Connection terminated by CODE 13 (Client) & CODE 11 (Server)

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
nelbren
Posts: 4
Joined: Wed Apr 22, 2015 4:37 pm

Connection terminated by CODE 13 (Client) & CODE 11 (Server)

Post by nelbren » Mon Apr 27, 2015 7:28 pm

The first three connections works well:

$ /usr/local/softether/vpncmd 127.0.0.1:443 /SERVER /HUB:VPN01 /CMD:StatusGet | grep Sessions
Sessions |4
Sessions (Client) |3 <===== (3 sessions works well)
Sessions (Bridge) |0

But in the fourth connection the connection fail, showing the following error codes:

CLIENT SIDE:
---------------------------------------------------------------------------------
The client connect for a few seconds, but pass the seconds the client gets the message:

"Error (Error Code 13): Time-out occurred during VPN session communication. It's is possible the connectionfrom the client to the VPN Server has been disconnected." <============ (CODE 13)

SERVER SIDE:
---------------------------------------------------------------------------------
And in the side of the server gets the CODE 11:

2015-04-27 12:42:33.933 On the TCP Listener (Port 443), a Client (IP address XX.XX.XX.1, Host name "XX.XX.XX.1", Port number 58600) has connected.
2015-04-27 12:42:33.933 For the client (IP address: XX.XX.XX.1, host name: "XX.XX.XX.1", port number: 58600), connection "CID-388" has been created.
2015-04-27 12:42:33.953 SSL communication for connection "CID-388" has been started. The encryption algorithm name is "RC4-MD5".
2015-04-27 12:42:34.004 [HUB "VPN01"] The connection "CID-388" (IP address: XX.XX.XX.1, Host name: XX.XX.XX.1, Port number: 58600, Client name: "SoftEther VPN Client", Version: 4.14, Build: 9529) is attempting to connect to the Virtual Hub. The auth type provided is "Password authentication" and the user name is "uservpn".
2015-04-27 12:42:34.004 [HUB "VNP01"] Connection "CID-388": Successfully authenticated as user "uservpn".
2015-04-27 12:42:34.004 [HUB "VNP01"] Connection "CID-388": The new session "SID-USERVPN-155" has been created. (IP address: XX.XX.XX.1, Port number: 58600, Physical underlying protocol: "Standard TCP/IP (IPv4)")
2015-04-27 12:42:34.014 [HUB "VPN01"] Session "SID-USERVPN-155": The parameter has been set. Max number of TCP connections: 2, Use of encryption: No, Use of compression: No, Use of Half duplex communication: No, Timeout: 20 seconds.
2015-04-27 12:42:34.014 [HUB "VPN01"] Session "SID-USERVPN-155": VPN Client details: (Client product name: "SoftEther VPN Client", Client version: 414, Client build number: 9529, Server product name: "SoftEther VPN Server (32 bit)", Server version: 415, Server build number: 9546, Client OS name: "Windows 7", Client OS version: "Build 7601, Multiprocessor Free, Service Pack 1 (7601.win7sp1_gdr.150316-1654)", Client product ID: "--", Client host name: "WIN701", Client IP address: "YY.YY.YY.217", Client port number: 58600, Server host name: "ZZ.ZZ.ZZ.109", Server IP address: "ZZ.ZZ.ZZ.109", Server port number: 8443, Proxy host name: "", Proxy IP address: "0.0.0.0", Proxy port number: 0, Virtual Hub name: "VPN01", Client unique ID: "EC08225DC6AA9ED6DBC843A8CDC7232C")
2015-04-27 12:42:34.034 [HUB "VPN01"] Session "SID-USERVPN-155": The session has been terminated. The statistical information is as follows: Total outgoing data size: 128 bytes, Total incoming data size: 261 bytes.

2015-04-27 12:42:34.065 Connection "CID-388" terminated by the cause "The VPN session has been deleted. It is possible that either the administrator disconnected the session or the connection from the client to the VPN Server has been disconnected." (code 11). <================= (CODE 11)

2015-04-27 12:42:34.065 Connection "CID-388" has been terminated.
2015-04-27 12:42:34.065 The connection with the client (IP address XX.XX.XX.1, Port number 58600) has been disconnected.

Exist some limit or timeouts to check?

nelbren
Posts: 4
Joined: Wed Apr 22, 2015 4:37 pm

Re: Connection terminated by CODE 13 (Client) & CODE 11 (Ser

Post by nelbren » Tue Apr 28, 2015 6:31 pm

SOLUTION TO THE PROBLEM:
------------------------------------------

Trying to fix the problem, the first step was "Disable UDP acceleration" (view the image), and the 4th connection works well.

Then to permanently solve the problem, were allowed to spend the UDP traffic was blocked (view the next line).

Apr 28 10:57:44 debXXX kernel: [1718655.377254] [DROP-PUBLIC_1-OUT]_IN= OUT=eth0 SRC=QQ.QQ.QQ.QQ DST=WW.WW.WW.WW LEN=108 TOS=0x00 PREC=0x00 TTL=64 ID=56142 DF PROTO=UDP SPT=40003 DPT=57514 LEN=88
Attachments
2015-04-28 - Disable UDP Acceleration.png
Disable UDP Acceleration

liquix
Posts: 1
Joined: Fri Nov 20, 2015 6:32 pm

Re: Connection terminated by CODE 13 (Client) & CODE 11 (Ser

Post by liquix » Fri Nov 20, 2015 6:34 pm

I am having the same problem, but I don't quite understand how to solve this permanently as you indicated:

"Then to permanently solve the problem, were allowed to spend the UDP traffic was blocked (view the next line)."

What exactly did you do to solve this permanently?

Thank you

nelbren
Posts: 4
Joined: Wed Apr 22, 2015 4:37 pm

Re: Connection terminated by CODE 13 (Client) & CODE 11 (Ser

Post by nelbren » Fri Nov 20, 2015 11:30 pm

I have IPTABLES running in the VPN for better NAT, but the firewall block some UDP traffic, please try Enable or Disable this option: "Disable UDP acceleration", and do your test...

whoim
Posts: 1
Joined: Wed Aug 16, 2017 7:35 am

Re: Connection terminated by CODE 13 (Client) & CODE 11 (Ser

Post by whoim » Wed Aug 16, 2017 7:38 am

have this problem, server and client on centos 6.9 x86 (kvm virtual). Client connected at "AccountList" command, but client interface no have ipv4 addr, only ipv6. Ping and ping6 no have results.
Manual adding ipv4 addr no have result. No work(

thisjun
Posts: 2339
Joined: Mon Feb 24, 2014 11:03 am

Re: Connection terminated by CODE 13 (Client) & CODE 11 (Ser

Post by thisjun » Thu Sep 07, 2017 8:28 am

I think you success connection. It is different problem from this topic.

Did you configure localbridge or SecureNAT on VPN server?

Post Reply