What's new

Sudden VPN client issues with RX-AX82U

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

zugu

New Around Here
Hello everyone,

I am using an Asus RX-AX82U router to connect to a work VPN, as I am working from home. The default router firware does not allow a lot of OpenVPN configuration, so I installed the Merlin firmware some time ago and it has performed flawlessly until today.
This morning, without me performing any change and without the router auto-updating its firmware, I noticed it cannot connect to the VPN anymore. The log is attached.

The relevant line seems to be this one:
Code:
 OpenSSL: error:14094416:lib(20):func(148):reason(1046):SSL alert number 46
which seems to point to a certificate that is no longer accepted by OpenVPN. The strange thing is the OpenVPN GUI client I use on my desktop PC can still connect to this VPN without issue, using the same configuration/certificates. What could be causing this?
 

Attachments

  • log.txt
    12.7 KB · Views: 7
I am using an Asus RX-AX82U router to connect to a work VPN...
What firmware and firmware version are you running on the RT-AX82U? Gnuton? Or stock Asus?

Have you contacted the person in charge of the work VPN (assuming its not you) to see if they have changed anything on their end? Could be they may need to provide new setup instructions or cert file.
 
Last edited:
I contacted the IT department and they said this is what the OpenVPN server replies:
Code:
disconnected <TLS error: ssl: empty certificate chain received (6)
This happens even if the certificate, the CA and the keys are properly set on the router.
 
Merlin stores the certs, keys, etc., in the /jffs/openvpn directory. You could dump the relevant files and make sure they haven't been corrupted.
 
Only thing I can suggest at this point is make a backup of the router config and JFFS, then reset to factory defaults, reconfigure the VPN, and see it now works. Worst case, you can always go back to where you are now.
 

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top