Jump to content
binhex

[Support] binhex - DelugeVPN

6101 posts in this topic Last Reply

Recommended Posts

I am having a bit of annoying problem which only affects torrents. For some reason they are not moving to final destination, I thought I had everything configured correctly but currently I have to move the files manually.

Using Sonarr and Radarr, Sabnzbd moves the movies and TV shows correctly and plex updates but if its a torrent it doesn't move.


Not got access to server at moment but it is something like this:
/mnt/user/share/data/movies/completed
/mnt/user/share/data/tv/completed

Using labels plugin and set destination to above.

Should move to
/mnt/user/share/Movies
/mnt/user/share/Videos/TV Shows

Il try get the exact details later.

Sent from my SM-G930F using Tapatalk

Share this post


Link to post
On 4/15/2019 at 8:21 AM, fdsafbeaner2ß19-04-15 00:1 said:

i am having issues getting the deluge VPN working in a docker container on my updated synology NAS.

 

here is the log file?

 

you have:-

STRICT_PORT_FORWARD defined as 'yes'

but:-

us-west.privateinternetaccess.com

 

is not a endpoint that supports port forwarding, see your supervisord.log file for a list of endpoints that support port forwarding.

Edited by binhex

Share this post


Link to post

Hi - I have a bit of a curly problem - apologies if it's been solved here before, I have searched and searched but have failed.

 

I have a tracker that I connect to with binhex-delugevpn (and it's great!) - but this particular tracker only allows 4 IP addresses to connect, and changing IP requires a login from that IP over HTTPS (sigh), which I can do with Lynx from inside the binhex-delugevpn shell (after installing lynx). PIA allows for port forwarding from a set of their servers, but unfortunatley they have 84 servers behind the DNS name for X.privateinternetaccess.com (where X is the port-forwarding enabled server(s)). When I restart the deluge container, I get a new IP - which breaks my tracker - not ideal!


I have changed the .ovpn file I use so that "remote" points to a particular IP, rather than a DNS name, but this throws up errors in the supervisord.log file (saying I'm not using a recognised port-forwarding server). I then added a static entry in the deluge container's /etc/hosts file, pointing X.privateinternetaccess.com to a specific IP, which my tracker would accept - however this seems not to be as static as I had hoped - arch seems to overwrite the IP with one that it resolves when the container restarts.

 

Is there a nice way to keep using the port-forwarding PIA server, but only a specific IP?

 

Thanks

 

 

 

 

Share this post


Link to post
7 minutes ago, jmbrnt said:

but this throws up errors in the supervisord.log file (saying I'm not using a recognised port-forwarding server).

i think you will find this is a warning, and it will carry on and attempt to get a incoming port regardless.

Share this post


Link to post
5 minutes ago, binhex said:

i think you will find this is a warning, and it will carry on and attempt to get a incoming port regardless.

OK cool - I was still having troubles with the tracker saying the port was actually open in that mode so I wasn't sure.

 

With that out of the way - your container *should* just do the rest for me, right? 😉

 

Thanks again!

Share this post


Link to post
1 minute ago, jmbrnt said:

OK cool - I was still having troubles with the tracker saying the port was actually open in that mode so I wasn't sure.

 

With that out of the way - your container *should* just do the rest for me, right? 😉

 

Thanks again!

yep, as long as that particular ip address DOES support port forwarding then it should work.

Share this post


Link to post
50 minutes ago, binhex said:

yep, as long as that particular ip address DOES support port forwarding then it should work.

Magic, and just like that the problem seems to be (slowly) resolving on the tracker. Thanks for the support, I'm making a donation :)

Share this post


Link to post

Edit: Narrowed down the issue. For some reason, the error below only happens when running the container on the docker swarm overlay network. When I run it on a docker bridge network, things are fine now. I only wish more containers supported swarm properly. =(

 

I hate to keep asking the same question. But this "write UDP: Operation not permitted (code=1)" error keeps coming back again. I was able to resolve it last time (maybe by luck) by flushing my IPtables on my Ubuntu 18.04 server. It worked for about a week and without me doing much other than maybe turning the containers off and on, it suddenly stopped working again with that error.

 

This time I tried to flush the IPtables, reboot my router, but still no go. I installed a pia-openvpn docker container on the same server as delugevpn to test if it may be a server config issue. But with this other pia-openvpn container, it was able to connect to PIA without this UDP write error using the same credentials. Unfortunately there's nothing more in the log to help me test other ways to figure out the problem. Any thoughts from the experts here? What does that error code really mean?

Edited by emteedubs
Problem identified.

Share this post


Link to post

Having the issue where Deluge will not load the WebUi portal if VPN is set to 'yes'. Odd thing is no errors in logs (says WebUi started) and it was working for several days without any changes just stopped. If the VPN is set to 'no' the page loads immediately. I have tested setting to force port forwarding and appropriate forwarding server but same issue, was previously not using port forwarding and speed was fine.

 

#probably worth noting that I went to Deluge as Qbittorrent stopped the same way after working for months. Deluge is soo much better but why the random stop I'm not sure

 

 

Update:

Somehow the subnet was change, no idea how but once I noticed and correct working as expected.

Edited by ados
Wanted to add some extra

Share this post


Link to post

So I switched from QBT cause I couldn't get it running. Now I can't get this running. Or more specifically, the web UI.

 

Log says auth failed, but I know creds are correct. Using usenetserver.com. 

 

Thanks.

 

2019-04-24 17:27:23,103 DEBG 'start-script' stdout output:
[debug] OpenVPN command line:- /usr/bin/openvpn --daemon --reneg-sec 0 --mute-replay-warnings --auth-nocache --setenv VPN_PROV 'custom' --setenv DEBUG 'true' --setenv VPN_DEVICE_TYPE 'tun0' --setenv VPN_REMOTE 'chi-a27.wlvpn.com' --script-security 2 --writepid /root/openvpn.pid --remap-usr1 SIGHUP --log-append /dev/stdout --pull-filter ignore 'up' --pull-filter ignore 'down' --pull-filter ignore 'route-ipv6' --pull-filter ignore 'ifconfig-ipv6' --pull-filter ignore 'tun-ipv6' --pull-filter ignore 'persist-tun' --pull-filter ignore 'reneg-sec' --remote 209.107.210.29 1194 udp --remote-random --up /root/openvpnup.sh --up-delay --up-restart --keepalive 10 60 --auth-user-pass credentials.conf --cd /config/openvpn --config '/config/openvpn/chi-a27.ovpn'
[info] Starting OpenVPN...

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 WARNING: file 'credentials.conf' is group or others accessible
Wed Apr 24 17:27:23 2019 OpenVPN 2.4.6 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Apr 24 2018
Wed Apr 24 17:27:23 2019 library versions: OpenSSL 1.1.1a  20 Nov 2018, LZO 2.10

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
[info] OpenVPN started

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
[debug] Waiting for valid IP address from tunnel...

2019-04-24 17:27:23,109 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 TCP/UDP: Preserving recently used remote address: [AF_INET]209.107.210.29:1194

2019-04-24 17:27:23,109 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 Socket Buffers: R=[212992->212992] S=[212992->212992]
Wed Apr 24 17:27:23 2019 UDP link local: (not bound)
Wed Apr 24 17:27:23 2019 UDP link remote: [AF_INET]209.107.210.29:1194

2019-04-24 17:27:23,143 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 TLS: Initial packet from [AF_INET]209.107.210.29:1194, sid=683e78dd 97d0f1ce

2019-04-24 17:27:23,176 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 VERIFY OK: depth=1, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=VPN, name=VPN, emailAddress=VPN

2019-04-24 17:27:23,176 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 VERIFY KU OK
Wed Apr 24 17:27:23 2019 Validating certificate extended key usage
Wed Apr 24 17:27:23 2019 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Wed Apr 24 17:27:23 2019 VERIFY EKU OK
Wed Apr 24 17:27:23 2019 VERIFY OK: depth=0, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=vpn, name=VPN

2019-04-24 17:27:24,346 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:24 2019 Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Wed Apr 24 17:27:24 2019 [vpn] Peer Connection Initiated with [AF_INET]209.107.210.29:1194

2019-04-24 17:27:25,470 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:25 2019 SENT CONTROL [vpn]: 'PUSH_REQUEST' (status=1)

2019-04-24 17:27:25,504 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:25 2019 AUTH: Received control message: AUTH_FAILED
Wed Apr 24 17:27:25 2019 SIGTERM[soft,auth-failure] received, process exiting

 

image.thumb.png.db4bd1727436b656e327d6e4c01dc9f0.png

 

 

Share this post


Link to post
1 hour ago, dbinott said:

So I switched from QBT cause I couldn't get it running. Now I can't get this running. Or more specifically, the web UI.

 

Log says auth failed, but I know creds are correct. Using usenetserver.com. 

 

Thanks.

 


2019-04-24 17:27:23,103 DEBG 'start-script' stdout output:
[debug] OpenVPN command line:- /usr/bin/openvpn --daemon --reneg-sec 0 --mute-replay-warnings --auth-nocache --setenv VPN_PROV 'custom' --setenv DEBUG 'true' --setenv VPN_DEVICE_TYPE 'tun0' --setenv VPN_REMOTE 'chi-a27.wlvpn.com' --script-security 2 --writepid /root/openvpn.pid --remap-usr1 SIGHUP --log-append /dev/stdout --pull-filter ignore 'up' --pull-filter ignore 'down' --pull-filter ignore 'route-ipv6' --pull-filter ignore 'ifconfig-ipv6' --pull-filter ignore 'tun-ipv6' --pull-filter ignore 'persist-tun' --pull-filter ignore 'reneg-sec' --remote 209.107.210.29 1194 udp --remote-random --up /root/openvpnup.sh --up-delay --up-restart --keepalive 10 60 --auth-user-pass credentials.conf --cd /config/openvpn --config '/config/openvpn/chi-a27.ovpn'
[info] Starting OpenVPN...

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 WARNING: file 'credentials.conf' is group or others accessible
Wed Apr 24 17:27:23 2019 OpenVPN 2.4.6 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Apr 24 2018
Wed Apr 24 17:27:23 2019 library versions: OpenSSL 1.1.1a  20 Nov 2018, LZO 2.10

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
[info] OpenVPN started

2019-04-24 17:27:23,108 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
[debug] Waiting for valid IP address from tunnel...

2019-04-24 17:27:23,109 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 TCP/UDP: Preserving recently used remote address: [AF_INET]209.107.210.29:1194

2019-04-24 17:27:23,109 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 Socket Buffers: R=[212992->212992] S=[212992->212992]
Wed Apr 24 17:27:23 2019 UDP link local: (not bound)
Wed Apr 24 17:27:23 2019 UDP link remote: [AF_INET]209.107.210.29:1194

2019-04-24 17:27:23,143 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 TLS: Initial packet from [AF_INET]209.107.210.29:1194, sid=683e78dd 97d0f1ce

2019-04-24 17:27:23,176 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 VERIFY OK: depth=1, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=VPN, name=VPN, emailAddress=VPN

2019-04-24 17:27:23,176 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:23 2019 VERIFY KU OK
Wed Apr 24 17:27:23 2019 Validating certificate extended key usage
Wed Apr 24 17:27:23 2019 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Wed Apr 24 17:27:23 2019 VERIFY EKU OK
Wed Apr 24 17:27:23 2019 VERIFY OK: depth=0, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=vpn, name=VPN

2019-04-24 17:27:24,346 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:24 2019 Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Wed Apr 24 17:27:24 2019 [vpn] Peer Connection Initiated with [AF_INET]209.107.210.29:1194

2019-04-24 17:27:25,470 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:25 2019 SENT CONTROL [vpn]: 'PUSH_REQUEST' (status=1)

2019-04-24 17:27:25,504 DEBG 'start-script' stdout output:
Wed Apr 24 17:27:25 2019 AUTH: Received control message: AUTH_FAILED
Wed Apr 24 17:27:25 2019 SIGTERM[soft,auth-failure] received, process exiting

 

image.thumb.png.db4bd1727436b656e327d6e4c01dc9f0.png

 

 

Who is your VPN provider?

Ensure you have their OpenVPN file and certificate in the relevant folder (/mnt/user/appdata/binhex-delugevpn/openvpn/)

Recheck your configuration i.e. passwords, VPN enpoint details

Share this post


Link to post

Share this post


Link to post

Just changed ISP to virgin Media from BT infinity...

 

Speeds seem to be capped at about 7-800KB now, anyone else epxeicned this? Is this a limitation on Virgins part?

 

Using Switzerland as my PIA destination with port forwarding set up, although I can't be sure this is working. Is there a way to confirm the port is indeed open?

 

 

Share this post


Link to post
11 minutes ago, Chamzamzoo said:

Just changed ISP to virgin Media from BT infinity...

 

Speeds seem to be capped at about 7-800KB now, anyone else epxeicned this? Is this a limitation on Virgins part?

 

Using Switzerland as my PIA destination with port forwarding set up, although I can't be sure this is working. Is there a way to confirm the port is indeed open?

 

 

my brother in law dumped virgin media for this reason he got the exact same speeds as you using this image and pia, i believe its not virgin media directly throttling traffic, its more to do with their so called "super" hubs which arent so super, options are put super hub in bridge mode and buy a real router to do the routing, or dump virgin media and go with another isp.

 

edit - worth a shot:- https://community.virginmedia.com/t5/Networking-and-WiFi/VPN-and-Super-Hub-3-fix/td-p/3800103

Edited by binhex

Share this post


Link to post
1 minute ago, binhex said:

my brother in law dumped virgin media for this reason he got the exact same speeds as you using this image and pia, i believe its not virgin media directly throttling traffic, its more to do with their so called "super" hubs which arent so super, options are put super hub in bridge mode and buy a real router to do the routing, or dump virgin media and go with another isp.

I've done the latter - got myself a better router (then built a pfSense box), and run it in modem mode (an old SuperHub was massively unreliable).  Get decent speeds, but worth doing anyway - saves you having to reconfigure everything when your ISP/box changes.

Share this post


Link to post

It was completely crippling the rest of my conneciton when DLing a torrent, speedtest.net wouldn't get a ping to begin the test, testmy.net was reporting 2Mbps.. 

 

I did find this:

https://www.privateinternetaccess.com/archive/forum/discussion/23112/anyone-having-torrent-slowdowns-please-read-this

 

Mushroom's post about Deluge and the ITConfig plugin to unset incoming and outgoing utp has helped the rest of the connection become uncrippled, but the torrents are still slow.

 

I am using the hub in Modem mode... my Velop router is taking care of the rest.. just outside my cooling off period as well.. 

 

1 minute ago, Cessquill said:

I've done the latter - got myself a better router (then built a pfSense box), and run it in modem mode (an old SuperHub was massively unreliable).  Get decent speeds, but worth doing anyway - saves you having to reconfigure everything when your ISP/box changes.

Did you get a new Modem or still using the superhub? I am in Modem mode at the minute and it's not really helping. 

Share this post


Link to post

im also a pfsense box convert, yes it cost me a LOT more (£280) than a commercial grade router BUT its significantly better in every way, you do get what you pay for.

 

To be clear im not a VM customer, im with a small ISP that lets me run any hardware i want.

Edited by binhex

Share this post


Link to post
4 minutes ago, Chamzamzoo said:

Did you get a new Modem or still using the superhub? I am in Modem mode at the minute and it's not really helping. 

Just the Superhub.  I'm in a town where CityFibre are currently laying Vodafone FTTP, so I'm in the queue there.

 

Oddly enough, I was looking at speedtest last night - sometimes couldn't connect at all, sometimes slow, sometimes great.  Trying to work out whether I'd got the latest 35 meg upload speed increase (I have).  I don't know much about Virgin's infrastructure (or networks in general), but Speedtest seemed to work better if speedtest connected to a Virgin server...

 

Fast.com seemed to get reliable results though.  I'll have a look at your findings later - thanks for sharing

Share this post


Link to post

I seem to have absolutley terrible performance with PIA in Sweden/Switzerland. Rubbish compared to NordVPN for downloads, and despite ports being forwarded correctly (as reported by the tracker) - still just crap upload too. Miserable would describe it :)

 

FWIW I used a Virgin Superhub 3 as a passthrough device (PPPoE) to a Mikrotik router that cost about £100 and it absolutely flew, line rate on anything I liked, as long as I wasn't using PIA (obviously their infrastructure comes into play there).

Edited by jmbrnt

Share this post


Link to post

did you have more success with a different country, or just move to Nord?

 

Have you managed to configure Binhex Deluge with Nord? that's my next thing to try.

 

Share this post


Link to post
3 minutes ago, Chamzamzoo said:

did you have more success with a different country, or just move to Nord?

 

Have you managed to configure Binhex Deluge with Nord? that's my next thing to try.

 

I have to say Sweden seems better than Switzerland, but my uploads are still messed up and my ratios are all taking a major hit compared to "no vpn". NORD was simple to set up, but as it doesn't support port forwarding at all you might find it not so great for uploads. Downloads however, fine.

 

I have used both but honestly I think PIA was a waste of money and I'll just risk it with no VPN :D

Share this post


Link to post
13 minutes ago, jmbrnt said:

I seem to have absolutley terrible performance with PIA in Sweden/Switzerland. Rubbish compared to NordVPN for downloads, and despite ports being forwarded correctly (as reported by the tracker) - still just crap upload too. Miserable would describe it :)

 

FWIW I used a Virgin Superhub 3 as a passthrough device (PPPoE) to a Mikrotik router that cost about £100 and it absolutely flew, line rate on anything I liked, as long as I wasn't using PIA (obviously their infrastructure comes into play there).

 

See I was fine the PIA on BT infinity, practically full linespeed for torrents. 

 

Only thing I've changed is moved to virgin media and now it sucks. Limited to ~900KB tops. 

 

Tried all the above, router is in modem mode..  don't really know if there's anything else to be done other than ditch VM.

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.