mudd1 0 Posted ... I'm getting "TLS key negotiation failed to occur within 60 seconds (check your network connectivity)" messages, followed by "TLS handshake failed" when trying to configure AirVPN on my DD-WRT router. I'm using a static IP over a cable modem to connect to the internet. I tried the ciphers "None", "TLS-DHE-RSA-WITH-AES-256-GCM-SHA384" and "TLS-DHE-RSA-WITH-AES-128-CBC-SHA". This last one got me the furthest so far, to the log messages shown below. There's a br0 and a br0:0 device on the router, no br1. I hope I included all relevant configs. iptables -I FORWARD -i br0 -o tun0 -j ACCEPT iptables -I FORWARD -i tun0 -o br0 -j ACCEPT iptables -I INPUT -i tun0 -j REJECT iptables -t nat -A POSTROUTING -o tun0 -j MASQUERADE Serverlog Clientlog 20160515 19:29:41 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:30:41 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:30:41 N TLS Error: TLS handshake failed 20160515 19:30:41 I SIGUSR1[soft tls-error] received process restarting 20160515 19:30:41 Restart pause 2 second(s) 20160515 19:30:43 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:30:43 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:30:43 I UDPv4 link local: [undef] 20160515 19:30:43 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:31:43 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:31:43 N TLS Error: TLS handshake failed 20160515 19:31:43 I SIGUSR1[soft tls-error] received process restarting 20160515 19:31:43 Restart pause 2 second(s) 20160515 19:31:45 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:31:45 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:31:45 I UDPv4 link local: [undef] 20160515 19:31:45 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:32:45 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:32:45 N TLS Error: TLS handshake failed 20160515 19:32:45 I SIGUSR1[soft tls-error] received process restarting 20160515 19:32:45 Restart pause 2 second(s) 20160515 19:32:47 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:32:47 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:32:47 I UDPv4 link local: [undef] 20160515 19:32:47 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:33:47 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:33:47 N TLS Error: TLS handshake failed 20160515 19:33:47 I SIGUSR1[soft tls-error] received process restarting 20160515 19:33:47 Restart pause 2 second(s) 20160515 19:33:49 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:33:49 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:33:49 I UDPv4 link local: [undef] 20160515 19:33:49 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:34:49 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:34:49 N TLS Error: TLS handshake failed 20160515 19:34:49 I SIGUSR1[soft tls-error] received process restarting 20160515 19:34:49 Restart pause 2 second(s) 20160515 19:34:51 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:34:51 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:34:51 I UDPv4 link local: [undef] 20160515 19:34:51 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:35:51 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:35:51 N TLS Error: TLS handshake failed 20160515 19:35:51 I SIGUSR1[soft tls-error] received process restarting 20160515 19:35:51 Restart pause 2 second(s) 20160515 19:35:53 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:35:53 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:35:53 I UDPv4 link local: [undef] 20160515 19:35:53 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:36:53 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:36:53 N TLS Error: TLS handshake failed 20160515 19:36:53 I SIGUSR1[soft tls-error] received process restarting 20160515 19:36:53 Restart pause 2 second(s) 20160515 19:36:55 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:36:55 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:36:55 I UDPv4 link local: [undef] 20160515 19:36:55 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:37:55 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:37:55 N TLS Error: TLS handshake failed 20160515 19:37:55 I SIGUSR1[soft tls-error] received process restarting 20160515 19:37:55 Restart pause 2 second(s) 20160515 19:37:57 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:37:57 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:37:57 I UDPv4 link local: [undef] 20160515 19:37:57 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:38:57 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:38:57 N TLS Error: TLS handshake failed 20160515 19:38:57 I SIGUSR1[soft tls-error] received process restarting 20160515 19:38:57 Restart pause 2 second(s) 20160515 19:38:59 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:38:59 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:38:59 I UDPv4 link local: [undef] 20160515 19:38:59 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:39:59 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:39:59 N TLS Error: TLS handshake failed 20160515 19:39:59 I SIGUSR1[soft tls-error] received process restarting 20160515 19:39:59 Restart pause 2 second(s) 20160515 19:40:01 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:40:01 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:40:01 I UDPv4 link local: [undef] 20160515 19:40:01 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:41:01 N TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 20160515 19:41:01 N TLS Error: TLS handshake failed 20160515 19:41:01 I SIGUSR1[soft tls-error] received process restarting 20160515 19:41:01 Restart pause 2 second(s) 20160515 19:41:03 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts 20160515 19:41:03 Socket Buffers: R=[180224->131072] S=[180224->131072] 20160515 19:41:03 I UDPv4 link local: [undef] 20160515 19:41:03 I UDPv4 link remote: [AF_INET]88.150.240.7:443 20160515 19:41:38 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20160515 19:41:38 D MANAGEMENT: CMD 'state' 20160515 19:41:38 MANAGEMENT: Client disconnected 20160515 19:41:38 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20160515 19:41:38 D MANAGEMENT: CMD 'state' 20160515 19:41:38 MANAGEMENT: Client disconnected 20160515 19:41:38 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20160515 19:41:38 D MANAGEMENT: CMD 'state' 20160515 19:41:38 MANAGEMENT: Client disconnected 20160515 19:41:38 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16 20160515 19:41:38 D MANAGEMENT: CMD 'log 500' 19700101 00:00:00 Quote Share this post Link to post
zhang888 1066 Posted ... You forgot the TLS auth key, it is included in the config files when you download them in the config generator.The TLS-DHE-RSA-WITH-AES-256-GCM-SHA384 is actually the correct one. Quote Hide zhang888's signature Hide all signatures Occasional moderator, sometimes BOFH. Opinions are my own, except when my wife disagrees. Share this post Link to post
mudd1 0 Posted ... Goddammit, I knew it had to be something stupid like that. Anyway, it now works indeed. Thanks a ton! Quote Share this post Link to post