What's new

[384.10_Alpha - builds] Testing all variants.

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Status
Not open for further replies.
Thank you. :D
I think there is problem with my androidapp "AndFTP" get java error when trying to connect.
Maby some have a clue whats happend here???

EDIT: I se a difference in PASV ports here. It should be between 57530 - 57560.

Code:
java.net onnectExemtion faild to connect
octopus.afraid.org "my wan ip number here" (port21)/
from 192.168.1.152 (port 58208) after
3000ms is connected fail
ECONNREFUSED
(connection refused)
Thanks for your patience.

As I said, the server crashes at start time.
 
one question to this new build
is the download manager included on the rt-ac68u?
thanks for answering!
 
All .10 builds have worked fine on my AC86U so far.

However, now I can no longer ssh into it (error: "Operation timed out").

I can still log in to the web interface and I still have internet access via this router.

Will reboot later and see whether that helps.

EDIT: a reboot did not help; I can still not ssh into the router :(

UPDATE: I can ssh via 192.168.1.1, but not via the asuscomm.com address.
 
Last edited:
All .10 builds have worked fine on my AC86U so far.

However, now I can no longer ssh into it (error: "Operation timed out").

I can still log in to the web interface and I still have internet access via this router.

Will reboot later and see whether that helps.

EDIT: a reboot did not help; I can still not ssh into the router :(

UPDATE: I can ssh via 192.168.1.1, but not via the asuscomm.com address.
SSH over lan only option enabled by any chance? believe it is located under the WAN section. not in front my router atm
 
RMerlin : are you using some cpu specific optimalizations when building for different models ?
 
I can at least confirm that it works without any special configuration when connecting two Asus routers together.

Code:
Feb 28 00:36:06 ovpn-client2[19600]: OpenVPN 2.4.7 arm-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD] built on Feb 25 2019
Feb 28 00:36:06 ovpn-client2[19600]: library versions: OpenSSL 1.1.1a  20 Nov 2018, LZO 2.08
Feb 28 00:36:06 ovpn-client2[19601]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Feb 28 00:36:06 ovpn-client2[19601]: TCP/UDP: Preserving recently used remote address: [AF_INET]192.168.10.183:1194
Feb 28 00:36:06 ovpn-client2[19601]: Socket Buffers: R=[122880->122880] S=[122880->122880]
Feb 28 00:36:06 ovpn-client2[19601]: UDP link local: (not bound)
Feb 28 00:36:06 ovpn-client2[19601]: UDP link remote: [AF_INET]192.168.10.183:1194
Feb 28 00:36:06 ovpn-client2[19601]: TLS: Initial packet from [AF_INET]192.168.10.183:1194, sid=1df4803c bdb5f55f
Feb 28 00:36:06 ovpn-client2[19601]: WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Feb 28 00:36:06 ovpn-client2[19601]: VERIFY OK: depth=1, C=TW, ST=TW, L=Taipei, O=ASUS, CN=RT-AC86U, emailAddress=me@myhost.mydomain
Feb 28 00:36:06 ovpn-client2[19601]: VERIFY KU OK
Feb 28 00:36:06 ovpn-client2[19601]: Validating certificate extended key usage
Feb 28 00:36:06 ovpn-client2[19601]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Feb 28 00:36:06 ovpn-client2[19601]: VERIFY EKU OK
Feb 28 00:36:06 ovpn-client2[19601]: VERIFY OK: depth=0, C=TW, ST=TW, L=Taipei, O=ASUS, CN=RT-AC86U, emailAddress=me@myhost.mydomain
Feb 28 00:36:06 ovpn-client2[19601]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, 1024 bit RSA
Feb 28 00:36:06 ovpn-client2[19601]: [RT-AC86U] Peer Connection Initiated with [AF_INET]192.168.10.183:1194
Feb 28 00:36:07 ovpn-client2[19601]: SENT CONTROL [RT-AC86U]: 'PUSH_REQUEST' (status=1)
Feb 28 00:36:07 ovpn-client2[19601]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.1.0 255.255.255.0 vpn_gateway 500,route-gateway 10.8.0.1,topology subnet,ping 15,ping-restart 60,ifconfig 10.8.0.2 255.255.255.0,peer-id 0,cipher AES-256-GCM'
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: timers and/or timeouts modified
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: --ifconfig/up options modified
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: route options modified
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: route-related options modified
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: peer-id set
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: adjusting link_mtu to 1624
Feb 28 00:36:07 ovpn-client2[19601]: OPTIONS IMPORT: data channel crypto options modified
Feb 28 00:36:07 ovpn-client2[19601]: Data Channel: using negotiated cipher 'AES-256-GCM'
Feb 28 00:36:07 ovpn-client2[19601]: Outgoing Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
Feb 28 00:36:07 ovpn-client2[19601]: Incoming Data Channel: Cipher 'AES-256-GCM' initialized with 256 bit key
Feb 28 00:36:07 ovpn-client2[19601]: TUN/TAP device tun12 opened
Feb 28 00:36:07 ovpn-client2[19601]: TUN/TAP TX queue length set to 100
Feb 28 00:36:07 ovpn-client2[19601]: /usr/sbin/ip link set dev tun12 up mtu 1500
Feb 28 00:36:07 ovpn-client2[19601]: /usr/sbin/ip addr add dev tun12 10.8.0.2/24 broadcast 10.8.0.255
Feb 28 00:36:07 ovpn-client2[19601]: updown.sh tun12 1500 1552 10.8.0.2 255.255.255.0 init
Feb 28 00:36:10 ovpn-client2[19601]: Ignore conflicted routing rule: 192.168.1.0 255.255.255.0
Feb 28 00:36:10 ovpn-client2[19601]: Initialization Sequence Completed

Very nice. Would it be possible to see your ovpn config file in order to attempt to replicate the connection between my server and clients? (with sensitive info removed, of course)
 
RMerlin : are you using some cpu specific optimalizations when building for different models ?

There isn't much to optimize, since they are all based on the armv7 IA. We tried enabling some armv8 optimizations for OpenSSL, but it's hard to say if it makes any real difference or not.

In general I try not to over-optimize, as it can introduce cryptic bugs.
 
Very nice. Would it be possible to see your ovpn config file in order to attempt to replicate the connection between my server and clients? (with sensitive info removed, of course)

There's nothing to share really.

1) Enable OpenVPN server
2) Export ovpn file
3) Import ovpn file on client
4) configure username and password
5) Connect

And that's it. OpenVPN is already set to prioritize TLS 1.3 over 1.2 provided both ends support it.
 
Solid as a rock. 2 days and not even a minor glitch........ Well done Merlin.
 
I’ve had a random reboot on my Ac86u today. There was nothing in the logs, it was as if the power got cut and it booted up.
It had been up for a couple of days since updating. It had been running fine before it rebooted and is running fine since.
I’ll repost if it happens again.
 
Uptime 4 days 0 hours 45 minute(s) 28 seconds on RT-AC87u
All good :)
 
Status
Not open for further replies.

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top