What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

OpenSSL: error:0906D066:PEM routines:PEM_read_bio:bad end line (RT-AC87U_380.69_2.trx)

Max.M

New Around Here
I am using a RT-AC87U with RT-AC87U_380.69_2.trx and tried setting up hide.me connection with their files, for example „Frankfurt.ovpn“.

After loading the file, I only changed the settings:
TLS Renegotiation Time: 1800
Connection Retry: 60
Username and password are not relevant for the reproduction of the problem (entering something will do).

When I start the connection “Error - SSL/TLS issue!” appears besides the ON switch, and the log says:

Feb 16 18:50:49 openvpn[1527]: OpenSSL: error:0906D066: PEM routines: PEM_read_bio:bad end line
Feb 16 18:50:49 openvpn[1527]: Cannot load CA certificate file ca.crt (no entries were read)
Feb 16 18:50:49 openvpn[1527]: Exiting due to fatal error

[note that I put a space between : and PEM to avoid : P :P smile]

If I install the previous version RT-AC87U_380.69_0.trx and factory-reset the router the exact same configuration works (at least by manually turning the connection on; version 380.69_0 shows some problem on “Start with WAN”: The connection establishes and the log looks fine – but either the routing or the “Policy rules (strict)” / “Block routed clients if tunnel goes down“ does not update allowing traffic flow).
 
I am using a RT-AC87U with RT-AC87U_380.69_2.trx and tried setting up hide.me connection with their files, for example „Frankfurt.ovpn“.

After loading the file, I only changed the settings:
TLS Renegotiation Time: 1800
Connection Retry: 60
Username and password are not relevant for the reproduction of the problem (entering something will do).

When I start the connection “Error - SSL/TLS issue!” appears besides the ON switch, and the log says:

Feb 16 18:50:49 openvpn[1527]: OpenSSL: error:0906D066: PEM routines: PEM_read_bio:bad end line
Feb 16 18:50:49 openvpn[1527]: Cannot load CA certificate file ca.crt (no entries were read)
Feb 16 18:50:49 openvpn[1527]: Exiting due to fatal error

[note that I put a space between : and PEM to avoid : P :p smile]

If I install the previous version RT-AC87U_380.69_0.trx and factory-reset the router the exact same configuration works (at least by manually turning the connection on; version 380.69_0 shows some problem on “Start with WAN”: The connection establishes and the log looks fine – but either the routing or the “Policy rules (strict)” / “Block routed clients if tunnel goes down“ does not update allowing traffic flow).
RT-AC87U_384.4_alpha1-gc4fc92d.trx fixes the OpenSSL: error:0906D066: PEM routines: PEM_read_bio:bad end line issue; I'm still trying to get “Start with WAN” VPN connections routing all internet traffic.
 
Thank you!
RT-AC87U_384.4_alpha1-gc4fc92d.trx fixes the OpenSSL: error:0906D066: PEM routines: PEM_read_bio:bad end line issue.

This version appears to be also MUCH faster than RT-AC87U_380.69_2.trx
-> Just sent a 25 USD donation and a big THANK YOU for keeping up the development of this great software!

Also, “Start with WAN” works fine. I found that the issue was related to my additional VPN Connections"Policy rules" :
VPN Connections in "Service state: OFF" should be set to "Redirect Internet traffic: ALL"

(Manually setting "Service state: OFF" does not switch off the "Policy rules" of a VPN Client - so a client in "OFF" state can still block traffic from being sent through another client).
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top