I did it to the letter according to PIA and I keep getting the log entry {WARNING: 'cipher' is used inconsistently, local='cipher AES-128-CBC', remote='cipher BF-CBC'} EVEN the PIA website says to use AES-128-CBC on port 1198, which is what doesn't make sense to me as to why I'm getting that log entry. Though while flopping around the internet I have found that I'm not the only one getting this log entry and it's been going on a while.
When I disable cipher negotiation and change it to BF-CBC web pages won't load, change the CA and the port to match and still doesn't work.
I've never had it set to 10, default is -1 and I always left it alone, I didn't know what changing it would do until I did some reading today at the link you provided, thanks for that by the way. It was -1 until I read your post this morning and then I changed it to 0. I could load web pages when I got home this evening it ran about 14 hours without connectivity issues, I'm on it now and didn't have to restart the VPN.
The log says that the local cipher is AES-128-CBC remote cipher is BF-CBC, if I try and change the cipher in the web GUI I can't load web pages, I changed the CA and the port but it still wouldn't let web pages load. Is there any risk to disabling the cipher negotiation with that command, I'm more worried about the user downloading music and my ISP coming down on me than anything, that's why I'm trying to setup a VPN on my router.
Here's the screen shots of how its' set now, and the log file I can't get to load the site keeps telling me I've been blocked, I think I did something the site didn't like, what I don't know. So off to find an admin I guess...