What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

vpn client not working on version above 384.5

gilstrac

Occasional Visitor
When I upgrade above 384.5, the vpn client doesn't seem to be able to connect.
I spent some time trying to set it up again and verifying settings but I can't get it to connect.

The router is a AC5300 and the service ipvanish.

Anyone else experiencing this issue?
 
Check your System Log for info.
 
I did not see anything anomalous in the logs but I am not an expert. I was lazy and I did not save them. I will attempt the update again in the near future and post the log.
So I guess no one else has seen anything similar?
 
So I guess no one else has seen anything similar?

Your symptoms are far too generic to establish any specific cause, that's why we need to view your logs to determine what is going on.
 
check to see if your login credentials got "obliterated" during the FW upgrade? Or...try a different server. Or, try a reset and/or intitialize.
 
I just updated to the 384.8_2 and got it working. As one would expect, it was me.

I saw the same symptoms: vpn not able to connect and network map internet status showed disconnected but internet was working.

I cranked up the logging and saw this.
16 dnsmasq[344]: Insecure DS reply received for com, could be bad domain configuration or lack of DNSSEC support from upstream DNS servers
May 5 01:15:17 ovpn-client1[2357]: RESOLVE: Cannot resolve host address: phx-a05.ipvanish.com:1194 (Name or service not known)
May 5 01:15:17 ovpn-client1[2357]: Data Channel MTU parms [ L:1622 D:1450 EF:122 EB:406 ET:0 EL:3 ]
May 5 01:15:17 ovpn-client1[2357]: Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth SHA256,keysize 256,key-method 2,tls-client'
May 5 01:15:17 ovpn-client1[2357]: Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1570,tun-mtu 1500,proto UDPv4,comp-lzo,cipher AES-256-CBC,auth SHA256,keysize 256,key-method 2,tls-server'
May 5 01:15:17 dnsmasq[344]: Insecure DS reply received for com, could be bad domain configuration or lack of DNSSEC support from upstream DNS servers

So I went and looked at all my dns settings.

The lan setting dns servers were no longer active. I got these set correctly and all the problems went away and the log was clean again.
I am guessing some other setting was overriding this so it worked in the older firmware.

Any advice on how these should be set is welcomed.
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top