
After reboot
First i got this:
Wed Dec 20 01:00:15 2017 Restart pause, 5 second(s)
Wed Dec 20 01:00:20 2017 NOTE: the current --script-security setting may allow
this configuration to call user-defined scripts
Wed Dec 20 01:00:20 2017 TCP/UDP: Preserving recently used remote address: [AF_
INET]185.206.224.119:1302
Wed Dec 20 01:00:20 2017 Socket Buffers: R=[163840->163840] S=[163840->163840]
Wed Dec 20 01:00:20 2017 UDP link local: (not bound)
Wed Dec 20 01:00:20 2017 UDP link remote: [AF_INET]185.206.224.119:1302
Wed Dec 20 01:00:20 2017 TLS: Initial packet from [AF_INET]185.206.224.119:1302
, sid=a3dc0e6a 09956150
Wed Dec 20 01:00:20 2017 VERIFY ERROR: depth=0, error=CRL is not yet valid: C=N
A, ST=None, L=None, O=Mullvad, CN=dk4.mullvad.net, emailAddress=info@mullvad.ne
t
Wed Dec 20 01:00:20 2017 OpenSSL: error:14090086:lib(20):func(144):reason(134)
Wed Dec 20 01:00:20 2017 TLS_ERROR: BIO read tls_read_plaintext error
Wed Dec 20 01:00:20 2017 TLS Error: TLS object -> incoming plaintext read error
Wed Dec 20 01:00:20 2017 TLS Error: TLS handshake failed
Wed Dec 20 01:00:20 2017 SIGUSR1[soft,tls-error] received, process restarting
Wed Dec 20 01:00:20 2017 Restart pause, 5 second(s)
Error: OpenVPN client start failed.
Wed Dec 20 01:00:24 2017 SIGTERM[hard,init_instance] received, process exiting
Then i try to manually start via telnet: "/ect/init.d/openvpn-client start"
And i got this:
Wed Dec 20 01:00:20 2017 Restart pause, 5 second(s)
Error: OpenVPN client start failed.
Wed Dec 20 01:00:24 2017 SIGTERM[hard,init_instance] received, process exiting
Fri Mar 2 23:55:44 2018 OpenVPN 2.4.4 arm-openwrt-linux-gnu [SSL (OpenSSL)] [L
ZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Fri Mar 2 23:55:44 2018 library versions: OpenSSL 1.0.2n 7 Dec 2017, LZO 2.10
Fri Mar 2 23:55:44 2018 NOTE: the current --script-security setting may allow
this configuration to call user-defined scripts
Fri Mar 2 23:55:44 2018 TCP/UDP: Preserving recently used remote address: [AF_
INET]82.103.140.213:1302
Fri Mar 2 23:55:44 2018 Socket Buffers: R=[163840->163840] S=[163840->163840]
Fri Mar 2 23:55:44 2018 UDP link local: (not bound)
Fri Mar 2 23:55:44 2018 UDP link remote: [AF_INET]82.103.140.213:1302
Fri Mar 2 23:55:44 2018 TLS: Initial packet from [AF_INET]82.103.140.213:1302,
sid=f9c99e43 18a2af34
Fri Mar 2 23:55:44 2018 WARNING: this configuration may cache passwords in mem
ory -- use the auth-nocache option to prevent this
Fri Mar 2 23:55:44 2018 VERIFY WARNING: depth=1, unable to get certificate CRL
: C=NA, ST=None, L=None, O=Mullvad, CN=master.mullvad.net, emailAddress=info@mu
llvad.net
Fri Mar 2 23:55:44 2018 VERIFY WARNING: depth=2, unable to get certificate CRL
: C=NA, ST=None, L=None, O=Mullvad, CN=Mullvad CA, emailAddress=info@mullvad.ne
t
Fri Mar 2 23:55:44 2018 VERIFY OK: depth=2, C=NA, ST=None, L=None, O=Mullvad,
CN=Mullvad CA, emailAddress=info@mullvad.net
Fri Mar 2 23:55:44 2018 VERIFY OK: depth=1, C=NA, ST=None, L=None, O=Mullvad,
CN=master.mullvad.net, emailAddress=info@mullvad.net
Fri Mar 2 23:55:44 2018 VERIFY KU OK
Fri Mar 2 23:55:44 2018 Validating certificate extended key usage
Fri Mar 2 23:55:44 2018 ++ Certificate has EKU (str) TLS Web Server Authentica
tion, expects TLS Web Server Authentication
Fri Mar 2 23:55:44 2018 VERIFY EKU OK
Fri Mar 2 23:55:44 2018 VERIFY OK: depth=0, C=NA, ST=None, L=None, O=Mullvad,
CN=dk1.mullvad.net, emailAddress=info@mullvad.net
Fri Mar 2 23:55:44 2018 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 DHE-RSA-A
ES256-GCM-SHA384, 4096 bit RSA
Fri Mar 2 23:55:44 2018 [dk1.mullvad.net] Peer Connection Initiated with [AF_I
NET]82.103.140.213:1302
Fri Mar 2 23:55:45 2018 SENT CONTROL [dk1.mullvad.net]: 'PUSH_REQUEST' (status
=1)
Fri Mar 2 23:55:50 2018 SENT CONTROL [dk1.mullvad.net]: 'PUSH_REQUEST' (status
=1)
Fri Mar 2 23:55:50 2018 PUSH: Received control message: 'PUSH_REPLY,redirect-g
ateway def1 bypass-dhcp,dhcp-option DNS 10.16.0.1,route-ipv6 0000::/2,route-ipv
6 4000::/2,route-ipv6 8000::/2,route-ipv6 C000::/2,route-gateway 10.16.0.1,topo
logy subnet,socket-flags TCP_NODELAY,ifconfig-ipv6 fdda:d0d0:cafe:1302::1000/64
fdda:d0d0:cafe:1302::,ifconfig 10.16.0.2 255.255.0.0,peer-id 0,cipher AES-256-
GCM'
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: --socket-flags option modified
Fri Mar 2 23:55:50 2018 NOTE: setsockopt TCP_NODELAY=1 failed
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: --ifconfig/up options modified
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: route options modified
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: route-related options modified
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: --ip-win32 and/or --dhcp-option option
s modified
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: peer-id set
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: adjusting link_mtu to 1625
Fri Mar 2 23:55:50 2018 OPTIONS IMPORT: data channel crypto options modified
Fri Mar 2 23:55:50 2018 Data Channel: using negotiated cipher 'AES-256-GCM'
Fri Mar 2 23:55:50 2018 Outgoing Data Channel: Cipher 'AES-256-GCM' initialize
d with 256 bit key
Fri Mar 2 23:55:50 2018 Incoming Data Channel: Cipher 'AES-256-GCM' initialize
d with 256 bit key
Fri Mar 2 23:55:50 2018 GDG6: remote_host_ipv6=n/a
Fri Mar 2 23:55:50 2018 TUN/TAP device tun0 opened
Fri Mar 2 23:55:50 2018 TUN/TAP TX queue length set to 100
Fri Mar 2 23:55:50 2018 do_ifconfig, tt->did_ifconfig_ipv6_setup=1
Fri Mar 2 23:55:50 2018 /sbin/ifconfig tun0 10.16.0.2 netmask 255.255.0.0 mtu
1500 broadcast 10.16.255.255
Fri Mar 2 23:55:50 2018 /sbin/ifconfig tun0 add fdda:d0d0:cafe:1302::1000/64
Fri Mar 2 23:55:50 2018 /etc/openvpn/ovpnclient-up.sh tun0 1500 1553 10.16.0.2
255.255.0.0 init
Fri Mar 2 23:55:50 2018 /sbin/route add -net 82.103.140.213 netmask 255.255.25
5.255 gw 192.168.59.1
Fri Mar 2 23:55:51 2018 /sbin/route add -net 0.0.0.0 netmask 128.0.0.0 gw 10.1
6.0.1
Fri Mar 2 23:55:51 2018 /sbin/route add -net 128.0.0.0 netmask 128.0.0.0 gw 10
.16.0.1
Fri Mar 2 23:55:51 2018 add_route_ipv6

:/2 -> fdda:d0d0:cafe:1302:: metric -1
) dev tun0
Fri Mar 2 23:55:51 2018 /sbin/route -A inet6 add ::/2 dev tun0
Fri Mar 2 23:55:51 2018 add_route_ipv6(4000::/2 -> fdda:d0d0:cafe:1302:: metri
c -1) dev tun0
Fri Mar 2 23:55:51 2018 /sbin/route -A inet6 add 4000::/2 dev tun0
Fri Mar 2 23:55:51 2018 add_route_ipv6(8000::/2 -> fdda:d0d0:cafe:1302:: metri
c -1) dev tun0
Fri Mar 2 23:55:51 2018 /sbin/route -A inet6 add 8000::/2 dev tun0
Fri Mar 2 23:55:51 2018 add_route_ipv6(c000::/2 -> fdda:d0d0:cafe:1302:: metri
c -1) dev tun0
Fri Mar 2 23:55:51 2018 /sbin/route -A inet6 add c000::/2 dev tun0
Fri Mar 2 23:55:51 2018 Initialization Sequence Completed
~
(END)
llvad.net
Fri Mar 2 23:55:44 2018 VERIFY WARNING: depth=2, unable to get certificate CRL
:
Done!
Starting Firewall...
Done!
root@R7800:/$
And then I can verify that ip has changed
But when i reboot router - same procedure occurs