dino 1 Posted ... (edited) hi guys, i can't use airvpn with my router. (tp-link wdr3600 with v24-sp2 (02/19/14) std) does anyone have a suggestion? openvpn log: Log Serverlog Clientlog 20140223 03:55:53 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:55:53 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:55:53 I UDPv4 link local: [undef] 20140223 03:55:53 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:55:53 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:55:53 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:55:53 N TLS Error: TLS handshake failed 20140223 03:55:53 I SIGUSR1[soft tls-error] received process restarting 20140223 03:55:53 Restart pause 2 second(s) 20140223 03:55:55 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:55:55 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:55:55 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:55:55 I UDPv4 link local: [undef] 20140223 03:55:55 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:55:55 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:55:55 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:55:55 N TLS Error: TLS handshake failed 20140223 03:55:55 I SIGUSR1[soft tls-error] received process restarting 20140223 03:55:55 Restart pause 2 second(s) 20140223 03:55:57 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:55:57 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:55:57 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:55:57 I UDPv4 link local: [undef] 20140223 03:55:57 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:55:57 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:55:57 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:55:57 N TLS Error: TLS handshake failed 20140223 03:55:57 I SIGUSR1[soft tls-error] received process restarting 20140223 03:55:57 Restart pause 2 second(s) 20140223 03:55:59 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:55:59 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:55:59 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:55:59 I UDPv4 link local: [undef] 20140223 03:55:59 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:55:59 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:55:59 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:55:59 N TLS Error: TLS handshake failed 20140223 03:55:59 I SIGUSR1[soft tls-error] received process restarting 20140223 03:55:59 Restart pause 2 second(s) 20140223 03:56:01 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:56:01 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:56:01 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:56:01 I UDPv4 link local: [undef] 20140223 03:56:01 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:56:01 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:56:01 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:56:01 N TLS Error: TLS handshake failed 20140223 03:56:01 I SIGUSR1[soft tls-error] received process restarting 20140223 03:56:01 Restart pause 2 second(s) 20140223 03:56:03 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:56:03 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:56:03 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:56:03 I UDPv4 link local: [undef] 20140223 03:56:03 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:56:03 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:56:03 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:56:03 N TLS Error: TLS handshake failed 20140223 03:56:03 I SIGUSR1[soft tls-error] received process restarting 20140223 03:56:03 Restart pause 2 second(s) 20140223 03:56:05 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:56:05 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:56:05 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:56:05 I UDPv4 link local: [undef] 20140223 03:56:05 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:56:05 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:56:05 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:56:05 N TLS Error: TLS handshake failed 20140223 03:56:05 I SIGUSR1[soft tls-error] received process restarting 20140223 03:56:05 Restart pause 2 second(s) 20140223 03:56:07 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:56:07 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:56:07 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:56:07 I UDPv4 link local: [undef] 20140223 03:56:07 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:56:07 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:56:07 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:56:07 N TLS Error: TLS handshake failed 20140223 03:56:07 I SIGUSR1[soft tls-error] received process restarting 20140223 03:56:07 Restart pause 2 second(s) 20140223 03:56:09 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20140223 03:56:09 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400) 20140223 03:56:09 Socket Buffers: R=[172032->131072] S=[172032->131072] 20140223 03:56:09 I UDPv4 link local: [undef] 20140223 03:56:09 I UDPv4 link remote: [AF_INET]62.212.85.65:443 20140223 03:56:09 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181) 20140223 03:56:09 N TLS Error: TLS object -> incoming plaintext read error 20140223 03:56:09 N TLS Error: TLS handshake failed 20140223 03:56:09 I SIGUSR1[soft tls-error] received process restarting 20140223 03:56:09 Restart pause 2 second(s) 20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20140223 03:56:11 D MANAGEMENT: CMD 'state' 20140223 03:56:11 MANAGEMENT: Client disconnected 20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20140223 03:56:11 D MANAGEMENT: CMD 'state' 20140223 03:56:11 MANAGEMENT: Client disconnected 20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20140223 03:56:11 D MANAGEMENT: CMD 'state' 20140223 03:56:11 MANAGEMENT: Client disconnected 20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20140223 03:56:11 D MANAGEMENT: CMD 'log 500' 19700101 00:00:00 Edited ... by dino Quote Share this post Link to post
Staff 9973 Posted ... Hello, the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1. Kind regards 1 Wolf666 reacted to this Quote Share this post Link to post
kubifushlisy 1 Posted ... Where to "Make sure that your router tun interface is tun0"? I cannot find it in the DD-WRT menu anywhere. Quote Share this post Link to post
ptolemyiv 4 Posted ... Hello, the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1. Kind regards The TLS Cipher point seems contrary to the instructions here - ("Select TLS Cipher to "TLS-DHE-RSA-WITH-AES-256-CBC-SHA")https://airvpn.org/ddwrt/ Now changing it to none did then allow me to connect to the vpn but would appreciate understanding relevance of this. Thanks! 1 chahk reacted to this Quote Share this post Link to post
Staff 9973 Posted ... Hello, the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1. Kind regards The TLS Cipher point seems contrary to the instructions here - ("Select TLS Cipher to "TLS-DHE-RSA-WITH-AES-256-CBC-SHA")https://airvpn.org/ddwrt/ Now changing it to none did then allow me to connect to the vpn but would appreciate understanding relevance of this. Thanks! Hello! You are right. The "problem" is that on some builds only TLS Cipher set to "None" will allow a correct connection. On some other builds only "TLS-DHE-RSA-WITH-AES-128-CBC-SHA" will work. Both are clearly wrong, but somehow they are bypassed by other settings. We don't know the reasons for this strange behavior. Kind regards 1 chahk reacted to this Quote Share this post Link to post