I have an ASUS RT-N66U (Client) and an ASUS AC88U (Server). Both are running 380.65_2. After upgrading to that specific version on the client and leaving the server at ~380.64, I noticed that there were issues were the client would would say that it was still connected to the VPN but any attempt at trying to ping 10.10.10.254 (network on the server side) would state "Request timed out." This happens on multiple devices and not just one.
It isn't specific to just that one IP Address, if I try to connect to the Server using it's IP address, it also fails with the the inability to ping or connect to the router's webserver. In the system log. all I see are a Packet Drops (because I have a high filter for NAT/Firewall packet logging - I have disabled it to diagnose for the next day). The below stuff is when it doesn't work.
The routing table on the client
Routing Table on an Endpoint:
VPN status on server
After turning the VPN client off, and then on again, I am able to ping and receive responses from across the VPN - same with connecting to the server.
Would really appreciate some help, as this is super broken, and I don't want to have to setup the VPN again.
It isn't specific to just that one IP Address, if I try to connect to the Server using it's IP address, it also fails with the the inability to ping or connect to the router's webserver. In the system log. all I see are a Packet Drops (because I have a high filter for NAT/Firewall packet logging - I have disabled it to diagnose for the next day). The below stuff is when it doesn't work.
Mar 29 20:37:51 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=24900 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:01 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=35242 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:01 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=35883 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:01 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=255.255.255.255 <1>LEN=212 TOS=0x00 PREC=0x00 TTL=64 ID=27753 PROTO=UDP <1>SPT=17500 DPT=17500 LEN=192
Mar 29 20:38:01 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=212 TOS=0x00 PREC=0x00 TTL=64 ID=37541 PROTO=UDP <1>SPT=17500 DPT=17500 LEN=192
Mar 29 20:38:06 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=53590 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:06 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=27836 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:16 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=53028 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:16 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=20805 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:21 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=7467 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:21 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=45479 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:31 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=22826 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:31 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=8797 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
Mar 29 20:38:31 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=255.255.255.255 <1>LEN=212 TOS=0x00 PREC=0x00 TTL=64 ID=27433 PROTO=UDP <1>SPT=17500 DPT=17500 LEN=192
Mar 29 20:38:31 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=212 TOS=0x00 PREC=0x00 TTL=64 ID=18490 PROTO=UDP <1>SPT=17500 DPT=17500 LEN=192
Mar 29 20:38:36 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=15137 PROTO=UDP <1>SPT=64236 DPT=32412 LEN=29
Mar 29 20:38:36 kernel: DROP <4>DROP IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:d8:30:62:5d:cd:3b:08:00 <1>SRC=10.0.1.27 DST=10.0.1.255 <1>LEN=49 TOS=0x00 PREC=0x00 TTL=64 ID=35152 PROTO=UDP <1>SPT=61910 DPT=32414 LEN=29
The routing table on the client
Code:
IPv4 Routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
10.0.1.1 * 255.255.255.255 UH 0 0 0 WAN
10.0.1.0 * 255.255.255.0 U 0 0 0 WAN
10.8.0.0 * 255.255.255.0 U 0 0 0 tun11
192.168.1.0 * 255.255.255.0 U 0 0 0 LAN
10.10.10.0 10.8.0.1 255.255.255.0 UG 0 0 0 tun11
default 10.0.1.1 0.0.0.0 UG 0 0 0 WAN
Routing Table on an Endpoint:
Code:
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.30 35
127.0.0.0 255.0.0.0 On-link 127.0.0.1 331
127.0.0.1 255.255.255.255 On-link 127.0.0.1 331
127.255.255.255 255.255.255.255 On-link 127.0.0.1 331
192.168.1.0 255.255.255.0 On-link 192.168.1.30 291
192.168.1.30 255.255.255.255 On-link 192.168.1.30 291
192.168.1.255 255.255.255.255 On-link 192.168.1.30 291
224.0.0.0 240.0.0.0 On-link 127.0.0.1 331
224.0.0.0 240.0.0.0 On-link 192.168.1.30 291
255.255.255.255 255.255.255.255 On-link 127.0.0.1 331
255.255.255.255 255.255.255.255 On-link 192.168.1.30 291
===========================================================================
VPN status on server
Code:
Clients
Common Name
Username Real Address Virtual Address
Virtual IPv6 Address MBytes Received MBytes Sent Connected Since
user
user Omit 10.8.0.2
0.89 0.23 Wed Mar 29 02:28:16 2017
Routes
Virtual Address Common Name Real Address Last Ref
10.8.0.2 user
After turning the VPN client off, and then on again, I am able to ping and receive responses from across the VPN - same with connecting to the server.
Would really appreciate some help, as this is super broken, and I don't want to have to setup the VPN again.