Thanks again for your help.
I paste you the.ovpn file that I have in case you would see an important error knowing that the file works perfectly with all the devices. (I just deleted the certificate and IP ;-)))
Many thanks in advance
client
nobind
dev tun
redirect-gateway def1
<key>
-----BEGIN PRIVATE KEY-----
The certificate
-----END PRIVATE KEY-----
</key>
<cert>
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 2 (0x2)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, ST=CA, L=SanFrancisco, O=Fort-Funston, OU=MyOrganizationalUnit, CN=Fort-Funston CA/name=EasyRSA/emailAddress=me@myhost.mydomain
Validity
Not Before: Sep 6 09:58:48 2017 GMT
Not After : Sep 4 09:58:48 2027 GMT
Subject: C=US, ST=CA, L=SanFrancisco, O=Fort-Funston, OU=MyOrganizationalUnit, CN=jcpuech/name=EasyRSA/emailAddress=me@myhost.mydomain
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
The Modulus
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
Netscape Comment:
Easy-RSA Generated Certificate
X509v3 Subject Key Identifier:
The Key idendifier
X509v3 Authority Key Identifier:
keyid: The Key ID
DirName:/C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/OU=MyOrganizationalUnit/CN=Fort-Funston CA/name=EasyRSA/emailAddress=me@myhost.mydomain
serial: The Serial number
X509v3 Extended Key Usage:
TLS Web Client Authentication
X509v3 Key Usage:
Digital Signature
X509v3 Subject Alternative Name:
DNS:jcpuech
Signature Algorithm: sha256WithRSAEncryption
The signature
-----BEGIN CERTIFICATE-----
The certificate
-----END CERTIFICATE-----
</cert>
<ca>
-----BEGIN CERTIFICATE-----
The certificate
-----END CERTIFICATE-----
</ca>
<dh>
-----BEGIN DH PARAMETERS-----
The DH parameters
-----END DH PARAMETERS-----
</dh>
# hardening
remote-cert-tls server
tls-version-min 1.2
cipher AES-256-CBC
auth SHA256
key-direction 1
<tls-auth>
#
# 2048 bit OpenVPN static key
#
-----BEGIN OpenVPN Static key V1-----
The Static key V1
-----END OpenVPN Static key V1-----
</tls-auth>
<connection>
remote XXX.XXX.XXX.XX 1194 udp
</connection>
<connection>
remote XXX.XXX.XXX.XX 443 tcp-client
</connection>