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.230093 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.231478 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.231554 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.232818 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.232855 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.232926 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.232940 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.376551 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.376645 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.376750 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.378402 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.378455 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.379641 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.379722 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.379838 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.379852 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.379911 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.379950 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.380061 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.381201 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.381264 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.382767 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.382809 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.382986 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.383023 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.522391 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.522559 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.522732 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.525185 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.525299 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.527107 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.527174 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.527307 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.527321 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:21:44.527421 MANAGEMENT: CMD 'hold release'
2023-09-28 00:21:44.527459 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2023-09-28 00:21:44.527518 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.528723 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.528800 MANAGEMENT: >STATE:1695835304,RESOLVE,,,,,,
2023-09-28 00:21:44.530427 RESOLVE: Cannot resolve host address: xxxx:1194 (nodename nor servname provided, or not known)
2023-09-28 00:21:44.530505 Could not determine IPv4/IPv6 protocol
2023-09-28 00:21:44.530627 SIGUSR1[soft,init_instance] received, process restarting
2023-09-28 00:21:44.530640 MANAGEMENT: >STATE:1695835304,RECONNECTING,init_instance,,,,,
2023-09-28 00:23:29.566049 *Tunnelblick: Warning: Log entries have been discarded because too many came in too quickly.
2023-09-28 00:26:55.772951 *Tunnelblick: Disconnecting; notification window disconnect button pressed
2023-09-28 00:26:55.925796 *Tunnelblick: Disconnecting using 'kill'
2023-09-28 00:26:56.171301 *Tunnelblick: Disconnecting; notification window disconnect button pressed
2023-09-28 00:26:56.476695 *Tunnelblick: Disconnecting using 'kill'
2023-09-28 00:27:23.271477 *Tunnelblick: Expected disconnection occurred.

================================================================================

Installer log:

Tunnelblick installer started 2023-09-12 14:55:00.069077; getuid() = 501; geteuid() = 0; getgid() = 20; getegid() = 20
currentDirectoryPath = '/'; 1 arguments:
     0x0101
Determined username 'xxxx' from getuid(): 501
Replaced /Library/LaunchDaemons/net.tunnelblick.tunnelblick.tunnelblickd.plist
Used launchctl to load tunnelblickd
Tunnelblick installer succeeded

================================================================================

Down log:

00:27:22 *Tunnelblick:  **********************************************
00:27:22 *Tunnelblick:  Start of output from client.down.tunnelblick.sh
00:27:22 *Tunnelblick:  Cancelled monitoring system configuration changes
00:27:22 *Tunnelblick:  Restored State:DNS
00:27:22 *Tunnelblick:  Removed Setup:DNS
00:27:22 *Tunnelblick:  Removed State:SMB
00:27:22 *Tunnelblick:  Restored DNS and SMB settings
00:27:22 *Tunnelblick:  Flushed the DNS cache with dscacheutil -flushcache
00:27:22 *Tunnelblick:  Notified mDNSResponder that the DNS cache was flushed
00:27:22 *Tunnelblick:  End of output from client.down.tunnelblick.sh
00:27:22 *Tunnelblick:  **********************************************

================================================================================

Previous down log:

03:54:58 *Tunnelblick:  **********************************************
03:54:58 *Tunnelblick:  Start of output from client.down.tunnelblick.sh
03:54:58 *Tunnelblick:  Cancelled monitoring system configuration changes
03:54:58 *Tunnelblick:  Restored State:DNS
03:54:58 *Tunnelblick:  Removed Setup:DNS
03:54:58 *Tunnelblick:  Removed State:SMB
03:54:58 *Tunnelblick:  Restored DNS and SMB settings
03:54:58 *Tunnelblick:  Flushed the DNS cache with dscacheutil -flushcache
03:54:58 *Tunnelblick:  Notified mDNSResponder that the DNS cache was flushed
03:54:58 *Tunnelblick:  End of output from client.down.tunnelblick.sh
03:54:58 *Tunnelblick:  **********************************************

================================================================================

Network services:

An asterisk (*) denotes that a network service is disabled.
Thunderbolt Bridge
Wi-Fi

Wi-Fi Power (en0): On

================================================================================

ifconfig output:

lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384
	options=1203<RXCSUM,TXCSUM,TXSTATUS,SW_TIMESTAMP>
	inet 127.0.0.1 netmask 0xff000000
	inet6 ::1 prefixlen 128 
	inet6 fe80::1%lo0 prefixlen 64 scopeid 0x1 
	nd6 options=201<PERFORMNUD,DAD>
gif0: flags=8010<POINTOPOINT,MULTICAST> mtu 1280
stf0: flags=0<> mtu 1280
anpi1: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=400<CHANNEL_IO>
	ether 36:bb:dd:9e:29:5e
	media: none
	status: inactive
anpi0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=400<CHANNEL_IO>
	ether 36:bb:dd:9e:29:5d
	media: none
	status: inactive
en3: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=400<CHANNEL_IO>
	ether 36:bb:dd:9e:29:3d
	nd6 options=201<PERFORMNUD,DAD>
	media: none
	status: inactive
en4: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=400<CHANNEL_IO>
	ether 36:bb:dd:9e:29:3e
	nd6 options=201<PERFORMNUD,DAD>
	media: none
	status: inactive
en1: flags=8963<UP,BROADCAST,SMART,RUNNING,PROMISC,SIMPLEX,MULTICAST> mtu 1500
	options=460<TSO4,TSO6,CHANNEL_IO>
	ether 36:4a:1b:6e:54:c0
	media: autoselect <full-duplex>
	status: inactive
en2: flags=8963<UP,BROADCAST,SMART,RUNNING,PROMISC,SIMPLEX,MULTICAST> mtu 1500
	options=460<TSO4,TSO6,CHANNEL_IO>
	ether 36:4a:1b:6e:54:c4
	media: autoselect <full-duplex>
	status: inactive
bridge0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=63<RXCSUM,TXCSUM,TSO4,TSO6>
	ether 36:4a:1b:6e:54:c0
	Configuration:
		id 0:0:0:0:0:0 priority 0 hellotime 0 fwddelay 0
		maxage 0 holdcnt 0 proto stp maxaddr 100 timeout 1200
		root id 0:0:0:0:0:0 priority 0 ifcost 0 port 0
		ipfilter disabled flags 0x0
	member: en1 flags=3<LEARNING,DISCOVER>
	        ifmaxaddr 0 port 8 priority 0 path cost 0
	member: en2 flags=3<LEARNING,DISCOVER>
	        ifmaxaddr 0 port 9 priority 0 path cost 0
	media: <unknown type>
	status: inactive
ap1: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=6460<TSO4,TSO6,CHANNEL_IO,PARTIAL_CSUM,ZEROINVERT_CSUM>
	ether e6:91:0c:ab:9c:29
	inet6 fe80::e491:cff:feab:9c29%ap1 prefixlen 64 scopeid 0xb 
	nd6 options=201<PERFORMNUD,DAD>
	media: autoselect
en0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=6460<TSO4,TSO6,CHANNEL_IO,PARTIAL_CSUM,ZEROINVERT_CSUM>
	ether c4:91:0c:ab:9c:29
	inet 192.168.1.103 netmask 0xffffff00 broadcast 192.168.1.255
	media: autoselect
	status: active
awdl0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=6460<TSO4,TSO6,CHANNEL_IO,PARTIAL_CSUM,ZEROINVERT_CSUM>
	ether 0e:10:ed:11:3d:bb
	inet6 fe80::c10:edff:fe11:3dbb%awdl0 prefixlen 64 scopeid 0xd 
	nd6 options=201<PERFORMNUD,DAD>
	media: autoselect
	status: active
llw0: flags=8863<UP,BROADCAST,SMART,RUNNING,SIMPLEX,MULTICAST> mtu 1500
	options=400<CHANNEL_IO>
	ether 0e:10:ed:11:3d:bb
	inet6 fe80::c10:edff:fe11:3dbb%llw0 prefixlen 64 scopeid 0xe 
	nd6 options=201<PERFORMNUD,DAD>
	media: autoselect
	status: active
utun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1380
	inet6 fe80::7976:cc6f:629:345b%utun0 prefixlen 64 scopeid 0xf 
	nd6 options=201<PERFORMNUD,DAD>
utun1: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 2000
	inet6 fe80::f8e7:c412:db94:a5b9%utun1 prefixlen 64 scopeid 0x10 
	nd6 options=201<PERFORMNUD,DAD>
utun2: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1000
	inet6 fe80::ce81:b1c:bd2c:69e%utun2 prefixlen 64 scopeid 0x11 
	nd6 options=201<PERFORMNUD,DAD>
utun3: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1350
	options=6460<TSO4,TSO6,CHANNEL_IO,PARTIAL_CSUM,ZEROINVERT_CSUM>
	inet6 fe80::91e4:8a0a:6fc6:6e35%utun3 prefixlen 64 scopeid 0x12 
	nd6 options=201<PERFORMNUD,DAD>
utun4: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
	inet6 fe80::831e:7963:2962:bbc2%utun4 prefixlen 64 scopeid 0x13 
	nd6 options=201<PERFORMNUD,DAD>
utun6: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1380
	inet6 fe80::637c:df86:385c:a995%utun6 prefixlen 64 scopeid 0x15 
	nd6 options=201<PERFORMNUD,DAD>
utun5: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1380
	inet6 fe80::6924:aed5:e27b:c33e%utun5 prefixlen 64 scopeid 0x16 
	nd6 options=201<PERFORMNUD,DAD>

================================================================================

Non-Apple kexts that are loaded:

Index Refs Address            Size       Wired      Name (Version) UUID <Linked Against>

================================================================================

Quit Log:

2023-09-27 03:55:27.363758 applicationShouldTerminate: termination because of Quit; delayed until 'shutdownTunnelblick' finishes)
2023-09-27 03:55:27.370161 shutDownTunnelblick: started.
2023-09-27 03:55:27.372051 shutDownTunnelblick: Starting cleanup.
2023-09-27 03:55:27.373031 cleanup: Entering cleanup
2023-09-27 03:55:27.373543 synchronized user defaults
2023-09-27 03:55:27.975252 shutDownTunnelblick: Cleanup finished.
2023-09-27 03:55:27.975840 Finished shutting down Tunnelblick; allowing termination

================================================================================

Traces Log:


================================================================================

Console Log:

@jkbullard
Copy link
Contributor

@danidoedel - Thanks. For anyone with this problem: it would be helpful to have a "Spin Dump" from Activity Monitor.

@jkbullard jkbullard reopened this Sep 27, 2023
@danidoedel
Copy link

@jkbullard here you go:
Tunnelblick_Spindump.txt
Please let me know, if you need anything else.

@jkbullard
Copy link
Contributor

@danidoedel - Try removing the persist-tun line from your OpenVPN configuration (or making it a comment by prefixing it with a semicolon (";").

If that works, here's happening: Your DHCP server issues short leases. When the lease is up, a new lease is issued with its pre-VPN DNS information, so your computer reverts its DNS settings to the pre-VPN settings. Tunnelblick detects that and tells OpenVPN to reconnect. If persist-tun is being used, OpenVPN tries a quick reconnect, without fully disconnecting first. That doesn't work in this situation, because a quick reconnect does not reset the DNS information to their VPN settings (they are left to the pre-VPN settings). So your VPN is connected, but your computer is not using the VPNs DNS servers. OpenVPN tries to reconnect but because it is not using the correct DNS servers, it can't, so it tries again and again, so quickly that Tunnelblick is using 100% CPU trying to keep up with the reconnection attempts.

By removing persist-tun, you will force OpenVPN and Tunnelblick to disconnect the VPN fully and then reconnect. So the computer will either have the VPN connected and be using the correct VPN DNS servers, or will not have the VPN connected and not use the VPN DNS servers.

@danidoedel
Copy link

@jkbullard unfortunately Tunnelblick still freezes even with persist-tun commented.

Another spindump if that helps:
Tunnelblick_Spindump_2.txt

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

7 participants