Ник Пост Дата
5a1n7(Смирнов)

Добрый день.
Использую клиент на роутере Asus RT-N56 с прошивкой Padavan. Сегодня перестал подключаться. В чем может быть проблема? Клиент на Андроиде работает как положено из той же сети.
Лог:
Aug 1 16:37:30 RT-N56U: starting OpenVPN client…
Aug 1 16:37:30 openvpn-cli[5519]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 16:37:30 openvpn-cli[5519]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 16:37:30 openvpn-cli[5520]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
Aug 1 16:37:30 openvpn-cli[5520]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 16:37:30 openvpn-cli[5520]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 1 16:37:30 openvpn-cli[5520]: Attempting to establish TCP connection with [AF_INET]51.75.75.245:1194 [nonblock]
Aug 1 16:37:31 openvpn-cli[5520]: TCP connection established with [AF_INET]51.75.75.245:1194
Aug 1 16:37:31 openvpn-cli[5520]: TCPv4_CLIENT link local: [undef]
Aug 1 16:37:31 openvpn-cli[5520]: TCPv4_CLIENT link remote: [AF_INET]51.75.75.245:1194
Aug 1 16:37:34 openvpn-cli[5520]: TLS: Initial packet from [AF_INET]51.75.75.245:1194, sid=f0aa8de0 026f8929
Aug 1 16:37:34 openvpn-cli[5520]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 16:37:34 openvpn-cli[5520]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Encrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Encrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Decrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 16:37:36 openvpn-cli[5520]: Data Channel Decrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 16:37:36 openvpn-cli[5520]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 16:37:36 openvpn-cli[5520]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.75.75.245:1194
Aug 1 16:37:38 openvpn-cli[5520]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 1 16:37:39 openvpn-cli[5520]: AUTH: Received control message: AUTH_FAILED,Data channel cipher negotiation failed (no shared cipher)
Aug 1 16:37:39 openvpn-cli[5520]: SIGTERM[soft,auth-failure] received, process exiting

2023-08-01T12:46:50.808Z
ValdikSS

Проверьте сейчас. У вас древнегреческая версия OpenVPN.

2023-08-01T13:06:45.196Z
5a1n7(Смирнов)

Спасибо большое! Все заработало! Увы, Падаван забросил проект, а роутер все еще жив и бодр(

2023-08-01T13:10:05.398Z
5a1n7(Смирнов)

Несколько поторорился я радоваться. Подключение устанавливается, но инет пропадает совсем. Ошибка резолвинга днс-имен. На андроиде все по-прежнему хорошо.
Лог:

Спойлер

Aug 1 19:22:00 RT-N56U: starting OpenVPN client…
Aug 1 19:22:00 openvpn-cli[2492]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug 1 19:22:00 openvpn-cli[2492]: library versions: OpenSSL 1.0.1r 28 Jan 2016, LZO 2.09
Aug 1 19:22:00 openvpn-cli[2493]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
Aug 1 19:22:00 openvpn-cli[2493]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 1 19:22:00 openvpn-cli[2493]: Socket Buffers: R=[163840->163840] S=[163840->163840]
Aug 1 19:22:00 openvpn-cli[2493]: UDPv4 link local: [undef]
Aug 1 19:22:00 openvpn-cli[2493]: UDPv4 link remote: [AF_INET]141.95.17.71:1194
Aug 1 19:22:00 openvpn-cli[2493]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=8854a512 fb71164c
Aug 1 19:22:01 openvpn-cli[2493]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 1 19:22:01 openvpn-cli[2493]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Encrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Encrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Decrypt: Cipher ‘BF-CBC’ initialized with 128 bit key
Aug 1 19:22:02 openvpn-cli[2493]: Data Channel Decrypt: Using 160 bit message hash ‘SHA1’ for HMAC authentication
Aug 1 19:22:02 openvpn-cli[2493]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug 1 19:22:02 openvpn-cli[2493]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 1 19:22:04 openvpn-cli[2493]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 1 19:22:04 openvpn-cli[2493]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.100.1,block-outside-dns,route-gateway 192.168.100.1,topology subnet,ping 35,ping-restart 160,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 74.8
Aug 1 19:22:04 openvpn-cli[2493]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.3.10)
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: timers and/or timeouts modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: route options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: route-related options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: peer-id set
Aug 1 19:22:04 openvpn-cli[2493]: OPTIONS IMPORT: adjusting link_mtu to 1545
Aug 1 19:22:04 openvpn-cli[2493]: TUN/TAP device tun0 opened
Aug 1 19:22:04 openvpn-cli[2493]: TUN/TAP TX queue length set to 100
Aug 1 19:22:04 openvpn-cli[2493]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/ifconfig tun0 192.168.100.14 netmask 255.255.252.0 mtu 1500 broadcast 192.168.103.255
Aug 1 19:22:04 openvpn-cli[2493]: ovpnc.script tun0 1500 1545 192.168.100.14 255.255.252.0 init
Aug 1 19:22:04 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug 1 19:22:04 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug 1 19:22:04 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug 1 19:22:04 dnsmasq[405]: using nameserver 192.168.100.1#53
Aug 1 19:22:04 vpnc-script: tun0 up
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.100.1
Aug 1 19:22:04 openvpn-cli[2493]: Initialization Sequence Completed

Настройки прикладываю.

2023-08-01T15:26:04.864Z
ValdikSS

Подключайтесь по TCP, а не по UDP.

2023-08-01T15:43:04.957Z
5a1n7(Смирнов)

Попробовал первым делом (хотя до сегодняшнего дня все работало с текущими настройками), не помогает.
192.168.104.1 должен пинговаться? У меня он на пинг не отвечает.
Какая диагностика может Вам помочь помочь мне? Есть винда, мак, убунту, андроид.

2023-08-01T15:50:49.897Z
ValdikSS

Сжатие должно быть отключено, всё остальное выглядит нормально. Пришлите журнал (лог) подключения. 192.168.104.1 должен пинговаться.

2023-08-01T15:51:54.277Z
5a1n7(Смирнов)

Все, что я вижу:

Aug  1 19:55:43 RT-N56U: starting OpenVPN client...
Aug  1 19:55:43 openvpn-cli[3381]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug  1 19:55:43 openvpn-cli[3381]: library versions: OpenSSL 1.0.1r  28 Jan 2016, LZO 2.09
Aug  1 19:55:43 openvpn-cli[3382]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Aug  1 19:55:43 openvpn-cli[3382]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  1 19:55:43 openvpn-cli[3382]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  1 19:55:43 openvpn-cli[3382]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194 [nonblock]
Aug  1 19:55:44 openvpn-cli[3382]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug  1 19:55:44 openvpn-cli[3382]: TCPv4_CLIENT link local: [undef]
Aug  1 19:55:44 openvpn-cli[3382]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug  1 19:55:45 openvpn-cli[3382]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=07cd5369 961dbf71
Aug  1 19:55:45 openvpn-cli[3382]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  1 19:55:45 openvpn-cli[3382]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  1 19:55:45 openvpn-cli[3382]: Connection reset, restarting [-1]
Aug  1 19:55:45 openvpn-cli[3382]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  1 19:55:45 openvpn-cli[3382]: Restart pause, 5 second(s)
Aug  1 19:55:50 openvpn-cli[3382]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Aug  1 19:55:50 openvpn-cli[3382]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  1 19:55:50 openvpn-cli[3382]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  1 19:55:50 openvpn-cli[3382]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Aug  1 19:55:51 openvpn-cli[3382]: TCP connection established with [AF_INET]51.158.181.228:1194
Aug  1 19:55:51 openvpn-cli[3382]: TCPv4_CLIENT link local: [undef]
Aug  1 19:55:51 openvpn-cli[3382]: TCPv4_CLIENT link remote: [AF_INET]51.158.181.228:1194
Aug  1 19:55:51 openvpn-cli[3382]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=b37c84f3 93278517
Aug  1 19:55:51 openvpn-cli[3382]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  1 19:55:51 openvpn-cli[3382]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  1 19:55:52 openvpn-cli[3382]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 19:55:52 openvpn-cli[3382]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 19:55:52 openvpn-cli[3382]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 19:55:52 openvpn-cli[3382]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 19:55:52 openvpn-cli[3382]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  1 19:55:52 openvpn-cli[3382]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.181.228:1194
Aug  1 19:55:55 openvpn-cli[3382]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug  1 19:55:55 openvpn-cli[3382]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 
Aug  1 19:55:55 openvpn-cli[3382]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.3.10)
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: timers and/or timeouts modified
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: --ifconfig/up options modified
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: route options modified
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: route-related options modified
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: peer-id set
Aug  1 19:55:55 openvpn-cli[3382]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug  1 19:55:55 openvpn-cli[3382]: TUN/TAP device tun0 opened
Aug  1 19:55:55 openvpn-cli[3382]: TUN/TAP TX queue length set to 100
Aug  1 19:55:55 openvpn-cli[3382]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/ifconfig tun0 192.168.120.116 netmask 255.255.248.0 mtu 1500 broadcast 192.168.127.255
Aug  1 19:55:55 openvpn-cli[3382]: ovpnc.script tun0 1500 1546 192.168.120.116 255.255.248.0 init
Aug  1 19:55:55 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug  1 19:55:55 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug  1 19:55:55 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  1 19:55:55 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug  1 19:55:55 vpnc-script: tun0 up
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 51.158.181.228 netmask 255.255.255.255 gw 178.163.0.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.120.1
Aug  1 19:55:55 openvpn-cli[3382]: Initialization Sequence Completed
2023-08-01T15:56:43.137Z
5a1n7(Смирнов)

Пинг появился.
Лог verb 4(был 3):

Aug  1 20:04:06 RT-N56U: starting OpenVPN client...
Aug  1 20:04:06 openvpn-cli[3845]: OpenVPN 2.3.10 mipsel-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Jan 31 2016
Aug  1 20:04:06 openvpn-cli[3845]: library versions: OpenSSL 1.0.1r  28 Jan 2016, LZO 2.09
Aug  1 20:04:06 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Aug  1 20:04:06 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  1 20:04:06 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug  1 20:04:06 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  1 20:04:06 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug  1 20:04:06 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Aug  1 20:04:07 openvpn-cli[3846]: TCP connection established with [AF_INET]51.158.181.228:1194
Aug  1 20:04:07 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug  1 20:04:07 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.158.181.228:1194
Aug  1 20:04:07 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=25634c35 6609b54d
Aug  1 20:04:07 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  1 20:04:07 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  1 20:04:08 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:08 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:08 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:08 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:08 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  1 20:04:08 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.181.228:1194
Aug  1 20:04:11 openvpn-cli[3846]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug  1 20:04:11 openvpn-cli[3846]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 
Aug  1 20:04:11 openvpn-cli[3846]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.3.10)
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: timers and/or timeouts modified
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: --ifconfig/up options modified
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: route options modified
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: route-related options modified
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: peer-id set
Aug  1 20:04:11 openvpn-cli[3846]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug  1 20:04:11 openvpn-cli[3846]: TUN/TAP device tun0 opened
Aug  1 20:04:11 openvpn-cli[3846]: TUN/TAP TX queue length set to 100
Aug  1 20:04:11 openvpn-cli[3846]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/ifconfig tun0 192.168.124.109 netmask 255.255.248.0 mtu 1500 broadcast 192.168.127.255
Aug  1 20:04:11 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.124.109 255.255.248.0 init
Aug  1 20:04:11 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug  1 20:04:11 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug  1 20:04:11 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  1 20:04:11 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug  1 20:04:11 vpnc-script: tun0 up
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 51.158.181.228 netmask 255.255.255.255 gw 178.163.0.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.120.1
Aug  1 20:04:11 openvpn-cli[3846]: Initialization Sequence Completed
Aug  1 20:04:11 openvpn-cli[3846]: Connection reset, restarting [-1]
Aug  1 20:04:11 openvpn-cli[3846]: TCP/UDP: Closing socket
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 51.158.181.228 netmask 255.255.255.255
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 0.0.0.0 netmask 128.0.0.0
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/route del -net 128.0.0.0 netmask 128.0.0.0
Aug  1 20:04:11 openvpn-cli[3846]: Closing TUN/TAP interface
Aug  1 20:04:11 openvpn-cli[3846]: /sbin/ifconfig tun0 0.0.0.0
Aug  1 20:04:11 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.124.109 255.255.248.0 init
Aug  1 20:04:11 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug  1 20:04:11 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug  1 20:04:11 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  1 20:04:11 dnsmasq[405]: using nameserver 8.8.8.8#53
Aug  1 20:04:11 vpnc-script: tun0 down
Aug  1 20:04:11 openvpn-cli[3846]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  1 20:04:11 openvpn-cli[3846]: Restart pause, 5 second(s)
Aug  1 20:04:16 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Aug  1 20:04:16 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  1 20:04:16 openvpn-cli[3846]: Re-using SSL/TLS context
Aug  1 20:04:16 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug  1 20:04:16 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  1 20:04:16 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug  1 20:04:16 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Aug  1 20:04:17 openvpn-cli[3846]: TCP connection established with [AF_INET]51.75.70.203:1194
Aug  1 20:04:17 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug  1 20:04:17 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.75.70.203:1194
Aug  1 20:04:18 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.75.70.203:1194, sid=7caafa28 5256e78e
Aug  1 20:04:19 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  1 20:04:19 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  1 20:04:22 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:22 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:22 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:22 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:22 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  1 20:04:22 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.75.70.203:1194
Aug  1 20:04:24 openvpn-cli[3846]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug  1 20:04:25 openvpn-cli[3846]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.104.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 74.
Aug  1 20:04:25 openvpn-cli[3846]: Options error: Unrecognized option or missing parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.3.10)
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: timers and/or timeouts modified
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: --ifconfig/up options modified
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: route options modified
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: route-related options modified
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: peer-id set
Aug  1 20:04:25 openvpn-cli[3846]: OPTIONS IMPORT: adjusting link_mtu to 1546
Aug  1 20:04:25 openvpn-cli[3846]: TUN/TAP device tun0 opened
Aug  1 20:04:25 openvpn-cli[3846]: TUN/TAP TX queue length set to 100
Aug  1 20:04:25 openvpn-cli[3846]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/ifconfig tun0 192.168.105.254 netmask 255.255.248.0 mtu 1500 broadcast 192.168.111.255
Aug  1 20:04:25 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.105.254 255.255.248.0 init
Aug  1 20:04:25 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug  1 20:04:25 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug  1 20:04:25 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  1 20:04:25 dnsmasq[405]: using nameserver 192.168.104.1#53
Aug  1 20:04:25 vpnc-script: tun0 up
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 51.75.70.203 netmask 255.255.255.255 gw 178.163.0.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.104.1
Aug  1 20:04:25 openvpn-cli[3846]: Initialization Sequence Completed
Aug  1 20:04:25 openvpn-cli[3846]: Connection reset, restarting [-1]
Aug  1 20:04:25 openvpn-cli[3846]: TCP/UDP: Closing socket
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 51.75.70.203 netmask 255.255.255.255
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 0.0.0.0 netmask 128.0.0.0
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/route del -net 128.0.0.0 netmask 128.0.0.0
Aug  1 20:04:25 openvpn-cli[3846]: Closing TUN/TAP interface
Aug  1 20:04:25 openvpn-cli[3846]: /sbin/ifconfig tun0 0.0.0.0
Aug  1 20:04:25 openvpn-cli[3846]: ovpnc.script tun0 1500 1546 192.168.105.254 255.255.248.0 init
Aug  1 20:04:25 dnsmasq[405]: read /etc/hosts - 7 addresses
Aug  1 20:04:25 dnsmasq[405]: read /etc/storage/dnsmasq/hosts - 0 addresses
Aug  1 20:04:25 dnsmasq-dhcp[405]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  1 20:04:25 dnsmasq[405]: using nameserver 8.8.8.8#53
Aug  1 20:04:25 vpnc-script: tun0 down
Aug  1 20:04:25 openvpn-cli[3846]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  1 20:04:25 openvpn-cli[3846]: Restart pause, 5 second(s)
Aug  1 20:04:30 openvpn-cli[3846]: WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Aug  1 20:04:30 openvpn-cli[3846]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  1 20:04:30 openvpn-cli[3846]: Re-using SSL/TLS context
Aug  1 20:04:30 openvpn-cli[3846]: Control Channel MTU parms [ L:1543 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Aug  1 20:04:30 openvpn-cli[3846]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  1 20:04:30 openvpn-cli[3846]: Data Channel MTU parms [ L:1543 D:1450 EF:43 EB:12 ET:0 EL:3 ]
Aug  1 20:04:30 openvpn-cli[3846]: Attempting to establish TCP connection with [AF_INET]51.158.187.25:1194 [nonblock]
Aug  1 20:04:31 openvpn-cli[3846]: TCP connection established with [AF_INET]51.158.187.25:1194
Aug  1 20:04:31 openvpn-cli[3846]: TCPv4_CLIENT link local: [undef]
Aug  1 20:04:31 openvpn-cli[3846]: TCPv4_CLIENT link remote: [AF_INET]51.158.187.25:1194
Aug  1 20:04:31 openvpn-cli[3846]: TLS: Initial packet from [AF_INET]51.158.187.25:1194, sid=8c0be33b 03d9e4e9
Aug  1 20:04:32 openvpn-cli[3846]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  1 20:04:32 openvpn-cli[3846]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  1 20:04:33 openvpn-cli[3846]: Data Channel Encrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:33 openvpn-cli[3846]: Data Channel Encrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:33 openvpn-cli[3846]: Data Channel Decrypt: Cipher 'BF-CBC' initialized with 128 bit key
Aug  1 20:04:33 openvpn-cli[3846]: Data Channel Decrypt: Using 160 bit message hash 'SHA1' for HMAC authentication
Aug  1 20:04:33 openvpn-cli[3846]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  1 20:04:33 openvpn-cli[3846]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.187.25:1194
2023-08-01T16:07:49.193Z
5a1n7(Смирнов)

Вот еще что есть любопытное. Это со включенным параметром "Отправлять весь трафик через ВПН, без него пинг появляется:

2023-08-01T16:24:20.106Z
ValdikSS

Эта опция должна быть выключена.

2023-08-01T16:30:37.644Z
Dio-kun

Тоже самое было сегодня на Asus AC-58U c OpenVPN 2.3.2, обновил прошивку на последнюю бету с OpenVPN 2.4.7 и все полетело, да на модифицированной прошивке конечно возможностей больше, но увы.

2023-08-01T16:32:26.482Z
5a1n7(Смирнов)

При подключении TCP, отключенном сжатии, выключенной отправке всего трафика через впн - все заработало, как и раньше.
Огромное спасибо за помощь и техническую пождержку

2023-08-01T18:48:03.565Z
bunkerfox(bunkerfox)

sha1/aes128cbc все?


upd: blowfish128 робит

2023-08-01T18:56:00.747Z
Serd

RT-AX56U_388.2_2 (мерлин). Со вчерашнего дня “Connected (Local: 192.168.121.174 - Internet not redirected)”. Есть какие-либо рекомендации?

Лог

Aug 2 15:10:18 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 2 15:10:18 ovpn-client1[5820]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 2 15:10:18 ovpn-client1[5820]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 2 15:10:18 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:18 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:18 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b22d9e07 02b0ae66
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:18 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:18 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:18 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:18 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:18 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:20 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:20 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:20 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.121.174/21
Aug 2 15:10:20 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:20 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:20 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:22 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:28 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:28 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:28 ovpn-client1[5821]: Restart pause, 1 second(s)
Aug 2 15:10:29 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:29 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:29 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:30 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b5f8ab21 7cdb94cf
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:30 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:30 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:31 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:31 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:31 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:31 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:32 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:33 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:33 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:33 ovpn-client1[5821]: Preserving previous TUN/TAP instance: tun11
Aug 2 15:10:33 ovpn-client1[5821]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-route-pre-down tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 ovpn-client1[5821]: Closing TUN/TAP interface
Aug 2 15:10:33 ovpn-client1[5821]: /usr/sbin/ip addr del dev tun11 192.168.121.174/21
Aug 2 15:10:33 lldpd[1635]: removal request for address of 192.168.121.174%29, but no knowledge of it
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-down 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.114.112/21
Aug 2 15:10:34 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.114.112 255.255.248.0 init
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:34 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:34 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:36 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:40 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:40 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:40 ovpn-client1[5821]: Restart pause, 1 second(s)

2023-08-02T12:30:01.159Z
OneTema

Добрый день.
Не подскажите что случилось . Настройки не менялись вчера вечером всё “умерло”
Прошивка Падаван

Спойлер
Aug  2 17:58:32 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  2 17:58:32 openvpn-cli[12210]: Closing TUN/TAP interface
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug  2 17:58:32 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.122.48 255.255.248.0 init
Aug  2 17:58:32 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:32 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:32 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:32 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:32 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug  2 17:58:32 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug  2 17:58:32 vpnc-script: tun0 down
Aug  2 17:58:32 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  2 17:58:32 openvpn-cli[12210]: Restart pause, 5 second(s)
Aug  2 17:58:37 openvpn-cli[12210]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  2 17:58:37 openvpn-cli[12210]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.158.187.25:1194
Aug  2 17:58:37 openvpn-cli[12210]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  2 17:58:37 openvpn-cli[12210]: Attempting to establish TCP connection with [AF_INET]51.158.187.25:1194 [nonblock]
Aug  2 17:58:38 openvpn-cli[12210]: TCP connection established with [AF_INET]51.158.187.25:1194
Aug  2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link local: (not bound)
Aug  2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link remote: [AF_INET]51.158.187.25:1194
Aug  2 17:58:38 openvpn-cli[12210]: TLS: Initial packet from [AF_INET]51.158.187.25:1194, sid=3cd3ba0b e723bb42
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY KU OK
Aug  2 17:58:38 openvpn-cli[12210]: Validating certificate extended key usage
Aug  2 17:58:38 openvpn-cli[12210]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY EKU OK
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  2 17:58:38 openvpn-cli[12210]: WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1559', remote='link-mtu 1543'
Aug  2 17:58:38 openvpn-cli[12210]: WARNING: 'cipher' is used inconsistently, local='cipher AES-128-CBC', remote='cipher BF-CBC'
Aug  2 17:58:38 openvpn-cli[12210]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  2 17:58:38 openvpn-cli[12210]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.187.25:1194
Aug  2 17:58:39 openvpn-cli[12210]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug  2 17:58:40 openvpn-cli[12210]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug  2 17:58:40 openvpn-cli[12210]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.4.3)
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: timers and/or timeouts modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ifconfig/up options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route-related options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: peer-id set
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: adjusting link_mtu to 1626
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: data channel crypto options modified
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel: using negotiated cipher 'AES-128-GCM'
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel Encrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel Decrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug  2 17:58:40 openvpn-cli[12210]: TUN/TAP device tun0 opened
Aug  2 17:58:40 openvpn-cli[12210]: TUN/TAP TX queue length set to 100
Aug  2 17:58:40 openvpn-cli[12210]: do_ifconfig, tt->did_ifconfig_ipv6_setup=0
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/ifconfig tun0 192.168.113.126 netmask 255.255.248.0 mtu 1500 broadcast 192.168.119.255
Aug  2 17:58:40 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug  2 17:58:40 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:40 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:40 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:40 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:40 dnsmasq[399]: using nameserver 192.168.104.1#53
Aug  2 17:58:40 vpnc-script: tun0 up
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: Initialization Sequence Completed
Aug  2 17:58:52 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  2 17:58:52 openvpn-cli[12210]: Closing TUN/TAP interface
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug  2 17:58:52 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug  2 17:58:52 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:52 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:52 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:52 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:52 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug  2 17:58:52 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug  2 17:58:52 vpnc-script: tun0 down
Aug  2 17:58:52 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  2 17:58:52 openvpn-cli[12210]: Restart pause, 5 second(s)

Спойлер

2023-08-02T15:02:05.348Z
dartraiden(Alexander Gavrilov)

В целом, эта тема, видимо, дубль той.

2023-08-02T20:25:12.344Z
ValdikSS

Еще раз немного изменил настройки, напишите, у кого заработало (если не работало), а у кого наоборот перестало работать (если работало).

2023-08-07T09:33:58.753Z
Serd

RT-AX56U_388.2_2 (мерлин). Увы, но без изменений, все так же не работает.

Спойлер

Aug 7 15:45:42 openvpn: Resetting VPN client 1 to default settings
Aug 7 15:46:05 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 7 15:46:05 ovpn-client1[30964]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 7 15:46:05 ovpn-client1[30964]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 7 15:46:05 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:05 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:05 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:06 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=0c43f5ee 3f4c0e27
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:07 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:07 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:07 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:07 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:07 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:07 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:08 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:08 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.104.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 7
Aug 7 15:46:08 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.6.3)
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.105.143/21
Aug 7 15:46:08 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:08 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:08 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:10 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:10 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:10 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:10 ovpn-client1[30965]: Restart pause, 1 second(s)
Aug 7 15:46:11 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:11 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:11 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:15 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=74e5101f c35fb8aa
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:15 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:15 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:16 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:16 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:16 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:16 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:17 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:17 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,rout
Aug 7 15:46:17 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:17 ovpn-client1[30965]: Preserving previous TUN/TAP instance: tun11
Aug 7 15:46:17 ovpn-client1[30965]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 7 15:46:17 ovpn-client1[30965]: ovpn-route-pre-down tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 ovpn-client1[30965]: Closing TUN/TAP interface
Aug 7 15:46:18 ovpn-client1[30965]: /usr/sbin/ip addr del dev tun11 192.168.105.143/21
Aug 7 15:46:18 lldpd[1635]: removal request for address of 192.168.105.143%57, but no knowledge of it
Aug 7 15:46:18 ovpn-client1[30965]: ovpn-down 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.123.245/21
Aug 7 15:46:19 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.123.245 255.255.248.0 init
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:19 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:19 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:21 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:23 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:23 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:23 ovpn-client1[30965]: Restart pause, 1 second(s)

2023-08-07T12:51:10.994Z
OneTema

Повтор сообщения. Как я писал всё померло 5 дней назад прошивка падаван . 4 дня назад всё за работало и всё было ок . Сегодня не знаю восколько всё опять померло
Blowfish 128 Не помогло .

2023-08-07T18:27:54.895Z
ATROX

12 августа 2023 - работает.
Auth.: SHA1
Cipher: blowfish 128

Обидно, что перестал поддерживаться AES-128-CBC, т.к. мой маршрутизатор поддерживает аппаратное шифрование по данному протоколу (hardware offload).

2023-08-12T01:55:28.716Z
dartraiden(Alexander Gavrilov)

Через Antizapret идёт настолько мизерный трафик (в районе нескольких сотен мегабайт в сутки в моём случае), что аппаратное ускорение его шифрования роли не играет.

2023-08-16T23:26:15.161Z
NiTRO88(NiTRO88)

Доброго дня!

роутер Kennetic 4G III rev.A, Padavan 3.4.3.9-099_460bda1

перестал работать А




нтизапрет… ничего не менял, что случилось? пришёл из отпуска и на тебе! месяц назад всё работало…
скрины приложил, кто понимает гляньте плз :blush:

2023-08-24T17:12:52.364Z
unlive(Евгений)

@NiTRO88 Алгоритм шифрования данных с aes поменяйте на blowfish и будет Вам счастье

2023-08-24T17:39:38.255Z
NiTRO88(NiTRO88)

Спасибо! Всё идеально!

2023-08-25T07:48:20.599Z
Asterex

роутер asus rt ax55, перестал конектиться
лог

Aug 27 11:55:15 vpnclient5[17364]: Restart pause, 5 second(s)
Aug 27 11:55:20 vpnclient5[17364]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 27 11:55:20 vpnclient5[17364]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.75.70.203:1194
Aug 27 11:55:20 vpnclient5[17364]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 27 11:55:20 vpnclient5[17364]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Aug 27 11:55:21 vpnclient5[17364]: TCP connection established with [AF_INET]51.75.70.203:1194
Aug 27 11:55:21 vpnclient5[17364]: TCP_CLIENT link local: (not bound)
Aug 27 11:55:21 vpnclient5[17364]: TCP_CLIENT link remote: [AF_INET]51.75.70.203:1194
Aug 27 11:55:22 vpnclient5[17364]: TLS: Initial packet from [AF_INET]51.75.70.203:1194, sid=5d2a2e15 88c739c3
Aug 27 11:55:22 vpnclient5[17364]: VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: CN=AntiZapret CA2, serial=395676000932360417557920047185476562157802139901
Aug 27 11:55:22 vpnclient5[17364]: OpenSSL: error:1416F086:lib(20):func(367):reason(134)
Aug 27 11:55:22 vpnclient5[17364]: TLS_ERROR: BIO read tls_read_plaintext error
Aug 27 11:55:22 vpnclient5[17364]: TLS Error: TLS object -> incoming plaintext read error
Aug 27 11:55:22 vpnclient5[17364]: TLS Error: TLS handshake failed
Aug 27 11:55:22 vpnclient5[17364]: Fatal TLS error (check_tls_errors_co), restarting
Aug 27 11:55:22 vpnclient5[17364]: SIGUSR1[soft,tls-error] received, process restarting
Aug 27 11:55:22 vpnclient5[17364]: Restart pause, 5 second(s)
2023-08-27T06:56:31.070Z
ValdikSS

У вас устаревшая конфигурация.

2023-08-28T13:59:05.885Z
Asterex

Действительно. Скачал с другого зеркала - заработало.
ранее качал с http://antizapret-1.prostovpn.org/ там какая старая версия.

2023-08-28T15:01:11.940Z
GziN(Александр )

Подскажите перестал работать антизапрет
TCP/UDP: Preserving recently used remote address: [AF_INET]51.75.70.203:1194
Sep 11 15:14:38 openvpn[3738]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Sep 11 15:14:38 openvpn[3738]: TCP connection established with [AF_INET]51.75.70.203:1194
Sep 11 15:14:38 openvpn[3738]: TCP_CLIENT link local: (not bound)
Sep 11 15:14:38 openvpn[3738]: TCP_CLIENT link remote: [AF_INET]51.75.70.203:1194
Sep 11 15:14:39 openvpn[3738]: VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: CN=AntiZapret CA2, serial=395676000932360417557920047185476562157802139901
Sep 11 15:14:39 openvpn[3738]: OpenSSL: error:1416F086:lib(20):func(367):reason(134)
Sep 11 15:14:39 openvpn[3738]: TLS_ERROR: BIO read tls_read_plaintext error
Sep 11 15:14:39 openvpn[3738]: TLS Error: TLS object → incoming plaintext read error
Sep 11 15:14:39 openvpn[3738]: TLS Error: TLS handshake failed
Sep 11 15:14:39 openvpn[3738]: Fatal TLS error (check_tls_errors_co), restarting
Sep 11 15:14:39 openvpn[3738]: SIGUSR1[soft,tls-error] received, process restarting

2023-09-11T10:47:34.813Z
welazsc

Обновите файл конфигурации

2023-09-11T11:40:14.383Z
GziN(Александр )

Не помогло

2023-09-11T15:19:04.484Z
ValdikSS

Удостоверьтесь, что на роутере установлено корректные дата и время.

2023-09-20T08:05:23.340Z
nevian427

Что-то сломалось и я даже не заметил когда :frowning: Конфиг заново скачал и проверил - совпадает. С виду соединение совершенно нормально устанавливается, однако сразу обрывается и пытается вновь.
Nov 20 13:11:37 openvpn-cli[845]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Nov 20 13:11:37 openvpn-cli[845]: Re-using SSL/TLS context
Nov 20 13:11:37 openvpn-cli[845]: Control Channel MTU parms [ L:1623 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Nov 20 13:11:37 openvpn-cli[845]: Data Channel MTU parms [ L:1623 D:1450 EF:123 EB:406 ET:0 EL:3 ]
Nov 20 13:11:37 openvpn-cli[845]: Local Options String (VER=V4): ‘V4,dev-type tun,link-mtu 1543,tun-mtu 1500,proto TCPv4_CLIENT,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-client’
Nov 20 13:11:37 openvpn-cli[845]: Expected Remote Options String (VER=V4): ‘V4,dev-type tun,link-mtu 1543,tun-mtu 1500,proto TCPv4_SERVER,cipher BF-CBC,auth SHA1,keysize 128,key-method 2,tls-server’
Nov 20 13:11:37 openvpn-cli[845]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.158.181.228:1194
Nov 20 13:11:37 openvpn-cli[845]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Nov 20 13:11:37 openvpn-cli[845]: Attempting to establish TCP connection with [AF_INET]51.158.181.228:1194 [nonblock]
Nov 20 13:11:38 openvpn-cli[845]: TCP connection established with [AF_INET]51.158.181.228:1194
Nov 20 13:11:38 openvpn-cli[845]: TCP_CLIENT link local: (not bound)
Nov 20 13:11:38 openvpn-cli[845]: TCP_CLIENT link remote: [AF_INET]51.158.181.228:1194
Nov 20 13:11:38 openvpn-cli[845]: TLS: Initial packet from [AF_INET]51.158.181.228:1194, sid=439fa08c 5a3d6edb
Nov 20 13:11:38 openvpn-cli[845]: VERIFY OK: depth=1, CN=AntiZapret CA2
Nov 20 13:11:38 openvpn-cli[845]: VERIFY KU OK
Nov 20 13:11:38 openvpn-cli[845]: Validating certificate extended key usage
Nov 20 13:11:38 openvpn-cli[845]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Nov 20 13:11:38 openvpn-cli[845]: VERIFY EKU OK
Nov 20 13:11:38 openvpn-cli[845]: VERIFY OK: depth=0, CN=antizapret-server-shared
Nov 20 13:11:38 openvpn-cli[845]: Connection reset, restarting [0]
Nov 20 13:11:38 openvpn-cli[845]: TCP/UDP: Closing socket
Nov 20 13:11:38 openvpn-cli[845]: SIGUSR1[soft,connection-reset] received, process restarting
Nov 20 13:11:38 openvpn-cli[845]: Restart pause, 5 second(s)

2023-11-20T10:14:00.304Z