This is occuring under the VPN Client tab.
Ok, definitely different from the issue I recently fixed with the server then. I'll try once more to reproduce it, but so far it's been working fine for me.
This is occuring under the VPN Client tab.
Can you guys provide the exact steps you are taking where you are experiencing problems changing the server's CA? The only scenario I can reproduce here is if you change the CA but do not provide a server certificate and server key, then the router would generate all three of them. This isn't a new issue, and must have been there for a very long time. I just fixed this specific scenario by having the router no longer check the presence of the server key/cert to determine if a CA mus tbe auto-generated. However, I am not experiencing any problem if I change the CA without changing or removing the server key/certs that are currently present (tho a client would fail to connect with that, as the cert must be signed by the same CA).
I have not yet had time to try the resets/setup described yesterday.
But what I did was upgrade a brand new AC-86U to 384.10. Enabled the JFFS part and rebooted. Then I copied all the keys and certificates from the AC-66U to the AC-86U through the GUI. Clicked save (checked after that and all is then still as entered). Then click apply and then when I open the GUI again, the top three boxes are overwritten with other keys/certificates (ASUS signed, mine are not). I can then change the keys/certs again, after which it will save all correctly except the CA. It is then using the ASUS one again. Also tried editing the CA through SSH (vi) and by exporting the JFFS completely and importing/putting it back with a changed CA. I have always done a reboot through the GUI. All with the same outcome..
The only step I took/know to take regarding the CA was to generate new .OVPN files from my VPN provider. This did not seem to make a difference, and I had never had to manually edit anything regarding keys or certs. I figured that's what the convenience of the generated OVPN file was about.
Going to drop back to 348.9 and see if it makes a difference. Not wanting to do a full factory reset, but, if that's what it takes that's what it takes.
If there's any other data or troubleshooting that can be provided, let me know and I'll be glad to assist if at all possible.
https://sourceforge.net/blog/april-2019-community-choice-project-month-asuswrt-merlin/
Congratulations RMerlin (how do you tag someone in here) and a big thank you for everything you do man!
LOL oops... sorry about thatThanks, but we're ahead of you there
https://www.snbforums.com/threads/news-7th-year-anniversary-and-project-of-the-month-at-sf-net.55865/
I feel 384.11 soon?
384.10_1 test builds uploaded to https://asuswrt.lostrealm.ca/test-builds . Please re-test OpenVPN. If you are still having certificate issues, post the router model, and the exact steps you are doing to recreate the problem and in what order. Order is important with OpenVPN clients if you also upload an ovpn file.
Does this address only openvpn client issues?
Did you read the text you quoted?
There are no quoted texts in the post you mentioned, it only mentioned openvpn client tests, im just asking to make sure there aren’t any other updates for that alpha to at least try to test other features and support.
No, read your post 371. You quoted RMerlin.
These are test builds for OpenVPN. If there was added testing to be done, it would have been specified too.
Hope they fix your issue!
Does this address only openvpn client issues?
9410bcd604 (HEAD -> mainline) Merge branch 'master' into mainline
ac3190bf98 (master) Updated documentation
a3abf470a7 httpd: validate correct variable in websRedirect*() (backport from 384_5948)
ce29820072 (origin/master, origin/HEAD) rc: openvpn: only re-generate server CA if it's missing, ignore server key/cert
c2d2fd7890 rc: openvpn: increase interface queue length from 100 to 1000 bytes
9f7da28be1 webui: fix typo in local DNS resolution setting's tooltip
8e7045e066 Updated documentation
3dfa990152 webui: set Bandwidth Monitor FAQ URL to old one, new one is MIA on Asus servers
7a783fff91 webui: fix missing space in Wireless Log flags legend
2bc62226a6 rc: reset new firmware notification flag in case update check fails to run post-upgrade
33ab4d7550 (origin/mainline) webui: fix Wireless Client layout for some models without Phy/NSS/BW report capabilities
aac833dabd webui: added tooltip to the "Use local caching" Tools setting
def11e32da Bumped revision to 384.10_1
1f35105eca quagga: drop obsolete config samples
i try git pushSure, here is my password: April_><>
i try
i try git push
Username for 'https://github.com': rmerl
Password for 'https://rmerl@github.com':
remote: Invalid username or password.
fatal: Authentication failed for 'https://github.com/RMerl/asuswrt-merlin.ng.git/'
OpenVPN server, there was no change to the client code.
There are a few other minor fixes, like the broken Moviestar support, or the missing tooltip on the Other Settings page.
Code:9410bcd604 (HEAD -> mainline) Merge branch 'master' into mainline ac3190bf98 (master) Updated documentation a3abf470a7 httpd: validate correct variable in websRedirect*() (backport from 384_5948) ce29820072 (origin/master, origin/HEAD) rc: openvpn: only re-generate server CA if it's missing, ignore server key/cert c2d2fd7890 rc: openvpn: increase interface queue length from 100 to 1000 bytes 9f7da28be1 webui: fix typo in local DNS resolution setting's tooltip 8e7045e066 Updated documentation 3dfa990152 webui: set Bandwidth Monitor FAQ URL to old one, new one is MIA on Asus servers 7a783fff91 webui: fix missing space in Wireless Log flags legend 2bc62226a6 rc: reset new firmware notification flag in case update check fails to run post-upgrade 33ab4d7550 (origin/mainline) webui: fix Wireless Client layout for some models without Phy/NSS/BW report capabilities aac833dabd webui: added tooltip to the "Use local caching" Tools setting def11e32da Bumped revision to 384.10_1 1f35105eca quagga: drop obsolete config samples
No one will give you their password. RMerlin was being sarcastic and having a little fun at the same time (April 1st! Get it?).
See the previous posts right after your original rather forward, request. At least one reply offers the proper way to achieve what you need (not what you want).
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!