OpenVPN connection issue, possibly routing

Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking
Author Message
Norky77
DD-WRT Novice


Joined: 16 Jul 2017
Posts: 1

PostPosted: Sun Jul 16, 2017 15:22    Post subject: OpenVPN connection issue, possibly routing Reply with quote
Hi All,

Firstly thank you to all those that have contributed to the dd-wrt project.

This is my first attempt at using did-wrt and am getting to grips with things however I have a problem when setting up my VPN using OpenVPN.

My set up is as follows:

Unlocked HG612 3B openreach modem, set to 192.168.1.1 (this handles all PPPoE)
Netgear R7000 router set to 192.168.1.2, gateway set to 192.168.1.1 (Using build V3.0-r32170M Kongac 6/11/17)
WAN disabled on router and port added to LAN

Everything seems to be working, internet access etc. However as soon as I try to enable the OpenVPN client it establishes a connection and pulls a new IP, as per status OpenVPN service. (I am confident my OpenVPN setup is correct as on a standalone PC it all works and seems to connect)

Problem I have is that it prevents any connection to the internet, it just states the server could not be reached.

I have tried using Automatic Configuration - DHCP and static IP as WAN type but then I can't connect to the internet at all. (Static configuration 192.168.1.1 as WAN IP & Gateway)

I am now stuck as to what to try next and seem to be going round in circles and starting to confuse myself.

I am sure to somebody with more knowledge than me this will be an obvious thing I am missing / failing to do.

If I need to post any additional info such as syslog etc, basic configuration screen etc. Please let me know.

If anybody could help I would be greatly appreciated and will prevent me from going round the bend!
Sponsor
anthonywkho
DD-WRT Novice


Joined: 15 Mar 2015
Posts: 12

PostPosted: Mon Jul 31, 2017 4:02    Post subject: Reply with quote
Hi I have a similar issue about OpenVPN on DDWRT flashed router of Netgear. Let me posted the log below for you to look at and appreciate if you could help me to resolve it. thanks in advance

Mon Jul 31 09:53:53 2017 OpenVPN 2.4.3 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Jul 14 2017
Mon Jul 31 09:53:53 2017 Windows version 6.2 (Windows 8 or greater) 64bit
Mon Jul 31 09:53:53 2017 library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.10
Mon Jul 31 09:53:53 2017 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25341
Mon Jul 31 09:53:53 2017 Need hold release from management interface, waiting...
Mon Jul 31 09:53:54 2017 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25341
Mon Jul 31 09:53:54 2017 MANAGEMENT: CMD 'state on'
Mon Jul 31 09:53:54 2017 MANAGEMENT: CMD 'log all on'
Mon Jul 31 09:53:54 2017 MANAGEMENT: CMD 'echo all on'
Mon Jul 31 09:53:54 2017 MANAGEMENT: CMD 'hold off'
Mon Jul 31 09:53:54 2017 MANAGEMENT: CMD 'hold release'
Mon Jul 31 09:53:54 2017 Outgoing Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Jul 31 09:53:54 2017 Incoming Control Channel Authentication: Using 160 bit message hash 'SHA1' for HMAC authentication
Mon Jul 31 09:53:54 2017 MANAGEMENT: >STATE:1501466034,RESOLVE,,,,,,
Mon Jul 31 09:53:54 2017 TCP/UDP: Preserving recently used remote address: [AF_INET]xx.xx.xx.xx:1194
Mon Jul 31 09:53:54 2017 Socket Buffers: R=[65536->65536] S=[65536->65536]
Mon Jul 31 09:53:54 2017 UDP link local: (not bound)
Mon Jul 31 09:53:54 2017 UDP link remote: [AF_INET]xx.xx.xx.xx:1194
Mon Jul 31 09:53:54 2017 MANAGEMENT: >STATE:1501466034,WAIT,,,,,,
Mon Jul 31 09:54:55 2017 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mon Jul 31 09:54:55 2017 TLS Error: TLS handshake failed
Mon Jul 31 09:54:55 2017 SIGUSR1[soft,tls-error] received, process restarting
Mon Jul 31 09:54:55 2017 MANAGEMENT: >STATE:1501466095,RECONNECTING,tls-error,,,,,
Mon Jul 31 09:54:55 2017 Restart pause, 5 second(s)
Mon Jul 31 09:55:00 2017 MANAGEMENT: >STATE:1501466100,RESOLVE,,,,,,
Mon Jul 31 09:55:00 2017 TCP/UDP: Preserving recently used remote address: [AF_INET]xx.xx.xx.xx:1194
Mon Jul 31 09:55:00 2017 Socket Buffers: R=[65536->65536] S=[65536->65536]
Mon Jul 31 09:55:00 2017 UDP link local: (not bound)
Mon Jul 31 09:55:00 2017 UDP link remote: [AF_INET]xx.xx.xx.xx:1194
Mon Jul 31 09:55:00 2017 MANAGEMENT: >STATE:1501466100,WAIT,,,,,,
Mon Jul 31 09:56:00 2017 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mon Jul 31 09:56:00 2017 TLS Error: TLS handshake failed
Mon Jul 31 09:56:00 2017 SIGUSR1[soft,tls-error] received, process restarting
Mon Jul 31 09:56:00 2017 MANAGEMENT: >STATE:1501466160,RECONNECTING,tls-error,,,,,
Mon Jul 31 09:56:00 2017 Restart pause, 5 second(s)

On the DD WRT (server), I have already changed the private IP subnet to 10.8.0.0 and also I copied the ta.key file content onto the section of TLS Auth (is it correct)? I tried without ta.key file content in the router as well but still does not work. In the client.ovpn, i can see the line tls-auth ta.key 1 do i have to add tls-auth ta.key 0 in the router section as well? Or what else should i do?

If you also could give me a sample client.ovpn file I would try to follow as well.

I am quite tired in trying to get openvpn work but it took me too much time but I don't want to give up after spending so much time already.
Thanks
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum