Добрый день.
Использую клиент на роутере Asus RT-N56 с прошивкой Padavan. Сегодня перестал подключаться. В чем может быть проблема? Клиент на Андроиде работает как положено из той же сети.
Лог:
Aug 1 16:37:30 RT-N56U: starting OpenVPN client…
Aug 1 16:37:30 openvpn-cli[5519]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 16:37:30 openvpn-cli[5519]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 16:37:30 openvpn-cli[5520]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
Aug 1 16:37:30 openvpn-cli[5520]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 16:37:30 openvpn-cli[5520]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 16:37:30 openvpn-cli[5520]: Attempting to establish TCP connection with [AF_INET]51.75.75.245:1194 [nonblock]
Aug 1 16:37:31 openvpn-cli[5520]: TCP connection established with [AF_INET]51.75.75.245:1194
Aug 1 16:37:31 openvpn-cli[5520]: TCPv4_CLIENT link local: [undef]
Aug 1 16:37:31 openvpn-cli[5520]: TCPv4_CLIENT link remote: [AF_INET]51.75.75.245:1194
Aug 1 16:37:34 openvpn-cli[5520]: TLS: Initial packet from [AF_INET]51.75.75.245:1194, sid=f0aa8de0 026f8929
Aug 1 16:37:34 openvpn-cli[5520]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 16:37:34 openvpn-cli[5520]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Encrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Encrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Decrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Decrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 16:37:36 openvpn-cli[5520]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 16:37:36 openvpn-cli[5520]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.75.75.245:1194
Aug 1 16:37:38 openvpn-cli[5520]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 1 16:37:39 openvpn-cli[5520]: AUTH: Received control message: AUTH_FAILED,Data channel cipher negotiation failed (no shared cipher)
Aug 1 16:37:39 openvpn-cli[5520]: SIGTERM[soft,auth-failure] received, process exiting
2023-08-01T12:46:50.808Z
ValdikSS
Проверьте сейчас. У вас древнегреческая версия OpenVPN.
2023-08-01T13:06:45.196Z
5a1n7(Смирнов)
Спасибо большое! Все заработало! Увы, Падаван забросил проект, а роутер все еще жив и бодр(
2023-08-01T13:10:05.398Z
5a1n7(Смирнов)
Несколько поторорился я радоваться. Подключение устанавливается, но инет пропадает совсем. Ошибка резолвинга днс-имен. На андроиде все по-прежнему хорошо.
Лог:
Спойлер
Aug 1 19:22:00 RT-N56U: starting OpenVPN client…
Aug 1 19:22:00 openvpn-cli[2492]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 19:22:00 openvpn-cli[2492]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 19:22:00 openvpn-cli[2493]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
Aug 1 19:22:00 openvpn-cli[2493]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 19:22:00 openvpn-cli[2493]: Socket Buffers: R=[163840->163840] S=[163840->163840]
Aug 1 19:22:00 openvpn-cli[2493]: UDPv4 link local: [undef]
Aug 1 19:22:00 openvpn-cli[2493]: UDPv4 link remote: [AF_INET]141.95.17.71:1194
Aug 1 19:22:00 openvpn-cli[2493]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=8854a512 fb71164c
Aug 1 19:22:01 openvpn-cli[2493]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 19:22:01 openvpn-cli[2493]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Encrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Encrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Decrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Decrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 19:22:02 openvpn-cli[2493]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 19:22:02 openvpn-cli[2493]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 1 19:22:04 openvpn-cli[2493]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 1 19:22:04 openvpn-cli[2493]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.100.1,block-outside-dns,route-gateway 192.168.100.1,topology subnet,ping 35,ping-restart 160,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 74.8
Aug 1 19:22:04 openvpn-cli[2493]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.3.10)
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: route options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: route-related options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: peer-id set
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: adjusting link_mtu to 1545
Aug 1 19:22:04 openvpn-cli[2493]: TUN/TAP device tun0 opened
Aug 1 19:22:04 openvpn-cli[2493]: TUN/TAP TX queue length set to 100
Aug 1 19:22:04 openvpn-cli[2493]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/ifconfig tun0 192.168.100.14 netmask 255.255.252.0 mtu 1500 broadcast 192.168.103.255
Aug 1 19:22:04 openvpn-cli[2493]: ovpnc.script tun0 1500 1545 192.168.100.14 255.255.252.0 init
Aug 1 19:22:04 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 19:22:04 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 19:22:04 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 19:22:04 dnsmasq[405]: using nameserver 192.168.100.1#53
Aug 1 19:22:04 vpnc-script: tun0 up
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: Initialization Sequence Completed
Попробовал первым делом (хотя до сегодняшнего дня все работало с текущими настройками), не помогает.
192.168.104.1 должен пинговаться? У меня он на пинг не отвечает.
Какая диагностика может Вам помочь помочь мне? Есть винда, мак, убунту, андроид.
2023-08-01T15:50:49.897Z
ValdikSS
Сжатие должно быть отключено, всё остальное выглядит нормально. Пришлите журнал (лог) подключения. 192.168.104.1 должен пинговаться.
2023-08-01T15:51:54.277Z
5a1n7(Смирнов)
Все, что я вижу:
Aug 1 19:55:43 RT-N56U: starting OpenVPN client...
Aug 1 19:55:43 openvpn-cli[3381]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 19:55:43 openvpn-cli[3381]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 19:55:43 openvpn-cli[3382]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 1 19:55:43 openvpn-cli[3382]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 19:55:43 openvpn-cli[3382]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 19:55:43 openvpn-cli[3382]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194 [nonblock]
Aug 1 19:55:44 openvpn-cli[3382]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 1 19:55:44 openvpn-cli[3382]: TCPv4_CLIENT link local: [undef]
Aug 1 19:55:44 openvpn-cli[3382]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 1 19:55:45 openvpn-cli[3382]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=07cd5369 961dbf71
Aug 1 19:55:45 openvpn-cli[3382]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 19:55:45 openvpn-cli[3382]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 19:55:45 openvpn-cli[3382]: Connection reset, restarting [-1]
Aug 1 19:55:45 openvpn-cli[3382]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 1 19:55:45 openvpn-cli[3382]: Restart pause, 5 second(s)
Aug 1 19:55:50 openvpn-cli[3382]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 1 19:55:50 openvpn-cli[3382]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 19:55:50 openvpn-cli[3382]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 19:55:50 openvpn-cli[3382]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Aug 1 19:55:51 openvpn-cli[3382]: TCP connection established with [AF_INET]51.158.181.228:1194
Aug 1 19:55:51 openvpn-cli[3382]: TCPv4_CLIENT link local: [undef]
Aug 1 19:55:51 openvpn-cli[3382]: TCPv4_CLIENT link remote: [AF_INET]51.158.181.228:1194
Aug 1 19:55:51 openvpn-cli[3382]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=b37c84f3 93278517
Aug 1 19:55:51 openvpn-cli[3382]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 19:55:51 openvpn-cli[3382]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 19:55:52 openvpn-cli[3382]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 19:55:52 openvpn-cli[3382]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 19:55:52 openvpn-cli[3382]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 19:55:52 openvpn-cli[3382]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 19:55:52 openvpn-cli[3382]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 19:55:52 openvpn-cli[3382]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.181.228:1194
Aug 1 19:55:55 openvpn-cli[3382]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug 1 19:55:55 openvpn-cli[3382]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 1 19:55:55 openvpn-cli[3382]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.3.10)
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: route options modified
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: route-related options modified
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: peer-id set
Aug 1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug 1 19:55:55 openvpn-cli[3382]: TUN/TAP device tun0 opened
Aug 1 19:55:55 openvpn-cli[3382]: TUN/TAP TX queue length set to 100
Aug 1 19:55:55 openvpn-cli[3382]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/ifconfig tun0 192.168.120.116 netmask 255.255.248.0 mtu 1500 broadcast 192.168.127.255
Aug 1 19:55:55 openvpn-cli[3382]: ovpnc.script tun0 1500 1546 192.168.120.116 255.255.248.0 init
Aug 1 19:55:55 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 19:55:55 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 19:55:55 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 19:55:55 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug 1 19:55:55 vpnc-script: tun0 up
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 51.158.181.228 netmask 255.255.255.255 gw 178.163.0.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.120.1
Aug 1 19:55:55 openvpn-cli[3382]: Initialization Sequence Completed
2023-08-01T15:56:43.137Z
5a1n7(Смирнов)
Пинг появился.
Лог verb 4(был 3):
Aug 1 20:04:06 RT-N56U: starting OpenVPN client...
Aug 1 20:04:06 openvpn-cli[3845]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 20:04:06 openvpn-cli[3845]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 20:04:06 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 1 20:04:06 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 20:04:06 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug 1 20:04:06 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 20:04:06 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug 1 20:04:06 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Aug 1 20:04:07 openvpn-cli[3846]: TCP connection established with [AF_INET]51.158.181.228:1194
Aug 1 20:04:07 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug 1 20:04:07 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.158.181.228:1194
Aug 1 20:04:07 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=25634c35 6609b54d
Aug 1 20:04:07 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 20:04:07 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 20:04:08 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:08 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:08 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:08 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:08 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 20:04:08 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.181.228:1194
Aug 1 20:04:11 openvpn-cli[3846]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug 1 20:04:11 openvpn-cli[3846]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 1 20:04:11 openvpn-cli[3846]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.3.10)
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: route options modified
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: route-related options modified
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: peer-id set
Aug 1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug 1 20:04:11 openvpn-cli[3846]: TUN/TAP device tun0 opened
Aug 1 20:04:11 openvpn-cli[3846]: TUN/TAP TX queue length set to 100
Aug 1 20:04:11 openvpn-cli[3846]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/ifconfig tun0 192.168.124.109 netmask 255.255.248.0 mtu 1500 broadcast 192.168.127.255
Aug 1 20:04:11 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.124.109 255.255.248.0 init
Aug 1 20:04:11 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 20:04:11 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 20:04:11 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 20:04:11 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug 1 20:04:11 vpnc-script: tun0 up
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 51.158.181.228 netmask 255.255.255.255 gw 178.163.0.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.120.1
Aug 1 20:04:11 openvpn-cli[3846]: Initialization Sequence Completed
Aug 1 20:04:11 openvpn-cli[3846]: Connection reset, restarting [-1]
Aug 1 20:04:11 openvpn-cli[3846]: TCP/UDP: Closing socket
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 51.158.181.228 netmask 255.255.255.255
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 0.0.0.0 netmask 128.0.0.0
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 128.0.0.0 netmask 128.0.0.0
Aug 1 20:04:11 openvpn-cli[3846]: Closing TUN/TAP interface
Aug 1 20:04:11 openvpn-cli[3846]: /sbin/ifconfig tun0 0.0.0.0
Aug 1 20:04:11 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.124.109 255.255.248.0 init
Aug 1 20:04:11 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 20:04:11 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 20:04:11 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 20:04:11 dnsmasq[405]: using nameserver 8.8.8.8#53
Aug 1 20:04:11 vpnc-script: tun0 down
Aug 1 20:04:11 openvpn-cli[3846]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 1 20:04:11 openvpn-cli[3846]: Restart pause, 5 second(s)
Aug 1 20:04:16 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 1 20:04:16 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 20:04:16 openvpn-cli[3846]: Re-using SSL/TLS context
Aug 1 20:04:16 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug 1 20:04:16 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 20:04:16 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug 1 20:04:16 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Aug 1 20:04:17 openvpn-cli[3846]: TCP connection established with [AF_INET]51.75.70.203:1194
Aug 1 20:04:17 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug 1 20:04:17 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.75.70.203:1194
Aug 1 20:04:18 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.75.70.203:1194, sid=7caafa28 5256e78e
Aug 1 20:04:19 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 20:04:19 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 20:04:22 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:22 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:22 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:22 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:22 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 20:04:22 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.75.70.203:1194
Aug 1 20:04:24 openvpn-cli[3846]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug 1 20:04:25 openvpn-cli[3846]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.104.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 74.
Aug 1 20:04:25 openvpn-cli[3846]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.3.10)
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: route options modified
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: route-related options modified
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: peer-id set
Aug 1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug 1 20:04:25 openvpn-cli[3846]: TUN/TAP device tun0 opened
Aug 1 20:04:25 openvpn-cli[3846]: TUN/TAP TX queue length set to 100
Aug 1 20:04:25 openvpn-cli[3846]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/ifconfig tun0 192.168.105.254 netmask 255.255.248.0 mtu 1500 broadcast 192.168.111.255
Aug 1 20:04:25 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.105.254 255.255.248.0 init
Aug 1 20:04:25 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 20:04:25 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 20:04:25 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 20:04:25 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug 1 20:04:25 vpnc-script: tun0 up
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 51.75.70.203 netmask 255.255.255.255 gw 178.163.0.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.104.1
Aug 1 20:04:25 openvpn-cli[3846]: Initialization Sequence Completed
Aug 1 20:04:25 openvpn-cli[3846]: Connection reset, restarting [-1]
Aug 1 20:04:25 openvpn-cli[3846]: TCP/UDP: Closing socket
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 51.75.70.203 netmask 255.255.255.255
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 0.0.0.0 netmask 128.0.0.0
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 128.0.0.0 netmask 128.0.0.0
Aug 1 20:04:25 openvpn-cli[3846]: Closing TUN/TAP interface
Aug 1 20:04:25 openvpn-cli[3846]: /sbin/ifconfig tun0 0.0.0.0
Aug 1 20:04:25 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.105.254 255.255.248.0 init
Aug 1 20:04:25 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 20:04:25 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 20:04:25 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 20:04:25 dnsmasq[405]: using nameserver 8.8.8.8#53
Aug 1 20:04:25 vpnc-script: tun0 down
Aug 1 20:04:25 openvpn-cli[3846]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 1 20:04:25 openvpn-cli[3846]: Restart pause, 5 second(s)
Aug 1 20:04:30 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Aug 1 20:04:30 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 20:04:30 openvpn-cli[3846]: Re-using SSL/TLS context
Aug 1 20:04:30 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug 1 20:04:30 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 20:04:30 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug 1 20:04:30 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.158.187.25:1194 [nonblock]
Aug 1 20:04:31 openvpn-cli[3846]: TCP connection established with [AF_INET]51.158.187.25:1194
Aug 1 20:04:31 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug 1 20:04:31 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.158.187.25:1194
Aug 1 20:04:31 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.158.187.25:1194, sid=8c0be33b 03d9e4e9
Aug 1 20:04:32 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 20:04:32 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 20:04:33 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:33 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:33 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug 1 20:04:33 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug 1 20:04:33 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 20:04:33 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.187.25:1194
2023-08-01T16:07:49.193Z
5a1n7(Смирнов)
Вот еще что есть любопытное. Это со включенным параметром "Отправлять весь трафик через ВПН, без него пинг появляется:
Тоже самое было сегодня на Asus AC-58U c OpenVPN 2.3.2, обновил прошивку на последнюю бету с OpenVPN 2.4.7 и все полетело, да на модифицированной прошивке конечно возможностей больше, но увы.
2023-08-01T16:32:26.482Z
5a1n7(Смирнов)
При подключении TCP, отключенном сжатии, выключенной отправке всего трафика через впн - все заработало, как и раньше.
Огромное спасибо за помощь и техническую пождержку
RT-AX56U_388.2_2 (мерлин). Со вчерашнего дня “Connected (Local: 192.168.121.174 - Internet not redirected)”. Есть какие-либо рекомендации?
Лог
Aug 2 15:10:18 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 2 15:10:18 ovpn-client1[5820]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 2 15:10:18 ovpn-client1[5820]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 2 15:10:18 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:18 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:18 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b22d9e07 02b0ae66
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:18 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:18 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:18 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:18 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:18 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:20 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:20 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:20 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.121.174/21
Aug 2 15:10:20 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:20 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:20 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:22 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:28 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:28 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:28 ovpn-client1[5821]: Restart pause, 1 second(s)
Aug 2 15:10:29 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:29 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:29 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:30 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b5f8ab21 7cdb94cf
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:30 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:30 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:31 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:31 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:31 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:31 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:32 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:33 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:33 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:33 ovpn-client1[5821]: Preserving previous TUN/TAP instance: tun11
Aug 2 15:10:33 ovpn-client1[5821]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-route-pre-down tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 ovpn-client1[5821]: Closing TUN/TAP interface
Aug 2 15:10:33 ovpn-client1[5821]: /usr/sbin/ip addr del dev tun11 192.168.121.174/21
Aug 2 15:10:33 lldpd[1635]: removal request for address of 192.168.121.174%29, but no knowledge of it
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-down 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.114.112/21
Aug 2 15:10:34 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.114.112 255.255.248.0 init
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:34 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:34 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:36 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:40 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:40 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:40 ovpn-client1[5821]: Restart pause, 1 second(s)
2023-08-02T12:30:01.159Z
OneTema
Добрый день.
Не подскажите что случилось . Настройки не менялись вчера вечером всё “умерло”
Прошивка Падаван
Спойлер
Aug 2 17:58:32 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug 2 17:58:32 openvpn-cli[12210]: Closing TUN/TAP interface
Aug 2 17:58:32 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug 2 17:58:32 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.122.48 255.255.248.0 init
Aug 2 17:58:32 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug 2 17:58:32 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug 2 17:58:32 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 2 17:58:32 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug 2 17:58:32 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug 2 17:58:32 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug 2 17:58:32 vpnc-script: tun0 down
Aug 2 17:58:32 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 17:58:32 openvpn-cli[12210]: Restart pause, 5 second(s)
Aug 2 17:58:37 openvpn-cli[12210]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 17:58:37 openvpn-cli[12210]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.158.187.25:1194
Aug 2 17:58:37 openvpn-cli[12210]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 17:58:37 openvpn-cli[12210]: Attempting to establish TCP connection with [AF_INET]51.158.187.25:1194 [nonblock]
Aug 2 17:58:38 openvpn-cli[12210]: TCP connection established with [AF_INET]51.158.187.25:1194
Aug 2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link local: (not bound)
Aug 2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link remote: [AF_INET]51.158.187.25:1194
Aug 2 17:58:38 openvpn-cli[12210]: TLS: Initial packet from [AF_INET]51.158.187.25:1194, sid=3cd3ba0b e723bb42
Aug 2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 17:58:38 openvpn-cli[12210]: VERIFY KU OK
Aug 2 17:58:38 openvpn-cli[12210]: Validating certificate extended key usage
Aug 2 17:58:38 openvpn-cli[12210]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 17:58:38 openvpn-cli[12210]: VERIFY EKU OK
Aug 2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 17:58:38 openvpn-cli[12210]: WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1559', remote='link-mtu 1543'
Aug 2 17:58:38 openvpn-cli[12210]: WARNING: 'cipher' is used inconsistently, local='cipher AES-128-CBC', remote='cipher BF-CBC'
Aug 2 17:58:38 openvpn-cli[12210]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 2 17:58:38 openvpn-cli[12210]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.187.25:1194
Aug 2 17:58:39 openvpn-cli[12210]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug 2 17:58:40 openvpn-cli[12210]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 17:58:40 openvpn-cli[12210]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.4.3)
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route options modified
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route-related options modified
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: peer-id set
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: adjusting link_mtu to 1626
Aug 2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: data channel crypto options modified
Aug 2 17:58:40 openvpn-cli[12210]: Data Channel: using negotiated cipher 'AES-128-GCM'
Aug 2 17:58:40 openvpn-cli[12210]: Data Channel Encrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug 2 17:58:40 openvpn-cli[12210]: Data Channel Decrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug 2 17:58:40 openvpn-cli[12210]: TUN/TAP device tun0 opened
Aug 2 17:58:40 openvpn-cli[12210]: TUN/TAP TX queue length set to 100
Aug 2 17:58:40 openvpn-cli[12210]: do_ifconfig, tt->did_ifconfig_ipv6_setup=0
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/ifconfig tun0 192.168.113.126 netmask 255.255.248.0 mtu 1500 broadcast 192.168.119.255
Aug 2 17:58:40 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug 2 17:58:40 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug 2 17:58:40 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug 2 17:58:40 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 2 17:58:40 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug 2 17:58:40 dnsmasq[399]: using nameserver 192.168.104.1#53
Aug 2 17:58:40 vpnc-script: tun0 up
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.112.1
Aug 2 17:58:40 openvpn-cli[12210]: Initialization Sequence Completed
Aug 2 17:58:52 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug 2 17:58:52 openvpn-cli[12210]: Closing TUN/TAP interface
Aug 2 17:58:52 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug 2 17:58:52 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug 2 17:58:52 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug 2 17:58:52 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug 2 17:58:52 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 2 17:58:52 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug 2 17:58:52 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug 2 17:58:52 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug 2 17:58:52 vpnc-script: tun0 down
Aug 2 17:58:52 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 17:58:52 openvpn-cli[12210]: Restart pause, 5 second(s)
Еще раз немного изменил настройки, напишите, у кого заработало (если не работало), а у кого наоборот перестало работать (если работало).
2023-08-07T09:33:58.753Z
Serd
RT-AX56U_388.2_2 (мерлин). Увы, но без изменений, все так же не работает.
Спойлер
Aug 7 15:45:42 openvpn: Resetting VPN client 1 to default settings
Aug 7 15:46:05 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 7 15:46:05 ovpn-client1[30964]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 7 15:46:05 ovpn-client1[30964]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 7 15:46:05 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:05 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:05 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:06 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=0c43f5ee 3f4c0e27
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:07 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:07 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:07 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:07 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:07 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:07 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:08 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:08 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.104.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 7
Aug 7 15:46:08 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.6.3)
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.105.143/21
Aug 7 15:46:08 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:08 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:08 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:10 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:10 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:10 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:10 ovpn-client1[30965]: Restart pause, 1 second(s)
Aug 7 15:46:11 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:11 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:11 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:15 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=74e5101f c35fb8aa
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:15 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:15 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:16 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:16 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:16 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:16 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:17 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:17 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,rout
Aug 7 15:46:17 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:17 ovpn-client1[30965]: Preserving previous TUN/TAP instance: tun11
Aug 7 15:46:17 ovpn-client1[30965]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 7 15:46:17 ovpn-client1[30965]: ovpn-route-pre-down tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 ovpn-client1[30965]: Closing TUN/TAP interface
Aug 7 15:46:18 ovpn-client1[30965]: /usr/sbin/ip addr del dev tun11 192.168.105.143/21
Aug 7 15:46:18 lldpd[1635]: removal request for address of 192.168.105.143%57, but no knowledge of it
Aug 7 15:46:18 ovpn-client1[30965]: ovpn-down 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.123.245/21
Aug 7 15:46:19 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.123.245 255.255.248.0 init
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:19 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:19 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:21 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:23 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:23 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:23 ovpn-client1[30965]: Restart pause, 1 second(s)
2023-08-07T12:51:10.994Z
OneTema
Повтор сообщения. Как я писал всё померло 5 дней назад прошивка падаван . 4 дня назад всё за работало и всё было ок . Сегодня не знаю восколько всё опять померло Blowfish 128 Не помогло .
2023-08-07T18:27:54.895Z
ATROX
12 августа 2023 - работает.
Auth.: SHA1
Cipher: blowfish 128
…
Обидно, что перестал поддерживаться AES-128-CBC, т.к. мой маршрутизатор поддерживает аппаратное шифрование по данному протоколу (hardware offload).
2023-08-12T01:55:28.716Z
dartraiden(Alexander Gavrilov)
Через Antizapret идёт настолько мизерный трафик (в районе нескольких сотен мегабайт в сутки в моём случае), что аппаратное ускорение его шифрования роли не играет.
2023-08-16T23:26:15.161Z
NiTRO88(NiTRO88)
Доброго дня!
роутер Kennetic 4G III rev.A, Padavan 3.4.3.9-099_460bda1
Удостоверьтесь, что на роутере установлено корректные дата и время.
2023-09-20T08:05:23.340Z
nevian427
Что-то сломалось и я даже не заметил когда Конфиг заново скачал и проверил - совпадает. С виду соединение совершенно нормально устанавливается, однако сразу обрывается и пытается вновь.
Nov 20 13:11:37 openvpn-cli[845]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Nov 20 13:11:37 openvpn-cli[845]: Re-using SSL/TLS context
Nov 20 13:11:37 openvpn-cli[845]: Control Channel MTU parms [ L:1623 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Nov 20 13:11:37 openvpn-cli[845]: Data Channel MTU parms [ L:1623 D:1450 EF:123 EB:406 ET:0 EL:3 ]
Nov 20 13:11:37 openvpn-cli[845]: Local Options String (VER=V4): ‘V4,dev-type tun,link-mtu 1543,tun-mtu 1500,proto TCPv4_CLIENT,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client’
Nov 20 13:11:37 openvpn-cli[845]: Expected Remote Options String (VER=V4): ‘V4,dev-type tun,link-mtu 1543,tun-mtu 1500,proto TCPv4_SERVER,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server’
Nov 20 13:11:37 openvpn-cli[845]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.158.181.228:1194
Nov 20 13:11:37 openvpn-cli[845]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Nov 20 13:11:37 openvpn-cli[845]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Nov 20 13:11:38 openvpn-cli[845]: TCP connection established with [AF_INET]51.158.181.228:1194
Nov 20 13:11:38 openvpn-cli[845]: TCP_CLIENT link local: (not bound)
Nov 20 13:11:38 openvpn-cli[845]: TCP_CLIENT link remote: [AF_INET]51.158.181.228:1194
Nov 20 13:11:38 openvpn-cli[845]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=439fa08c 5a3d6edb
Nov 20 13:11:38 openvpn-cli[845]: VERIFY OK: depth=1, CN=AntiZapret CA2
Nov 20 13:11:38 openvpn-cli[845]: VERIFY KU OK
Nov 20 13:11:38 openvpn-cli[845]: Validating certificate extended key usage
Nov 20 13:11:38 openvpn-cli[845]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Nov 20 13:11:38 openvpn-cli[845]: VERIFY EKU OK
Nov 20 13:11:38 openvpn-cli[845]: VERIFY OK: depth=0, CN=antizapret-server-shared
Nov 20 13:11:38 openvpn-cli[845]: Connection reset, restarting [0]
Nov 20 13:11:38 openvpn-cli[845]: TCP/UDP: Closing socket
Nov 20 13:11:38 openvpn-cli[845]: SIGUSR1[soft,connection-reset] received, process restarting
Nov 20 13:11:38 openvpn-cli[845]: Restart pause, 5 second(s)