cowboy
Regular Contributor
I have RT-AC87U (380.65), my connection speed is between 100Mbit/s and 200 Mbit/s. I set up the OpenVPN Server on my Router and use OpenVPN for Android App on my Smartphone. I tested to connect from a local McDonalds Wlan to my OpenVPN and the connection was successfully established, but it was so slow (with OpenVPN) that I could not open any website at all.
I live in Germany and use DNS-O-Matic and afraid.org. I would like to know how can I set the OpenVPN on my router so that I have a good security but also a good performance. I would like to use OpenVPN when I want to check my banking account from some public wlan area.
Here are my settings:
Here are the logs from my router and my android phone when I connect from my phone from my house with the OpenVPN for Android App:
Router Log (I get some TLS Handshake Errors):
Here is the OpenVPN log file from my Android.
I live in Germany and use DNS-O-Matic and afraid.org. I would like to know how can I set the OpenVPN on my router so that I have a good security but also a good performance. I would like to use OpenVPN when I want to check my banking account from some public wlan area.
Here are my settings:
Here are the logs from my router and my android phone when I connect from my phone from my house with the OpenVPN for Android App:
Router Log (I get some TLS Handshake Errors):
Code:
Mar 12 13:38:41 openvpn[1226]: 192.168.1.115 TLS: Initial packet from [AF_INET6]::ffff:192.168.1.115:50848, sid=b49cfb5b 6dfb71cd
Mar 12 13:38:50 openvpn[1226]: 192.168.1.115 TLS: Initial packet from [AF_INET6]::ffff:192.168.1.115:59321, sid=28e7aa78 21dc5eaa
Mar 12 13:39:00 openvpn[1226]: 192.168.1.115 TLS: Initial packet from [AF_INET6]::ffff:192.168.1.115:42408, sid=bfc54da9 889368a0
Mar 12 13:39:35 openvpn[1226]: 192.168.1.115 TLS: Initial packet from [AF_INET6]::ffff:192.168.1.115:56218, sid=49f08c68 0e39b643
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 VERIFY OK: depth=1, C=TW, ST=TW, L=Taipei, O=ASUS, CN=RT-AC87U, emailAddress=me@myhost.mydomain
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 VERIFY OK: depth=0, C=TW, ST=TW, L=Taipei, O=ASUS, CN=client, emailAddress=me@myhost.mydomain
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_VER=2.5_master
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_PLAT=android
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_PROTO=2
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_NCP=2
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_LZ4=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_LZ4v2=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_LZO=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_COMP_STUB=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_COMP_STUBv2=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_TCPNL=1
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_SSL=OpenSSL_1.0.2k__26_Jan_2017
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_GUI_VER=de.blinkt.openvpn_0.6.65
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 peer info: IV_PLAT_VER=24_7.0_arm64-v8a_Sony_msm8994_E5823
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 PLUGIN_CALL: POST /usr/lib/openvpn-plugin-auth-pam.so/PLUGIN_AUTH_USER_PASS_VERIFY status=0
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 TLS: Username/Password authentication succeeded for username 'Devid'
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 1024 bit RSA
Mar 12 13:39:36 openvpn[1226]: 192.168.1.115 [client] Peer Connection Initiated with [AF_INET6]::ffff:192.168.1.115:56218
Mar 12 13:39:36 openvpn[1226]: client/192.168.1.115 MULTI_sva: pool returned IPv4=10.8.0.2, IPv6=(Not enabled)
Mar 12 13:39:36 openvpn[1226]: client/192.168.1.115 MULTI: Learn: 10.8.0.2 -> client/192.168.1.115
Mar 12 13:39:36 openvpn[1226]: client/192.168.1.115 MULTI: primary virtual IP for client/192.168.1.115: 10.8.0.2
Mar 12 13:39:37 openvpn[1226]: client/192.168.1.115 PUSH: Received control message: 'PUSH_REQUEST'
Mar 12 13:39:37 openvpn[1226]: client/192.168.1.115 SENT CONTROL [client]: 'PUSH_REPLY,route 192.168.1.0 255.255.255.0,dhcp-option DNS 192.168.1.1,redirect-gateway def1,route-gateway 10.8.0.1,topology subnet,ping 15,ping-restart 60,ifconfig 10.8.0.2 255.255.255.0,peer-id 3,cipher AES-128-GCM' (status=1)
Mar 12 13:39:37 openvpn[1226]: client/192.168.1.115 Data Channel Encrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Mar 12 13:39:37 openvpn[1226]: client/192.168.1.115 Data Channel Decrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Mar 12 13:39:41 openvpn[1226]: 192.168.1.115 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mar 12 13:39:41 openvpn[1226]: 192.168.1.115 TLS Error: TLS handshake failed
Mar 12 13:39:41 openvpn[1226]: 192.168.1.115 SIGUSR1[soft,tls-error] received, client-instance restarting
Mar 12 13:39:50 openvpn[1226]: 192.168.1.115 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mar 12 13:39:50 openvpn[1226]: 192.168.1.115 TLS Error: TLS handshake failed
Mar 12 13:39:50 openvpn[1226]: 192.168.1.115 SIGUSR1[soft,tls-error] received, client-instance restarting
Mar 12 13:40:00 openvpn[1226]: 192.168.1.115 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Mar 12 13:40:00 openvpn[1226]: 192.168.1.115 TLS Error: TLS handshake failed
Mar 12 13:40:00 openvpn[1226]: 192.168.1.115 SIGUSR1[soft,tls-error] received, client-instance restarting
Here is the OpenVPN log file from my Android.
Last edited: