Есть железка Asus RT-N18U , довольно мощная, прошивка оффициальная.
Не могу подключиться к серверу Openvpn на роутере.
Делаю по инструкции
www.asus.com/support/Knowledge-Detail/11/2/RTAC68U...
Адрес роутера внешний-статический, брандмауэр отключал (как на роутере так и на клиенте)
Прошивка роутера последняя. Клиент - машина на винХР
Файлы логов в приложении.
сервер (журнал в интефейсе роутера):
ul 22 11:54:29 openvpn[3802]: Socket Buffers: R=[122880->131072] S=[122880->131072]
Jul 22 11:54:29 openvpn[3802]: TUN/TAP device tun21 opened
Jul 22 11:54:29 openvpn[3802]: TUN/TAP TX queue length set to 100
Jul 22 11:54:29 openvpn[3802]: UDPv4 link local (bound): [undef]
Jul 22 11:54:29 openvpn[3802]: UDPv4 link remote: [undef]
Jul 22 11:55:29 openvpn[3802]: Inactivity timeout (--ping-restart), restarting
Jul 22 11:55:29 openvpn[3802]: Closing TUN/TAP interface
Jul 22 11:55:29 openvpn[3802]: SIGUSR1[soft,ping-restart] received, process restarting
Jul 22 11:55:29 openvpn[3802]: Restart pause, 2 second(s)
Jul 22 11:55:31 openvpn[3802]: ******* WARNING *******: all encryption and authentication features disabled -- all data will be tunnelled as cleartext
Jul 22 11:55:31 openvpn[3802]: Socket Buffers: R=[122880->131072] S=[122880->131072]
Jul 22 11:55:31 openvpn[3802]: TUN/TAP device tun21 opened
Jul 22 11:55:31 openvpn[3802]: TUN/TAP TX queue length set to 100
Jul 22 11:55:31 openvpn[3802]: UDPv4 link local (bound): [undef]
Jul 22 11:55:31 openvpn[3802]: UDPv4 link remote: [undef]
Jul 22 11:56:31 openvpn[3802]: Inactivity timeout (--ping-restart), restarting
Jul 22 11:56:31 openvpn[3802]: Closing TUN/TAP interface
Jul 22 11:56:31 openvpn[3802]: SIGUSR1[soft,ping-restart] received, process restarting
Jul 22 11:56:31 openvpn[3802]: Restart pause, 2 second(s)
Jul 22 11:56:33 openvpn[3802]: ******* WARNING *******: all encryption and authentication features disabled -- all data will be tunnelled as cleartext
Jul 22 11:56:33 openvpn[3802]: Socket Buffers: R=[122880->131072] S=[122880->131072]
Jul 22 11:56:33 openvpn[3802]: TUN/TAP device tun21 opened
Jul 22 11:56:33 openvpn[3802]: TUN/TAP TX queue length set to 100
Jul 22 11:56:33 openvpn[3802]: UDPv4 link local (bound): [undef]
Jul 22 11:56:33 openvpn[3802]: UDPv4 link remote: [undef]
Jul 22 11:57:33 openvpn[3802]: Inactivity timeout (--ping-restart), restarting
Jul 22 11:57:33 openvpn[3802]: Closing TUN/TAP interface
Jul 22 11:57:33 openvpn[3802]: SIGUSR1[soft,ping-restart] received, process restarting
Jul 22 11:57:33 openvpn[3802]: Restart pause, 2 second(s)
Jul 22 11:57:35 openvpn[3802]: ******* WARNING *******: all encryption and authentication features disabled -- all data will be tunnelled as cleartext
Jul 22 11:57:35 openvpn[3802]: Socket Buffers: R=[122880->131072] S=[122880->131072]
Jul 22 11:57:35 openvpn[3802]: TUN/TAP device tun21 opened
Jul 22 11:57:35 openvpn[3802]: TUN/TAP TX queue length set to 100
Jul 22 11:57:35 openvpn[3802]: UDPv4 link local (bound): [undef]
Jul 22 11:57:35 openvpn[3802]: UDPv4 link remote: [undef]
Jul 22 11:58:35 openvpn[3802]: Inactivity timeout (--ping-restart), restarting
Jul 22 11:58:35 openvpn[3802]: Closing TUN/TAP interface
Jul 22 11:58:35 openvpn[3802]: SIGUSR1[soft,ping-restart] received, process restarting
Jul 22 11:58:35 openvpn[3802]: Restart pause, 2 second(s)
Настройки сервера на скринах, клиент настроен просто путем экспорта файлика
client.ovpn из вебморды роутера как и сказано в инструкции.
лог на клиентской тачке от файла .ovpn
Wed Jul 22 11:18:51 2015 Attempting to establish TCP connection with [AF_INET]100.200.300.400:1194 [nonblock]
Wed Jul 22 11:18:52 2015 TCP connection established with [AF_INET]100.200.300.400:1194
Wed Jul 22 11:18:52 2015 TCPv4_CLIENT link local: [undef]
Wed Jul 22 11:18:52 2015 TCPv4_CLIENT link remote: [AF_INET]100.200.300.400:1194
Wed Jul 22 11:18:52 2015 TLS_ERROR: BIO read tls_read_plaintext error: error:14082174:SSL routines:SSL3_CHECK_CERT_AND_ALGORITHM:dh key too small
Wed Jul 22 11:18:52 2015 TLS Error: TLS object -> incoming plaintext read error
Wed Jul 22 11:18:52 2015 TLS Error: TLS handshake failed
Wed Jul 22 11:18:52 2015 Fatal TLS error (check_tls_errors_co), restarting
Wed Jul 22 11:18:52 2015 SIGUSR1[soft,tls-error] received, process restarting
Wed Jul 22 11:18:57 2015 Attempting to establish TCP connection with [AF_INET]100.200.300.400:1194 [nonblock]
Wed Jul 22 11:18:58 2015 SIGTERM[hard,init_instance] received, process exiting