- Tunnelblick Not Connecting Devices
- Tunnelblick Not Connecting To Computer
- Tunnelblick Not Connecting To Cable
- Tunnelblick Not Working
- Tunnelblick Not Connecting Computer
Mar 18, 2019 If OpenVPN is connected to the server but your IP address does not change. If you have a check in the 'Check if the apparent public IP address changed after connecting' checkbox on the 'Settings' tab of Tunnelblick's 'VPN Details' window, and your IP address doesn't change after connecting, a window will pop up to notify you.
- The following troubleshooting information was tested on version 3.7.8 (build 5180) of the Tunnelblick software on macOS High Sierra 10.13.6. The configuration file for private configurations is stored in the following location on your computer.
- May 15, 2020 This repeats endlessly. Do not share the same client config with multiple machines. I'm setting up a new client and can't connect. Make sure that the IP that the client is connecting to is the public IP of the server, or that the traffic to that IP on port 1194 is being forwarded to your server. Also make sure you are testing from the outside.
- Tunnelblick will connect your Mac to InvizBox VPN. Hover over the Tunnelblick icon in your menu bar to see the VPN connection status. If you have connected to a VPN server using Tunnelblick but are not able to access the internet have a look at the Tunnelblick trouble shooting guide here.
2013-06-28 16:58:45 *Tunnelblick: OS X 10.5.8; Tunnelblick 3.2.8 (build 2891.3099)
2013-06-28 16:58:45 *Tunnelblick: Attempting connection with losangeles; Set nameserver = 1; monitoring connection
2013-06-28 16:58:45 *Tunnelblick: /Users/jamesduren/Desktop/Tunnelblick.app/Contents/Resources/openvpnstart start losangeles.ovpn 1337 1 0 0 0 49 -atDASNGWrdasngw
2013-06-28 16:58:45 *Tunnelblick: openvpnstart: /Users/jamesduren/Desktop/Tunnelblick.app/Contents/Resources/openvpn/openvpn-2.2.1/openvpn --cd /Users/jamesduren/Library/Application Support/Tunnelblick/Configurations --daemon --management 127.0.0.1 1337 --config /Users/jamesduren/Library/Application Support/Tunnelblick/Configurations/losangeles.ovpn --log /Library/Application Support/Tunnelblick/Logs/-SUsers-Sjamesduren-SLibrary-SApplication Support-STunnelblick-SConfigurations-Slosangeles.ovpn.1_0_0_0_49.1337.openvpn.log --management-query-passwords --management-hold --script-security 2 --up /Users/jamesduren/Desktop/Tunnelblick.app/Contents/Resources/client.up.tunnelblick.sh -m -w -d -atDASNGWrdasngw --down /Users/jamesduren/Desktop/Tunnelblick.app/Contents/Resources/client.down.tunnelblick.sh -m -w -d -atDASNGWrdasngw --up-restart
2013-06-28 16:58:46 *Tunnelblick: kextload: /Users/jamesduren/Desktop/Tunnelblick.app/Contents/Resources/tun-20090913.kext loaded successfully
2013-06-28 16:58:46 *Tunnelblick: openvpnstart message: Loading tun-20090913.kext
2013-06-28 16:58:46 OpenVPN 2.2.1 i386-apple-darwin10.8.0 [SSL] [LZO2] [PKCS11] [eurephia] built on Aug 10 2012
2013-06-28 16:58:46 MANAGEMENT: TCP Socket listening on 127.0.0.1:1337
2013-06-28 16:58:46 Need hold release from management interface, waiting...
2013-06-28 16:58:48 *Tunnelblick: Established communication with OpenVPN
2013-06-28 16:58:48 *Tunnelblick: Obtained VPN username and password from the Keychain
2013-06-28 16:58:48 MANAGEMENT: Client connected from 127.0.0.1:1337
2013-06-28 16:58:48 MANAGEMENT: CMD 'pid'
2013-06-28 16:58:48 MANAGEMENT: CMD 'state on'
2013-06-28 16:58:48 MANAGEMENT: CMD 'state'
2013-06-28 16:58:48 MANAGEMENT: CMD 'hold release'
2013-06-28 16:58:48 MANAGEMENT: CMD 'username 'Auth' '14933'
2013-06-28 16:58:48 MANAGEMENT: CMD 'password [...]'
2013-06-28 16:58:48 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:58:48 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:58:48 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:58:48 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:58:48 LZO compression initialized
2013-06-28 16:58:48 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:58:48 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:58:48 MANAGEMENT: >STATE:1372431528,RESOLVE,
2013-06-28 16:58:55 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:58:55 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:58:55 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:58:55 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:58:55 MANAGEMENT: >STATE:1372431535,TCP_CONNECT,
2013-06-28 16:58:56 TCP connection established with 184.170.244.93:443
2013-06-28 16:58:56 TCPv4_CLIENT link local: [undef]
2013-06-28 16:58:56 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:58:56 MANAGEMENT: >STATE:1372431536,WAIT,
2013-06-28 16:58:57 Connection reset, restarting [0]
2013-06-28 16:58:57 TCP/UDP: Closing socket
2013-06-28 16:58:57 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:58:57 MANAGEMENT: >STATE:1372431537,RECONNECTING,connection-reset,
2013-06-28 16:58:57 MANAGEMENT: CMD 'hold release'
2013-06-28 16:58:57 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:58:57 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:58:57 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Tunnelblick Not Connecting Devices
2013-06-28 16:58:57 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:58:57 LZO compression initialized
2013-06-28 16:58:57 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:58:57 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:58:57 MANAGEMENT: >STATE:1372431537,RESOLVE,
2013-06-28 16:58:57 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:58:57 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:58:57 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:58:57 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:58:57 MANAGEMENT: >STATE:1372431537,TCP_CONNECT,
2013-06-28 16:58:58 TCP connection established with 184.170.244.93:443
2013-06-28 16:58:58 TCPv4_CLIENT link local: [undef]
2013-06-28 16:58:58 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:58:58 MANAGEMENT: >STATE:1372431538,WAIT,
2013-06-28 16:58:58 Connection reset, restarting [0]
2013-06-28 16:58:58 TCP/UDP: Closing socket
2013-06-28 16:58:58 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:58:58 MANAGEMENT: >STATE:1372431538,RECONNECTING,connection-reset,
2013-06-28 16:58:58 MANAGEMENT: CMD 'hold release'
2013-06-28 16:58:58 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:58:58 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:58:58 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:58:58 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:58:58 LZO compression initialized
2013-06-28 16:58:58 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:58:58 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:58:58 MANAGEMENT: >STATE:1372431538,RESOLVE,
2013-06-28 16:58:58 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:58:58 Local Options hash (VER=V4): 'ee93268d'
 2013-06-28 16:58:58 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:58:58 Expected Remote Options hash (VER=V4): 'bd577cd1'2013-06-28 16:58:58 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:58:58 MANAGEMENT: >STATE:1372431538,TCP_CONNECT,
2013-06-28 16:58:59 TCP connection established with 184.170.244.93:443
2013-06-28 16:58:59 TCPv4_CLIENT link local: [undef]
2013-06-28 16:58:59 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:58:59 MANAGEMENT: >STATE:1372431539,WAIT,
2013-06-28 16:58:59 Connection reset, restarting [0]
2013-06-28 16:58:59 TCP/UDP: Closing socket
2013-06-28 16:58:59 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:58:59 MANAGEMENT: >STATE:1372431539,RECONNECTING,connection-reset,
2013-06-28 16:59:00 MANAGEMENT: CMD 'hold release'
2013-06-28 16:59:00 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:59:00 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:59:00 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:00 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:00 LZO compression initialized
2013-06-28 16:59:00 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:59:00 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:59:00 MANAGEMENT: >STATE:1372431540,RESOLVE,
2013-06-28 16:59:00 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:59:00 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:59:00 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:59:00 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:59:00 MANAGEMENT: >STATE:1372431540,TCP_CONNECT,
2013-06-28 16:59:01 TCP connection established with 184.170.244.93:443
2013-06-28 16:59:01 TCPv4_CLIENT link local: [undef]
2013-06-28 16:59:01 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:59:01 MANAGEMENT: >STATE:1372431541,WAIT,
2013-06-28 16:59:01 Connection reset, restarting [0]
2013-06-28 16:59:01 TCP/UDP: Closing socket
2013-06-28 16:59:01 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:59:01 MANAGEMENT: >STATE:1372431541,RECONNECTING,connection-reset,
2013-06-28 16:59:03 MANAGEMENT: CMD 'hold release'
2013-06-28 16:59:03 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:59:03 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:59:03 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:03 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:03 LZO compression initialized
2013-06-28 16:59:03 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:59:03 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:59:03 MANAGEMENT: >STATE:1372431543,RESOLVE,
2013-06-28 16:59:03 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:59:03 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:59:03 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:59:03 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:59:03 MANAGEMENT: >STATE:1372431543,TCP_CONNECT,
2013-06-28 16:59:04 TCP connection established with 184.170.244.93:443
2013-06-28 16:59:04 TCPv4_CLIENT link local: [undef]
2013-06-28 16:59:04 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:59:04 MANAGEMENT: >STATE:1372431544,WAIT,
2013-06-28 16:59:04 Connection reset, restarting [0]
2013-06-28 16:59:04 TCP/UDP: Closing socket
2013-06-28 16:59:04 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:59:04 MANAGEMENT: >STATE:1372431544,RECONNECTING,connection-reset,
2013-06-28 16:59:04 MANAGEMENT: CMD 'hold release'
2013-06-28 16:59:04 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
2013-06-28 16:59:04 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:59:04 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:04 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:04 LZO compression initialized
2013-06-28 16:59:04 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:59:04 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:59:04 MANAGEMENT: >STATE:1372431544,RESOLVE,
2013-06-28 16:59:04 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:59:04 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:59:04 Expected Remote Options hash (VER=V4): 'bd577cd1'
 2013-06-28 16:59:04 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:59:04 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]Tunnelblick Not Connecting To Computer
2013-06-28 16:59:04 MANAGEMENT: >STATE:1372431544,TCP_CONNECT,2013-06-28 16:59:05 TCP connection established with 184.170.244.93:443
2013-06-28 16:59:05 TCPv4_CLIENT link local: [undef]
2013-06-28 16:59:05 TCPv4_CLIENT link remote: 184.170.244.93:443
2013-06-28 16:59:05 MANAGEMENT: >STATE:1372431545,WAIT,
Tunnelblick Not Connecting To Cable
2013-06-28 16:59:06 Connection reset, restarting [0]
2013-06-28 16:59:06 TCP/UDP: Closing socket
2013-06-28 16:59:06 SIGUSR1[soft,connection-reset] received, process restarting
2013-06-28 16:59:06 MANAGEMENT: >STATE:1372431546,RECONNECTING,connection-reset,
Tunnelblick Not Working
2013-06-28 16:59:06 MANAGEMENT: CMD 'hold release'
2013-06-28 16:59:06 NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
 2013-06-28 16:59:06 Control Channel Authentication: tls-auth using INLINE static key file
2013-06-28 16:59:06 Control Channel Authentication: tls-auth using INLINE static key fileTunnelblick Not Connecting Computer
2013-06-28 16:59:06 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication

2013-06-28 16:59:06 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
2013-06-28 16:59:06 LZO compression initialized
2013-06-28 16:59:06 Control Channel MTU parms [ L:1544 D:168 EF:68 EB:0 ET:0 EL:0 ]
2013-06-28 16:59:06 Socket Buffers: R=[65536->100000] S=[65536->100000]
2013-06-28 16:59:06 MANAGEMENT: >STATE:1372431546,RESOLVE,
2013-06-28 16:59:06 Data Channel MTU parms [ L:1544 D:1450 EF:44 EB:135 ET:0 EL:0 AF:3/1 ]
2013-06-28 16:59:06 Local Options hash (VER=V4): 'ee93268d'
2013-06-28 16:59:06 Expected Remote Options hash (VER=V4): 'bd577cd1'
2013-06-28 16:59:06 Attempting to establish TCP connection with 184.170.244.93:443 [nonblock]
2013-06-28 16:59:06 MANAGEMENT: >STATE:1372431546,TCP_CONNECT,
| Highlighted Articles Discussion Group | On This Page Starting TunnelblickTo launch Tunnelblick, double-click Tunnelblick in the Applications folder. Tunnelblick will automatically be launched the next time you log in if you do not quit Tunnelblick before you log out, shut down, or restart your computer. Tunnelblick requires few computer resources when no VPN is connected, so most people leave it running all the time. Quitting TunnelblickTo quit Tunnelblick, click on the Tunnelblick icon in the menu bar at the top of your screen, then click 'Quit Tunnelblick'. You can also type quit Tunnelblick by typing Command-Q when a Tunnelblick window is at the front of the display. 
 Automatically Starting Tunnelblick Upon LoginTunnelblick is a menu bar item, not an application. If Tunnelblick is running when you log out, shut down, or restart your computer, Tunnelblick will automatically launch the next time you log in. If you do not want Tunnelblick to launch automatically the next time you log in, quit Tunnelblick before you log out, shut down, or restart. Tunnelblick will also be launched automatically if any VPNs are active when you log in. (Don't confuse the automatic launch of Tunnelblick upon login with the 'automatically connect on launch” option, which causes a connection to be established whenever Tunnelblick is launched.) Normal Tunnelblick OperationOnce Tunnelblick has been launched, you control it from the Tunnelblick icon in the menu bar at the top of your screen. The Tunnelblick icon is usually placed near the Spotlight icon. When no VPN connection is active, the icon is dim: When a VPN is connected, the icon is dark: If you click on the icon, you'll see a drop down menu similar to the following: There will be a 'Connect” menu item for each available VPN configuration; configurations in subfolders appear on submenus. Click on a 'Connect' item to establish the corresponding VPN connection. While the connection is being established, a dash will appear in the menu item and the Tunnelblick icon will darken and lighten repeatedly. Depending on your setup, you may be asked for a passphrase and/or username/password. You can save your passphrase, username, or password in Apple's Keychain by checking the appropriate checkbox. The connection will be active until you disconnect it or log out. Putting your computer to sleep will close the connection; when the computer wakes up Tunnelblick will attempt to reestablish the connection. (This behavior may be modified using Tunnelblick's 'Advanced' settings window.) Use 'Disconnect” from the drop-down menu to close the VPN connection. Use 'Quit” to close all open connections and quit the program and prevent Tunnelblick from starting itself at your next login at your computer. Note: Tunnelblick will not automatically disconnect a configuration that is set up to automatically connect 'when the computer starts'. The connection will remain open until your computer shuts down or you specifically disconnect it. The 'VPN Details' WindowWhen the Tunnelblick menu is displayed, if you click on 'VPN Details” a window similar to the following will appear: This window has five panels: Configurations, Appearance, Preferences, Utilities, and Info. Select a panel by clicking on its button in the toolbar at the top of the window. The 'Configurations' panel is shown above. ConfigurationsThe Configurations panel has an entry for each configuration on the left side. Tabs with the log and settings for the configuration selected on the left side are displayed on the right side. You may adjust the relative sizes of the left and right side by dragging the small dot between the two sides. Note: The username and password of a computer administrator are required for most changes to configurations. At the bottom of the list of configurations on the left side of the window there are three small buttons: 
 'Connect' and 'Disconnect' buttons connect or disconnect the configuration selected on the left side of the window. Another button allows you to copy diagnostic info to the Clipboard so you may paste it into an email or other document to get help troubleshooting a problem, and a help button displays detailed help. The 'Log' tab (shown above) displays the log for the configuration. The 'Settings' tab (shown above) allows you to see and modify several settings for the configuration 'Connect” specifies when the configuration should be connected: 
 'Set DNS/WINS' specifies how to handle DNS and WINS settings when the VPN is active: 
 'Monitor network settings' causes network settings to be monitored for changes. It is available only when 'Set nameserver' or 'Set nameserver 3.1' is selected. When a change is detected, the connection will be disconnected and reconnected. Other actions and actions for changes to specific network settings can be specified on the 'While Connected' tab of the 'Advanced' settings window. 'Route all IPv4 traffic through the VPN' causes Tunnelblick to start OpenVPN with the '--redirect-gateway def1' option. 'Disable IPv6 (tun only)' disables IPv6 on all network interfaces while the configuration is connected. 'Check if the apparent public IP address changed after connecting' checks the IP address before and after connecting. This can be used to detect some DNS problems. 'Reset the primary interface after disconnecting' will restore network connectivity after disconnecting from some configurations which are badly written. Additional settings may be examined and modified by clicking the 'Advanced' button. AppearanceThe 'Appearance' panel of the 'VPN Details' window allows you to modify Tunnelblick's appearance: PreferencesThe 'Preferences' panel of the 'VPN Details' window allows you to modify Tunnelblick's behavior, check for updates, and reset disabled warnings: UtilitiesThe 'Utilities' panel of the 'VPN Details' window has buttons to perform several tasks related to Tunnelblick or OpenVPN: InfoThe 'Info' panel of the 'VPN Details' window displays information about the Tunnelblick program and the people who have contributed to it: (Note: the credits scroll to reveal additional contributors; not all contributors are displayed in the above screenshot.) Keyboard ShortcutsYou may use the standard keyboard shortcuts in the 'VPN Details' window: 
 Using More than One VPN ConfigurationYou can have any number of configurations installed; each of the configurations will be available in the drop down menu and in the 'Details” window. Connecting to More than One VPN SimultaneouslyTunnelblick can maintain multiple simultaneous open connections to different VPNs. However, this is for experts only: 
 Command-Line InterfaceTunnelblick has support for AppleScript, allowing you to list configurations and connect or disconnect them via AppleScript or the command line. | 
