fareign

Results 40 comments of fareign

I stop fail2ban. openvpn still have High cpu USE. root@iZm5e727udorfq8cpb5razZ:~# journalctl -r -u openvpn Jun 19 23:30:59 iZm5e727udorfq8cpb5razZ systemd[1]: Finished openvpn.service - OpenVPN service. Jun 19 23:30:59 iZm5e727udorfq8cpb5razZ systemd[1]: Starting...

Jun 19 23:41:09 iZm5e727udorfq8cpb5razZ ovpn-tun0[421597]: openmptcprouter/120.228.78.50:1308 read TCPv6_SERVER []: Transport endpoint is not connected (fd=10,code=107) Jun 19 23:41:09 iZm5e727udorfq8cpb5razZ ovpn-tun0[421597]: openmptcprouter/120.228.78.50:1308 read TCPv6_SERVER []: Transport endpoint is not connected (fd=10,code=107)...

I think this is the real problem,tooooooooooo many erro log.

> Yes. You know "120.228.78.50" IP ? if not I have to fix fail2ban because it doesn't seems to block it. is wan IP. I disable TCPV6 in openvpn.conf .then...

Overview of changes in 2.6.11 Security fixes CVE-2024-4877: Windows: harden interactive service pipe. Security scope: a malicious process with "some" elevated privileges (SeImpersonatePrivilege) could open the pipe a second time,...

@Ysurac there must be some problem with openvpn on VPS. I set verb to 0. only openVPN use 100%CPU, fail2ban and journalctl is OK.

seems disbaled #duplicate-cn have some effect

so we still need to find out which make lots of log with duplicate-cn on.

> I don't have this issue on any VPS. duplicate-cn can be disabled if you don't need it. I may enable it only when needed. I test kernel 6.12 is...

I think the bug is on the VPS. when I use 0.1030VPS 6.1kernel or not connect the vps whois appear