Skip to content

Instantly share code, notes, and snippets.

@ssijak
Created May 7, 2025 08:38
Show Gist options
  • Save ssijak/452774fb43868bec063895281f6afe92 to your computer and use it in GitHub Desktop.
Save ssijak/452774fb43868bec063895281f6afe92 to your computer and use it in GitHub Desktop.
aws vpn
tail -100 ~/.config/AWSVPNClient/logs/ovpn_aws_vpn_client_20250506.log
2025-05-06 16:45:31.663 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542731,I,/sbin/ifconfig utun8 delete
2025-05-06 16:45:31.706 +02:00 [DBG][TI=13897][accrue-infra] >LOG:1746542731,I,NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2025-05-06 16:45:31.706 +02:00 [DBG][TI=13892][accrue-infra] >LOG:1746542731,I,/sbin/ifconfig utun8 10.1.0.35 10.1.0.35 netmask 255.255.255.224 mtu 1500 up
2025-05-06 16:45:31.724 +02:00 [DBG][TI=13889][accrue-infra] >LOG:1746542731,,/sbin/route add -net 10.1.0.32 10.1.0.35 255.255.255.224
2025-05-06 16:45:31.742 +02:00 [DBG][TI=13888][accrue-infra] >LOG:1746542731,I,/Applications/AWS VPN Client/AWS VPN Client.app/Contents/Resources/openvpn/client.up utun8 1500 0 10.1.0.35 255.255.255.224 init
2025-05-06 16:45:34.497 +02:00 [DBG][TI=13877][accrue-infra] >LOG:1746542734,,/sbin/route add -net 52.207.0.130 192.168.1.1 255.255.255.255
2025-05-06 16:45:34.513 +02:00 [DBG][TI=13897][accrue-infra] >LOG:1746542734,,/sbin/route add -cloning -net 192.168.1.1 -netmask 255.255.255.255 -interface en0
2025-05-06 16:45:34.524 +02:00 [DBG][TI=13902][accrue-infra] >LOG:1746542734,,/sbin/route delete -net 0.0.0.0 192.168.1.1 0.0.0.0
2025-05-06 16:45:34.537 +02:00 [DBG][TI=13877][accrue-infra] >LOG:1746542734,,/sbin/route add -net 0.0.0.0 10.1.0.33 0.0.0.0
2025-05-06 16:45:34.550 +02:00 [DBG][TI=13907][accrue-infra] >LOG:1746542734,,MANAGEMENT: >STATE:1746542734,ADD_ROUTES,,,,,,
2025-05-06 16:45:34.551 +02:00 [DBG][TI=13907][accrue-infra] >LOG:1746542734,,/sbin/route add -net 52.71.158.163 10.1.0.33 255.255.255.255
2025-05-06 16:45:34.563 +02:00 [DBG][TI=13892][accrue-infra] >LOG:1746542734,,/sbin/route add -net 10.20.0.0 10.1.0.33 255.255.0.0
2025-05-06 16:45:34.574 +02:00 [DBG][TI=13900][accrue-infra] >LOG:1746542734,,/sbin/route add -net 10.50.0.0 10.1.0.33 255.255.0.0
2025-05-06 16:45:34.587 +02:00 [DBG][TI=13889][accrue-infra] >LOG:1746542734,,/sbin/route add -net 10.40.0.0 10.1.0.33 255.255.0.0
2025-05-06 16:45:34.598 +02:00 [DBG][TI=13880][accrue-infra] >LOG:1746542734,,/sbin/route add -net 10.10.0.0 10.1.0.33 255.255.0.0
2025-05-06 16:45:34.612 +02:00 [DBG][TI=13902][accrue-infra] >LOG:1746542734,,/sbin/route add -net 192.168.1.128 10.1.0.33 255.255.255.128
2025-05-06 16:45:34.623 +02:00 [DBG][TI=13897][accrue-infra] >LOG:1746542734,,/sbin/route add -net 192.168.1.0 10.1.0.33 255.255.255.128
2025-05-06 16:45:34.637 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542734,I,Initialization Sequence Completed
2025-05-06 16:45:34.643 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542734,,MANAGEMENT: >STATE:1746542734,CONNECTED,SUCCESS,10.1.0.35,52.207.0.130,443,,
2025-05-06 16:45:34.846 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542734,,Data Channel: cipher 'AES-256-GCM', peer-id: 1
2025-05-06 16:45:34.847 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542734,,Timers: ping 1, ping-restart 20
2025-05-06 16:45:34.847 +02:00 [DBG][TI=13899][accrue-infra] >LOG:1746542734,,Protocol options: protocol-flags cc-exit tls-ekm dyn-tls-crypt
2025-05-06 16:47:39.899 +02:00 [DBG][TI=13902][accrue-infra] >LOG:1746542859,D,MANAGEMENT: CMD 'status'
2025-05-06 18:10:50.992 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547850,D,MANAGEMENT: CMD 'echo on'
2025-05-06 18:10:50.997 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547850,D,MANAGEMENT: CMD 'hold off'
2025-05-06 18:10:50.997 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547850,D,MANAGEMENT: CMD 'hold release'
2025-05-06 18:10:51.024 +02:00 [DBG][TI=17][accrue-infra] >LOG:1746547851,D,MANAGEMENT: CMD 'username "Auth" N/A'
2025-05-06 18:10:51.027 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,D,MANAGEMENT: CMD 'password [...]'
2025-05-06 18:10:51.211 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,W,NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2025-05-06 18:10:51.212 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,MANAGEMENT: >STATE:1746547851,RESOLVE,,,,,,
2025-05-06 18:10:51.222 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,I,TCP/UDP: Preserving recently used remote address: [AF_INET]54.243.246.249:443
2025-05-06 18:10:51.222 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,Socket Buffers: R=[786896->786896] S=[9216->9216]
2025-05-06 18:10:51.223 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,I,UDPv4 link local: (not bound)
2025-05-06 18:10:51.223 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,I,UDPv4 link remote: [AF_INET]54.243.246.249:443
2025-05-06 18:10:51.223 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,MANAGEMENT: >STATE:1746547851,WAIT,,,,,,
2025-05-06 18:10:51.319 +02:00 [DBG][TI=17][accrue-infra] >LOG:1746547851,,MANAGEMENT: >STATE:1746547851,AUTH,,,,,,
2025-05-06 18:10:51.320 +02:00 [DBG][TI=17][accrue-infra] >LOG:1746547851,,TLS: Initial packet from [AF_INET]54.243.246.249:443, sid=d085757f 3042c0a1
2025-05-06 18:10:51.456 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY OK: depth=3, C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Services Root Certificate Authority - G2
2025-05-06 18:10:51.457 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY OK: depth=2, C=US, O=Amazon, CN=Amazon Root CA 1
2025-05-06 18:10:51.459 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY OK: depth=1, C=US, O=Amazon, CN=Amazon RSA 2048 M02
2025-05-06 18:10:51.459 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY KU OK
2025-05-06 18:10:51.460 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,Validating certificate extended key usage
2025-05-06 18:10:51.462 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2025-05-06 18:10:51.462 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY EKU OK
2025-05-06 18:10:51.463 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547851,,VERIFY OK: depth=0, CN=vpn-v2-global.accruesavings.com
2025-05-06 18:10:51.566 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547851,,Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bits RSA, signature: RSA-SHA256, peer temporary key: 384 bits ECsecp384r1
2025-05-06 18:10:51.568 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547851,I,[vpn-v2-global.accruesavings.com] Peer Connection Initiated with [AF_INET]54.243.246.249:443
2025-05-06 18:10:51.571 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547851,,TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2025-05-06 18:10:51.572 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547851,,TLS: tls_multi_process: initial untrusted session promoted to trusted
2025-05-06 18:10:51.721 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,AUTH: Received control message: AUTH_FAILED,CRV1:R:instance-1/7501365901750029203/454011c0-5850-43cc-a264-4f0d5c7c5f31:b'Ti9B':https://portal.sso.us-east-1.amazonaws.com/saml/assertion/NTI4Mzg2ODc1MDMzX2lucy1hZWRlMWMxNGU2Y2E3OTEx?SAMLRequest=fZJPc5swEMXv%2FhQMd0AiMQka2zM0pK1ngu2xSdPm0hFiHTMjJKoVseNPH%2F60aXNoEKfV%2Ft6%2Bt6MZ8lo2LGntQW3hVwtoJ45zqqVCNlzN3dYopjlWyBSvAZkVbJdkdyz0CWuMtlpo6b6DPmY4IhhbadVDy3Tu%2FixpDOV1PC3iSyiimIuo3F%2FvozgMS0o4AVFcESIK6IFvYLBj524nNQggtrBUaLmyXZGEU490f5TTiFHCpvSx70q7XJXidiAP1jbIgqDRxnLpI2q%2FRQ84Wo%2F6vOZnrfgRfaHroE8TvBkOVvnyMjs%2FhetU0CzNzt9D2YoXenh82MrsITutvtyHP8Lbi3V%2Be%2BrHbn6v51Olyko9fbyXYmxC9jXPN95mvct7ieTP8ButsK3B7MA8VwLut3djki4IDa980h3KLqaEUHfRcY4z682zYT9m0Q8eo7EjFDhqIBOyAmWfGzUL%2Fu3%2Byzds1RldphstK%2FEy1PvvszY1t%2F%2FPQzsvfaUqvf3QyqDmlUzK0gCi%2B6aTSKmPNwa4hblrTQuuEywmk9HN%2B2e5eAU%3D
2025-05-06 18:10:51.835 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,I,SIGUSR1[soft,auth-failure] received, process restarting
2025-05-06 18:10:51.836 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,MANAGEMENT: >STATE:1746547851,RECONNECTING,auth-failure,,,,,
2025-05-06 18:10:51.837 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547851,,Restart pause, 5 second(s)
2025-05-06 18:10:57.055 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,D,MANAGEMENT: CMD 'username "Auth" N/A'
2025-05-06 18:10:57.060 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547857,D,MANAGEMENT: CMD 'password [...]'
2025-05-06 18:10:57.094 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547857,W,NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2025-05-06 18:10:57.095 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,I,TCP/UDP: Preserving recently used remote address: [AF_INET]54.243.246.249:443
2025-05-06 18:10:57.095 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,,Socket Buffers: R=[786896->786896] S=[9216->9216]
2025-05-06 18:10:57.095 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,I,UDPv4 link local: (not bound)
2025-05-06 18:10:57.095 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,I,UDPv4 link remote: [AF_INET]54.243.246.249:443
2025-05-06 18:10:57.096 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,,MANAGEMENT: >STATE:1746547857,WAIT,,,,,,
2025-05-06 18:10:57.189 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547857,,MANAGEMENT: >STATE:1746547857,AUTH,,,,,,
2025-05-06 18:10:57.193 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547857,,TLS: Initial packet from [AF_INET]54.243.246.249:443, sid=e3077780 8dc5d986
2025-05-06 18:10:57.320 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547857,,VERIFY OK: depth=3, C=US, ST=Arizona, L=Scottsdale, O=Starfield Technologies, Inc., CN=Starfield Services Root Certificate Authority - G2
2025-05-06 18:10:57.322 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,,VERIFY OK: depth=2, C=US, O=Amazon, CN=Amazon Root CA 1
2025-05-06 18:10:57.323 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,VERIFY OK: depth=1, C=US, O=Amazon, CN=Amazon RSA 2048 M02
2025-05-06 18:10:57.324 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,VERIFY KU OK
2025-05-06 18:10:57.324 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,Validating certificate extended key usage
2025-05-06 18:10:57.326 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2025-05-06 18:10:57.326 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,VERIFY EKU OK
2025-05-06 18:10:57.327 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,,VERIFY OK: depth=0, CN=vpn-v2-global.accruesavings.com
2025-05-06 18:10:57.565 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547857,,Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bits RSA, signature: RSA-SHA256, peer temporary key: 384 bits ECsecp384r1
2025-05-06 18:10:57.568 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547857,I,[vpn-v2-global.accruesavings.com] Peer Connection Initiated with [AF_INET]54.243.246.249:443
2025-05-06 18:10:57.569 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,,TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2025-05-06 18:10:57.570 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547857,,TLS: tls_multi_process: initial untrusted session promoted to trusted
2025-05-06 18:10:57.768 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547857,,PUSH: Received control message: 'PUSH_REPLY,route 52.71.158.163 255.255.255.255,route 10.20.0.0 255.255.0.0,route 10.50.0.0 255.255.0.0,route 10.40.0.0 255.255.0.0,route 10.10.0.0 255.255.0.0,route-gateway 10.1.2.129,topology subnet,ping 1,ping-restart 20,echo,echo,echo,ifconfig 10.1.2.133 255.255.255.224,peer-id 1,cipher AES-256-GCM,protocol-flags cc-exit tls-ekm dyn-tls-crypt,tun-mtu 1500'
2025-05-06 18:10:57.813 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,OPTIONS IMPORT: --ifconfig/up options modified
2025-05-06 18:10:57.814 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,OPTIONS IMPORT: route options modified
2025-05-06 18:10:57.814 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,OPTIONS IMPORT: route-related options modified
2025-05-06 18:10:57.814 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,OPTIONS IMPORT: tun-mtu set to 1500
2025-05-06 18:10:57.815 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,ROUTE_GATEWAY 192.168.2.1/255.255.255.0 IFACE=en0 HWADDR=b2:c4:97:97:3b:42
2025-05-06 18:10:57.816 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,I,Opened utun device utun8
2025-05-06 18:10:57.817 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,,MANAGEMENT: >STATE:1746547857,ASSIGN_IP,,10.1.2.133,,,,
2025-05-06 18:10:57.818 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547857,I,/sbin/ifconfig utun8 delete
2025-05-06 18:10:57.821 +02:00 [DBG][TI=8][accrue-infra] >LOG:1746547857,I,NOTE: Tried to delete pre-existing tun/tap instance -- No Problem if failure
2025-05-06 18:10:57.825 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547857,I,/sbin/ifconfig utun8 10.1.2.133 10.1.2.133 netmask 255.255.255.224 mtu 1500 up
2025-05-06 18:10:57.838 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547857,,/sbin/route add -net 10.1.2.128 10.1.2.133 255.255.255.224
2025-05-06 18:10:57.852 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547857,I,/Applications/AWS VPN Client/AWS VPN Client.app/Contents/Resources/openvpn/client.up utun8 1500 0 10.1.2.133 255.255.255.224 init
2025-05-06 18:11:00.593 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547860,,MANAGEMENT: >STATE:1746547860,ADD_ROUTES,,,,,,
2025-05-06 18:11:00.597 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547860,,/sbin/route add -net 52.71.158.163 10.1.2.129 255.255.255.255
2025-05-06 18:11:00.607 +02:00 [DBG][TI=18][accrue-infra] >LOG:1746547860,,/sbin/route add -net 10.20.0.0 10.1.2.129 255.255.0.0
2025-05-06 18:11:00.621 +02:00 [DBG][TI=13][accrue-infra] >LOG:1746547860,,/sbin/route add -net 10.50.0.0 10.1.2.129 255.255.0.0
2025-05-06 18:11:00.634 +02:00 [DBG][TI=5][accrue-infra] >LOG:1746547860,,/sbin/route add -net 10.40.0.0 10.1.2.129 255.255.0.0
2025-05-06 18:11:00.649 +02:00 [DBG][TI=19][accrue-infra] >LOG:1746547860,,/sbin/route add -net 10.10.0.0 10.1.2.129 255.255.0.0
2025-05-06 18:11:00.663 +02:00 [DBG][TI=17][accrue-infra] >LOG:1746547860,I,Initialization Sequence Completed
2025-05-06 18:11:00.674 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547860,,MANAGEMENT: >STATE:1746547860,CONNECTED,SUCCESS,10.1.2.133,54.243.246.249,443,,
2025-05-06 18:11:00.970 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547860,,Data Channel: cipher 'AES-256-GCM', peer-id: 1
2025-05-06 18:11:00.970 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547860,,Timers: ping 1, ping-restart 20
2025-05-06 18:11:00.971 +02:00 [DBG][TI=14][accrue-infra] >LOG:1746547860,,Protocol options: protocol-flags cc-exit tls-ekm dyn-tls-crypt
2025-05-06 18:25:46.755 +02:00 [DBG][TI=76][accrue-infra] >LOG:1746548746,D,MANAGEMENT: CMD 'status'
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment