Yes, that particular vpn config works now, thank you. Can you help me with a different config?
This one is for a gl.inet router set up as vpn server connected to my home network, so I can access my home network with a travel router. It worked fine when I tested it back home (I made sure to connect the client router to a different network), but now I am abroad it doesn't work anymore.
Here is the config generated by the server router
client
dev tun
proto tcp
remote xxxxx.glddns.com 1194
resolv-retry infinite
nobind
persist-key
persist-tun
auth SHA256
cipher AES-256-GCM
nice 0
mute 5
verb 3
<ca>
-----BEGIN CERTIFICATE-----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mvbk/QLLJBtXjj3j28rqdoVgNxvqXi4my85I0sjunNF1zqFBOLq0T9TuPLI8/zVy
Xgo34MRbka0z047n8/eci75izyJW79v1/xOYzkjdlzCiIphcuuWyC2xZDjAjbvQI
AbHYeMTHsyfBGx9RUZls
-----END CERTIFICATE-----
</ca>
<cert>
-----BEGIN CERTIFICATE-----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S7Ymh20Qtl8xSEqXXKoM8eOZijQKC37Db
Q2Ql8zcsxADwZIrBybNr//iq29lgc9x9XkPu2PZ8MnOmLh7X19r8MBA/Bf4dnH7G
qlM3q7hoB7QEFWJBP7vTofA70IgHNv67IVGbAsWd0U2S+vJoNML1j6ix01mi6bpi
iVVX6RQDvKFLOpRFhMDKUoBSfUBITXbxjg==
-----END CERTIFICATE-----
</cert>
<key>
-----BEGIN PRIVATE KEY-----
-----END PRIVATE KEY-----
</key>
and here is the system log when i try to connect with the client router
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section @zone[1] (wan) cannot resolve device of network 'wan6'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section @zone[1] (wan) cannot resolve device of network 'wwan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section @zone[2] (guest) cannot resolve device of network 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Option 'ovpnclient'.masq6 is unknown
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section 'block_dns' does not specify a protocol, assuming TCP+UDP
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section 'safe_mode_mark' does not specify a protocol, assuming TCP+UDP
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section 'safe_mode_mark_save' does not specify a protocol, assuming TCP+UDP
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section 'safe_mode_mark_drop' does not specify a protocol, assuming TCP+UDP
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: Section @zone[2] (guest) has no device, network, subnet or extra options
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv4 filter table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv4 nat table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv4 mangle table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv4 raw table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv4 filter table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DHCP-Renew'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-IGMP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-UDP-udpxy'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-IPSec-ESP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-ISAKMP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'block_dns'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DHCP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DNS'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark_drop'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv4 nat table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv4 mangle table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'process_mark'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark_save'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv4 raw table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): - Using automatic conntrack helper attachment
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): - Using automatic conntrack helper attachment
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv6 filter table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv6 nat table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Clearing IPv6 mangle table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv6 filter table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-UDP-udpxy'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): ! Skipping due to different family of ip address
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DHCPv6'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-MLD'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-ICMPv6-Input'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-ICMPv6-Forward'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-IPSec-ESP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-ISAKMP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'block_dns'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DHCP'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'Allow-DNS'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark_drop'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv6 nat table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_lan_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_lan_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_wan_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_wan_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_guest_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_guest_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_rule'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Populating IPv6 mangle table
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'process_mark'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Rule 'safe_mode_mark_save'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'lan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'wan'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Zone 'guest'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Set tcp_ecn to off
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Set tcp_syncookies to on
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Set tcp_window_scaling to on
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Running script '/etc/firewall.nat6'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Running script '/var/etc/gls2s.include'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): ! Skipping due to path error: No such file or directory
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Running script '/usr/bin/gl_block.sh'
Fri May 17 12:22:42 2024 daemon.notice netifd: ovpnclient (16174): * Running script '/etc/firewall.vpn_server_policy.sh'
Fri May 17 12:22:42 2024 user.notice mwan3[16173]: Execute ifdown event on interface ovpnclient (unknown)
Fri May 17 12:22:43 2024 daemon.notice netifd: ovpnclient (16174): Failed to parse json data: unexpected character
Fri May 17 12:22:43 2024 daemon.notice netifd: ovpnclient (16174): uci: Entry not found
Fri May 17 12:22:43 2024 daemon.info dnsmasq[28368]: exiting on receipt of SIGTERM
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: started, version 2.80 cachesize 150
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: DNS service limited to local subnets
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: compile time options: IPv6 GNU-getopt no-DBus no-i18n no-IDN DHCP DHCPv6 no-Lua TFTP conntrack ipset auth DNSSEC no-ID loop-detect inotify dumpfile
Fri May 17 12:22:44 2024 daemon.info dnsmasq-dhcp[16715]: DHCP, IP range 192.168.10.100 -- 192.168.10.249, lease time 12h
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain test
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain onion
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain localhost
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain local
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain invalid
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain bind
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain lan
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: reading /tmp/resolv.conf.auto
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain test
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain onion
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain localhost
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain local
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain invalid
Fri May 17 12:22:44 2024 daemon.notice netifd: Network device 'ovpnclient' link is down
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain bind
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using local addresses only for domain lan
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: using nameserver 192.168.253.43#53
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: read /etc/hosts - 4 addresses
Fri May 17 12:22:44 2024 daemon.info dnsmasq[16715]: read /tmp/hosts/dhcp.cfg01411c - 2 addresses
Fri May 17 12:22:44 2024 daemon.info dnsmasq-dhcp[16715]: read /etc/ethers - 0 addresses
Fri May 17 12:22:45 2024 user.notice dhcplease: this mac:02:12:d1:03:94:b4 is not in wldevlist or devlist
Fri May 17 12:22:45 2024 daemon.notice netifd: ovpnclient (16174): Cannot find device "ovpnclient"
Fri May 17 12:22:45 2024 daemon.notice netifd: Interface 'ovpnclient' is now down
Fri May 17 12:22:45 2024 user.notice dhcplease: this mac:02:12:d1:03:94:b4 is not in wldevlist or devlist
Fri May 17 12:22:45 2024 user.notice dhcplease: this mac:f8:e4:3b:ec:45:1a is not in wldevlist or devlist
Fri May 17 12:22:45 2024 user.notice firewall: Reloading firewall due to ifdown of ovpnclient ()
Fri May 17 12:22:46 2024 daemon.info dnscrypt-proxy[4572]: dnscrypt-proxy Refetching server certificates
Fri May 17 12:22:46 2024 user.notice relay: Reloading relay due to ifdown of ovpnclient ()
Fri May 17 12:22:50 2024 daemon.notice netifd: Interface 'ovpnclient' is setting up now
Fri May 17 12:22:50 2024 daemon.notice ovpnclient[17186]: OpenVPN 2.5.7 mipsel-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Fri May 17 12:22:50 2024 daemon.notice ovpnclient[17186]: library versions: OpenSSL 1.1.1i 8 Dec 2020, LZO 2.10
Fri May 17 12:22:50 2024 daemon.warn ovpnclient[17186]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
Fri May 17 12:22:50 2024 daemon.warn ovpnclient[17186]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Fri May 17 12:22:53 2024 daemon.notice ovpnclient[17186]: TCP/UDP: Preserving recently used remote address: [AF_INET]7xxxx.75.134:1194
Fri May 17 12:22:53 2024 daemon.notice ovpnclient[17186]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Fri May 17 12:22:53 2024 daemon.notice ovpnclient[17186]: Attempting to establish TCP connection with [AF_INET]7.134:1194 [nonblock]
Fri May 17 12:22:57 2024 daemon.err ovpnclient[17186]: TCP: connect to [AF_INET]775.134:1194 failed: Host is unreachable
Fri May 17 12:22:57 2024 daemon.notice ovpnclient[17186]: SIGHUP[connection failed(soft),init_instance] received, process restarting
Fri May 17 12:22:57 2024 daemon.notice ovpnclient[17186]: OpenVPN 2.5.7 mipsel-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Fri May 17 12:22:57 2024 daemon.notice ovpnclient[17186]: library versions: OpenSSL 1.1.1i 8 Dec 2020, LZO 2.10
Fri May 17 12:22:57 2024 daemon.notice ovpnclient[17186]: Restart pause, 2 second(s)
Fri May 17 12:22:59 2024 daemon.warn ovpnclient[17186]: WARNING: No server certificate verification method has been enabled. See How To Guide: Set Up & Configure OpenVPN Client/server VPN | OpenVPN for more info.
``