#site-support

1 messages ยท Page 28 of 1

vast prairie
#

to VPN, but I cant connect to the machine

#

tryhackme@10.10.90.76: Permission denied (publickey).

#

it is keep giving me a ----Permission denied-------

cyan cargo
#

I'm still experiencing issues with this, I've set up a ping to figure out when it comes back up but it's still pretty irritating

storm needle
#

Hi everyone, is anyone else having issues with their "hacking streak" (Complete a question every day to build your hacking streak, earn badges and streak freezes) on the dashboard? I have answered 20+ questions but the graph shows that I have answered 0. Ive tried exiting out of browser, logging out, shutting down PC, but no luck... I'll probably try again later tonight but thought I'd reach out. Thanks guys

silk latch
#

@vast prairie did you resolve the issue?!

next plank
#

does anyone has this problem too "Linux Fundamentals Part 1" after you machine has loaded there is just a gray blank page the attackbox is working with no problems but the linuxfundpar... not working properly i used diffrent computers/browsers/OS

weary spindle
#

which room are you doing?

vast prairie
#

yet

#

now I can't connect to VPN

#

do I have to use the script every time

#

tryhackme@10.10.227.195: Permission denied (publickey).

honest mauve
#

!docs verify

sharp bisonBOT
honest mauve
#

@vast prairie Verify please and send a screenshot of the output of the troubleshooting script.

vast prairie
#

I will do the verifying

weary spindle
vast prairie
#

I did that the verification

vast prairie
honest mauve
weary spindle
#

you don't need to ssh in to that machine.

#

You just need to work with the static website.

honest mauve
weary spindle
#

Not for that link you don't.

#

.p.thmlabs can be accessed without the VPN.

#

And right now, they're asking why they can't ssh in to the machine.

vast prairie
#

I am trying to access it throught my Linux Machine

The question is I can get the VPN connected but the
Warning: Permanently added '10.10.227.195' (ED25519) to the list of known hosts.
tryhackme@10.10.227.195: Permission denied (publickey).

#

so why I am having this warning ?

weary spindle
#

Because you can't SSH in.

honest mauve
#

I misread that.

vast prairie
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
odd orbit
#

Hi,
I am trying to do the adventofcyber4(2022) room Task 14 [Day 9] Pivoting Dock the halls: MetasploitNetworkPivotingV1. I launched the target machine and am trying to interact with it from within vpn. I dont get any response from the machine even after restarting the machine and vpn multiple times. I guess it should respond to http://IP:80? Can there be something wrong with the machine/image/container?

weary spindle
odd orbit
#

I'm on my vm

weary spindle
odd orbit
#

yes i do

#

can i share the ip here?

weary spindle
#

Yup

odd orbit
#

it should be on 10.10.137.171

weary spindle
odd orbit
#

I tried "nmap -T4 -A -Pn 10.10.137.171 -v" and "sudo nmap -sC -sV -O -Pn 10.10.137.171 -v"

#

but cant i get to it through browser on port 80?

weary spindle
#

Hm, I'm not sure why it's not working now.

I remember this room getting asked about a few months ago.

#

Infact nah

odd orbit
#

i just wanted to be sure the fault is not on my side

weary spindle
#

I just booted a machine up and it's working now.

#

As is yours.

#

@odd orbit

odd orbit
#

so i guess its related to the vpn then

thorny flax
#

Hello

#

I am having an issue with hacking the shipping list in web app security. I have found the person that hacked the system but cannot rearrange the shipping order. I move the item and it moves back. What is wrong please

odd orbit
weary spindle
odd orbit
#

i switched to EU-Regular-1 with a new vpn configuration file and now i get to the target

#

how would i check the VPN output of openvpn?

weary spindle
#

How did you connect to the VPN?

odd orbit
#

@weary spindle sudo openvpn --config /.../myVPNConfig.ovpn --daemon [TryHackMe_OpenVPN_Daemon]

weary spindle
#

Ah, you shoved it in the daemon.

odd orbit
#

ah yes okay
but as it works now ill proceed with the room, thanks for your help!

weary spindle
#

Happy Hacking!

burnt osprey
#

โ””โ”€$ cat /etc/resolv.conf

Dynamic resolv.conf(5) file for glibc resolver(3) generated by resolvconf(8)

DO NOT EDIT THIS FILE BY HAND -- YOUR CHANGES WILL BE OVERWRITTEN

127.0.0.53 is the systemd-resolved stub resolver.

run "resolvectl status" to see details about the actual nameservers.

nameserver 10.200.78.101
nameserver 192.168.1.254
search 1.1.1.1

nameserver 10.200.78.101
nameserver 8.8.8.8
search za.tryhackme.com

thorny flax
#

Hello, I am stuck in web app security. I cant seem to rearrange the shipment as it moves back

burnt osprey
#

unable to understand how to clear 192.168.1.254 nameserver

thorny flax
#

I have 10 as the only employee to find, however, shows no recent activity

#

therefore cant rearrange items

weary spindle
burnt osprey
#

when i do nslookup it is not working

weary spindle
#

Are you on the VPN of that network?

burnt osprey
weary spindle
#

And not the regular VPN, or are you on the attackbox?

burnt osprey
#

ya i am on lateralmovement vpn

#

regular vpn file, i have deleted from my laptop

weary spindle
#

Did you sudo nano /etc/resolv.conf ?

burnt osprey
#

ip also matching with lateral movement vpn

#

when i do nano /etc/resolv.conf

#

nameserver 10.200.78.101
nameserver 192.168.1.254
search 1.1.1.1

nameserver 10.200.78.101
nameserver 8.8.8.8
search za.tryhackme.com

weary spindle
#

Unless you're already root, you'll need to use sudo.

burnt osprey
#

where i need to sudo ?

#

for which command

weary spindle
#

when you nano the /etc/resolv.conf

burnt osprey
#

nameserver 10.200.78.101
nameserver 192.168.1.254
search 1.1.1.1

nameserver 10.200.78.101
nameserver 8.8.8.8
search za.tryhackme.com

#

output is same with sudo and without sudo

weary spindle
#

Make it so it looks just like this

burnt osprey
#

bro how you shared screenshot here, iam unable to share

weary spindle
#

You need to verify

#

!docs verify

sharp bisonBOT
weary spindle
#

Follow the above link.

thorny flax
#

Hello, I am stuck in web app security. I can't seem to rearrange the shipment as it moves back. I have 10 as the only employee to find, however, shows no recent activity, therefore cant rearrange items

burnt osprey
#

if i edit /etc/resolv.conf, it is erasing automatically. So i have created /tail file as above and it worked for previous like breaching AD, Enumerating AD. Only for lateral movement, it is not working.

weary spindle
#

Strange, it worked for me

burnt osprey
#

unable to understand where is the problem

#

restarted service also

thorny flax
#

sounds familiar, but not sure

burnt osprey
#

under advance network configuration, IPV4, added DNS IP address also

weary spindle
thorny flax
#

i get another person

#

#10

weary spindle
#

Ok, can you revert their changes?

thorny flax
#

I get Anton

#

I move them but the change goes back

#

and shows me i

#

its not allowed

#

i get a circle w/line through it

#

therefore change wont stay

weary spindle
#

Anton doesn't have any changes to make.

#

Search another user.

thorny flax
#

I used 5-10 and Anton is only one coming up

weary spindle
#

Are you sure?

thorny flax
#

yet he has no activity

#

yes

weary spindle
thorny flax
#

can you see my history in there?

weary spindle
#

Nope, I've loaded up the satic website.

thorny flax
#

did not get her

weary spindle
#

I'm going to assume you're using a 0 infront of numbers between 1-9?

#

So you're trying user_id=05 ?

thorny flax
#

yes

#

says user not found

#

05, 06, 07, 08, 09, then 10 hits Anton, but no activity

#

just tried again, got the same thing

weary spindle
#

Try removing the 0.

thorny flax
#

ok

#

5=no user found

weary spindle
#

OK.

Try a different number.

#

Keep trying then all.

#

Start from 5, work your way up.

thorny flax
#

I tried 05-10, Anton is 10

weary spindle
#

Don't put the 0

thorny flax
#

no "0" ?

weary spindle
#

Just try

6
7
8

Etc

thorny flax
#

ok

#

7=Margriet, no activity

#

8=Willi, no activity

#

ok, 9=Alya, Data admin

#

trying to move inventory now

#

IT WORKED!!

#

Thank you so much

#

Have a great day

#

Your Awesome!

burnt osprey
weary spindle
# thorny flax ok

you had the correct idea, you just went about it wrong, if in doubt, use 01 and 1 etc.

burnt osprey
#

DNS working now, removed 8.8.8.8

weary spindle
#

Ah good.

#

I tried to load the room, and couldn't as I'm not a sub.

burnt osprey
#

Thanks for your support

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

vast prairie
#

I am trying to stop the open VPN
I tried the following :

  • Ctrl + c (Not working)
  • sudo killall openvpn (Not working)
#

can anyone help

#

thank you , and sorry I am new

weary spindle
#

!docs verify

sharp bisonBOT
vast prairie
#

I just did

weary spindle
#

Ok, can you send a screenshot of your error please?

vast prairie
#

I am trying to disconnect from openVPN

weary spindle
#

Does sudo killall -9 openvpn ?

vast prairie
#

I will try

#

it is work,

Can you please tell me what is -9 in the code
sudo killall -9 openvpn

weary spindle
#

-9 is the signal for SIGKILL.

#

Which will pretty much tell it to close without doing anything else.

vast prairie
#

Thank you for your help and reply

weary spindle
#

No problem friend, ๐Ÿ™‚

Happy hacking.

vast prairie
#

every thing is ok now

honest mauve
#

Am I the only one who finds it weird, how I am supposed to be in the top 6% as a level 7 guy with 1 badge and 29 rooms complete?

plush bay
honest mauve
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

cursive dust
#

trying to install bloodhound and neo4j but I dont use kali so im trying to add the neo4j.list to my /etc/apt/sources.list.d but getting permission denied specifically this command echo 'deb https://debian.neo4j.com stable latest' > /etc/apt/sources.list.d/neo4j.list

plush bay
#

yeah rerouting using echo without being root and trying to do it using sudo will fail

cursive dust
#

and thats because the > part is not being run as sudo right?

#

so just switch to root user?

#

I thought I was doing something wrong cuz its in the official documentation

honest mauve
amber forge
#

Hey. So I may be late on this, busy couple of weeks at work, but I can't get the vpn connection up. I genersted a new ovpn to use and it still isn't connecting.

#

The error I keep getting is the "failed to negotiate cipher with server" message.

#

Never mind, looks like I got it. I had to add the line "data-ciphers AES-256-CBC" to the ovpn file right after the "ciper AES-256-CBC" line. Odd, but works.

sweet jolt
#

workspaces is empty, do you need to enter early in the month, or is there some other reason it is empty when i enter?

sharp bisonBOT
weary spindle
#

Run that code please.

weary spindle
#

Oops! Sorry for the ping.

sweet jolt
#

How do you have a domain? I used to enter a workspace with plenty of people, now there is nobody?

weary spindle
#

I've signed up with my student email, so I'm in a workspace with students.

sweet jolt
honest mauve
honest mauve
#

!vpnscript

sharp bisonBOT
fresh coral
#

can anyone help me with my openvpn, Whenever I try to connect I get this error

fresh coral
#

failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.

weary spindle
fresh coral
#

no

weary spindle
#

!vpnscript

sharp bisonBOT
weary spindle
#

Get the code from github and run it.

fresh coral
#

but why do i have this error.I've never had him

weary spindle
#

You'll see this line, change it from cipher to data-ciphers

fresh coral
#

the troubleshooting script?

#

i have downloaded

#

ok, it works thanks

eternal patio
#

Hello, how can I contact an administrator?

glad oyster
eternal patio
#

Site

#

To ask you something about membership

glad oyster
#

Somebody might be able to help from here, if they can't you can contact them via

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
inner dune
#

hey there, i have this weird thing going with both my network ovpn's aswell as my normal ovpns... what information should i need to provide to you ?

eternal patio
#

And by the way, another question to see if you can help me, suddenly my kali linux machine has stopped having an internet connection and it does not connect to me, do you know how to solve it?

sharp bisonBOT
glad oyster
#

Run this please

glad oyster
inner dune
#

oki i'll keep you posted if that's not a problem for you?

glad oyster
#

sure

eternal patio
#

whole internet

#

i cant connect to the THM network because i dont have internet in my machine

inner dune
#

ah dangit

inner dune
#

nvm kekw

eternal patio
#

yes

glad oyster
#

vmware or vbox?

eternal patio
#

vmware

glad oyster
#

Okay, in the VM run ip a

bronze vale
eternal patio
#

Nat connection

inner dune
#

@glad oyster it worked! thank you

scenic torrentBOT
#

Gave +1 Rep to @glad oyster

eternal patio
#

you want sc?

glad oyster
#

just post the output

eternal patio
#

i have 2 lo: and eth0:

bronze vale
#

What makes you think you don't have an internet connection?

eternal patio
#

Because I open google and it tells me that I have no connection and I do any ping and it doesn't respond

eternal patio
#

wat

#

now i have network conecction

#

idk

#

It has been put ip a and I have returned the connection

#

thanks man

split bronze
#

hello, I'm trying to connect via OpenVPN but I get errors while executing my config file :
OPTIONS ERROR: failed to negotiate cipher with server
ERROR: Failed to apply push options

#

then it keeps retrying but fails every time

weary spindle
#

!vpnscript

sharp bisonBOT
split bronze
#

it won't find my config even though they're in the same directory...

remote stratus
#

Hello support team - I've just updated my Kali VM and after that I cannot connect to THM VPN

sharp bisonBOT
weary spindle
remote stratus
#

Sure, here it is:

split bronze
remote stratus
#

ok - let me try the scrip - thank you ๐Ÿ™‚

weary spindle
split bronze
#

what exactly do you mean ?

weary spindle
#

can't you enter anything here?

split bronze
#

after the : is what I typed

weary spindle
split bronze
#

what should I edit ?

weary spindle
#

cipher

Change that to data-ciphers

remote stratus
#

This is the result of running the script:

weary spindle
#

(Run them both together)

remote stratus
#

oh I see

#

let me try again

split bronze
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
remote stratus
#

I run openvn first

#

then run the script

weary spindle
#

Yes.

remote stratus
#

this is the result

weary spindle
remote stratus
#

then try again?

weary spindle
#

Yes.

remote stratus
#

ok will do

#

This is result

#

The other screenshot of openvpn

weary spindle
remote stratus
#

you mean the thm_wreath.ovpn file?

weary spindle
#

Yeah

remote stratus
#

ok hold on

#

Here it is

weary spindle
#

Change cipher to data-ciphers

remote stratus
#

ok let me try

#

Awesome - that fixes the issue - thank you so much Scrubz ๐Ÿ‘๐Ÿ‘๐Ÿ‘

#

Have a nice day โค

weary spindle
#

Happy hacking!

polar bay
#

Hi I am having trouble connecting to openvpn. I have run the script and the Initialization sequence is completed and on the top right I can see my openvpn ip but I can not connect to 10.10.10.10.
PRETTY_NAME="Kali GNU/Linux Rolling" NAME="Kali GNU/Linux" VERSION="2023.1" VERSION_ID="2023.1" VERSION_CODENAME="kali-rolling" ID=kali ID_LIKE=debian HOME_URL="https://www.kali.org/" SUPPORT_URL="https://forums.kali.org/" BUG_REPORT_URL="https://bugs.kali.org/" ANSI_COLOR="1;31"

polar bay
weary spindle
polar bay
#

yea a tun0

weary spindle
#

What happens when you go to the CLI and

curl 10.10.10.10/whoami ?

polar bay
#

Just hangs

weary spindle
#

sudo ip link set dev tun0 mtu 1200

#

Try doing that command, and then re-try.

polar bay
#

should I kill the process first?

weary spindle
#

No.

polar bay
#

done

weary spindle
#

Now try the curl command again

polar bay
#

Works now

weary spindle
#

๐Ÿ™‚ great, happy hacking

polar bay
#

What did that do?

#

Thank you!

weary spindle
#

MTU is packet size, you're just changing the size of packets sent

polar bay
#

okay cool preciate the help today

weary spindle
#

No problem, ๐Ÿ™‚

polar bay
#

+rep @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

polar bay
#

curl hangs

weary spindle
polar bay
#

Yea

#

1 lo 2 eth0 3 tun0

weary spindle
#

ok, what are you trying to do?

polar bay
#

I was sshed into the target machine and went to run the command showmount -e targetip it hung

weary spindle
#

Ah,that one always hangs.

polar bay
#

and when I went to ssh window it was frozen too

#

I than tried running the curl command and it hung

#

ahh okay I just restarted everything and it appears to working again\

weary spindle
#

Ah good, lol

glad oyster
#

(from the THM script)

weary spindle
glad oyster
# remote stratus

@remote stratus Hey, can you do ls in your home directory where you ran that script?

modest finch
#

hello guys ive been facing a problem since yesterday when i start a machine after a minute or so the connection drops from the machine but it doesnt terminate it any solutions for this?

weary spindle
#

Which machine?

modest finch
#

library and this happened in king of the hill

#

also

#

its dropping and connecting again does this have to do with the vpn connection?

plush bay
modest finch
#

nah the problem i faced was the same as the one im facing in a normal machine im pretty sure i wassnt getting kicked off the machine

tribal burrow
#

!vpnscript

sharp bisonBOT
tribal burrow
#

did you try this as solution ?

modest finch
#

seems like i had a duplicate connection

tribal burrow
#

also stacking vpn might be issue

modest finch
#

but i runned it while i was still connected to the vpn

tribal burrow
#

that can be issue yes

modest finch
#

i dont know if that was why it showed as a duplicate

tribal burrow
#

if you do THM only thm vpm need to be active

modest finch
#

i think i wasnt clear i had thm vpn on only and ran the script

tribal burrow
#

you can check if you are connected to thm vpn on THM site

modest finch
#

it says im connected in the access profile but the access machine is still on red

tribal burrow
#

try to refresh site ?

modest finch
#

did that

#

gave it a minute or so and did it again

#

ok now its connected

tribal burrow
#

if you type ip a in terminal and you have line that starts, mostly, tun0 that might be indicate that you are connected on thm

modest finch
#

but still this doesnt solve the main problem where it keeps dropping the connection in the room need to check again with it after

tribal burrow
#

you might try regenerate vpn file

woeful arrow
#

hi,all i am trying to get openvpn working on my kali vm, i have it installed but how do i use my configuraion file?

sharp bisonBOT
weary spindle
#

here is a room, that will show you what to do. ๐Ÿ™‚

woeful arrow
#

ty๐Ÿ‘๐Ÿ‘

serene crater
#

Hello how do i verify I have dm'ed the bot nothing is happening

#

Kindly if someone can dm me..

tribal burrow
serene crater
#

Ohk thanks for the info

sweet jolt
#

I installed a Kali purple VM, but managed to get an old version of burpsuite running on my Raspberry pi kali, now it has pretty much all i need

#

Not having burpsuit on kali pi was a real bummer, but i had to downgrade java to v11 and then go into the archives and get a 32bit version of burpsuite, which at first didnt run either, but after some apt-get messing around it finally did

#

imagine having a pentest specific system but no burpsuite, when there's a url involved it's one of the first things to boot up, check out the cookies and whatever

fast thunder
#

If you do so it will stay connected for a few sec but it will go down

thorny flax
#

hello, im stuck again in Operating Systems Security. I can get through it all till I get to finding password for Johnny. I get nothing once I get there. Can you help please
going into history does not provide any user passwords to locate
we are suppose to figure out his password

#

going into history does not provide any user passwords to locate
we are suppose to figure out his password

thorny flax
#

anyone here?

#

OK, I worked my way to # 3 question and I can't get it to work

#

Suppose to look at root system, under johnny, and look at the flag.txt

hasty wyvern
#

I have forgotten my username. I also want to cancel my automatic subscription ( I was just charged on my cc) but I want to refund that if possible.

thorny flax
#

cant you use a "authorization code" to get in

#

I dont think anyone has been in here in quiet awhile

#

i started around 2.....then deleted and reposted my question around 4....still waiting for someone to reply

thorny flax
shy umbra
#

hello I am currently having issues with the openvpn network connection with Holo. I can connect to stand along machines perfectly fine ran the script and here is the output. [+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? Y'
[+] Connecting....
[+] Connection Process completed successfully!
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[-] MTU value failed at 1000, aborting MTU check
[-] Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum

#

scratch that now I can not connect to normal machines as well

#

nevermind found a fix that worked

#

Open your VPN configuration file in a text editor and change 'cipher AES-256-CBC' to 'data-ciphers AES-256-CBC' this fixed it

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
weary spindle
#

You'll need to contact support.

bold sequoia
#

Excuse me, where can I download the certificate, or is it just a badge now?

sweet jolt
#

cant connect using rdp in the stupid powershell room w my kali pi pfff I'll try with another computer some other time. If that doesnt work either, guess i'll have to type every powershell command by hand in the browser cuz copy paste doesnt work there

sweet jolt
#

i looked for it but my kali-pi doesnt have it installed it seems

bold sequoia
pastel tinsel
bold sequoia
pastel tinsel
bold sequoia
#

but i don not find it

pastel tinsel
sweet jolt
#

yeah, and it was a pain to get burpsuite installed on it. I'll just try that room some other time on my laptop, kali-pi is fun when it works but when it doesn't you better have some backup plan

bold sequoia
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

sweet jolt
#

there was also a room where you have to compile and upload something, but kali-pi compiled it for the arm architecture and the room machine was x86, so you had to compile it on something else or ur stuck

pastel tinsel
#

Yeah, that's the problem with using different architecture

sweet jolt
#

and linear room design, if you could solve the problem another way, then you wouldnt need another machine to finish it

pastel tinsel
#

It also happens in real life, sometimes having two different architectures brings problems like this too

sweet jolt
#

yeah i guess, best to have some options, a laptop, some VMs, a desktop, ... just a kali pi is cute but it really shows its limitations sometimes

#

and then you waste an hour trying to get around the problem, until you give up, and leave it for later to try on something else lol

fickle quiver
#

I'm having trouble with the openCTI machine. The page never loads, I've tried it with the attack box and openvpn too.

sharp veldt
#

Hi there, not sure of best channel for this question, and I am not sure if it counts as tech support. I am a plan paying user on tryhackme, and I noticed recently that you offer AWS learning path for business/education plans. Just wondering if there is any roadmap to offer that on other plans as well? I am a professional AWS user, but my team at work is very small (startup), and id prefer to just have access to that on my single account and get reimbursed for learning/development

zealous yoke
sharp veldt
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

zealous yoke
prisma knoll
#
Unfortunately, we do not reset streaks that have been lost for more than 7 days.
After looking at your account, there is a large gap in activity.
#

rip

#

I did not know this.

#

I had a 100+ day streak but lost it due to picoCTF and other CTFs all in the same week.

exotic dove
tame seal
#

Ive taken the RHCSA: the question about โ€˜contianerfilesโ€™ really confusing me, here is the question;
As a user โ€˜johnโ€™ ( non root user) create an image (from a container) but i donโ€™t know what does it mean

#

Bc that user dont have permission to perfom the buildah bud command

thorny flax
#

hello everyone, I am stuck again

#

Ineed to open a pdf file. Can anyone tell me where I am wrong?

#

dang, sorry its not letting me copy and paste it here

weary spindle
#

you need to verify your account to send screenshots.

#

!docs verify

sharp bisonBOT
thorny flax
#

ok

pulsar imp
#

Hey, how i get 60$ for sharing feedback?

weary spindle
bronze vale
bronze vale
weary spindle
pulsar imp
#

?

#

.

naive dust
#

So as u can see i cant use the attackbox and the question asks for that

#

Tried to terminate nothing works..

tawdry orbit
tawdry orbit
# naive dust Nothing happens

It probably expired (expires after 2 hours unless you extend the timer). Refresh the room page and redeploy the target machine.

tawdry orbit
#

Click the View in full screen button (bottom-left of the right screen in your image). What is the remote-eu-xx in the url?

tawdry orbit
#

Change it to 03.

naive dust
naive dust
tawdry orbit
#

Terminate the target machine, redeploy it, and see which remote-eu-xx you get.

plush bay
#

oh good catch that this is in here too... was just about to ping you tim to look at .peters problem in #subs-room-help

tawdry orbit
naive dust
tawdry orbit
#

Check if you're blocking tryhackme.tech with a blocker add-on in your browser.

plush bay
#

nah it is okay peter

#

this is definitely more tech support related then room help related

tawdry orbit
tawdry orbit
#

I'll forward this one to the team to look at.

naive dust
#

Thx

tawdry orbit
#

I'll get back to you when I have better news. ๐Ÿ˜„

cunning talon
cunning talon
thorny flax
#

hello, here is my room, Practical Example of SOC, and trying to stop attack. However, the IP choices and ports arent in the list. What now?

#

My room seems to lagging quite a bit as well

cinder musk
#

Hello, I'm in the operating room security and it will not allow me to type in the section to enter the password. when I exit the room and go back in fresh, it allows me to type again. only when I get to the point of entering the password will it not allow me to type. i have skipped it and also got to the network security portion, and it is the same situation when i get to a point where i need to enter the password. i took a screenshot of the issue, but i don't know how to upload it to this.

cinder musk
dense bramble
#

!docs verify

sharp bisonBOT
faint sequoia
scenic torrentBOT
#

Gave +1 Rep to @faint sequoia

faint sequoia
#

nice๐Ÿ‘

thorny flax
#

I haven't received a reply yet about my Practical Example of SOC not having the appropriate ISP's to stop the intrusion, as well as a lagging system issue. I requested help at 5:33 pm previously. Thank you

thorny flax
#

My room has been fixed except the port 23 is not listed, thank you

proven gazelle
#

When ever I try to see the split screen it doesn't render anything

#

Ir's just a blank half of the websiter

#

*website

icy drum
#

hi, can't get openvpn to connect

fresh storm
#

Hello, I don't know if this is the correct place to share.

I was working on some room and my Attackbox was hosting python http Server over port 9090. Suddenly, i started receiving odd HTTP GET requests that i haven't sent. I recognized it as directory Enumeration, coming from a public IP address.

I've traced the IP and looked around, it seems it belongs to Cynsys, and used as Spider/crawler to Portscan and retrieve Files and identifiers.
That's the first time i see this.
If there's any action from your side and If you want the output/Captures, please let me know

icy drum
#

๐Ÿ‘

feral cloak
#

Hi team,
I'm curious how 24h between answers will be calculated to continue the streak if user will change timezone significantly. For example move from USA to Asia.

pastel tinsel
pastel tinsel
sharp bisonBOT
pastel tinsel
#

try and download and run this script, this should help you with it

pastel tinsel
feral cloak
#

I did this morning but I'm not sure how 24h calculated. If it's calculated by timezone it can be a problem

icy drum
#

thank you

icy drum
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

subtle current
#

getting a 404 when trying to obtain my vpn config

pastel tinsel
subtle current
#

how would I do that? /vpn/ doesn't work

#

nvm

pastel tinsel
#

๐Ÿ˜„

subtle current
#

yeah just found it lol

pastel tinsel
#

nice!

jovial sparrow
#

Hey, For this particular room and some others too, the images don't seem to load. Is there some issue on my side?

#

trying to visit the image URL shows a 403 error
I am pasting the link on the image below
https://lh3.googleusercontent.com/B5adQnf9W9IYvIFLtDLhg5Fe-vg98bSXVMtDGicU8QJfiQqxraG1HTDKhHPy4erMRO-pIBNGbESO-Kqiajn3cBKFuhnAFAh3fr-BUOP8JXeuWNSjC006t7cIOq93H-7kZY99sPx4

exotic dove
#

no permission to view the image

jovial sparrow
#

Yeah, thats my point. The Empire room is not loading images. precisely, the Listeners section

#

other section have images

pastel tinsel
#

I guess @sharp bear there's some image errors on your room?

exotic dove
#

Room issue

pastel tinsel
#

I have tagged the room creator just above, so they'll probably take a look at it, and fix it, but to make sure it goes in the proper room, leave a message down in #room-bugs telling about what room and what bug there is

jovial sparrow
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

full tangle
#

Morning. Not sure if this is the most appropriate place to ask for support on this -- please redirect me if its not.

I completed both the Junior Penetration Tester and Red Teaming pathways but I think somewhere down the line Id used my username as my full name. I have a certificate (Red Teaming) that displays my username instead of my actual name. Is there a way to have that corrected?

weary spindle
#

You can either create a new account, and do it all again.
Use photoshop.

full tangle
#

Ooof.

#

Thx.

amber hatch
#

is there a default password for the attackbox? i'm trying to scp a file from a remote machine onto my local attackbox and i need the password for the attackbox to do it.

zealous yoke
amber hatch
#

thx

rapid bobcat
#

hi guys, sorry to disturb

#

i have a problems regarding access to active machines, i already run the script and regenerate the openvpn file, but then still cannot access to them, why is taht happening?

#

the error whos like this :

An error occurred during a connection to 10.10.186.241.

The site could be temporarily unavailable or too busy. Try again in a few moments.
If you are unable to load any pages, check your computerโ€™s network connection.
If your computer or network is protected by a firewall or proxy, make sure that Firefox is permitted to access the Web.
tribal burrow
#

!docs verify

sharp bisonBOT
tribal burrow
#

try follow that and if you post picture might be more helpful

rapid bobcat
#

ohh verify sorry for not doign taht

#

wait

tribal burrow
#

๐Ÿ™‚

rapid bobcat
#

thank you for remind me!

#

hii okay

#

verified!

tribal burrow
#

perfect

#

if you post a pic might able to help

rapid bobcat
#

may i share the picture here?

tribal burrow
#

yes ofc

#

yous make sure that you hide if there is some details that tyou don't wish to share

rapid bobcat
#

here, i already run the script and regenerate the opvn file, yet still i cannot acces to active machine

tribal burrow
#

try remove https

#

just ip

rapid bobcat
#

still same, i use http also cannot access, but i can ping

tribal burrow
#

one sec

rapid bobcat
#

okiee

tribal burrow
#

what room is that ?

rapid bobcat
#

vulnversity

naive dust
#

Hi, is there any admin or mod that can help me go change my discord token. I have change my thm account. Thank you

tribal burrow
#

might be that there is no website to visit ๐Ÿ™‚

rapid bobcat
# rapid bobcat vulnversity

i can access the room 2 weeks ago, but after i come back, all rooms i cannot access ( rooms that need active machines)

rapid bobcat
tribal burrow
#

is not issue of you connection ๐Ÿ™‚

#

try to run nmap and read the results ๐Ÿ™‚

rapid bobcat
#

okiee i'll tryy

tribal burrow
#

and i suggest to delete that first pic that you share. since it contains you thm vpn ip

rapid bobcat
scenic torrentBOT
#

Gave +1 Rep to @tribal burrow

tribal burrow
bronze vale
naive dust
scenic torrentBOT
#

Gave +1 Rep to @tribal burrow

tribal burrow
#

this jabba might help you also.

#

just wait a sec to they read it

naive dust
#

Ok. Thank you very much

tribal burrow
#

np

rapid bobcat
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

rapid bobcat
naive dust
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

ivory spruce
inland fractal
#

Getting multiple drop of connection to deployed server. Been happening intermittently.

Able to connect to other sites so not a problem with the vpn as far as I'm aware.

Any ideas? I deployed this box roughly 15 minutes ago and it's dropped like 3 times.

weary spindle
#

Does your vpn have any "restarts"?

inland fractal
#

oh it's back

#

yeah roughly 10 minutes ago. Had a cipher error. Ran the fix script and it resolved it though.

amber hatch
#

i'm on a 7 year old pc, and the linux VM i use on it is too slow to do anything with

#

the app can't be installed on the attackbox

#

what can i do about this?

weary spindle
#

It might struggle with nessus.

amber hatch
#

my vm struggles to open the nessus website

weary spindle
#

And no, the Attackbox isn't big enough for Nessus.

amber hatch
#

i can't imagine how much it'd struggle with the actual app

weary spindle
#

Other than installing on your own vm, there isn't anything else you can do

amber hatch
#

lol

#

i plan on getting a new pc soon(ish) so let's hope that solves the problem

weary spindle
#

Nessus tales up 30GB of HD space

plush bay
#

trying to connect to the AD enumeration network fails.... can't access http://distributor.za.tryhackme.com/creds and the nslookup only poops out this:

$ nslookup thmdc.za.tryhackme.com               
;; communications error to 10.200.68.101#53: timed out
;; communications error to 10.200.68.101#53: timed out
;; communications error to 10.200.68.101#53: timed out
Server:        192.168.x.x
Address:    192.168.x.x#53

** server can't find thmdc.za.tryhackme.com: NXDOMAIN

changed the settings using network manager and the /etc/resolv.conf file to look like the following:

# Generated by NetworkManager
nameserver 10.200.68.101
nameserver 192.168.x.x
nameserver 127.0.2.1
nameserver 9.9.9.9
weary spindle
#

Is your vpn OK

Or attackbox?

plush bay
#

vpn.... and yeah seems like.... just for good measure left and rejoined the room and going to regen config now

#

nope same error after patching the vpn config file to use the new data-ciphers

#

it even gave shadow the same subnet

#

is the open vpn output

weary spindle
#

Looks like it's not connected?

plush bay
#

it is connected.. read 3 lines up from bottom

weary spindle
#

Oh yeah

plush bay
#

dunno why it spits 2 new lines after initilzation complete but it does that with the normal vpn too and that has never been a problem so far

weary spindle
#

I'll try

plush bay
#

thanks scrubz

#

+rep @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
plush bay
#

okay then so it might just be bugs with shadows instance(the 68 subnet) or something along shadows path of network traffic

weary spindle
plush bay
#

could always try to go back into the first AD network (breaching ad) and check if that works

#

yuup will do scrubz

plush bay
#

fun fact @weary spindle the breaching AD network works with nslookup no problem

#

so yeah probably something with the enumerating AD network on subnet 68

weary spindle
#

Yeah, does leaving the room for 15 min(s) change your subnet?

plush bay
#

no idea but could try

young widget
#

back, so I try connecting with my vpn, here is the error message I get :
2023-04-18 14:12:13 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations. 2023-04-18 14:12:13 Note: Kernel support for ovpn-dco missing, disabling data channel offload. 2023-04-18 14:12:13 OpenVPN 2.6.0 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO] 2023-04-18 14:12:13 library versions: OpenSSL 3.0.8 7 Feb 2023, LZO 2.10 2023-04-18 14:12:13 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication 2023-04-18 14:12:13 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication 2023-04-18 14:12:13 TCP/UDP: Preserving recently used remote address: [AF_INET]63.35.110.70:1194 2023-04-18 14:12:13 Socket Buffers: R=[212992->212992] S=[212992->212992] 2023-04-18 14:12:13 UDPv4 link local: (not bound) 2023-04-18 14:12:13 UDPv4 link remote: [AF_INET]63.35.110.70:1194 2023-04-18 14:12:13 TLS: Initial packet from [AF_INET]63.35.110.70:1194, sid=f3c9f7d3 634b5236 2023-04-18 14:12:13 VERIFY OK: depth=1, CN=ChangeMe 2023-04-18 14:12:13 VERIFY KU OK 2023-04-18 14:12:13 Validating certificate extended key usage 2023-04-18 14:12:13 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication

glad oyster
#

!vpn-script

#

Reeeeeeee

#

!vpnscript

sharp bisonBOT
glad oyster
#

Run this please ๐Ÿ™‚

young widget
#

Thanks guys, I have applied the script, it works now

plush bay
plush bay
humble orchid
#

Hi , regarding the breaching active directory path, I spawned the attack box , description says that i should be able to ping the DC, but i can't

#

am i missing smth ?

plush bay
#

the entire first task is on how to connect and check you are connected in said network room

humble orchid
#

Another question, Tryhackme openvpn provides connection over tcp ?

plush bay
#

i.e nslookup

plush bay
#

not sure about the network rooms

versed pawn
#

Hello, it's seem the password reset fonction don't work

humble orchid
plush bay
sharp bisonBOT
plush bay
#

then post a screenshot of the error you get on trying to password reset... if you don't feel comfortable doing that contact support using this email from the email that you linked to your tryhackme account when making it:

#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
plush bay
#

@versed pawn โฌ†๏ธ

humble orchid
versed pawn
#

i tried to contact this email adress yesterday

plush bay
humble orchid
#

nope

plush bay
versed pawn
#

oky thank you

plush bay
# humble orchid nope

if you run the command ip addr show what do you get in your terminal on the attackbox

unreal drum
humble orchid
plush bay
scenic torrentBOT
#

Gave +1 Rep to @unreal drum

humble orchid
plush bay
plush bay
unreal drum
plush bay
# humble orchid any recommendation

well your own kali vm with the network vpn file from the access page should work... rebooting the attackbox might also work.... other then that nope... maybe pinging @cold fog might also help

plush bay
humble orchid
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

!vpnscript

sharp bisonBOT
plush bay
#
        elif testCipher; then
            colour red "[-] Using outdated switch for ciper negotiations. Attempting to update..." 1
            sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' $ovpn
            colour green "[+] Successfully updated cipher switch! Please connect to the vpn using the following command: "
            colour code "sudo openvpn $ovpn" 2
            
            return 0

@unreal drum does this look like what you are trying to recommend but automated???

#

because that is part of the vpn script

plush bay
#

@silent storm have you tried the vpn script to troubleshoot common problems with openvpn???

silent storm
silent storm
tribal burrow
#

do you have another vpn active

silent storm
silent storm
tribal burrow
#

dp you have this line in vpn file data-ciphers AES-256-CBC

silent storm
#

cipher AES-256-CBC

#

yess

tribal burrow
#

change it as its mine

silent storm
#

yeah now its working

tribal burrow
#

๐Ÿ™‚

silent storm
#

๐Ÿ™‚ its was in frontttt of myy eyessss lol

#

@tribal burrow thanks alee

scenic torrentBOT
#

Gave +1 Rep to @tribal burrow

tribal burrow
#

it happens ๐Ÿ™‚ glad to help

silent storm
grizzled egret
#

Greetings fellow discord Users. I have a question regarding a problem I have. I have duckduckwent and looked in the discord a lot about my issue and I have found nothing that helps, althoguh I am sure others have this problem as well.
I am on a Windows10 Machine, and I have WSL installed (Debian). When I connect with my VPN (sudo openvpn <file>), I do not use the windows application, I can not open the ip in a web browser. Any solutions? Thanks beforehand,
smartcookie

verbal token
#

Am I able to change my THM name?

split stag
#

Hi! is there an on-going discount voucher for THM? my subscription is about to end on 12th of May and hope to apply a voucher during renewal

feral cloak
#

Regarding change of timezone I moved to the East and answer questions ASAP. Seems ok for now

weary spindle
sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
weary spindle
#

You'll need to contact support.

weary spindle
potent minnow
#

I'm not sure I'm which channel one's supposed to report errors. In the room Vulnerabilities 101, task 4, the answer to the second question needs to be updated as the author has rebranded.

potent minnow
#

thanks ๐Ÿ™‚

karmic path
#

๐Ÿค”

grizzled egret
#

To that ofcourse there is the simple solution of downloading the Guest CD ware thingy with one simple command

#

Or so says the internet and all videos on youtube

#

I would always get errors

#

I would walways get frustrated and then just give up

#

"Why not dualboot then" have said many users in many Discord Servers regarding cybersec

#

Because that wont work either

#

I have activated all Processor settings in the BIOS to fit a dualboot configuration

#

But becasue I can not buy a new drive, using partitions works never like a charm

#

I have looked for a different VM like VMware but that does not seem to be free and so on

#

Well I think I should not continue to whine in this server of a masterpiece

#

I apprecheate the dedication though Sir

pastel tinsel
karmic path
#

yes, to change the written chiphers..I tried

#

the last time it happened to me I solved it with the script ..but now it doesn't work anymore

grizzled egret
weary spindle
#

Yes, Vm if you enough resources,

IMO dualboot shouldn't be done, but that's just my take on it, I'd hate to lose files (I hate it when I lose VM's, thank god for snapshots)

#

However, as this is no longer a THM Tech support issue, if you need any help regarding a VM, you should use general, (I'm not a mod, it just keeps this channel for it's dedicated use.)

pastel tinsel
#

if you have the vpn running, open up a new terminal and run that command, that will set the mtu to 1200 and should fix the problem

grizzled egret
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

grizzled egret
#

NVM, 10.10.10.10 works

sharp bisonBOT
grizzled egret
#

Sorry I pinged you then mate

#

wow that is a handy command

#

I guess there is no website to this challenge? Althoguh I am pretty sure I need one

#

Ayoo it works now

#

Maybe it needed time

grizzled egret
sacred lion
#

Hey guys, I'm getting a 404 trying to download my Hololive OVPN file... any ideas how to troubleshoot?

weary spindle
sacred lion
#

Okay, will try

faint frigate
#

hello, i lost my subscription.

#

can anyone help?

weary spindle
#

Define.. lost?

faint frigate
#

yeah, i have subscription voucher for 2 month. but, when i try to access premium feature i can't access it. and I realized when I was asked to re-subscribe. My voucher just redeemed April 1st.

faint frigate
bronze vale
faint frigate
faint frigate
#

@bronze vale check our dm sir

crisp cedar
#

Is there some issue with jumpbox? I see some people have already had this issue with the past but only port 22 shows up even 30 minutes in. I've reseted thrice and no dice.

waxen niche
#

I am facing a problem with loading the learning path. when i click into any learning path is keep loading for ever

#

can anyone help me please

plush bay
waxen niche
#

so where can i ask for help

plush bay
#

this partially sounds like an issue that would get reported with @zealous yoke or @bronze vale to get debugging steps or figure out what is going wrong

#

but just for the meeps of it... have you tried pressing ctrl + F5 @waxen niche

waxen niche
#

yea

#

i have refresh the web page many times but same

#

nothing worked

plush bay
#

well then we wait

waxen niche
#

i think api is not responding or blocking me

plush bay
#

you might also maybe get a different result come to think of it if you wipe your cookies and local storage for https://tryhackme.com/ but doubt it

#

but as you are clearly seeing shadow is grasping at straws to try and help

late herald
#

same thing happening here, tried different browsers and clearing browser data

waxen niche
#

for how much time you are facing the problem @late herald

late herald
#

i've only been trying for the past thirty mins or so

waxen niche
#

allmost same i am facing it from past 1 hour

signal cloak
#

Any chance someone could help me connect to open VPN ? I'm tryna connect through VMware Kali with my config file on the desktop but every time I run the command I get an "error opening config file"

plush bay
signal cloak
#

it returned with

#

zsh: unknown file attribute: 1

plush bay
#

uuum well that is weird

signal cloak
#

i refreshed the file on tryhackme thinking that would fix it

plush bay
#

if you run cat .zshrc in your home dir does that also fail???

signal cloak
#

that returned a long list of text similar to a man

plush bay
#

okay then the cat command works

signal cloak
#

could the name of the file cause any issues?

plush bay
#

now to try and figure out what made it error with the openvpn config file

plush bay
signal cloak
#

frozen.Booger.ovpn

plush bay
#

yeah that should be fine

#

if you open said file in a graphical text editor notice any obvious problems???

signal cloak
#

no seems to all be correct

#

Options error: In [CMD-LINE]:1: Error opening configuration file: /home/jellyjeans/froozen.booger(1).ovpn
Use --help for more information.

#

this is the error text

#

i know the path is correct

plush bay
#

you sure the file is in that dir and not Downloads??? or vpn

signal cloak
#

lol now realpath keeps telling me zsh: unknown file attribute

#

i was trying to confirm but yeah its on my desktop

willow bough
#

I keep getting this page every so often
Any suggestiongs?

signal cloak
#

i think others are having the same issue further up this chat

plush bay
#

uh oh

#

cloudflare errors spoopy

willow bough
#

I see that now, thanks for pointing it out .. so is the VPN the suggested workaround for now?

plush bay
willow bough
#

Fair, might if its routing in a different way.

#

Course, I need to get in to get that configured ๐Ÿ˜ญ

#

Its odd, works intermittently

#

Like some of the lbs are up and some are not.

#

Oh well, try again in a couple hours

#

ty

tawdry orbit
gleaming oar
#

Not resolved for me but could be caching

plush bay
#

at least in firefox

gleaming oar
#

I did a hard refresh, used random query, and tried incognito. I'll just have to wait a bit

plush bay
#

fair

willow bough
#

Working now btw. Thank y'all ๐Ÿ™‚

verbal token
bronze vale
#

We are aware of the ongoing platform disconnection issues:)
Sorry for the inconvenience while we handle this.

grand perch
mighty bronze
torn burrow
#

Iโ€™m trying to redeem a voucher bought for the Throwback network (I have the email proof), but when I input the voucher code, I get this error. Any ideas what I should do?

#

The voucher is copied and pasted from the email so itโ€™s 100% correct, no excess white space either.

#

Iโ€™ve tried submitting it both on the page where you purchase the network access (where it says to), and on my profileโ€ฆ neither work.

crystal marlin
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
naive dust
#

hi guys, i had an issue with my openvpn i used the troubleshoot script and it worked but the connection isnt stable

#

i mean he's disconnecting from the vpn and then it reconnect just after

weary spindle
naive dust
#

Hello, can I ask for help? when I am clicking the learning path it doesn't load the room. It just like in the picture. Thank you

pastel tinsel
#

@crystal marlin ?

#

don't know if there's any bugs with tryhackme's website

pastel tinsel
naive dust
pastel tinsel
#

oh well, it's a known bug, my bad

naive dust
#

ohh thank you

pastel tinsel
#

they are probably in the middle of fixing it, so it's not known when it'll be fixed yet, best I can help with is telling that you can do individual rooms instead, and steer off the paths for now

naive dust
#

ok ok. thank you

pastel tinsel
# tulip marsh Same wtih me

yeah, it's a known issue, they are trying to fix it, steer away from the paths and create your own by just doing random rooms instead

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pale bobcat
#

How come support isn't responding in mail

weary spindle
#

?

pale bobcat
#

I talked to a moderator here and he said I should reach out to support, I was selected as a prize winner in Advent of Cyber 2022 but haven't gotten a response

weary spindle
#

There is a slight chance your email was missed, which is unlikely.
Regarding that, you should have been e-mailed, reach out again, but support could be busy,

#

Just don't e-mail more than once within

#

7 days

astral isle
#

Can some one fix this i checked on multuiple browser and multiple internet and changing every damn thing it still sucks

weary spindle
astral isle
#

Okay Thank you

karmic crow
pastel tinsel
sharp bisonBOT
karmic crow
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

remote stratus
#

Hello Support Team - my VPN connection to Wreath network just doesn't work this evening.

#

Does anyone have any idea?

pastel tinsel
remote stratus
#

thanks, let me try

remote stratus
#

I tried the script

#

It seems it killed the process to start thm_wreath.ovpn

#

and connected with thm_euro_VIP.ovpn

#

but I currently need VPN to Wreath network

#

is there anything else I should do?

#

I have tried restarting the machine - same issue

pastel tinsel
remote stratus
#

ok I see

#

let me try again

#

This is the result

pastel tinsel
#

how does the config look, can you open it?

remote stratus
#

sure

pastel tinsel
#

weird

tribal burrow
#

when i look at my config there is some difference in it

remote stratus
#

hmm - let me generate a new key file

tribal burrow
#

after regen try to wait for 5ish min or so

remote stratus
#

I just got a new config file

#

different error message now ๐Ÿ™‚

#

let me try the script

waxen forum
# remote stratus

I'm having this same issue, but it only happens when i try to connect to specific networks (breachingad, etc.), not the regular thm VPN

remote stratus
#

right, I can still connect to regular thm VPN

tribal burrow
#

try to wait for a few min. might thm server need to get some time

waxen forum
#

Been running into this issue for like 3 days not unfortunately

tribal burrow
#

if you type in termina ip a do you have line that have tun0 ?

remote stratus
#

no tun0

waxen forum
#

No i think thats the issue

#

its failing to open tun0

remote stratus
#

right

waxen forum
#

wanted to do throwback but dont want to buy 30 days of lab and then not be able to get into it...

tribal burrow
#

strange...

remote stratus
#

let me try

#

This a newly generated ovpn for wreath

waxen forum
#

data-ciphers AES-256-CBC

#

still getting tap vs tun fatal errors

#

after updating the ovpn

remote stratus
#

yes I did just that

#

let me open the file

#

This is what we just put into the file

#

Last night I could still connect

#

no cipher in the file

waxen forum
#

data-ciphers AES-256-GCM:AES-128-GCM:AES-256-CBC

#

is what i have in my ovpn file

remote stratus
#

from this command: sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-GCM:AES-128-GCM:AES-256-CBC/' *.ovpn

weary spindle
#

Please don't suggest this.

Staff have asked that we all use the troubleshoot script.

remote stratus
#

let me try the script again

pastel tinsel
#

yeah, do not just post random commands in chat without explaining what it does

weary spindle
#

This command will change all the openvpn scripts In the directory

remote stratus
pastel tinsel
#

that we can't help with, then you have to regen again ๐Ÿ˜„

#

regen and wait

waxen forum
#

I mean the official thread says to update the ovpn file

weary spindle
#

Is your vm the same time and date as your location?

remote stratus
#

yes

#

same time and date

pastel tinsel
remote stratus
#

let me try regenerating a new conf file

pastel tinsel
#

there has been made changes since the forum post happened

waxen forum
#

hmmm ok

#

are you guys all on OpenVPN 2.6.0 x86_64-pc-linux-gnu

#

The weird thing is, its only the specific networks, not just the regular THM VPN

#

breaching AD, AD enumeration etc.

weary spindle
#

If you're on 2.6>

remote stratus
#

new configuration file

#

for me it works on other thm networks (like euro_VIP_1)

weary spindle
#

Which vpn are you connecting to?

remote stratus
#

right now wreath network

weary spindle
#

What error are you getting?

remote stratus
weary spindle
#

Use sudo.

remote stratus
tribal burrow
#

can you update/upgrade kali

weary spindle
#

Can you take a screenshot of your wreath script?

pastel tinsel
# remote stratus

since you regenerated, then you have to change into data-ciphers again ๐Ÿ˜„

weary spindle
remote stratus
#

ok hold on updating

tribal burrow
#

and upgrade and dist-upgrade

pastel tinsel
#

and that's breached

weary spindle
#

Yup.

remote stratus
#

give me a few minutes - lots of updates

waxen forum
#

what should the dev field be?

pastel tinsel
#

dev tun

waxen forum
#

dev breachad

pastel tinsel
#

yeah, it's just what your interface name will be

waxen forum
#

^ what it currently says

#

ah okay

#

Ahhhh that did it for me

#

the dev field

#

did not like breachad for some reason, changed it to tun0

#

thanks for the help!!

pastel tinsel
#

you're welcome

remote stratus
#

update update

#

after that same error ๐Ÿ™‚

#

this is my config file

#

should I change cipher to data-ciphers?

#

dev tun to dev tun0?

waxen forum
#

I changed cipher to data-ciphers and changed dev to tun0

#

and that worked for me

remote stratus
#

ok let me try

waxen forum
#

this is what my ovpn looks like

#

client
dev tun0
proto udp
sndbuf 0
rcvbuf 0
remote 54.76.39.46 1194
resolv-retry infinite
nobind
explicit-exit-notify 3
persist-key
persist-tun
remote-cert-tls server
auth SHA512
data-ciphers AES-256-GCM:AES-128-GCM:AES-256-CBC
key-direction 1
verb 3

remote stratus
karmic path
#

it not work

remote stratus
#

change to data-ciphers AES-256-GCM:AES-128-GCM:AES-256-CBC

karmic path
remote stratus
#

still not work

waxen forum
#

which EU server are you using again?

karmic path
#

VIP 2 europe

waxen forum
#

Did you already change servers and regenerate?

remote stratus
#

wreath

waxen forum
#

ah youre on a network one

#

okay

karmic path
#

i have set MTU to 1200

#

but nothing

waxen forum
#

i've got to head out ( have to join a meeting) but good luck

remote stratus
#

Anyone to help?