nikita-desktop:/etc/openvpn/client # openvpn nikita-desktop.ovpn
2023-05-29 14:49:02 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations.
2023-05-29 14:49:02 OpenVPN 2.6.4 x86_64-suse-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD]
2023-05-29 14:49:02 library versions: OpenSSL 3.0.8 7 Feb 2023, LZO 2.10
Enter Private Key Password: ***********
2023-05-29 14:49:05 TCP/UDP: Preserving recently used remote address: [AF_INET]89.19.214.250:443
2023-05-29 14:49:05 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-05-29 14:49:05 UDPv4 link local: (not bound)
2023-05-29 14:49:05 UDPv4 link remote: [AF_INET]89.19.214.250:443
2023-05-29 14:49:05 TLS: Initial packet from [AF_INET]89.19.214.250:443, sid=e12e1122 b517163e
2023-05-29 14:49:05 VERIFY OK: depth=1, CN=Easy-RSA CA
2023-05-29 14:49:05 VERIFY KU OK
2023-05-29 14:49:05 Validating certificate extended key usage
2023-05-29 14:49:05 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-05-29 14:49:05 VERIFY EKU OK
2023-05-29 14:49:05 VERIFY X509NAME OK: CN=nikita-server_8ebb11ac-ff24-489c-b31c-cca1c4a50ac8
2023-05-29 14:49:05 VERIFY OK: depth=0, CN=nikita-server_8ebb11ac-ff24-489c-b31c-cca1c4a50ac8
2023-05-29 14:49:05 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 256 bit ECprime256v1, signature: ecdsa-with-SHA256
2023-05-29 14:49:05 [nikita-server_8ebb11ac-ff24-489c-b31c-cca1c4a50ac8] Peer Connection Initiated with [AF_INET]89.19.214.250:443
2023-05-29 14:49:05 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2023-05-29 14:49:05 TLS: tls_multi_process: initial untrusted session promoted to trusted
2023-05-29 14:49:05 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 1.1.1.1,dhcp-option DNS 1.0.0.1,block-outside-dns,redirect-gateway def1,route-gateway 10.36.106.1,topology subnet,ping 15,ping-restart 120,ifconfig 10.36.106.2 255.255.255.0,peer-id 0,cipher AES-256-GCM'
2023-05-29 14:49:05 Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.6.4)
2023-05-29 14:49:05 OPTIONS IMPORT: --ifconfig/up options modified
2023-05-29 14:49:05 OPTIONS IMPORT: route options modified
2023-05-29 14:49:05 OPTIONS IMPORT: route-related options modified
2023-05-29 14:49:05 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
2023-05-29 14:49:05 ROUTE_GATEWAY 192.168.42.129/255.255.255.0 IFACE=enp0s20f0u6 HWADDR=02:01:35:66:66:67
2023-05-29 14:49:05 TUN/TAP device tun0 opened
2023-05-29 14:49:05 /usr/sbin/ip link set dev tun0 up mtu 1500
2023-05-29 14:49:05 /usr/sbin/ip link set dev tun0 up
2023-05-29 14:49:05 /usr/sbin/ip addr add dev tun0 10.36.106.2/24
2023-05-29 14:49:05 /usr/sbin/ip route add 89.19.214.250/32 via 192.168.42.129
2023-05-29 14:49:05 /usr/sbin/ip route add 0.0.0.0/1 via 10.36.106.1
2023-05-29 14:49:05 /usr/sbin/ip route add 128.0.0.0/1 via 10.36.106.1
2023-05-29 14:49:05 Initialization Sequence Completed
2023-05-29 14:49:05 Data Channel: cipher 'AES-256-GCM', peer-id: 0
2023-05-29 14:49:05 Timers: ping 15, ping-restart 120