New Flint VPN Issue

Hello, just got a new Flint, I flashed later 4.1 FW, I configured VPN using NordVPN TCP, and UDP but it just stays as 0bytes out / in regardless.

Here is a log from TCP:

“Fri Feb 10 20:26:34 2023 user.notice ovpnclient-up: env value:SHLVL=2 PWD=/\nFri Feb 10 20:28:46 2023 user.notice ovpnclient-up: env value:SHLVL=2 PWD=/\nFri Feb 10 22:21:10 2023 daemon.notice netifd: Interface ‘ovpnclient’ is setting up now\nFri Feb 10 22:21:10 2023 daemon.warn ovpnclient[4156]: Cipher negotiation is disabled since neither P2MP client nor server mode is enabled\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: OpenVPN 2.5.3 arm-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10\nFri Feb 10 22:21:10 2023 daemon.warn ovpnclient[4156]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts\nFri Feb 10 22:21:10 2023 daemon.warn ovpnclient[4156]: ******* WARNING *******: All encryption and authentication features disabled – All data will be tunnelled as clear text and will not be protected against man-in-the-middle changes. PLEASE DO RECONSIDER THIS CONFIGURATION!\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: TUN/TAP device ovpnclient opened\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: /etc/openvpn/scripts/ovpnclient-up ovpnclient 4 ovpnclient 1500 1500 init\nFri Feb 10 22:21:10 2023 user.notice ovpnclient-up: env value:daemon_log_redirect=0 script_type=up proto_1=udp daemon=0 SHLVL=1 dev_type=tun dev=ovpnclient remote_port_1=1194 daemon_start_time=1676060470 script_context=init verb=1 local_port_1=1194 link_mtu=1500 tun_mtu=1500 daemon_pid=4156 config=/tmp/ovpnclient/ovpnclient PWD=/lib/netifd/proto\nFri Feb 10 22:21:10 2023 daemon.notice netifd: Interface ‘ovpnclient’ is now up\nFri Feb 10 22:21:10 2023 daemon.notice netifd: Network device ‘ovpnclient’ link is up\nFri Feb 10 22:21:10 2023 kern.info kernel: [14636.984314] IPv6: ADDRCONF(NETDEV_UP): ovpnclient: link is not ready\nFri Feb 10 22:21:10 2023 daemon.warn ovpnclient[4156]: Could not determine IPv4/IPv6 protocol. Using AF_INET\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: UDPv4 link local (bound): [AF_INET][undef]:1194\nFri Feb 10 22:21:10 2023 daemon.notice ovpnclient[4156]: UDPv4 link remote: [AF_UNSPEC]\nFri Feb 10 22:21:11 2023 user.notice firewall: Reloading firewall due to ifup of ovpnclient (ovpnclient)\n”

Here is a log from UDP

“Fri Feb 10 22:21:11 2023 user.notice firewall: Reloading firewall due to ifup of ovpnclient (ovpnclient)\nFri Feb 10 22:24:12 2023 daemon.notice netifd: Network device ‘ovpnclient’ link is down\nFri Feb 10 22:24:12 2023 daemon.notice netifd: ovpnclient (8410): Cannot find device "ovpnclient"\nFri Feb 10 22:24:12 2023 daemon.notice netifd: Interface ‘ovpnclient’ is now down\nFri Feb 10 22:24:24 2023 daemon.notice netifd: Interface ‘ovpnclient’ is setting up now\nFri Feb 10 22:24:24 2023 daemon.warn ovpnclient[9482]: Cipher negotiation is disabled since neither P2MP client nor server mode is enabled\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: OpenVPN 2.5.3 arm-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10\nFri Feb 10 22:24:24 2023 daemon.warn ovpnclient[9482]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts\nFri Feb 10 22:24:24 2023 daemon.warn ovpnclient[9482]: ******* WARNING *******: All encryption and authentication features disabled – All data will be tunnelled as clear text and will not be protected against man-in-the-middle changes. PLEASE DO RECONSIDER THIS CONFIGURATION!\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: TUN/TAP device ovpnclient opened\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: /etc/openvpn/scripts/ovpnclient-up ovpnclient 4 ovpnclient 1500 1500 init\nFri Feb 10 22:24:24 2023 user.notice ovpnclient-up: env value:daemon_log_redirect=0 script_type=up proto_1=udp daemon=0 SHLVL=1 dev_type=tun dev=ovpnclient remote_port_1=1194 daemon_start_time=1676060664 script_context=init verb=1 local_port_1=1194 link_mtu=1500 tun_mtu=1500 daemon_pid=9482 config=/tmp/ovpnclient/ovpnclient PWD=/lib/netifd/proto\nFri Feb 10 22:24:24 2023 daemon.notice netifd: Interface ‘ovpnclient’ is now up\nFri Feb 10 22:24:24 2023 daemon.notice netifd: Network device ‘ovpnclient’ link is up\nFri Feb 10 22:24:24 2023 kern.info kernel: [14831.029103] IPv6: ADDRCONF(NETDEV_UP): ovpnclient: link is not ready\nFri Feb 10 22:24:24 2023 daemon.warn ovpnclient[9482]: Could not determine IPv4/IPv6 protocol. Using AF_INET\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: UDPv4 link local (bound): [AF_INET][undef]:1194\nFri Feb 10 22:24:24 2023 daemon.notice ovpnclient[9482]: UDPv4 link remote: [AF_UNSPEC]\nFri Feb 10 22:24:25 2023 user.notice firewall: Reloading firewall due to ifup of ovpnclient (ovpnclient)\n”

As for Wireguard, trying to use TorGuard but it never establishes a connection, remaind “orange” Client is starting.

Some logs here:

“Fri Feb 10 22:26:50 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:26:56 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:01 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:06 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:11 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:16 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:21 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:26 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:31 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:36 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:42 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:47 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-GIVEUP SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:47 2023 daemon.notice netifd: Interface ‘wgclient’ is now down\nFri Feb 10 22:27:47 2023 daemon.notice netifd: Interface ‘wgclient’ is setting up now\nFri Feb 10 22:27:53 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:27:58 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:28:03 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:28:08 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:28:14 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:28:19 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\n”

Another location:

“Fri Feb 10 22:34:35 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:34:40 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:34:45 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:34:51 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:34:56 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:01 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:06 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:12 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:17 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:22 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:27 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:32 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:37 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:43 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:48 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:53 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:59 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-GIVEUP SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\nFri Feb 10 22:35:59 2023 daemon.notice netifd: Interface ‘wgclient’ is now down\nFri Feb 10 22:35:59 2023 daemon.notice netifd: Interface ‘wgclient’ is setting up now\nFri Feb 10 22:36:04 2023 user.notice wireguard-debug: USER=root ifname=wgclient ACTION=REKEY-TIMEOUT SHLVL=2 HOME=/ HOTPLUG_TYPE=wireguard LOGNAME=root DEVICENAME= TERM=linux SUBSYSTEM=wireguard PATH=/usr/sbin:/usr/bin:/sbin:/bin PWD=/\n”

Help is appreciated!

******* WARNING *******: All encryption and authentication features disabled – All data will be tunnelled as clear text and will not be protected against man-in-the-middle changes. PLEASE DO RECONSIDER THIS CONFIGURATION!

The openvpn configuration is wrong or is being generated wrong. the cipher and auth lines are not present in the openvpn config.

Wireguard probably wrong keys.

I used the pre installed nordvpn option for connection.

As for Wireguard, what is your suggestion? I used the TorGuard Config Generator

https://torguard.net/tgconf.php?action=vpn-openvpnconfig

Openvpn log show “[AF_INET][undef]:1194”, that’s probably caused by fail to parse the remote server option in the OpenVPN config. Which nordvpn server are you using, can you give a screenshot?

For wireguard, TorGuard Config Generator works in my test.
That’s most likely the wireguard server you choose is not accessible in your current network.