#site-support

1 messages Β· Page 50 of 1

barren heath
#

Easy to use and setup

broken bear
#

if it's running in docker, it's not a vm, it's a container

shell rapids
#

Hi,

Why am I still have premium access when the expiration date says dec 2 2023?? I have premium access I can start machine a premium box and I have receive an email from THM that says something like this "Paypal: renewal failed" something like that

#

I have canceled my subscription before dec 2 2023 21:XX "[Important] We couldn't charge your Paypal Express Checkout" <- email header

weary spindle
#

Because it will try and resolve it.

If it doesn't after 3rd day, it cancels.

meager monolith
#

the solution to this was just setting a ssh with the target machine,

strange vale
brave anchor
#

Hello is there a way to open the attack box directly in a new tab ?

weary spindle
#

Yup

noble echo
#

Hello,
I tried contacting the support team, but I haven't had any response,
My subscription got auto renewed,
Kindly help.

weary spindle
#

Support are busy, if you contacted within 7 days you'll be fine.

noble echo
#

Do I need a stripe account for refunds?

weary spindle
#

you'll get refunded on how which method you paid.

noble echo
#

Thank you πŸ˜ƒ

brave anchor
weary spindle
brave anchor
#

Ok thanks for your reply

empty ember
#

uhm

weary spindle
empty ember
#

then i can wait a lil longer

humble rune
#

Hi i'm having an issue
in the Advent of Cyber 2023 room in the day 2 task, i'm asked to use the attack box to finish the room
but when i actually open it, for the ip 127.0.0.1:8888/lab the VM don't open me nothing
how can i fix this?

weary spindle
humble rune
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

unborn roost
#

hello, i've recently wrote a new tool to create and run your own "attackbox" locally or remotely and i'm testing this with "day 3 of advent of cyber" - if you would like to give a try https://github.com/hckops/hckctl let me know if you have any feedback πŸ˜„

#

you need to edit the config with something similar to

network:
  vpn:
  - name: thm
    path: <YOUR_PATH>/thm_eu_regular_1.ovpn

and this is the machine i'm currently using

hckctl box parrot-sec --network-vpn thm
crystal marlin
ivory spruce
#

If you can't reach 10.10.10.10, you have an issue with connecting to the THM OpenVPN. Can you send the last few line of the logs (when connecting to OpenVPN)?

crystal marlin
exotic python
#

I have a question, I'm already a tryhackme subscriber, can I use the new discount code AOC2023 or is it only for new subscribers?

unborn roost
#

was this question for me? yes anyway

ivory spruce
exotic python
ivory spruce
#

You'll have to wait until the 6th or 7th before you try though

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

#

Gave +1 Rep to @rare flume

alpine breach
#

It was one of the metasploit rooms in the complete beginner path. Seems to die very frequently for me. Nothing else has before maybe it’s just metasploit

desert perch
#

Attack Box keeps saying I had 3 or more attack boxes, even though I terminated them all.

#

Then when I go to the next room, there's a 2000 second wait time?

restive flume
#

have you tried CNTL + F5

desert perch
#

Trying it now.

#

Looks like it worked, thanks.

restive flume
#

no problem!

#

just a note F5 refreshes from cache and CNTL + F5 deletes the file from cache and contacts the server

desert perch
#

Will keep in mind.

rare flume
#

more or less it is always better than gui

scenic torrentBOT
#

Gave +1 Rep to @rare flume

rare flume
#

Ha @short mortar

desert perch
scenic torrentBOT
#

Gave +1 Rep to @restive flume

restive flume
dull sedge
#

Hey all, I'm not sure if this should be in site support or room help but I've joined the Wreath room but when I go to download the Wreath network VPN file for it it just spins loading and never downloads. I've tried multiple browsers, multiple PC's, even my phone. Normal VPN file downloads just fine. Any help would be appreciated.

rare flume
#

Zut terminal bari poxaren command line ei grel, 10 tari Windows user em exel

bronze vale
rare flume
empty ember
#

got a bit of a stupid question, but can badges vanish off the profile??

#

i think ive "lost" at least 2 of them

weary spindle
#

Whhich 2?

empty ember
#

linux priv esc and windows priv esc

#

oh nvm, stupid me

#

didnt see there are multiple privesc rooms, only had an eye on the one in the jr path ^^

vast pier
#

I'm not good with Discord, so sorry if this was already reported
there's an issue with room Malbuster, Task 2
at the question : "Based on VirusTotal detection, what is the malware signature of malbuster_2 according to Avira?"
I'm pretty sure the Avira signature changed since the question was created
The current signature for Avira in virus total is now : HEUR/AGEN.1306860 which does'nt work

thorny prism
#

Hi, I'm having an issue can anybody help me?

weary spindle
#

What's the issue...

We need context.

reef flicker
#

Just noticed my day3 Task9 has been unchecked. I completed it and submitted the correct answer yesterday ???

weary spindle
#

Are you sure?

reef flicker
#

Yeah

spring mango
#

Hello Everyone, I think tryhackme is down in my region I am getting a 524 response from cloudflare. Is there anything going on currently? I have had a few people in the area try and they get the same.

weary spindle
#

Yes, staff are working on it

thorny prism
#

I can access any of the thm pages from my VM, on my computer works normally but through my Kali doesn't connect, keep loading and after a time got cloudfare error

reef flicker
#

I did not use up all of my 1 hour for the day

weary spindle
reef flicker
weary spindle
#

So you can either

Sub

Use a VM

Wait until tomorrow.

reef flicker
#

Does it matter if I do the task late?

weary spindle
#

Not at all

#

(except for the daily prizes)

reef flicker
weary spindle
reef flicker
#

But I cant get qualified for the day 3 now right?

weary spindle
#

You can, I'm sure.

reef flicker
#

I dont understand. A day has already passed right? How long after the day can you still be eligible

weary spindle
#

Day 4 has just started.

reef flicker
reef flicker
weary spindle
reef flicker
#

cool

torn vessel
#

Thought I'd try my luck and go for a hit or miss. Anyone in the staff able to confirm general time window for when business trials are started? We had a chat last week with the GAE and was supposed to start today, but no contact after last tuesday whatsoever. Also emailed the representative earlier today with whom we had a talk with, but no response thus far.
Technically no rush, but we kind of had planned a team meeting for reviewing the platform, so would be great if the platform itself would also be available during that time.

weary spindle
torn vessel
#

Been doing that for a while now, but it is what it is. πŸ™‚

weary spindle
#

Staff will see it in here, if they have time to reply in here, they will.

wheat tartan
#

hi, Hey everyone! Do you happen to know how to fix this issue after you are successfully connected to OpenVPN to TryHackMe? When I type http://MACHINE_IP I don't see a website. Also my Access server status and connection have a green checkmark. When I go to vulnversity and click on the rooms IP and try to open it within my browser, it shows this.
This site can’t be reached.
In nmap i see this port 80 is open
and when i put 10.10.10.10 i have acces to page

torn vessel
wheat tartan
#

I launch the room machine before launching the VPN?

#

info : i'm using openvpn in kali linux

wheat tartan
#

yes

#

the port is good all is good

torn vessel
idle latch
#

hi, everyone! i started my vm, see my ip but i cant see the appropriate window of my vm. how to fix it?

weary spindle
wheat tartan
#

http://10.10.10.10/ is running but http://machine_ip/ not running i'm trying a lot of room same problem

weary spindle
#

machineip isn't an ip.

torn vessel
weary spindle
#

You need to start the machine in task 1.

wheat tartan
#

i'm used to it working but here the machine http://machine_ip/ only waits and doesn't execute

#

for all rooms

weary spindle
#

Do you press that green button?

wheat tartan
#

yes i'm told you when i put in kali 10.10.10.10 he working

#

but if i put http://machine_ip/ for any rooms just waitings and don't see the page

weary spindle
torn vessel
wheat tartan
#

10.10.10.10 is one of methods to test if he work openvpn

weary spindle
#

Yes.

wheat tartan
#

yes when i visit the IP of active machine not workings

torn vessel
weary spindle
#

But you're not reading the advice we're telling you.

wheat tartan
torn vessel
#

If you follow the tasks of vulnversity, you find that the web server is not on the usual port

weary spindle
wheat tartan
#

i precise the port 80 for rooms mr.robot

torn vessel
#

6th question of task 2

wheat tartan
#

i have problem in all rooms

#

not only this rooms

#

like rooms mr.robots is port 80

#

not working

#

the machine ip page does not give an error but just loads endlessly and never opens

keen karma
#

Hi, is the site down?

reef flicker
torn vessel
wheat tartan
wheat tartan
#

vpn or machine ?

weary spindle
#

Machine.

torn vessel
wheat tartan
#

10.10.45.70

wheat tartan
agile jackal
#

My open vpn connection doesn't work properly

weary spindle
wheat tartan
weary spindle
# wheat tartan 10.10.45.70

sudo ip link set dev tun0 mtu 1200 Can you try that command for me please,in a different terminal with your VPN on

wheat tartan
#

yes that is work πŸ™‚

#

you are my man Scrubz blobfingerguns

weary spindle
#

Ah, it was your packet size.

And the confusion was you're not doing Vulnersity,

wheat tartan
#

i told you problem for all rooms not just this πŸ™‚

#

so thanks have nice evening

weary spindle
#

Happy hacking.

storm moat
wise zenith
#

Where should I run the /verify command to link my discord?

#

or does it even matter?

weary spindle
#

In here is fine

wise zenith
#

no worries, thank you

civic hawk
#

Hi, I'm on day3 AOC-2023 room, when I start the machine and AttackBox, I can't access to it, I get this error message after initialising Attackbox bar : The connection has timed out
An error occurred during a connection to vnc.tryhackme.tech.
I retried many times and it's always the same error, can you help me to access it pls ?

stiff rivet
#

I'm getting the same thing @civic hawk

stray nimbus
spark wharf
#

i keep getting timeout when trying to setup the vpn

#

but the website says i'm connected

#

i can only do like 1 a day even if it only takes me 5-10 min bc even if i only take 5 min on the attackbox or if i close it before it even loads,i reach my hour for the day

naive dust
stiff rivet
#

thank you McSkidy!

unreal sage
#

just confused which carrer path to follow , earlier i was doing google cybersecurity professional course

stiff rivet
#

we're gonna save christmas don't worry

scenic torrentBOT
#

Gave +1 Rep to @slender plume

stiff rivet
#

im in australia if that helps

stiff rivet
#

try in general

#

this channel for site issues

spark wharf
#

why does my vpn profile have a different ip name than the website? is that the issue? i'm just so lost on how to set up this VPN as my windows doesn't have the right click run as admin or the import file options, they're just through the app

stray nimbus
gloomy parcel
#

what do i do with a discord token?

west chasmBOT
weary spindle
icy wraith
#

Hi, i have some troubles to acces tryhackme

weary spindle
icy wraith
#

oh ok, thanks!

scenic torrentBOT
#

Gave +1 Rep to @slender plume

spring mango
#

Just a quick drop here. Following up on the site being down for us, is there a timeline or anything of when we will be able to access it again?

weary spindle
#

Staff are aware

sand junco
#

Site down on my end

kindred cosmos
#

Trying to setup OpenVPN for the first time and after typing in yes. I try typing in the password tryhackme. It won't work. What is the password to connect?

round compass
#

Is there an issue with THM, I am getting a CloudFlare Timeout error when trying to access the Dashboard. Located in USA East coast. AT&T Fiber network

raw cipher
#

@round compass yes, the team is aware of it and working with the vendor to get it back up.

round compass
#

Okay thanks, will check again in a few hours.

eager fulcrum
west chasmBOT
eager fulcrum
spark wharf
#

i am using the app, and just pressing connect

eager fulcrum
#

It was broken on Windows for a while, I think it still is.

#

I recommend creating a Kali VM and connecting from that directly

weary spindle
#

You need to use the communities one

spark wharf
#

ah interesting i will try to download that one. i just followed the website instructions

eager fulcrum
#

Kali VM better though, no NAT issues

weary spindle
#

Safer

eager fulcrum
#

And no installing hacking tools on Windows

#

Which is no fun

spark wharf
#

i have kali vm but if it's just a website i sometimes just want to pull it up without starting opening the virtualbox

spark wharf
#

yeah cuz the website says i'm connected but i cannot open the webpage regardless so it's not connected

weary spindle
#

Yeah, but I'd go with what James said and use a VM.

tough lava
spark wharf
#

got it

eager fulcrum
spark wharf
#

yeah it wasn't working on that page

kindred cosmos
#

So I am connected to OpenVPN but when trying to connect to the room it asks for a password and it doesn't accept tryhackme

#

I'm in todays Advent room.

#

wait.. not sure but it may work now...

green lantern
kindred cosmos
#

It still doesn't work.

#

I'm using a Kali in VM

weary spindle
spark wharf
weary spindle
#

You don't ssh in to the machine.

kindred cosmos
#

Today's Advent? I am reflecting on this. Maybe I don't have to in order to do the room?

weary spindle
#

That's why you can't SSH in.

spark wharf
#

to connect to the vpn?

weary spindle
#

If they weren't connected, the machine wouldn't be asking for a password.

spark wharf
#

got it

weary spindle
#

All you have to do for AoC 2023 Task 4 is use Cewl, Ffuf and the browser.

#

No ssh.

kindred cosmos
#

Okay. Must I use the Attack box? I am trying to understand the logistics of when and why to use ssh. Like for today's room am I able to complete using my kali VM and just being connected to OpenVPN?

spark wharf
#

to connect to the webpage yes you have to use the attack box or vpn

weary spindle
kindred cosmos
#

Okay.

random river
#

Is this still an issue with the site? It was an issue at least 3 hours ago and I see a lot of people being to access the site, but im still getting this..

spark wharf
#

i've found mearly opening it even if you press shutdown right away uses the hour

random river
weary spindle
#

Yes.

#

Nothing else you can do.

random river
#

fair enough...thx!

green lantern
#

understood, thanks

ashen scroll
#

Is the tryhackme site down? I've been trying to get in since morning but its not loading

spark wharf
#

yes known issue

raw cipher
#

@ashen scroll Yes, the team is aware of it and working with the vendor to get it back up and running.

ashen scroll
#

Okay! Thank you!

iron hinge
west marlin
#

i was doing the advent with the attackbox but wfuzz is not filtering my results, dunno know why ...... it even says it filtered them (filtered is 1 less then total) does anyone has any idea why ?

eager fulcrum
kindred cosmos
#

@eager fulcrum I think I understand it now! Thank you for your help earlier. I was able to complete the room. It was a fun one.

scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

storm moat
zealous yoke
#

cc @storm moat @ashen scroll

scenic torrentBOT
#

Gave +1 Rep to @iron hinge

ashen scroll
iron hinge
tall jacinth
ashen scroll
tall jacinth
#

Just solved for me, server seems back to work

weary spindle
honest phoenix
#

Sorry to cross post, but I noticed an issue with one of the rooms. I posted it in #subs-room-help. Hopefully the staff see the message.

ashen scroll
#

the website is back up for me! yay!

earnest wedge
keen karma
#

same here πŸ™‚

wintry light
raw cipher
#

tryhackme site back up and working

stone trench
#

hey, could someone help me with xrdp

mortal steppe
#

keep getting timeout errors for vnc.tryhackme.tech when loading up the attackbox
is that a known issue currently?

lavish flower
#

Hello everyone. I've been trying to work through the holo room, and have been encountering a significant issue with ovpn.
The original ovpn config file that I had been using stopped working when I came back a few days later to work on the lab. So, I went to the access page to regenerate it. The problem now is that the regenerated ovpn files are only 2KB (compared to the 8KB they should be), and they do not work.
I have tried waiting for the network to shut down and restart, I have tried leaving and rejoining the room, and nothing has managed to fix this issue with generating a working OVPN file. Has anyone else experienced this issue?

#

The 2KB files it generates only show one certificate and one static key. The overall file is 65 lines of code whereas the 8KB files that it should be generating have, as you say, 2 certs, a private key, static key, and ~178 lines of code

#

This is the error it throws trying to run the 2KB ovpn file:

2023-12-04 17:57:11 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-04 17:57:11 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-04 17:57:11 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-12-04 17:57:11 DCO version: N/A
2023-12-04 17:57:11 OpenSSL: error:0480006C:PEM routines::no start line
2023-12-04 17:57:11 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-12-04 17:57:11 Cannot load inline certificate file
2023-12-04 17:57:11 Exiting due to fatal error
storm moat
#

THM is finally working on my end.

warm prairie
#

Iam not sure Iam in the right room but, I have an issue, Iam doin the breaching AD room, and when I try to password spray its just not working, Error:

#

equests.exceptions.ConnectionError: HTTPConnectionPool(host='ntlmauth.za.tryhackme.com', port=80): Max retries exceeded with url: / (Caused by NewConnectionError('<urllib3.connection.HTTPConnection object at 0x7f805ddc4b38>: Failed to establish a new connection: [Errno -2] Name or service not known',))

ivory rover
#

hi i have a connectione rror timedout to openvpn

ivory spruce
#

Free users can only the attackbox for an hour each day. However, another option would be to use your own kali VM.

#

No, it will still eat away at the one hour attackbox use limit.

ivory rover
#

and tryhackme shoaw me that iam connected and its ok for the status

random river
#

@zealous yoke @storm moat THM working on my end now as well...woohoo!

proper monolith
#

all the vpns keep timing out for me too

terse lark
#

hmm can't start an AttackBox as a free user even though I've only had one open for like 8 minutes today. Complaining about the 1 hour limit

wintry light
#

Still down in NZ, two different ISPs and devices

pine ether
#

guys I can't access the site through web and mobile idk what's going on

left comet
#

Hi, sorry to bother, but I was trying to complete day 4 AOC but it kept saying that the link wasn't working, so I tried to reopen the attackbot hoping that would help but it says I need to pay for it and I can not open a VPN because I am completing the challenges on a Chromebook. Any advice?

ivory spruce
# pine ether error code 524?

Can't reach the site as well. Might have to wait until this is resolved. From previous messages, this seems to be a regional thing.

ivory spruce
ivory spruce
left comet
#

I have, but nothing happens

#

It shows the message at the top, but thats it.

ivory spruce
left comet
#

It says for me to access the machine, I either need the attackbox(which I do not have access to unless I pay) or I use a vpn(which I cant access because I am on a Chromebook).

left comet
#

@ivory spruce nothing has happened so I am going to try and watch the video to see if I can either figure out how to access the machine or understand how to get to the answers.

ivory spruce
left comet
#

No, so I’m watching the video that was posted to see if I can figure out how to access it or find the answers.

#

Good news, after watching the key parts of the video. I learned how to use CeWL and assuming that the timer that keeps telling me I can’t start an attack box ends tomorrow(since it will be 24 hours) I will try to start the challenge then. And the video taught me how to find the answers so I can answer the questions. Thank you for your time.

stiff ginkgo
#

still no access from NZ. sadpanda

scenic needle
#

good day, i can't access the site and it gives a timeout: prod-load-balancer.tryhackme.com host error from cloudflare, is it an outage on certain regions or is it just me?

stiff ginkgo
#

certain regions bud

scenic needle
#

sad >_<

ivory spruce
wintry light
#

There's dozens of us, dozens

scenic needle
#

are the site admins aware of this issue?

stiff ginkgo
#

yarr. they think it might be something with cloudflare itself despite what the error page is claiming

#

my money is on something dumb with aws, cert issue or something

#

note if you really cant wait, Tor Browser works fine

wintry light
#

Yea, pretty much any form of VPN will get you in, as long as it lands you somewhere outside Oceania

scenic needle
#

outside oceania and sea

wintry light
#

Yes

ivory spruce
tawdry orbit
#

The issue seems to be regional in nature, but we're still investigating it. πŸ™‚

scenic needle
tawdry orbit
scenic needle
scenic torrentBOT
#

Gave +1 Rep to @tawdry orbit

golden breach
#

Hello, does anyone know why my machine on KOTH keeps timing out? I am using the openvpn and I have tried regening it as well. Everytime I run an nmap scan or gobuster scan it times out. This also goes with trying to brute force with hydra or even trying to connect to SMB it doesnt even work to well. When I stop all these tasks and I ping the machine after a while I get ping requests back. I can also access the machine on port 80 so not sure what the problem is. Can anyone help?

rough totem
#

Hi, I cant connect to Machine for Wireshark: Traffic Analysis room. For the last 10-12 hours it's reading "vnc.tryhackme.tech took too long to respond". Any Plan B for this? Appreciate your response. Thanks

blissful jacinth
#

Hello, My openVPN connects, I get an IP but I cannot ping the machines. How to resolve this issue? I generated new config and used that. Still cannot ping!

lament hornet
scenic needle
lament hornet
ivory spruce
scenic torrentBOT
#

Gave +1 Rep to @scenic needle

vagrant pollen
#

Hi guys, I can't seem to join Enumerating Active Directory Room, is it a premium exercise room? It Keeps showing to the room's I'm in whenever I click joined room. I thought it was a room limit so I deleted those that I've finished. Thanks in advance

west chasmBOT
vital karma
#

Is it just me or the VM's timer is not what it supposed to mean?
I thought as a free user I have collective 1hr per day to use it. But it seems once I run it no matter how much time is left, I can't run it again.
I use the VM for today's advent task and it had 36mins left, but now I cannot run it again for some reason. I had made sure I had terminated the VM when I stopped doing the task, so technically I should have 26mins in the VM for the day. But I don't?
Am I not understanding how it works? Thank you.

ivory spruce
vital karma
#

Sorry. Yes, Attackbox.

ivory spruce
vagrant pollen
ivory spruce
soft folio
#

Hello, I don’t have access to my 2FA and can’t login in to my account. I emailed support no reply it’s already been 2 days . Can someone please help?

vagrant pollen
vital karma
#

And when I try to start Attackbox Uh-oh! Non-subscribed user can only deploy the free AttackBox for 1 hour a day. Subscribe for unlimited access.

ivory spruce
vital karma
#

But I am sure I did not use up 1hr today

vital karma
ivory spruce
vital karma
#

I haven't thought of that, will try that. thank you.

vital karma
ivory spruce
ivory spruce
vapid plover
#

I can't generate "wreath" network vpn file. Could someone confirm that they can't either or is it just me?

ivory spruce
vapid plover
vital karma
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

ivory spruce
#

Glad I could help

rocky lava
#

It looks like if i close AtСackBox I cannot reuse it again 😦

#

And why VPN profile is not working?
2023-12-05 02:24:58 ERROR: Cannot ioctl TUNSETIFF tun: Operation not permitted (errno=1)
2023-12-05 02:24:58 Exiting due to fatal error

ivory spruce
open verge
#

I'm having trouble connecting to the OpenVPN server (54.193.240.194 1194). It used to work last week, but now it just hanges. While OpenVPN is attempting to connect, the tryhackme.com website briefly shows that I am connected, but then OpenVPN just times out.

#

Also, why the heck does AttackBox gives you Ruby 2.5.1. That is an ancient version of Ruby that was released five years ago and reached End-of-Life two years ago, meaning it's no longer receiving security patches or any patches. You're giving users a potentially unpatched/insecure version of Ruby. Even Debian stable gives you Ruby 3.1.

weary spindle
open verge
ivory spruce
weary spindle
open verge
rocky lava
weary spindle
open verge
weary spindle
#

But I do suspect it's for older content support, as for having two images?

Possibly more work/higher costs/ and ensuring the correct image boots up for the correct room.

#

We are also not staff members, but volunteers.

open verge
weary spindle
open verge
#

OK I won't argue with volunteers about the AttackBox versions. That seems to be someone else's choice/responsibility.

weary spindle
#

... I did try telling you that and I pinged the staff member who manages the AB...

#

As it's currently 08:19

They will reply when they can. πŸ™‚

open verge
#

πŸ‘

ivory rover
zealous yoke
# open verge Also, why the heck does AttackBox gives you Ruby 2.5.1. That is an *ancient* ver...

Hey πŸ™‚ so the AttackBox has a lot of moving parts, a lot of different tools that require all sorts of dependencies and a large variety of environments. Updating a/b/c can and has broken x/y/z before. I try my best to maximise compatibility for our older catalogue of content as well as our newer. This may involve running things in containers, or having multiple versions, or for example, maintaining a current version although it isn't the latest. For example, IIRC, there's three different glib versions for this reason, as well as not to mention python2, 3.6, 3.8 and 3.11 which has it's own headaches

I do understand that is a considerably old version of Ruby, but, to be honest, outside of patches, there hasn't really been a reason to update it so far. Updates for dependencies and tooling are not done lightly because of the wider impact it can have and the testing that needs to be done. A great example of this is when I migrated the AttackBox from Metasploit 5 to Metasploit 6. There was weeks of things behind the scenes that surrounded it.

Regarding security concerns, the AttackBox is on a public network, so it is prompted to not store sensitive files, etc

If you have any suggestions or feedback for the AttackBox, send an email to support@tryhackme.com and it will filter through to me πŸ™‚

#

cc @weary spindle

open verge
zealous yoke
# open verge With all due respect, this sounds like an excuse for not doing the work of upgra...

It's not an excuse, I have said that there hasn't been a reason to upgrade Ruby so far. If a content engineer develops a room that uses a tool that requires a certain version of a dependency (i.e. ruby, python), then it will be made compatible on the AttackBox (be it installing or updating that dependency).

So far, I haven't received any requests internally to upgrade Ruby on the AttackBox. I'm not against it, same with any dependency. If it's needed and won't affect other things then sure. I only support and maintain what is on the AttackBox, i.e. if a user wants to use an alternative tool to what is already provided, it is on them to make the environment compatible. But yes, please send and email and we can continue there πŸ™‚

open verge
# zealous yoke It's not an excuse, I have said that there hasn't been a reason to upgrade Ruby ...

Please explain to me specifically what is blocking you from upgrading the Ruby version from 2.5.1? Is it a specific tool in question which is holding it back? Is it a base distro version issue? Have you even tried upgrading the Ruby version? Do you have any basic tests to ensure various tools work with newer versions (ex: running thetool --help and checking the exit stauts)?

Well, you are now officially receiving a request to upgrade the Ruby version on AttackBox. You can't continue using an ancient version of Ruby. It will eventually be removed from Debian/Ubuntu's package repositories. It will obviously not compile against openssl-3.0, and probably will have troubles with newer versions of glibc, gcc, etc. New software versions eventually get released, and people have to upgrade. This is just the natural progression of things. Continuing to cling to Ruby version 2.5.1 (which is five years old) for fear of breaking something, is a losing strategy that might come back to bite you.

ivory rover
weary spindle
ivory rover
#

FR

stiff pebble
#

Started a session and attack box for aoc challenge 4 - completed within 10 minutes but now I'm getting an error saying I can't spin up any more attack boxes as my 1 hour limit has been used

weary spindle
weary spindle
zealous yoke
# open verge Please explain to me specifically what is blocking you from upgrading the Ruby v...

Please explain to me specifically what is blocking you from upgrading the Ruby version from 2.5.1?
I don't have any specific examples to hand without checking. I am just saying that I haven't had any requests internally to update it.

Is it a base distro version issue
This does play a large part of things which can be a whole entire discussion itself

Do you have any basic tests to ensure various tools work with newer versions (ex: running thetool --help and checking the exit stauts)?
Yes, there are checks and tests when tooling has either been installed or upgraded. That includes it, but there are additional checks, for example, tooling often changes argument/syntaxing, or the tool might work differently now compared to how it used to - that needs to be checked too.

Well, you are now officially receiving a request to upgrade the Ruby version on AttackBox.
This needs to be done via the appropriate channel which is support@tryhackme.com

New software versions eventually get released, and people have to upgrade. This is just the natural progression of things
Yes indeed, which is what we do, but it's involved. I used that Metasploit version as an example. Upgrading from MSF5 -> MSF6 while it was a very easy upgrade on the AttackBox itself, it required updating content on our site which goes through it's own processes, etc

Continuing to cling to Ruby version 2.5.1 (which is five years old) for fear of breaking something, is a losing strategy that might come back to bite you
I'll expand this and say that we don't cling onto things. It's all about pacing and bandwidth. The Metasploit example is great, Burp Suite is another. Burp Suite changed it's UI which meant a whole module had to be re-written. This takes time, lots of collaboration with other departments and business matters that are above me

I'm maybe misunderstanding, but it seems you think that I just don't want to action it. It's not that, i'm trying to explain that there're a lot of knock-on effects and considerations that need to be discussed. Be it Ruby, Python, Burp Suite, Metasploit, etc

stiff pebble
weary spindle
stiff pebble
open verge
# zealous yoke > Please explain to me specifically what is blocking you from upgrading the Ruby...

I don't have any specific examples to hand without checking. I am just saying that I haven't had any requests internally to update it.
If you do not have any specify reasons why Ruby cannot be upgraded to 2.5.1, and you have not even tried, than that kind of sounds like a fear or hesitation to upgrade things. This is common when dealing with critical legacy software/systems.

Yes, there are checks and tests when tooling has either been installed or upgraded. That includes it, but there are additional checks, for example, tooling often changes argument/syntaxing, or the tool might work differently now compared to how it used to - that needs to be checked too.
Well have you tried upgrading Ruby to 3.x and seeing what breaks?

This needs to be done via the appropriate channel which is support@tryhackme.com
Like I said before, I am doing this now.

I'll expand this and say that we don't cling onto things. It's all about pacing and bandwidth. The Metasploit example is great, Burp Suite is another. Burp Suite changed it's UI which meant a whole module had to be re-written. This takes time, lots of collaboration with other departments and business matters that are above me
Than why haven't you updated to Ruby 3.x yet?

I'm maybe misunderstanding, but it seems you think that I just don't want to action it. It's not that, i'm trying to explain that there're a lot of knock-on effects and considerations that need to be discussed. Be it Ruby, Python, Burp Suite, Metasploit, etc
Then please explain the exact specific blocking issues preventing you from doing it? So far you haven't been able to do so, just giving generic concerns. Have you even tried to upgrade the Ruby version? What broke?

zealous yoke
# open verge > I don't have any specific examples to hand without checking. I am just saying ...

hesitation to upgrade things. This is common when dealing with critical legacy software/systems.
Hesitation yes because of all of the above

Well have you tried upgrading Ruby to 3.1.x and seeing what breaks?
I haven't, no, but the AttackBox is just one of my responsibilities at TryHackMe. I'm very busy with other work, so it's not as easy as just marking some time to test how a dependency upgrade can impact over 600+ rooms

Than why haven't you updated to Ruby 3.x yet?
see above

open verge
# zealous yoke > hesitation to upgrade things. This is common when dealing with critical legacy...

Hesitation yes because of all of the above
The best remedy to hesitation is the scientific method. Try it, test whether something breaks, repeat. Aka "just try it".

I haven't, no, but the AttackBox is just one of my responsibilities at TryHackMe. I'm very busy with other work, so it's not as easy as just marking some time to test how a dependency upgrade can impact over 600+ rooms
Try it! Test it! See what actually breaks. Or you might get replaced by someone else who is willing to try and push things forward.

weary spindle
open verge
zealous yoke
hallow sparrow
#

Getting a 500 error when uploading a downloadable file based room

weary spindle
# ivory rover . yes

Do you have a VPN config downloaded, or does it error when you try to download it?

ivory rover
#

i have downloaded openvpn without error

#

and i desactivate my vpns

weary spindle
#

What command are you using?

Screenshots will help also you can verify by going to the following link.

west chasmBOT
weary spindle
hallow sparrow
ivory rover
weary spindle
ivory rover
weary spindle
weary spindle
#

Ok.

#

That changes things.

hallow sparrow
weary spindle
hallow sparrow
ivory rover
#

no i have installed the "connect"

weary spindle
#

Ok, please install the one I linked.

ivory rover
#

already started haha

#

same errror

weary spindle
#

Which server are you using?

ivory rover
#

now all server are off

#
  • not connected bit status ok
weary spindle
#

All servers aren't off.

ivory rover
#

can i send you a screenshot please?

weary spindle
#

you can verify and send it here

ivory rover
#

heu how i verify? i dont find any thing on how to verify please

west chasmBOT
ivory rover
#

i have forget to check command ahha

#

all free server look like this

open verge
weary spindle
#

But it can be bugged

stark iris
#

I also have a problem connecting to a server via OpenVPN, from both, Linux and Windows.

scenic torrentBOT
#

Gave +1 Rep to @open verge

stark iris
weary spindle
stark iris
ivory spruce
weary spindle
stiff pebble
# stark iris

I had this exact issue with EU-Reg-3. Swapped to 2 and regenerated my ovpn config for it to connect

stark iris
stark iris
ivory rover
#

please

ivory rover
#

yes

weary spindle
#

And you downloaded and used the client above?

ivory rover
#

i have downloaded but client dont show window

stark iris
#

So, EU 3 doesn't work

weary spindle
#

Nope.

scenic torrentBOT
#

Gave +1 Rep to @stiff pebble

ivory rover
#

if i launch CLI and after i launch the connect, its same errror

weary spindle
#

you don't use the CLI for windows, you use the GUI

ivory rover
#

ok

#

and i use it if there is no window?

silk niche
#

Hey there guys. I am unable to connect to openvpn from my virtual box. I have been a dual boot user so I have no idea what is wrong with my kali linux VM. Can someone please help me

weary spindle
#

Are you using Kali on your host, or a VM?

ivory rover
#

i have this

tawdry orbit
jovial echo
#

I am trying to use openvpn to connect to a AOC room but I keep getting this error when trying to use openvpn.

#

what should I do?

#

I have regenerated the config file like the openvpn room said to do

crystal marlin
jovial echo
#

ah

#

apologies, I did that last night and remembered to use sudo, not sure why I didnt remember tonight

#

thanks

marble breachBOT
#

:hammer: jessicaisbrokelmao#0 has been banned.

stiff ibex
#

is nmap taking ages for anyone else?

ivory rover
jovial vessel
#

any staff who can help me?

#

No one?

jovial vessel
crystal marlin
jovial vessel
#

I need an answer fro my ticket..i paid an annual plan 1 week ago and still my sub is not activate

#

i send mails, ticket

#

0 support

#

can i know whats the problem?

crystal marlin
jovial vessel
#

30/11

#

yes guys okay i can understant it but we paid 100$ to wait 1 month to continue learning??

#

if tryhackme cant handle it, then inform the users not to subscribe for this month

crystal marlin
gray delta
#

Hi, I've tried to message you - Did it get filtered into Message Requests?

ivory rover
cursive ermine
#

Hi, i'm on advent day 5, i pressed 'start machine'

#

nothing happened

#

the machine is not starting

weary spindle
hallow sparrow
spring tiger
#

I am recieving this error when trying to connect to the vpn. VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576

#

sudo openvpn ~/Downloads/sk4r3kr0w.ovpn
2023-12-05 11:08:57 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-05 11:08:57 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-05 11:08:57 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-05 11:08:57 library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
2023-12-05 11:08:57 DCO version: N/A
2023-12-05 11:08:57 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2023-12-05 11:08:57 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-05 11:08:57 UDPv4 link local: (not bound)
2023-12-05 11:08:57 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2023-12-05 11:08:57 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=3aa86bd6 2bc78774
2023-12-05 11:08:58 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-05 11:08:58 OpenSSL: error:0A000086:SSL routines::certificate verify failed:
2023-12-05 11:08:58 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-05 11:08:58 TLS Error: TLS object -> incoming plaintext read error
2023-12-05 11:08:58 TLS Error: TLS handshake failed
2023-12-05 11:08:58 SIGUSR1[soft,tls-error] received, process restarting
2023-12-05 11:08:58 Restart pause, 1 second(s)

gleaming flume
#

What VPN server?

spring tiger
#

THM

gleaming flume
#

I meant which one of these did you select when downloading the VPN?

spring tiger
#

I never got any options.

gleaming flume
#

You didn't download a configuration file from the tryhackme access page? The file that should be your_username.ovpn?

spring tiger
#

no, I clicked

#

and downloaded my ovpn file

#

I changed to US west, downloaded a new file and now it works

gleaming flume
#

Yeah, I didn't know downloading that way was possible, but it probably gave you a config for EU-3 which is broken atm, that server keeps throwing out certificate errors

spring tiger
#

not sure why it kept giving me a EU file but I think that is what it was

#

I have been using THM for 2 years and havent changed that setting.

mystic imp
#

can somebody help me ?

ivory rover
grand pelican
#

Good afternoon! I messaged early last week about my premium membership not being activated and I was told that it would be 24 hours before it's active. They payment cleared via my bank. I submitted a support ticket to no avail.

mystic imp
#

i need a supporter pls

candid copper
#

need help for vpn

weary spindle
#

more context man, you know the drill πŸ˜„

cursive ermine
#

tutorial for virtualbox openvpn. maybe there's something here that can help you

candid copper
#

alright, so I just downloaded a new config file starring my region In and now it's not connecting to the vpn instead exiting with a fatal error

candid copper
#

yes

weary spindle
#

Can you send a screenshot?

candid copper
#

It's working again

#

thanks

weary spindle
#

Did you use sudo? πŸ˜›

long cloak
#

i bought the monthly subscription, how can i change to annualy subscription with aoc coupon?

weary spindle
obsidian orchid
#

What do i do

candid copper
#

i have been trying with and without sudo

#

it suddenly started working

obsidian orchid
#

I used sudo openvpn config.ovpn after the restart message everything ust keeps on repeating

scenic torrentBOT
#

Gave +1 Rep to @cursive ermine

weary spindle
candid copper
#

+1 rep @weary spindle

#

oh? it used to work

#

ty @weary spindle

#

:0

weary spindle
#

kek

long cloak
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

obsidian orchid
weary spindle
obsidian orchid
#

I will try again choosing server

weary spindle
weary spindle
obsidian orchid
#

india

weary spindle
obsidian orchid
#

IN reg 1 didnt work EU reg 1 worked thanks

weary spindle
#

Exc

#

Excellent

misty pulsar
#

Hey guys for some reason i can't connect to EU-Regular-3... I can to the other 2 servers from EU, but I'm allways getting disconnected and then the connection is established again. Neither 1 second... the marker is always like on 0:00

#

Can anyone help me?

#

In EU-Regular-3 they said that my certificate is invalid...

misty pulsar
#

maybe reinstalling openvpn would fix it?

weary spindle
#

No

#

Eu-Reg-3 is broken,

misty pulsar
#

oh!! ok, ok! Now I get it xD

#

Thanks, it makes sense

#

And the other 2 EU servers... any idea why keeps disconnecting and establishing new connections?

#

I do not have any other VPN connected

weary spindle
#

Which OS?

misty pulsar
#

MAC

#

OS

weary spindle
#

Did you install brew then run it that way?

misty pulsar
#

i used the tryhackme openvpn connect download on access machines

weary spindle
#

Nah, for MacOs you need to use brew

misty pulsar
#

Oh ok, i followed the tab for MAC i thought it should work like that. I'm going to try with brew then. Thank you @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

tribal reef
#

Hello guys, I'm having some troubles opening a VPN Connection:
Options error: Unrecognized option or missing or extra parameter(s) in TheSpecia.ovpn:15: data-ciphers (2.4.7)
I've already tried the fixes suggested by some users in this channel like updating version (This is the last one), adding some lines to the .ovpn file
Nothing is working

weary spindle
#

Which OS are you using?

full bobcat
#

Hello guys! I purchased the premium, I even received the confirmation email, but my account still does not have the premium enabled. The message "Payment Pending" stays in an eternal loop. What can I do in this case?

tribal reef
full bobcat
#

Can anybody help me with this?

crystal marlin
# full bobcat Can anybody help me with this?

Have you emailed support already?
That's the only way to resolve it.

But bear in mind that it might take them a little bit to get back to you, due to the sheer amount of support requests due to Advent of Cyber πŸ™‚

full bobcat
#

@crystal marlin Thank you! I'll wait a couple of hours and email support if necessary. Ty!

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

zealous yoke
ivory rover
marble breachBOT
ivory rover
#

ahahah i dont click ahah

marble breachBOT
#

Done!

ivory rover
knotty storm
ivory rover
knotty storm
#

then use the gui..

ivory rover
#

@knotty storm

knotty storm
#

check this..

ivory rover
#

i have installed this

knotty storm
#

then delete that and install the above mentioned

ivory rover
ivory rover
#

@knotty storm?

jovial crest
#

hey, i have problem with OpenVPN, tried everything that is on youtube, and cant find helpon google

naive dust
#

Does anyone know how I can disconnect for the OVPN on my VM?

jovial crest
#

2023-12-05 16:56:16 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-05 16:56:16 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.

naive dust
#

do you have a firewall up?

jovial crest
#

client
dev tun
proto udp
sndbuf 524288
rcvbuf 524288
remote 54.76.30.11 1194
resolv-retry infinite
nobind
explicit-exit-notify 3
persist-key
persist-tun
remote-cert-tls server
auth SHA512
data-ciphers AES-256-CBC
key-direction 1
verb 3
reneg-sec 0
<ca>
this is my .ovpn

#

i am using kali linux on virtualbox

naive dust
#

try turning off your firewall if you have one up

#

did you download you config file?

jovial crest
cerulean crystal
#

Hello guys. I switched to my student mail and verified it on tryhackme but when I try to subscribe there's no discount in the price. Any fix?

knotty storm
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

jovial crest
#

i use bridged connection on my virtual box

knotty storm
#

same I did but didn't got this error hmm πŸ€”

jovial crest
#

it is said that new versions of openvpn have this problem

#

can i install openVPN 2.4.7 somehow?

knotty storm
#

from their website..

jovial crest
#

tired it but command make, and make install doesnt work

knotty storm
#

if that's the case scrubz might be able to help you with this you around scrubz?

jovial crest
#

no idea what that is :/

#

Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 36, compression: 'stub'
2023-12-05 17:14:47 Timers: ping 5, ping-restart 120

it looks like it connects and stops immediatelly

#

and this is status

openvpn.service - OpenVPN service
Loaded: loaded (/lib/systemd/system/openvpn.service; disabled; preset: disabled)
Active: active (exited) since Tue 2023-12-05 17:16:28 EST; 1s ago

#

Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.

#

im adding it to my .ovpn file and it doesn/t help

#

can someone send me working .ovpn file?

jovial crest
#

EU-Regular 1

gleaming flume
#

hmm, I am assuming you tried regenerating and redownloading the config file?

jovial crest
#

yes

gleaming flume
#

What openvpn version are you using?

jovial crest
#

OpenVPN 2.6.7 x86_64-pc-linux-gnu

ivory rover
gleaming flume
jovial crest
tribal reef
random meteor
#

Hello, how do I use my terminal after establishing a connection using ovpn without having to terminate it?

random meteor
# random meteor Hello, how do I use my terminal after establishing a connection using ovpn witho...

Like when I use the 'sudo openvpn /path/to/file.ovpn' command the terminal will have this
2023-12-06 01:24:51 VERIFY EKU OK
2023-12-06 01:24:51 VERIFY OK: depth=0, CN=server
2023-12-06 01:24:51 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
2023-12-06 01:24:51 [server] Peer Connection Initiated with [AF_INET]3.7.33.194:1194
2023-12-06 01:24:51 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2023-12-06 01:24:51 TLS: tls_multi_process: initial untrusted session promoted to trusted
2023-12-06 01:24:53 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2023-12-06 01:24:53 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.17.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.17.101.133 255.255.128.0,peer-id 32'
2023-12-06 01:24:53 OPTIONS IMPORT: --ifconfig/up options modified
2023-12-06 01:24:53 OPTIONS IMPORT: route options modified
2023-12-06 01:24:53 OPTIONS IMPORT: route-related options modified
2023-12-06 01:24:53 Using peer cipher 'AES-256-CBC'
2023-12-06 01:24:53 net_route_v4_best_gw query: dst 0.0.0.0
2023-12-06 01:24:53 net_route_v4_best_gw result: via 192.168.52.2 dev eth0
2023-12-06 01:24:53 ROUTE_GATEWAY 192.168.52.2/255.255.255.0 IFACE=eth0 HWADDR=00:0c:29:6a:6c:85
2023-12-06 01:24:53 TUN/TAP device tun0 opened
2023-12-06 01:24:53 net_iface_mtu_set: mtu 1500 for tun0
2023-12-06 01:24:53 net_iface_up: set tun0 up
2023-12-06 01:24:54 net_addr_v4_add: 10.17.101.133/17 dev tun0
2023-12-06 01:24:54 net_route_v4_add: 10.10.0.0/16 via 10.17.0.1 dev [NULL] table 0 metric 1000
2023-12-06 01:24:54 Initialization Sequence Completed
2023-12-06 01:24:54 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 32, compression: 'lzo'
2023-12-06 01:24:54 Timers: ping 5, ping-restart 120
2023-12-06 01:24:54 Protocol options: explicit-exit-notify 3

random meteor
gleaming flume
random meteor
gleaming flume
random meteor
gleaming flume
#

Sorry I thought you were having issues getting the VPN to work, I should have read more carefully

random meteor
#

It's okay thanks for the help

proper stag
#

How do i get eJPT added to my profile?

gleaming flume
scenic torrentBOT
#

Gave +1 Rep to @gleaming flume

naive dust
#

Anyone know how to safely disconnect from OpenVPN?

gleaming flume
proper stag
bitter aurora
#

I have same problem with every vpn, but when i use eu-vip-1 or 2 it connect. try it.

terse lark
#

having the same problem for 2 days in a row now. After having opened and closed an AttackBox 2 times, it now says that my 1 hour is full even though I hadn't used even half of the time. Genuinely considering just trying out hackthebox academy instead since this site reeally doesn't want to let me do any tasks

gleaming flume
bitter aurora
#

Same as Jarek Balcerzak, something with --cipher is not set when try every vpn server etc. But eu-vip servers connect every time. ehh, im new here i should write to him.

gleaming flume
#

Strange, seems like a fair amount of people have been having issues like that. I know EU-3 is not working atm, but all of the others should not give such errors

#

Not sure what the issue is tbh

ivory rover
#

you too cannot connect o openvpn?

bitter aurora
#

only with eu-vip-1 or 2. so my problem is solved, but it looks like rest of servers gives errors --cipher not set ...

gleaming flume
#

One of the ones that doesn't work (that is not EU-3)

ivory rover
#

Wed Dec 6 02:27:33 2023 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Wed Dec 6 02:27:33 2023 TLS Error: TLS handshake failedi have this. how i solve this please?

bitter aurora
#

one moment i start vm and see what error is it.

gleaming flume
bitter aurora
#

sorry i have that problem 2 weeks ago now it looks like i connect to eu2 server, but still it starts with _ openvpn Downloads/eu2.ovpn
[sudo] password for kali:
Sorry, try again.
[sudo] password for kali:
2023-12-05 20:31:50 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-05 20:31:50 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-05 20:31:50 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-05 20:31:50 library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
2023-12-05 20:31:50 DCO version: N/A
2023-12-05 20:31:50 TCP/UDP: Preserving recently used remote address: [AF_INET]63.35.110.70:1194
2023-12-05 20:31:50 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-05 20:31:50 UDPv4 link local: (not bound)
2023-12-05 20:31:50 UDPv4 link remote: [AF_INET]63.35.110.70:1194
2023-12-05 20:31:50 TLS: Initial packet from [AF_INET]63.35.110.70:1194, sid=a1604d12 4735be84
2023-12-05 20:31:51 VERIFY OK: depth=1, CN=ChangeMe
2023-12-05 20:31:51 VERIFY KU OK
2023-12-05 20:31:51 Validating certificate extended key usage
2023-12-05 20:31:51 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-12-05 20:31:51 VERIFY EKU OK
2023-12-05 20:31:51 VERIFY OK: depth=0, CN=server
2023-12-05 20:31:51 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bits RSA, signature: RSA-SHA256, peer temporary key: 253 bits X25519
2023-12-05 20:31:51 [server] Peer Connection Initiated with [AF_INET]63.35.110.70:1194
2023-12-05 20:31:51 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2

#

2023-12-05 20:31:51 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2023-12-05 20:31:51 TLS: tls_multi_process: initial untrusted session promoted to trusted
2023-12-05 20:31:52 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2023-12-05 20:31:52 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.14.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.14.63.72 255.255.128.0,peer-id 0'
2023-12-05 20:31:52 OPTIONS IMPORT: --ifconfig/up options modified
2023-12-05 20:31:52 OPTIONS IMPORT: route options modified
2023-12-05 20:31:52 OPTIONS IMPORT: route-related options modified
2023-12-05 20:31:52 Using peer cipher 'AES-256-CBC'
2023-12-05 20:31:52 net_route_v4_best_gw query: dst 0.0.0.0
2023-12-05 20:31:52 net_route_v4_best_gw result: via 192.168.0.1 dev eth0
2023-12-05 20:31:52 ROUTE_GATEWAY 192.168.0.1/255.255.255.0 IFACE=eth0 HWADDR=08:00:27:cb:7e:f5
2023-12-05 20:31:52 TUN/TAP device tun0 opened
2023-12-05 20:31:52 net_iface_mtu_set: mtu 1500 for tun0
2023-12-05 20:31:52 net_iface_up: set tun0 up
2023-12-05 20:31:52 net_addr_v4_add: 10.14.63.72/17 dev tun0
2023-12-05 20:31:52 net_route_v4_add: 10.10.0.0/16 via 10.14.0.1 dev [NULL] table 0 metric 1000
2023-12-05 20:31:52 Initialization Sequence Completed
2023-12-05 20:31:52 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 0
2023-12-05 20:31:52 Timers: ping 5, ping-restart 120
2023-12-05 20:31:52 Protocol options: explicit-exit-notify 3

#

So now it looks like eu2 is ok for me.

gleaming flume
#

Yeah that looks fine now

bitter aurora
#

Yes, and note about cipher not set is still but it set ip and connect. I dont know why it somtimes not work. but for me everything is ok for now thanks.

gleaming flume
#

Yeah the cipher is not set manually with --cipher and it won't use an old cipher, but it is able to auto-negotiate to use AES-256-CBC and make a connection which is what it should do. Still not sure on what your original issue was though, but I guess it doesn't matter much now as long as it working for ya.

ivory rover
# gleaming flume Can you share the entire output as well?

Wed Dec 6 02:37:48 2023 SIGUSR1[soft,tls-error] received, process restarting
Wed Dec 6 02:37:48 2023 MANAGEMENT: >STATE:1701826668,RECONNECTING,tls-error,,,,,
Wed Dec 6 02:37:48 2023 Restart pause, 256 second(s)
Wed Dec 6 02:42:04 2023 TCP/UDP: Preserving recently used remote address: [AF_INET]54.76.30.11:1194
Wed Dec 6 02:42:04 2023 Socket Buffers: R=[65536->524288] S=[65536->524288]
Wed Dec 6 02:42:04 2023 UDPv4 link local: (not bound)
Wed Dec 6 02:42:04 2023 UDPv4 link remote: [AF_INET]54.76.30.11:1194
Wed Dec 6 02:42:04 2023 MANAGEMENT: >STATE:1701826924,WAIT,,,,,,
Wed Dec 6 02:42:04 2023 MANAGEMENT: >STATE:1701826924,AUTH,,,,,,
Wed Dec 6 02:42:04 2023 TLS: Initial packet from [AF_INET]54.76.30.11:1194, sid=c1c36afb bd474524
Wed Dec 6 02:42:04 2023 VERIFY OK: depth=1, CN=ChangeMe
Wed Dec 6 02:42:04 2023 VERIFY KU OK
Wed Dec 6 02:42:04 2023 Validating certificate extended key usage
Wed Dec 6 02:42:04 2023 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Wed Dec 6 02:42:04 2023 VERIFY EKU OK
Wed Dec 6 02:42:04 2023 VERIFY OK: depth=0, CN=server
Wed Dec 6 02:43:05 2023 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Wed Dec 6 02:43:05 2023 TLS Error: TLS handshake failed

bitter aurora
#

that's my fault, i should reply Jarek B and rest people with problems that eu-vip servers working for me when other not but it was 3 weeks ago ang looks like eu2 for example now work.

#

*and

ivory rover
gleaming flume
gleaming flume
ivory rover
#

ho im connected just by redoawnloading the file

ivory rover
gleaming flume
# ivory rover fr

Yeah certain countries block VPN's / UDP traffic and it could cause issues for you. Though if you are NA/EU you should be fine

ivory rover
#

and after this how me im connected, i must do what ?

crude agate
#

I have been away for awhile. I am trying to login but it keeps asking me for a code from my authentication application. I have not set up the authentication application. Help me login

gleaming flume
gleaming flume
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

crude agate
#

I send a message 2 days ago

gleaming flume
#

Support is really busy this time of year, I think response time is like 8-9 days right now

ivory rover
gleaming flume
ivory rover
#

you dont understand me. how i enter on the hacker's machine

#

becuse i think its not the machine wich we navugate on tryhackme rooms ahah

gleaming flume
#

The hacker's machine? Like the machine you send attacks from? You're right that I am not quite understanding what you are trying to do

ivory rover
#

Like the machine you send attacks from => yes

gleaming flume
#

The machine you would attack from can be one of two: the attackbox which is a browser based machine from tryhackme or your VM running OpenVPN to connect to the network.

bitter aurora
gleaming flume
#

The machines you launch how Bimbol explained are the machines that you attack or the victim machines (most of the time)

ivory rover
gleaming flume
#

Yes, or you can use the attackbox

ivory rover
#

but for example in this question it say me what is the content of file what i dont create so how i do this if its me who create my own VM?

ivory rover
bitter aurora
#

download VMwareplayer, or Virtualbox and Kali i think is the best choice.

gleaming flume
#

You would connect to it in some way, I think for that room you ssh in iirc? From your own VM

ivory rover
ivory rover
gleaming flume
#

mhm, you make your own VM and then use the credentials provided to ssh into that VM you launched within the room. On the Vm you ssh into should be all the files you need to complete that room/task

#

Task 2 of that room should give a guide of how to SSH into, as for how to make the VM there are plently of guide on google/youtube to help you out

ivory rover
#

ha ok

#

i understand now

#

before you said that, i thinked that it show me how to connect to ssh

#

so i understand now thanks a lot

gleaming flume
#

Np, happy to help

ivory rover
#

so now good night i need to sleep

gleaming flume
#

Haha, goodnight

bitter aurora
ivory rover
#

i do a thing i dont must?

patent patio
#

Can I use Oracle VM VirtualBox instead of OpenVPN?

gleaming flume
gleaming flume
patent patio
#

got it. Thank you, Hiro. I feel stupid for not realizing that... oops.

naive dust
gleaming flume
naive dust
night turtle
#

hello guys

I want to access the tryhackme user via ssh, but I get Permission denied.
Username: tryhackme
Password: tryhackme

Is there a problem or am I making a mistake while typing the password?

#

ignore pls Δ± solved thank u

slender sluice
#

how do I link my thm account?

worldly grove
#

im using my own kali vmware, is there a passlist that I can download for use on THM rooms?

#

Specifically Hydra is what i'm doing atm.

bitter aurora
worldly grove
bitter aurora
# slender sluice how do I link my thm account?

what exacly you want to do. in accout settings you have social media twitter,instageram etc, you can find your id badge and put on website can be interactive with rank/rooms completed/badges or static image.

scenic torrentBOT
#

Gave +1 Rep to @bitter aurora

bitter aurora
worldly grove
#

i finished the room no worries. πŸ˜„

jovial ingot
#

anyone know how to best contact support? i raised a ticket but haven heard anything back from them

jovial ingot
ivory spruce
jovial ingot
ivory spruce
jovial ingot
jovial crest
ivory spruce
#

Have you tried to connect to 10.10.10.10 to verify if you are already connected?

ivory spruce
jovial crest
#

ok, i run my older Kali version with openvpn 2.6.0 and it worked

#

i will clone it and update opevpn to 2.6.7 and see if it will still work

jovial crest
#

ok, it works on kali 2022.3... and yesterday when i installed it on newest Kali it didnt

severe flower
#

Hi, anyone else having a problem with connection to the Guacamole server in the day 5 challenge? I tried to restart the VM, but it didnt work. Also I dont have an option to use "Remote Desktop", because my version of OS (Windows 11 Home) doesnt support it. Any ideas? πŸ™‚

ivory rover
zealous yoke
ivory rover
#

it was just a little bugged haha

#

i have finished linux2

ivory rover
#

just my VM who is a little laggy

bitter aurora
# jovial crest i have exact same message, How did you fix it?

I dont fix command is ok sudo openvpn /path/downloaded.file. try use eu2 server if you dont have acces to eu-vip. if you still have problem i can search my emails where thm support try to help my. But they only say things like "be sure that only one openvpn is vorking etc" and explain how to kill processes if there is more then one...

frail marten
#

Can any of the admins help me out??

ivory spruce
weary spindle
ivory spruce
finite estuary
#

How do you change it to "United States" in your profile if there is no option?

#

In subscription say: "Want to pay in dollars? Change your country to "United States" on your profile." but in profile, country does't exist

frail marten
ivory spruce
frail marten
ivory spruce
warm sphinx
#

Hello, I want to report a problem comnnecting to openVPN, I have downloaded the gui app on windows and tried different c
Versions of the config file ... what could be the problem ?

weary spindle
#

N00R

#

Have you downloaded the community one?

warm sphinx
warm sphinx
# weary spindle Yes

I will try it ty, even on my other pc I have the one suggested in the room and it is working ...

quick gyro
#

Strange question ... is support chat even working now as response time shows Within week and I have not got any response about my submited ticket for 2 days

weary spindle
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

quick gyro
#

daaamn, thats long :/ Thx for reply tho

maiden stone
#

Hello! I need some help. I made payment for my December subscription, unfortunately My THM account is still showing "Go Premium". I made another payment today, and wont believe the "Payment Pending" confirmation has been in a loop for the last 5 hours...and still my account is saying "Go Premuim". Come on! 2 payment! Is there a problem with the payment processing at THM?

gleaming flume
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

sand plinth
#

Hey, can I have someone's username if he never did a single room + his account is old and inactive?

maiden stone
knotty storm
knotty storm
weary spindle
sand plinth
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
sand plinth
weary spindle
wooden fern
#

Hi all, I have a random (and probably dumb) question and apologies if this has been asked before.
Does anyone know why in some labs I am unable to type the backslash '\' symbol?
Some machines it works, currently trying to do day5 of AOC but i'm stuck just entering the commands

wooden fern
jovial vessel
#

Guys how much i should wait to activate my sub ? 1 year?

#

thats the support for your users?

meager forge
#

Any body knows when the list of daily winners will be announced for advent of cyber

#

I guess it was to be announced today

bitter aurora
wooden fern
scenic torrentBOT
#

Gave +1 Rep to @bitter aurora

tepid galleon
#

purchased the premium on the 4th Dec 2023, however it is still not activated till this day

gleaming flume
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

tepid galleon
#

Alright thanks Hiro, I actually reached out to them too but they have yet to get back to me for the past 2 days. Even submitted a ticket as well but still on hold

gleaming flume
#

Yeah unfortunately they are pretty busy this time of year and I think the response time is around 7-9 business days atm

tepid galleon
#

Aw man, that’s a bummer.
Anyways thanks Hiro, you’ve been of great help

gleaming flume
#

np

jade hearth
misty lake
#

is there a (quick) way to copy files onto the attackbox?

heavy basalt
#

python3 -m http.server

visual shard
#

is there a limit on no. of friends that we can add ?

crisp tinsel
#

why is my vpn connection so slow πŸ˜‚

weary spindle
#

You're on windows?

crisp tinsel
#

mac

fluid cloud
#

which room is the room id 'kali'

silent frigate
#

When I try to access machine ip address in attackbox its shows unable to connect in attackbox browser. What is the issue here?

broken locust
#

Hi, I sent an e-mail back on Sep-27, but still no reply. I am very dissapointed on your service. This is the worst platform and service I've ever faced!!

young jacinth
#

hey, is there a good way to copy a room's task files over to the attackbox if they're not already provided in the rooms folder on the attackbox? haven't figured this out

#

I know I could use wget with the download url but this room didn't have a specific url when I clicked download (one of the AoC side quest ones)

faint elk
#

hi all was wondering if someone could help me out i tried downloading the holo network vpn after having some troubles trying to connect i noticed within the ovpn file there is nothing in there just a blank ovpn file was wondering if anyone has come across this and if they have any tips to get past this cheers!

ivory spruce
ivory spruce
faint elk
#

I have indeed, it actually been an ongoing issue for the past 3 days thankyou for the reply

faint elk
pseudo holly
#

My rank doesn't seem to be going up even though I've apparently reached the necessary score.

#

Actually it shows correct here so it's only on the site

ivory spruce
full bobcat
#

Hi guys, I signed up for premium 36 hours ago. I received the payment receipt, the amount was credited to my credit card, but I still see the "go premium" message on my dashboard. I sent an email to support and haven't heard back yet. Any solution?

gleaming flume
full bobcat
scenic torrentBOT
#

Gave +1 Rep to @gleaming flume

solid oak
#

It's probably a somewhat difficult position to hire and train for, given the nature of the business. I don't blame them for the extended wait.

gleaming flume
#

Yeah the wait can't be helped that much, but it is a bit concerning that I have seen now like 4 people with the same issue in this chat within the past few days. Hope they get it sorted out soon

weak pelican
#

Anyone to help me

#

I think I am stuck on the Jr Pentester Path precisely on the Walking the website room

ivory rover
#

please someone can help me to know which are the login and password for the command injection in owasp room please?

#

because ssh tryhackme@ip dont work

ivory rover
#

@ivory spruce

ivory rover
ivory spruce
ivory rover
#

its only for the website

#

i have already try to ssh this ip

ivory spruce
ivory rover
#

i'm idiot, using the command injection hahaha

#

its logic

ivory spruce
#

Is there no fields in the web page you can use to insert or inject commands to be interpreted by the OS?

ivory rover
#

What is the user's shell set as? i dont understand this because im french

ivory rover
#

thanks

pseudo holly
magic spade
#

Hello I have a payment issue , I raise a ticket and no one replay can someone help from support team

ivory spruce
# pseudo holly Still the same

Well, so long as it is reflected here, then that means it is updated in the backend. You'll probably just have to wait until it is reflected in the web page.

edgy cloak
#

guys, there's something that is going on in the VMs? cause been lagged out like all day long

ivory spruce
edgy cloak
#

the attackbox in general

ivory spruce
#

There are folks who do point out that they experience lags in it, but others are using it just fine.

#

I have used the Attackbox myself a couple of times and there are times I experience lags, but other times, I haven't. I suggest using your own VM for the best experience (if your resource permits).

edgy cloak
#

idk if there are some routing problems... cause im from latam so, maybe is that

#

or the high caudal of requests

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

jovial vessel
#

I wait for 8 days and still ignore me

#

But they took my money asap

#

I paid for a sub, it didn’t activate

#

And now I wait when the support decide to activate my sub

#

But the took my money

#

1 ticket . 5 mails , 1 support chat
I can’t reach them

cursive ermine
#

hi i have a question pls. so i installed a vm on my laptop coz i always run out of attackbox time. (not a subscriber). i did it perfectly the first time the other day. now i'm launching my vm, and i clicked 'start machine' on tryhackme website...

#

when i open the terminal on my vm... do i have to install openvpn again?

jovial vessel
#

This will be your situation …

#

Not even in progress from 30/11

ivory spruce
jovial vessel
#

The transaction is made , I confirm it with my bank

#

Waiting 8 days now

ivory spruce
# jovial vessel 1 ticket . 5 mails , 1 support chat I can’t reach them

How often have you sent them an email? After sending one, you might have to wait for ~8 to 9 working days for THM Support to get back to you as they are quite busy at this time due to the AoC event.

Also, please do not send follow up emails within the said time (~ 8 to 9 working days) as it will push your ticket down the queue.

jovial vessel
#

If we need to loose 1 month trying to communicate with support for our already paid sub…

ivory spruce
gleaming flume
#

Well now that I see your message we can move here @cursive ermine can you share the whole OpenVPN output?

cursive ermine
#

Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-06 23:50:54 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-06 23:50:54 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]

gleaming flume
#

There is more than that though right? Or is that really it

still ice
#

client dev tun proto udp sndbuf 0 rcvbuf 0 remote 54.193.147.96 1194 resolv-retry infinite nobind explicit-exit-notify 3 persist-key persist-tun remote-cert-tls server auth SHA512 cipher AES-256-CBC key-direction 1 verb 3 reneg-sec 0

#

this failes for me

cursive ermine
#

2023-12-06 23:50:54 library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
2023-12-06 23:50:54 DCO version: N/A
2023-12-06 23:50:54 TCP/UDP: Preserving recently used remote address: [AF_INET]52.4.198.155:1194
2023-12-06 23:50:54 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-06 23:50:54 UDPv4 link local: (not bound)
2023-12-06 23:50:54 UDPv4 link remote: [AF_INET]52.4.198.155:1194
2023-12-06 23:50:54 TLS: Initial packet from [AF_INET]52.4.198.155:1194, sid=68d4988b 3eabdff9
2023-12-06 23:50:55 VERIFY OK: depth=1, CN=ChangeMe
2023-12-06 23:50:55 VERIFY KU OK
2023-12-06 23:50:55 Validating certificate extended key usage
2023-12-06 23:50:55 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-12-06 23:50:55 VERIFY EKU OK
2023-12-06 23:50:55 VERIFY OK: depth=0, CN=server
2023-12-06 23:50:55 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bits RSA, signature: RSA-SHA256, peer temporary key: 253 bits X25519
2023-12-06 23:50:55 [server] Peer Connection Initiated with [AF_INET]52.4.198.155:1194
2023-12-06 23:50:55 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2023-12-06 23:50:55 TLS: tls_multi_process: initial untrusted session promoted to trusted
2023-12-06 23:50:56 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)

#

2023-12-06 23:50:56 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.6.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.6.120.190 255.255.128.0,peer-id 88'
2023-12-06 23:50:56 OPTIONS IMPORT: --ifconfig/up options modified
2023-12-06 23:50:56 OPTIONS IMPORT: route options modified
2023-12-06 23:50:56 OPTIONS IMPORT: route-related options modified
2023-12-06 23:50:56 Using peer cipher 'AES-256-CBC'
2023-12-06 23:50:56 net_route_v4_best_gw query: dst 0.0.0.0
2023-12-06 23:50:56 net_route_v4_best_gw result: via 10.0.2.2 dev eth0
2023-12-06 23:50:56 ROUTE_GATEWAY 10.0.2.2/255.255.255.0 IFACE=eth0 HWADDR=08:00:27:cb:7e:f5
2023-12-06 23:50:56 TUN/TAP device tun1 opened
2023-12-06 23:50:56 net_iface_mtu_set: mtu 1500 for tun1
2023-12-06 23:50:56 net_iface_up: set tun1 up
2023-12-06 23:50:56 net_addr_v4_add: 10.6.120.190/17 dev tun1
2023-12-06 23:50:56 net_route_v4_add: 10.10.0.0/16 via 10.6.0.1 dev [NULL] table 0 metric 1000
2023-12-06 23:50:56 sitnl_send: rtnl: generic error (-17): File exists
2023-12-06 23:50:56 NOTE: Linux route add command failed because route exists
2023-12-06 23:50:56 Initialization Sequence Completed
2023-12-06 23:50:56 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 88
2023-12-06 23:50:56 Timers: ping 5, ping-restart 120
2023-12-06 23:50:56 Protocol options: explicit-exit-notify 3

gleaming flume
#

That is a working connection

ivory spruce
ivory spruce
cursive ermine
#

When i try to put in the active machine ip address in the browser it doesn't go there. just keeps loading

gleaming flume
#

Which room is this?

cursive ermine
#

and then after a while, "the connection has timed out"

#

Linux fundamentals 2

gleaming flume
#

Is the machine up now? If so what is the IP?

cursive ermine
#

10.10.8.153

ivory spruce
gleaming flume
#

Well I also don't think that room is running http/https is it?

#

Hmm guess it is, I get an apache page for the IP so I guess it should at least load something for you if it is working

gleaming flume
cursive ermine
#

i closed it a couple times...

#

so when i open the terminal, do i have to run sudo openvpn always?

gleaming flume
#

You run the command and then keep that tab open and you can open a new tab/window to run commands in. If you close the openvpn tab you close the connection

#

As long as the tab/window stays open, so does the connection

cursive ermine
#

got it. so i went to the openvpn room... and still after 'start machine' i copy the ip address.. and the browser is just loading..

#

but if i try to go to google or try hackme website, the site opens fast.

gleaming flume
#

hmm, it is still not working right then

cursive ermine
gleaming flume
#

What does your access page say? Does it say you are connected

cursive ermine
#

yes, connected with green check

still ice
#

which room is it. there might not be a web server there

#

you might have to ssh in

cursive ermine
#

i went to the openvpn room itself...

gleaming flume
#

There is a http service for the openvpn room which he said he was on

#

And what is that IP? For OpenVPN room

cursive ermine
#

it's like the step-by-step guide to connect... and told me to click on the ip address..

#

10.10.87.244

gleaming flume
#

Yeah strange, it loads just fine for me

#

If you run ip a what do you get?

still ice
#

ok that does have an http server

cursive ermine
#

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host noprefixroute
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 08:00:27:cb:7e:f5 brd ff:ff:ff:ff:ff:ff
inet 10.0.2.15/24 brd 10.0.2.255 scope global dynamic noprefixroute eth0
valid_lft 78936sec preferred_lft 78936sec
inet6 fe80::ea5e:338b:e720:d2c7/64 scope link noprefixroute
valid_lft forever preferred_lft forever
15: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1200 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.6.120.190/17 scope global tun0
valid_lft forever preferred_lft forever
17: tun1: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.6.120.190/17 scope global tun1
valid_lft forever preferred_lft forever
inet6 fe80::46:d1e0:c10a:bc2/64 scope link stable-privacy proto kernel_ll
valid_lft forever preferred_lft forever

gleaming flume
#

hmm, two tun's? Do you have two VPNs running?

#

try running sudo killall openvpn and then starting the vpn up again like normal

cursive ermine
gleaming flume
#

Try it anyways, because that is a strange output

solid oak
# jovial vessel If we need to loose 1 month trying to communicate with support for our already p...

I know it's frustrating, I'm dealing with the same thing (tried twice and got charged twice lol) but if there's one thing I can promise you, it's that they'll make it right and take care of you when they get around to it. I used to pay yearly and my old boss stuck a business license on my account, then removed it and it didn't restore my subscription, but they refunded me for the difference. I wasn't surprised that it happened either, it was such an edge case lol

cursive ermine
#

ip a result:

#

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host noprefixroute
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 08:00:27:cb:7e:f5 brd ff:ff:ff:ff:ff:ff
inet 10.0.2.15/24 brd 10.0.2.255 scope global dynamic noprefixroute eth0
valid_lft 86333sec preferred_lft 86333sec
inet6 fe80::ea5e:338b:e720:d2c7/64 scope link noprefixroute
valid_lft forever preferred_lft forever
3: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.6.120.190/17 scope global tun0
valid_lft forever preferred_lft forever
inet6 fe80::fe26:ccf1:42d4:3261/64 scope link stable-privacy proto kernel_ll
valid_lft forever preferred_lft forever

gleaming flume
#

Looks better, does the site load now?

cursive ermine
#

connected!!

#

omggggg

gleaming flume
#

Woo!

cursive ermine
#

thank you so muchhhh

gleaming flume
#

np

cursive ermine
#

sorry.. last question for today... if i wanna switch room, do i have to terminate machine and start a new one? or i can keep the same on running in a different room?

gleaming flume
#

They auto terminate after like an hour as well

ivory spruce
cursive ermine
#

ok thanks again. appreciate your help and patience.

gleaming flume
still ice
#

I created an alias to killall OpenVPN just for this reason

gleaming flume
#

It is certainly a helpful command

still ice
#

ps aux | grep openvpn

wanton garden
#

Does the coupon auto apply to automatic renewal subscriptions?

ivory spruce
wanton garden
#

It looks like it doesn't from what I can gather. How can I take advantage of the coupon code if my automatic renewal kicked in? I've only participated in the AOC challenges and not premium stuff since it renewed.

#

I've tried emailing support on the 4th, but I havent heard back 😩

ivory spruce
wanton garden
#

on the 4th

ivory spruce
wanton garden
#

yikes

#

does the refund process automatically or is that another 8-10 days?

ivory spruce
wanton garden
#

Well, it was more of an email requesting to apply the code to my already paid resub if possible.

wanton garden
#

I appreciate your information. Hopefully someone from THM staff can reach out to me through here and possibly help with this. Thank you for your time.

ivory spruce
#

Sure thing.

candid monolith
#

Where can we see the rooms we joined? Can't seem to figure it out lol

candid monolith
scenic torrentBOT
#

Gave +1 Rep to @knotty storm

lunar crag
#

Hello
I have a question regarding openVPN

#

Usually it is used to connect an attack machine you own to the tryhackme network right?

#

Is there any security implications if instead of connecting a Kali Linux VM to the VPN, I connect my host machine?

#

Since the VM is connected to the internet using an internal virtual network

ivory spruce
tribal mason
#

Even if they compromise your VM, they can't pivot to other devices on the same network