gluetun: Bug: Gluetun Failing to Connect to old PIA servers

Gluetun Failing to Connect to old PIA servers

  1. Is this urgent?

    • Yes
    • No
  2. What VPN service provider are you using?

    • PIA
    • Mullvad
    • Windscribe
    • Surfshark
    • Cyberghost
  3. What’s the version of the program?

    Running version latest built on 2020-09-09T22:14:47Z (commit 5b3cbb6)

  4. What are you using to run the container?

    • Docker run
    • Docker Compose
    • Kubernetes
    • Docker stack
    • Docker swarm
    • Podman
    • Other:
  5. Extra information

Logs:

=========================================,
================ Gluetun ================,
=========================================,
==== A mix of OpenVPN, DNS over TLS, ====,
======= Shadowsocks and Tinyproxy =======,
========= all glued up with Go ==========,
=========================================,
=========== For tunneling to ============,
======== your favorite VPN server =======,
=========================================,
=== Made with ❤️  by github.com/qdm12 ====,
=========================================,
,
Running version latest built on 2020-09-09T22:14:47Z (commit 5b3cbb6),
,
📣  Persistent server IP addresses at /gluetun/servers.json, please BIND MOUNT,
,
🔧  Need help? https://github.com/qdm12/gluetun/issues/new,
💻  Email? quentin.mcgaw@gmail.com,
☕  Slack? Join from the Slack button on Github,
💸  Help me? https://github.com/sponsors/qdm12,
2020-09-10T11:52:30.524-0400	INFO	Unbound version: 1.10.1,
2020-09-10T11:52:30.545-0400	INFO	IPtables version: v1.8.4,
2020-09-10T11:52:30.654-0400	INFO	TinyProxy version: 1.10.0,
2020-09-10T11:52:30.693-0400	INFO	OpenVPN version: 2.4.9,
2020-09-10T11:52:30.694-0400	INFO	Settings summary below:,
OpenVPN settings:,
|--User: [redacted],
|--Password: [redacted],
|--Verbosity level: 1,
|--Run as root: no,
|--Private Internet Access Old settings:,
 |--Network protocol: udp,
 |--Region: ca montreal,
 |--Encryption preset: strong,
 |--Port forwarding: on, saved in /tmp/gluetun/forwarded_port,
System settings:,
|--User ID: 1000,
|--Group ID: 1000,
|--Timezone: XXXXXXXXXXXXX,
|--IP Status filepath: /tmp/gluetun/ip,
DNS over TLS settings:,
 |--DNS over TLS provider:,
  |--cloudflare,
 |--Caching: enabled,
 |--Block malicious: enabled,
 |--Block surveillance: disabled,
 |--Block ads: disabled,
 |--Allowed hostnames:,
  |--,
 |--Private addresses:,
  |--127.0.0.1/8,
  |--10.0.0.0/8,
  |--172.16.0.0/12,
  |--192.168.0.0/16,
  |--169.254.0.0/16,
  |--::1/128,
  |--fc00::/7,
  |--fe80::/10,
  |--::ffff:0:0/96,
 |--Verbosity level: 1/5,
 |--Verbosity details level: 0/4,
 |--Validation log level: 0/2,
 |--IPv6 resolution: disabled,
 |--Update: every 24h0m0s,
 |--Keep nameserver (disabled blocking): no,
Firewall settings:,
 |--Allowed subnets: 192.168.29.0/24,
 |--VPN input ports: ,
TinyProxy settings: disabled,
ShadowSocks settings: disabled,
Public IP check period: 12h0m0s,
Version information: enabled,
,
2020-09-10T11:52:30.704-0400	INFO	storage: Merging by most recent 6355 hardcoded servers and 0 servers read from /gluetun/servers.json,
2020-09-10T11:52:30.864-0400	INFO	routing: default route found: interface eth0, gateway 192.168.170.1,
2020-09-10T11:52:30.864-0400	INFO	routing: local subnet found: 192.168.170.0/24,
2020-09-10T11:52:30.864-0400	INFO	openvpn configurator: checking for device /dev/net/tun,
2020-09-10T11:52:30.864-0400	WARN	TUN device is not available: open /dev/net/tun: no such file or directory,
2020-09-10T11:52:30.865-0400	INFO	openvpn configurator: creating /dev/net/tun,
2020-09-10T11:52:30.865-0400	INFO	firewall: enabling...,
2020-09-10T11:52:30.928-0400	INFO	firewall: enabled successfully,
2020-09-10T11:52:30.929-0400	INFO	firewall: setting allowed subnets through firewall...,
2020-09-10T11:52:30.940-0400	INFO	routing: adding 192.168.29.0/24 as route via 192.168.170.1 eth0,
2020-09-10T11:52:30.956-0400	INFO	Launching standard output merger,
2020-09-10T11:52:30.958-0400	INFO	dns over tls: falling back on plaintext DNS at address 1.1.1.1,
2020-09-10T11:52:30.958-0400	INFO	dns configurator: using DNS address 1.1.1.1 internally,
2020-09-10T11:52:30.958-0400	INFO	dns configurator: using DNS address 1.1.1.1 system wide,
2020-09-10T11:52:30.961-0400	INFO	http server: listening on 0.0.0.0:8000,
2020-09-10T11:52:30.963-0400	INFO	firewall: setting VPN connections through firewall...,
2020-09-10T11:52:30.971-0400	INFO	openvpn configurator: starting openvpn,
2020-09-10T11:52:30.979-0400	INFO	openvpn: OpenVPN 2.4.9 armv7-alpine-linux-musleabihf [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD] built on Apr 20 2020,
2020-09-10T11:52:30.979-0400	INFO	openvpn: library versions: OpenSSL 1.1.1g  21 Apr 2020, LZO 2.10,
2020-09-10T11:52:30.997-0400	INFO	openvpn: CRL: loaded 1 CRLs from file [[INLINE]],
2020-09-10T11:52:30.997-0400	INFO	openvpn: TCP/UDP: Preserving recently used remote address: [AF_INET]199.229.249.159:1197,
2020-09-10T11:52:30.998-0400	INFO	openvpn: UDP link local: (not bound),
2020-09-10T11:52:30.998-0400	INFO	openvpn: UDP link remote: [AF_INET]199.229.249.159:1197,
2020-09-10T11:53:30.182-0400	INFO	openvpn: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity),
2020-09-10T11:53:30.182-0400	INFO	openvpn: TLS Error: TLS handshake failed,
2020-09-10T11:53:30.183-0400	INFO	openvpn: SIGUSR1[soft,tls-error] received, process restarting,
2020-09-10T11:53:40.184-0400	INFO	openvpn: TCP/UDP: Preserving recently used remote address: [AF_INET]199.229.249.159:1197,
2020-09-10T11:53:40.184-0400	INFO	openvpn: UDP link local: (not bound),
2020-09-10T11:53:40.185-0400	INFO	openvpn: UDP link remote: [AF_INET]199.229.249.159:1197,
2020-09-10T11:54:40.298-0400	INFO	openvpn: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity),
2020-09-10T11:54:40.298-0400	INFO	openvpn: TLS Error: TLS handshake failed,
2020-09-10T11:54:40.299-0400	INFO	openvpn: SIGUSR1[soft,tls-error] received, process restarting,
2020-09-10T11:54:50.302-0400	INFO	openvpn: TCP/UDP: Preserving recently used remote address: [AF_INET]199.229.249.159:1197,
2020-09-10T11:54:50.302-0400	INFO	openvpn: UDP link local: (not bound),
2020-09-10T11:54:50.302-0400	INFO	openvpn: UDP link remote: [AF_INET]199.229.249.159:1197,
2020-09-10T11:55:51.137-0400	INFO	openvpn: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity),
...

Host OS: Raspbian

The container seems to be able to connect to the new/nextgen PIA servers, but unfortunately port forwarding can’t be done on those servers.

Could it be that the PIA IPs have changed (again)?

I saw that there’s now the ability to manually update the server/IP list, but I couldn’t figure out how to do that.

About this issue

  • Original URL
  • State: closed
  • Created 4 years ago
  • Comments: 16 (6 by maintainers)

Commits related to this issue

Most upvoted comments

Yes latest is still building, see https://github.com/qdm12/gluetun/runs/1099546807?check_suite_focus=true

Cool that it works! That should do then. Ah silly PIA sometimes… I’m also working on auto-updates for server information so you will have the latest IP addresses without depending on me fiddling in there 😉 See #217

For now the IP addresses are extracted from their zip file from https://www.privateinternetaccess.com/openvpn/openvpn-ip.zip I guess PIA didn’t keep their own files updated 😕

I’ll re-use the subdomain names and resolve them to IP addresses as it was before instead. That may take a day or two for me to re-program, I’ll keep you updated. Thanks for your patience.