Cyberghost openVPN - TLS error

Hey,

I was using cyberghost OpenVPN with GL.iNet GL-AX1800(Flint) WiFi 6 Router and it was working fine until recently. I chatted with cyberghost support and did everything they replied, exactly the same as in this post.

However, I am now seeing a new error and wondering if anyone has some thoughts.

Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Control Channel MTU parms [ L:1621 D:1212 EF:38 EB:0 ET:0 EL:3 ]
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Data Channel MTU parms [ L:1621 D:1450 EF:121 EB:406 ET:0 EL:3 ]
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,cipher AES-256-CBC,auth SHA256,keysize 256,key-method 2,tls-client'
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,cipher AES-256-CBC,auth SHA256,keysize 256,key-method 2,tls-server'
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: TCP/UDP: Preserving recently used remote address: [AF_INET]188.241.80.137:443
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Socket Buffers: R=[212992->212992] S=[212992->212992]
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: UDP link local: (not bound)
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: UDP link remote: [AF_INET]188.241.80.137:443
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: TLS: Initial packet from [AF_INET]188.241.80.137:443, sid=e22e694d d48db0b4
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: VERIFY OK: depth=1, C=RO, L=Bucharest, O=CyberGhost S.A., CN=CyberGhost Root CA, [email protected]
Wed Mar 19 02:14:28 2025 daemon.err ovpnclient[7996]: VERIFY ERROR: depth=0, error=certificate is not yet valid: CN=shenzhen-rack403.nodes.gen4.ninja, serial=730080340404800985404783481494690388724062504266
Wed Mar 19 02:14:28 2025 daemon.err ovpnclient[7996]: OpenSSL: error:0A000086:SSL routines::certificate verify failed
Wed Mar 19 02:14:28 2025 daemon.err ovpnclient[7996]: TLS_ERROR: BIO read tls_read_plaintext error
Wed Mar 19 02:14:28 2025 daemon.err ovpnclient[7996]: TLS Error: TLS object -> incoming plaintext read error
Wed Mar 19 02:14:28 2025 daemon.err ovpnclient[7996]: TLS Error: TLS handshake failed
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: TCP/UDP: Closing socket
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: SIGHUP[soft,tls-error] received, process restarting
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: OpenVPN 2.5.8 aarch64-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
Wed Mar 19 02:14:28 2025 daemon.notice ovpnclient[7996]: Restart pause, 5 second(s)

ChatGPT has helped here. The time on the router is wildly off. Rebooted and it works now.

This topic was automatically closed 180 days after the last reply. New replies are no longer allowed.