What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Asus RT-AC86U OpenVPN TLS handshake issue after VPN disconnection

BangoO

New Around Here
Hello,

My OpenVPN connection with VPNac works well for a few days until somehow it stops working and I can't reconnect anymore until I reboot the router:

ovpn-client1[30027]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
ovpn-client1[30027]: TCP/UDP: Preserving recently used remote address: [AF_INET]XXX.XXX.XXX.XXX:50000
ovpn-client1[30027]: TCP/UDP: Preserving recently used remote address: [AF_INET]XXX.XXX.XXX.XXX:50000
ovpn-client1[30027]: Socket Buffers: R=[278528->278528] S=[278528->278528]
ovpn-client1[30027]: UDP link local: (not bound)
ovpn-client1[30027]: UDP link remote: [AF_INET]XXX.XXX.XXX.XXX:50000
ovpn-client1[30027]: TLS: Initial packet from [AF_INET]XXX.XXX.XXX.XXX:50000, sid=XXXXXXXX XXXXXXX
ovpn-client1[30027]: VERIFY OK: depth=1, C=RO, ST=BUC, O=VPN.AC, OU=VPN.AC CA, CN=VPN.AC, emailAddress=info@vpn.ac
ovpn-client1[30027]: VERIFY KU OK
ovpn-client1[30027]: Validating certificate extended key usage
ovpn-client1[30027]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
ovpn-client1[30027]: VERIFY EKU OK
ovpn-client1[30027]: VERIFY OK: depth=0, CN=ch1-4096
ovpn-client1[30027]: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
ovpn-client1[30027]: TLS Error: TLS handshake failed


Is this a known issue ?

I'm using firmware 384.3_beta3

Thank you !
BangoO
 
I did not reboot the router this time and after 2h of automatically retrying the connection worked:

ovpn-client1[7141]: VERIFY OK: depth=0, CN=ch1-4096
ovpn-client1[7141]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 4096 bit RSA
ovpn-client1[7141]: [ch1-4096] Peer Connection Initiated with [AF_INET]XXX.XXX.XXX.XXX:50000
 

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top