问题描述
最近公司安全升级原来通过frp+openvpn搭建的vpn无法访问公司内部网络。排查发现frp客户端frpc启动异常。异常如下:
$ ./frpc -c frpc.ini
2023/07/08 13:58:14 [W] [service.go:131] login to server failed: EOF
EOF
问题分析
排查发现,frp服务端开启了认证。客户端需要添加相应配置。
服务端配置frps.ini
:
[common]
bind_port = 7000
vhost_http_port = 80
vhost_https_port = 443
bind_udp_port = 7001
privilege_mode = true
privilege_token = pwd123
dashboard_port = 7002
dashboard_user = user_test
dashboard_pwd = user_test_pwd
客户端配置frpc.ini
:
[common]
server_addr = xxx
server_port = 7000
privilege_token = pwd123
tls_enable = true
[openvpn]
type = tcp
local_ip = 127.0.0.1
local_port = 1194
remote_port = 1194
造成问题的原因是少了privilege_token
和tls_enable
配置