Jump to content
Not connected, Your IP: 52.90.49.108
dino

DD-WRT problem [v24-sp2 (02/19/14) std]

Recommended Posts

hi guys,

i can't use airvpn with my router. (tp-link wdr3600 with v24-sp2 (02/19/14) std)

does anyone have a suggestion?

 

 

openvpn log:

 

Log Serverlog Clientlog 20140223 03:55:53 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:55:53 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:55:53 I UDPv4 link local: [undef]
20140223 03:55:53 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:55:53 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:55:53 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:55:53 N TLS Error: TLS handshake failed
20140223 03:55:53 I SIGUSR1[soft tls-error] received process restarting
20140223 03:55:53 Restart pause 2 second(s)
20140223 03:55:55 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:55:55 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:55:55 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:55:55 I UDPv4 link local: [undef]
20140223 03:55:55 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:55:55 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:55:55 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:55:55 N TLS Error: TLS handshake failed
20140223 03:55:55 I SIGUSR1[soft tls-error] received process restarting
20140223 03:55:55 Restart pause 2 second(s)
20140223 03:55:57 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:55:57 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:55:57 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:55:57 I UDPv4 link local: [undef]
20140223 03:55:57 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:55:57 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:55:57 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:55:57 N TLS Error: TLS handshake failed
20140223 03:55:57 I SIGUSR1[soft tls-error] received process restarting
20140223 03:55:57 Restart pause 2 second(s)
20140223 03:55:59 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:55:59 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:55:59 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:55:59 I UDPv4 link local: [undef]
20140223 03:55:59 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:55:59 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:55:59 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:55:59 N TLS Error: TLS handshake failed
20140223 03:55:59 I SIGUSR1[soft tls-error] received process restarting
20140223 03:55:59 Restart pause 2 second(s)
20140223 03:56:01 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:56:01 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:56:01 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:56:01 I UDPv4 link local: [undef]
20140223 03:56:01 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:56:01 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:56:01 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:56:01 N TLS Error: TLS handshake failed
20140223 03:56:01 I SIGUSR1[soft tls-error] received process restarting
20140223 03:56:01 Restart pause 2 second(s)
20140223 03:56:03 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:56:03 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:56:03 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:56:03 I UDPv4 link local: [undef]
20140223 03:56:03 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:56:03 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:56:03 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:56:03 N TLS Error: TLS handshake failed
20140223 03:56:03 I SIGUSR1[soft tls-error] received process restarting
20140223 03:56:03 Restart pause 2 second(s)
20140223 03:56:05 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:56:05 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:56:05 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:56:05 I UDPv4 link local: [undef]
20140223 03:56:05 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:56:05 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:56:05 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:56:05 N TLS Error: TLS handshake failed
20140223 03:56:05 I SIGUSR1[soft tls-error] received process restarting
20140223 03:56:05 Restart pause 2 second(s)
20140223 03:56:07 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:56:07 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:56:07 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:56:07 I UDPv4 link local: [undef]
20140223 03:56:07 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:56:07 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:56:07 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:56:07 N TLS Error: TLS handshake failed
20140223 03:56:07 I SIGUSR1[soft tls-error] received process restarting
20140223 03:56:07 Restart pause 2 second(s)
20140223 03:56:09 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20140223 03:56:09 W WARNING: normally if you use --mssfix and/or --fragment you should also set --tun-mtu 1500 (currently it is 1400)
20140223 03:56:09 Socket Buffers: R=[172032->131072] S=[172032->131072]
20140223 03:56:09 I UDPv4 link local: [undef]
20140223 03:56:09 I UDPv4 link remote: [AF_INET]62.212.85.65:443
20140223 03:56:09 N TLS_ERROR: BIO read tls_read_plaintext error: error:140830B5:lib(20):func(131):reason(181)
20140223 03:56:09 N TLS Error: TLS object -> incoming plaintext read error
20140223 03:56:09 N TLS Error: TLS handshake failed
20140223 03:56:09 I SIGUSR1[soft tls-error] received process restarting
20140223 03:56:09 Restart pause 2 second(s)
20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20140223 03:56:11 D MANAGEMENT: CMD 'state'
20140223 03:56:11 MANAGEMENT: Client disconnected
20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20140223 03:56:11 D MANAGEMENT: CMD 'state'
20140223 03:56:11 MANAGEMENT: Client disconnected
20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20140223 03:56:11 D MANAGEMENT: CMD 'state'
20140223 03:56:11 MANAGEMENT: Client disconnected
20140223 03:56:11 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20140223 03:56:11 D MANAGEMENT: CMD 'log 500'
19700101 00:00:00

 

My config:

o7oeJTR.png

 

 

yi5Yyxr.png

 

Jshp02M.png

 

 

b1aZyEX.png

Share this post


Link to post

Hello,

 

the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1.

 

Kind regards

Share this post


Link to post

Hello,

 

the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1.

 

Kind regards

 

The TLS Cipher point seems contrary to the instructions here - ("Select TLS Cipher to "TLS-DHE-RSA-WITH-AES-256-CBC-SHA")

https://airvpn.org/ddwrt/

 

Now changing it to none did then allow me to connect to the vpn but would appreciate understanding relevance of this.

 

Thanks!

Share this post


Link to post

 

Hello,

 

the "TLS Cipher" is wrong, please set it to "None". Make sure that your router tun interface is tun0 (on some builds it can be tun1 by default). Also set Static DNS 1 to 10.4.0.1.

 

Kind regards

 

The TLS Cipher point seems contrary to the instructions here - ("Select TLS Cipher to "TLS-DHE-RSA-WITH-AES-256-CBC-SHA")

https://airvpn.org/ddwrt/

 

Now changing it to none did then allow me to connect to the vpn but would appreciate understanding relevance of this.

 

Thanks!

 

 

Hello!

 

You are right. The "problem" is that on some builds only TLS Cipher set to "None" will allow a correct connection. On some other builds only "TLS-DHE-RSA-WITH-AES-128-CBC-SHA" will work. Both are clearly wrong, but somehow they are bypassed by other settings. We don't know the reasons for this strange behavior.

 

Kind regards

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
  • Security Check
    Play CAPTCHA Audio
    Refresh Image

×
×
  • Create New...