What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Asus RT-AC56U - VPN routing issue.

You can in GUI set Compression=> None/Enable/Adaptive. comp-lzo yes = ENABLED

Thanks,

I don't get any option for "comp-lzo yes = ENABLED", when using enabled or adaptive, I've added the "comp-lzo" command to the custom config.

If I enable the vpn client\ compression setting to enabled or adaptive I get an error "connecting ip/routing conflict" message uner the VPN status tab.

This im unsure about but try set (rcvbuf 0) in custom config.

Is this just a case of adding "rcvbuf 0" as a line to the custom config?

After a few other tweaks I now get 20mbps D/L with this clean log...


Mar 20 13:28:11 rc_service: ntp 662:notify_rc restart_upnp
Mar 20 13:28:11 rc_service: waitting "start_vpnclient1" via ...
Mar 20 13:28:13 pppd[491]: System time change detected.
Mar 20 13:28:14 rc_service: zcip 770:notify_rc start_firewall
Mar 20 13:28:14 rc_service: waitting "start_vpnclient1" via ...
Mar 20 13:28:17 kernel: tun: Universal TUN/TAP device driver, 1.6
Mar 20 13:28:17 kernel: tun: (C) 1999-2004 Max Krasnyansky <maxk@qualcomm.com>
Mar 20 13:28:18 openvpn[781]: OpenVPN 2.3.8 arm-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Dec 24 2015
Mar 20 13:28:18 openvpn[781]: library versions: OpenSSL 1.0.2e 3 Dec 2015, LZO 2.08
Mar 20 13:28:18 openvpn[782]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Mar 20 13:28:18 openvpn[782]: Socket Buffers: R=[122880->131072] S=[122880->131072]
Mar 20 13:28:18 openvpn[782]: UDPv4 link local: [undef]
Mar 20 13:28:18 openvpn[782]: UDPv4 link remote: [AF_INET]81.171.75.11:1194
Mar 20 13:28:18 openvpn[782]: TLS: Initial packet from [AF_INET]81.171.75.11:1194, sid=ab2818ec 78ffd15a
Mar 20 13:28:18 openvpn[782]: VERIFY OK: depth=1, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=VPN, name=VPN, emailAddress=VPN
Mar 20 13:28:18 openvpn[782]: Validating certificate key usage
Mar 20 13:28:18 openvpn[782]: ++ Certificate has key usage 00a0, expects 00a0
Mar 20 13:28:18 openvpn[782]: VERIFY KU OK
Mar 20 13:28:18 openvpn[782]: Validating certificate extended key usage
Mar 20 13:28:18 openvpn[782]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Mar 20 13:28:18 openvpn[782]: VERIFY EKU OK
Mar 20 13:28:18 openvpn[782]: VERIFY OK: depth=0, C=US, ST=VPN, L=VPN, O=VPN, OU=VPN, CN=vpn, name=VPN
Mar 20 13:28:18 miniupnpd[664]: shutting down MiniUPnPd
Mar 20 13:28:19 dnsmasq[424]: read /etc/hosts - 5 addresses
Mar 20 13:28:19 dnsmasq[424]: read /etc/hosts.dnsmasq - 11 addresses
Mar 20 13:28:19 dnsmasq-dhcp[424]: read /etc/ethers - 14 addresses
Mar 20 13:28:19 dnsmasq[424]: using nameserver 31.55.186.78#53
Mar 20 13:28:19 dnsmasq[424]: using nameserver 31.55.185.46#53
Mar 20 13:28:19 zcip client: configured 169.254.113.188
Mar 20 13:28:19 miniupnpd[789]: HTTP listening on port 45728
Mar 20 13:28:19 miniupnpd[789]: Listening for NAT-PMP/PCP traffic on port 5351
Mar 20 13:28:19 rc_service: ntp 662:notify_rc restart_diskmon
Mar 20 13:28:19 rc_service: waitting "start_firewall" via zcip ...
Mar 20 13:28:20 start_nat_rules: apply the nat_rules(/tmp/nat_rules_ppp0_eth0)!
Mar 20 13:28:20 openvpn[782]: Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Mar 20 13:28:20 openvpn[782]: Data Channel Encrypt: Using 256 bit message hash 'SHA256' for HMAC authentication
Mar 20 13:28:20 openvpn[782]: Data Channel Decrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
Mar 20 13:28:20 openvpn[782]: Data Channel Decrypt: Using 256 bit message hash 'SHA256' for HMAC authentication
Mar 20 13:28:20 openvpn[782]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Mar 20 13:28:20 openvpn[782]: [vpn] Peer Connection Initiated with [AF_INET]81.171.75.11:1194
Mar 20 13:28:21 dnsmasq-dhcp[424]: DHCPREQUEST(br0) 192.168.1.218 1c:5c:f2:40:fa:a8
Mar 20 13:28:21 dnsmasq-dhcp[424]: DHCPACK(br0) 192.168.1.218 1c:5c:f2:40:fa:a8 Howells-iPhone
Mar 20 13:28:21 disk_monitor: Finish
Mar 20 13:28:22 openvpn[782]: SENT CONTROL [vpn]: 'PUSH_REQUEST' (status=1)
Mar 20 13:28:22 openvpn[782]: PUSH: Received control message: 'PUSH_REPLY,redirect-gateway def1 bypass-dhcp,dhcp-option DNS 198.18.0.1,dhcp-option DNS 198.18.0.2,rcvbuf 262144,explicit-exit-notify 5,route-gateway 172.21.94.1,topology subnet,ping 20,ping-restart 40,ifconfig 172.21.94.4 255.255.254.0'
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: timers and/or timeouts modified
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: explicit notify parm(s) modified
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: --sndbuf/--rcvbuf options modified
Mar 20 13:28:22 openvpn[782]: Socket Buffers: R=[131072->245760] S=[131072->131072]
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: --ifconfig/up options modified
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: route options modified
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: route-related options modified
Mar 20 13:28:22 openvpn[782]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Mar 20 13:28:22 openvpn[782]: TUN/TAP device tun11 opened
Mar 20 13:28:22 openvpn[782]: TUN/TAP TX queue length set to 100
Mar 20 13:28:22 openvpn[782]: do_ifconfig, tt->ipv6=0, tt->did_ifconfig_ipv6_setup=0
Mar 20 13:28:22 openvpn[782]: /usr/sbin/ip link set dev tun11 up mtu 1500
Mar 20 13:28:22 openvpn[782]: /usr/sbin/ip addr add dev tun11 172.21.94.4/23 broadcast 172.21.95.255
Mar 20 13:28:22 openvpn[782]: updown.sh tun11 1500 1570 172.21.94.4 255.255.254.0 init
Mar 20 13:28:24 disk monitor: be idle
Mar 20 13:28:24 rc_service: service 848:notify_rc updateresolv
Mar 20 13:28:24 dnsmasq[424]: exiting on receipt of SIGTERM
Mar 20 13:28:24 dnsmasq[854]: started, version 2.76-g41a8d9e cachesize 1500
Mar 20 13:28:24 dnsmasq[854]: warning: interface ppp1* does not currently exist
Mar 20 13:28:24 dnsmasq[854]: asynchronous logging enabled, queue limit is 5 messages
Mar 20 13:28:24 dnsmasq-dhcp[854]: DHCP, IP range 192.168.1.2 -- 192.168.1.254, lease time 1d
Mar 20 13:28:24 dnsmasq[854]: read /etc/hosts - 5 addresses
Mar 20 13:28:24 dnsmasq[854]: read /etc/hosts.dnsmasq - 11 addresses
Mar 20 13:28:24 dnsmasq-dhcp[854]: read /etc/ethers - 14 addresses
Mar 20 13:28:24 dnsmasq[854]: using nameserver 198.18.0.1#53
Mar 20 13:28:24 dnsmasq[854]: using nameserver 198.18.0.2#53
Mar 20 13:28:24 dnsmasq[854]: using nameserver 31.55.186.78#53
Mar 20 13:28:24 dnsmasq[854]: using nameserver 31.55.185.46#53
Mar 20 13:28:27 openvpn[782]: /usr/sbin/ip route add 81.171.75.11/32 via 172.16.13.7
Mar 20 13:28:27 openvpn[782]: /usr/sbin/ip route add 0.0.0.0/1 via 172.21.94.1
Mar 20 13:28:27 openvpn[782]: /usr/sbin/ip route add 128.0.0.0/1 via 172.21.94.1
Mar 20 13:28:27 openvpn-routing: Configuring policy rules for client 1
Mar 20 13:28:27 openvpn-routing: Creating VPN routing table
Mar 20 13:28:27 openvpn-routing: Removing route for 0.0.0.0/1 to tun11 from routing tables
Mar 20 13:28:27 openvpn-routing: Removing route for 128.0.0.0/1 to tun11 from routing tables
Mar 20 13:28:27 openvpn-routing: Added 192.168.1.1 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:27 openvpn-routing: Added 192.168.1.2 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:27 openvpn-routing: Added 192.168.1.204 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:27 openvpn-routing: Added 192.168.1.56 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:27 openvpn-routing: Added 192.168.1.73 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.133 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.191 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.205 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.211 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.250 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.12 to 0.0.0.0 through WAN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.121 to 0.0.0.0 through VPN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.122 to 0.0.0.0 through VPN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.123 to 0.0.0.0 through VPN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.124 to 0.0.0.0 through VPN to routing policy
Mar 20 13:28:28 openvpn-routing: Added 192.168.1.218 to 0.0.0.0 through VPN to routing policy
Mar 20 13:28:28 openvpn-routing: Completed routing policy configuration
Mar 20 13:28:28 openvpn[782]: Initialization Sequence Completed
 
Last edited:
Yep, looking good now. You might as well have it "comp-lzo" in the custom config.
 
Thanks, I've left compression disabled in the settings with the comp listed in the custom config.


Thanks all!
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top