Перестал подключаться клиент на маршрутизаторе

Тоже самое было сегодня на Asus AC-58U c OpenVPN 2.3.2, обновил прошивку на последнюю бету с OpenVPN 2.4.7 и все полетело, да на модифицированной прошивке конечно возможностей больше, но увы.

При подключении TCP, отключенном сжатии, выключенной отправке всего трафика через впн - все заработало, как и раньше.
Огромное спасибо за помощь и техническую пождержку

sha1/aes128cbc все?


upd: blowfish128 робит

RT-AX56U_388.2_2 (мерлин). Со вчерашнего дня “Connected (Local: 192.168.121.174 - Internet not redirected)”. Есть какие-либо рекомендации?

Лог

Aug 2 15:10:18 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 2 15:10:18 ovpn-client1[5820]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 2 15:10:18 ovpn-client1[5820]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 2 15:10:18 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:18 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:18 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:18 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b22d9e07 02b0ae66
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:18 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:18 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:18 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:18 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:18 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:18 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:18 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:20 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:20 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:20 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:20 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:20 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:20 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.121.174/21
Aug 2 15:10:20 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 2 15:10:20 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:20 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:20 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:20 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:20 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:22 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:28 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:28 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:28 ovpn-client1[5821]: Restart pause, 1 second(s)
Aug 2 15:10:29 ovpn-client1[5821]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 2 15:10:29 ovpn-client1[5821]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 2 15:10:29 ovpn-client1[5821]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link local: (not bound)
Aug 2 15:10:29 ovpn-client1[5821]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 2 15:10:30 ovpn-client1[5821]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=b5f8ab21 7cdb94cf
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY KU OK
Aug 2 15:10:30 ovpn-client1[5821]: Validating certificate extended key usage
Aug 2 15:10:30 ovpn-client1[5821]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY EKU OK
Aug 2 15:10:30 ovpn-client1[5821]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 2 15:10:31 ovpn-client1[5821]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 2 15:10:31 ovpn-client1[5821]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 2 15:10:31 ovpn-client1[5821]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 2 15:10:31 ovpn-client1[5821]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 2 15:10:32 ovpn-client1[5821]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 2 15:10:33 ovpn-client1[5821]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug 2 15:10:33 ovpn-client1[5821]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: route-related options modified
Aug 2 15:10:33 ovpn-client1[5821]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 2 15:10:33 ovpn-client1[5821]: Preserving previous TUN/TAP instance: tun11
Aug 2 15:10:33 ovpn-client1[5821]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-route-pre-down tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 ovpn-client1[5821]: Closing TUN/TAP interface
Aug 2 15:10:33 ovpn-client1[5821]: /usr/sbin/ip addr del dev tun11 192.168.121.174/21
Aug 2 15:10:33 lldpd[1635]: removal request for address of 192.168.121.174%29, but no knowledge of it
Aug 2 15:10:33 ovpn-client1[5821]: ovpn-down 1 client tun11 1500 0 192.168.121.174 255.255.248.0 init
Aug 2 15:10:33 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:33 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP device tun11 opened
Aug 2 15:10:34 ovpn-client1[5821]: TUN/TAP TX queue length set to 1000
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip link set dev tun11 up
Aug 2 15:10:34 ovpn-client1[5821]: /usr/sbin/ip addr add dev tun11 192.168.114.112/21
Aug 2 15:10:34 ovpn-client1[5821]: ovpn-up 1 client tun11 1500 0 192.168.114.112 255.255.248.0 init
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.112.1 dev tun11 table ovpnc1
Aug 2 15:10:34 openvpn-routing: Routing all traffic through ovpnc1
Aug 2 15:10:34 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 2 15:10:34 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 2 15:10:34 ovpn-client1[5821]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 2 15:10:34 ovpn-client1[5821]: Timers: ping 110, ping-restart 360
Aug 2 15:10:36 ovpn-client1[5821]: Initialization Sequence Completed
Aug 2 15:10:40 ovpn-client1[5821]: Connection reset, restarting [-1]
Aug 2 15:10:40 ovpn-client1[5821]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 2 15:10:40 ovpn-client1[5821]: Restart pause, 1 second(s)

Добрый день.
Не подскажите что случилось . Настройки не менялись вчера вечером всё “умерло”
Прошивка Падаван

Спойлер
Aug  2 17:58:32 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  2 17:58:32 openvpn-cli[12210]: Closing TUN/TAP interface
Aug  2 17:58:32 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug  2 17:58:32 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.122.48 255.255.248.0 init
Aug  2 17:58:32 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:32 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:32 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:32 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:32 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug  2 17:58:32 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug  2 17:58:32 vpnc-script: tun0 down
Aug  2 17:58:32 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  2 17:58:32 openvpn-cli[12210]: Restart pause, 5 second(s)
Aug  2 17:58:37 openvpn-cli[12210]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug  2 17:58:37 openvpn-cli[12210]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.158.187.25:1194
Aug  2 17:58:37 openvpn-cli[12210]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug  2 17:58:37 openvpn-cli[12210]: Attempting to establish TCP connection with [AF_INET]51.158.187.25:1194 [nonblock]
Aug  2 17:58:38 openvpn-cli[12210]: TCP connection established with [AF_INET]51.158.187.25:1194
Aug  2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link local: (not bound)
Aug  2 17:58:38 openvpn-cli[12210]: TCP_CLIENT link remote: [AF_INET]51.158.187.25:1194
Aug  2 17:58:38 openvpn-cli[12210]: TLS: Initial packet from [AF_INET]51.158.187.25:1194, sid=3cd3ba0b e723bb42
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY KU OK
Aug  2 17:58:38 openvpn-cli[12210]: Validating certificate extended key usage
Aug  2 17:58:38 openvpn-cli[12210]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY EKU OK
Aug  2 17:58:38 openvpn-cli[12210]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug  2 17:58:38 openvpn-cli[12210]: WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1559', remote='link-mtu 1543'
Aug  2 17:58:38 openvpn-cli[12210]: WARNING: 'cipher' is used inconsistently, local='cipher AES-128-CBC', remote='cipher BF-CBC'
Aug  2 17:58:38 openvpn-cli[12210]: Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 2048 bit RSA
Aug  2 17:58:38 openvpn-cli[12210]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]51.158.187.25:1194
Aug  2 17:58:39 openvpn-cli[12210]: SENT CONTROL [antizapret-server-shared]: 'PUSH_REQUEST' (status=1)
Aug  2 17:58:40 openvpn-cli[12210]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.112.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route
Aug  2 17:58:40 openvpn-cli[12210]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.4.3)
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: timers and/or timeouts modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ifconfig/up options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: route-related options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: peer-id set
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: adjusting link_mtu to 1626
Aug  2 17:58:40 openvpn-cli[12210]: OPTIONS IMPORT: data channel crypto options modified
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel: using negotiated cipher 'AES-128-GCM'
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel Encrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug  2 17:58:40 openvpn-cli[12210]: Data Channel Decrypt: Cipher 'AES-128-GCM' initialized with 128 bit key
Aug  2 17:58:40 openvpn-cli[12210]: TUN/TAP device tun0 opened
Aug  2 17:58:40 openvpn-cli[12210]: TUN/TAP TX queue length set to 100
Aug  2 17:58:40 openvpn-cli[12210]: do_ifconfig, tt->did_ifconfig_ipv6_setup=0
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/ifconfig tun0 192.168.113.126 netmask 255.255.248.0 mtu 1500 broadcast 192.168.119.255
Aug  2 17:58:40 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug  2 17:58:40 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:40 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:40 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:40 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:40 dnsmasq[399]: using nameserver 192.168.104.1#53
Aug  2 17:58:40 vpnc-script: tun0 up
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 192.168.104.1 netmask 255.255.255.255 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 10.224.0.0 netmask 255.254.0.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 103.246.200.0 netmask 255.255.252.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 178.239.88.0 netmask 255.255.248.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 185.104.45.0 netmask 255.255.255.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 193.105.213.36 netmask 255.255.255.252 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.128.0 netmask 255.255.240.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.144.0 netmask 255.255.248.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 203.104.152.0 netmask 255.255.252.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 68.171.224.0 netmask 255.255.224.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: /sbin/route add -net 74.82.64.0 netmask 255.255.224.0 gw 192.168.112.1
Aug  2 17:58:40 openvpn-cli[12210]: Initialization Sequence Completed
Aug  2 17:58:52 openvpn-cli[12210]: Connection reset, restarting [-1]
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 192.168.104.1 netmask 255.255.255.255
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 10.224.0.0 netmask 255.254.0.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 103.246.200.0 netmask 255.255.252.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 178.239.88.0 netmask 255.255.248.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 185.104.45.0 netmask 255.255.255.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 193.105.213.36 netmask 255.255.255.252
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.128.0 netmask 255.255.240.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.144.0 netmask 255.255.248.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 203.104.152.0 netmask 255.255.252.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 68.171.224.0 netmask 255.255.224.0
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/route del -net 74.82.64.0 netmask 255.255.224.0
Aug  2 17:58:52 openvpn-cli[12210]: Closing TUN/TAP interface
Aug  2 17:58:52 openvpn-cli[12210]: /sbin/ifconfig tun0 0.0.0.0
Aug  2 17:58:52 openvpn-cli[12210]: ovpnc.script tun0 1500 1554 192.168.113.126 255.255.248.0 init
Aug  2 17:58:52 dnsmasq[399]: read /etc/hosts - 4 addresses
Aug  2 17:58:52 dnsmasq[399]: read /etc/storage/dnsmasq/hosts - 3 addresses
Aug  2 17:58:52 dnsmasq-dhcp[399]: read /etc/dnsmasq/dhcp/dhcp-hosts.rc
Aug  2 17:58:52 dnsmasq-dhcp[399]: not giving name localhost to the DHCP lease of 192.168.1.18 because the name exists in /etc/hosts with address 127.0.0.1
Aug  2 17:58:52 dnsmasq[399]: using nameserver 8.8.8.8#53
Aug  2 17:58:52 dnsmasq[399]: using nameserver 8.8.4.4#53
Aug  2 17:58:52 vpnc-script: tun0 down
Aug  2 17:58:52 openvpn-cli[12210]: SIGUSR1[soft,connection-reset] received, process restarting
Aug  2 17:58:52 openvpn-cli[12210]: Restart pause, 5 second(s)

Спойлер

В целом, эта тема, видимо, дубль той.

Еще раз немного изменил настройки, напишите, у кого заработало (если не работало), а у кого наоборот перестало работать (если работало).

RT-AX56U_388.2_2 (мерлин). Увы, но без изменений, все так же не работает.

Спойлер

Aug 7 15:45:42 openvpn: Resetting VPN client 1 to default settings
Aug 7 15:46:05 rc_service: httpd 1513:notify_rc start_vpnclient1
Aug 7 15:46:05 ovpn-client1[30964]: OpenVPN 2.6.3 arm-buildroot-linux-gnueabi [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Aug 7 15:46:05 ovpn-client1[30964]: library versions: OpenSSL 1.1.1t 7 Feb 2023, LZO 2.08
Aug 7 15:46:05 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:05 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:05 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:05 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:06 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=0c43f5ee 3f4c0e27
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:07 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:07 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:07 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:07 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:07 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:07 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:07 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:08 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:08 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.104.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,route 68.171.224.0 255.255.224.0,route 7
Aug 7 15:46:08 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:3: block-outside-dns (2.6.3)
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:08 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:08 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:08 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.105.143/21
Aug 7 15:46:08 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.104.1 dev tun11 table ovpnc1
Aug 7 15:46:08 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:08 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:08 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:08 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:08 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:10 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:10 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:10 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:10 ovpn-client1[30965]: Restart pause, 1 second(s)
Aug 7 15:46:11 ovpn-client1[30965]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 7 15:46:11 ovpn-client1[30965]: TCP/UDP: Preserving recently used remote address: [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 7 15:46:11 ovpn-client1[30965]: Attempting to establish TCP connection with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCP connection established with [AF_INET]141.95.17.71:1194
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link local: (not bound)
Aug 7 15:46:11 ovpn-client1[30965]: TCPv4_CLIENT link remote: [AF_INET]141.95.17.71:1194
Aug 7 15:46:15 ovpn-client1[30965]: TLS: Initial packet from [AF_INET]141.95.17.71:1194, sid=74e5101f c35fb8aa
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=1, CN=AntiZapret CA2
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY KU OK
Aug 7 15:46:15 ovpn-client1[30965]: Validating certificate extended key usage
Aug 7 15:46:15 ovpn-client1[30965]: ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY EKU OK
Aug 7 15:46:15 ovpn-client1[30965]: VERIFY OK: depth=0, CN=antizapret-server-shared
Aug 7 15:46:16 ovpn-client1[30965]: Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
Aug 7 15:46:16 ovpn-client1[30965]: [antizapret-server-shared] Peer Connection Initiated with [AF_INET]141.95.17.71:1194
Aug 7 15:46:16 ovpn-client1[30965]: TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
Aug 7 15:46:16 ovpn-client1[30965]: TLS: tls_multi_process: initial untrusted session promoted to trusted
Aug 7 15:46:17 ovpn-client1[30965]: SENT CONTROL [antizapret-server-shared]: ‘PUSH_REQUEST’ (status=1)
Aug 7 15:46:17 ovpn-client1[30965]: PUSH: Received control message: 'PUSH_REPLY,route 192.168.104.1 255.255.255.255,route 10.224.0.0 255.254.0.0,dhcp-option DNS 192.168.104.1,block-outside-dns,route-gateway 192.168.120.1,topology subnet,ping 110,ping-restart 360,route 103.246.200.0 255.255.252.0,route 178.239.88.0 255.255.248.0,route 185.104.45.0 255.255.255.0,route 193.105.213.36 255.255.255.252,route 203.104.128.0 255.255.240.0,route 203.104.144.0 255.255.248.0,route 203.104.152.0 255.255.252.0,rout
Aug 7 15:46:17 ovpn-client1[30965]: Options error: Unrecognized option or missing or extra parameter(s) in [PUSH-OPTIONS]:4: block-outside-dns (2.6.3)
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ifconfig/up options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: route-related options modified
Aug 7 15:46:17 ovpn-client1[30965]: OPTIONS IMPORT: --ip-win32 and/or --dhcp-option options modified
Aug 7 15:46:17 ovpn-client1[30965]: Preserving previous TUN/TAP instance: tun11
Aug 7 15:46:17 ovpn-client1[30965]: NOTE: Pulled options changed on restart, will need to close and reopen TUN/TAP device.
Aug 7 15:46:17 ovpn-client1[30965]: ovpn-route-pre-down tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 ovpn-client1[30965]: Closing TUN/TAP interface
Aug 7 15:46:18 ovpn-client1[30965]: /usr/sbin/ip addr del dev tun11 192.168.105.143/21
Aug 7 15:46:18 lldpd[1635]: removal request for address of 192.168.105.143%57, but no knowledge of it
Aug 7 15:46:18 ovpn-client1[30965]: ovpn-down 1 client tun11 1500 0 192.168.105.143 255.255.248.0 init
Aug 7 15:46:18 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:18 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP device tun11 opened
Aug 7 15:46:19 ovpn-client1[30965]: TUN/TAP TX queue length set to 1000
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up mtu 1500
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip link set dev tun11 up
Aug 7 15:46:19 ovpn-client1[30965]: /usr/sbin/ip addr add dev tun11 192.168.123.245/21
Aug 7 15:46:19 ovpn-client1[30965]: ovpn-up 1 client tun11 1500 0 192.168.123.245 255.255.248.0 init
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 192.168.104.1/255.255.255.255 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 10.224.0.0/255.254.0.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 103.246.200.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 178.239.88.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 185.104.45.0/255.255.255.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 193.105.213.36/255.255.255.252 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.128.0/255.255.240.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.144.0/255.255.248.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 203.104.152.0/255.255.252.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 68.171.224.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Add pushed route: /usr/sbin/ip route add 74.82.64.0/255.255.224.0 via 192.168.120.1 dev tun11 table ovpnc1
Aug 7 15:46:19 openvpn-routing: Routing all traffic through ovpnc1
Aug 7 15:46:19 dnsmasq[2142]: read /etc/hosts - 22 names
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 192.168.104.1#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 8.8.8.8#53
Aug 7 15:46:19 dnsmasq[2142]: using nameserver 1.1.1.1#53
Aug 7 15:46:19 ovpn-client1[30965]: Data Channel: cipher ‘AES-128-GCM’, peer-id: 0
Aug 7 15:46:19 ovpn-client1[30965]: Timers: ping 110, ping-restart 360
Aug 7 15:46:21 ovpn-client1[30965]: Initialization Sequence Completed
Aug 7 15:46:23 ovpn-client1[30965]: Connection reset, restarting [-1]
Aug 7 15:46:23 ovpn-client1[30965]: SIGUSR1[soft,connection-reset] received, process restarting
Aug 7 15:46:23 ovpn-client1[30965]: Restart pause, 1 second(s)

Повтор сообщения. Как я писал всё померло 5 дней назад прошивка падаван . 4 дня назад всё за работало и всё было ок . Сегодня не знаю восколько всё опять померло
Blowfish 128 Не помогло .

12 августа 2023 - работает.
Auth.: SHA1
Cipher: blowfish 128

Обидно, что перестал поддерживаться AES-128-CBC, т.к. мой маршрутизатор поддерживает аппаратное шифрование по данному протоколу (hardware offload).

Через Antizapret идёт настолько мизерный трафик (в районе нескольких сотен мегабайт в сутки в моём случае), что аппаратное ускорение его шифрования роли не играет.

Доброго дня!

роутер Kennetic 4G III rev.A, Padavan 3.4.3.9-099_460bda1

перестал работать А




нтизапрет… ничего не менял, что случилось? пришёл из отпуска и на тебе! месяц назад всё работало…
скрины приложил, кто понимает гляньте плз :blush:

@NiTRO88 Алгоритм шифрования данных с aes поменяйте на blowfish и будет Вам счастье

Спасибо! Всё идеально!

роутер asus rt ax55, перестал конектиться
лог

Aug 27 11:55:15 vpnclient5[17364]: Restart pause, 5 second(s)
Aug 27 11:55:20 vpnclient5[17364]: NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
Aug 27 11:55:20 vpnclient5[17364]: TCP/UDP: Preserving recently used remote address: [AF_INET]51.75.70.203:1194
Aug 27 11:55:20 vpnclient5[17364]: Socket Buffers: R=[87380->87380] S=[16384->16384]
Aug 27 11:55:20 vpnclient5[17364]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Aug 27 11:55:21 vpnclient5[17364]: TCP connection established with [AF_INET]51.75.70.203:1194
Aug 27 11:55:21 vpnclient5[17364]: TCP_CLIENT link local: (not bound)
Aug 27 11:55:21 vpnclient5[17364]: TCP_CLIENT link remote: [AF_INET]51.75.70.203:1194
Aug 27 11:55:22 vpnclient5[17364]: TLS: Initial packet from [AF_INET]51.75.70.203:1194, sid=5d2a2e15 88c739c3
Aug 27 11:55:22 vpnclient5[17364]: VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: CN=AntiZapret CA2, serial=395676000932360417557920047185476562157802139901
Aug 27 11:55:22 vpnclient5[17364]: OpenSSL: error:1416F086:lib(20):func(367):reason(134)
Aug 27 11:55:22 vpnclient5[17364]: TLS_ERROR: BIO read tls_read_plaintext error
Aug 27 11:55:22 vpnclient5[17364]: TLS Error: TLS object -> incoming plaintext read error
Aug 27 11:55:22 vpnclient5[17364]: TLS Error: TLS handshake failed
Aug 27 11:55:22 vpnclient5[17364]: Fatal TLS error (check_tls_errors_co), restarting
Aug 27 11:55:22 vpnclient5[17364]: SIGUSR1[soft,tls-error] received, process restarting
Aug 27 11:55:22 vpnclient5[17364]: Restart pause, 5 second(s)

У вас устаревшая конфигурация.

Действительно. Скачал с другого зеркала - заработало.
ранее качал с http://antizapret-1.prostovpn.org/ там какая старая версия.

Подскажите перестал работать антизапрет
TCP/UDP: Preserving recently used remote address: [AF_INET]51.75.70.203:1194
Sep 11 15:14:38 openvpn[3738]: Attempting to establish TCP connection with [AF_INET]51.75.70.203:1194 [nonblock]
Sep 11 15:14:38 openvpn[3738]: TCP connection established with [AF_INET]51.75.70.203:1194
Sep 11 15:14:38 openvpn[3738]: TCP_CLIENT link local: (not bound)
Sep 11 15:14:38 openvpn[3738]: TCP_CLIENT link remote: [AF_INET]51.75.70.203:1194
Sep 11 15:14:39 openvpn[3738]: VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: CN=AntiZapret CA2, serial=395676000932360417557920047185476562157802139901
Sep 11 15:14:39 openvpn[3738]: OpenSSL: error:1416F086:lib(20):func(367):reason(134)
Sep 11 15:14:39 openvpn[3738]: TLS_ERROR: BIO read tls_read_plaintext error
Sep 11 15:14:39 openvpn[3738]: TLS Error: TLS object → incoming plaintext read error
Sep 11 15:14:39 openvpn[3738]: TLS Error: TLS handshake failed
Sep 11 15:14:39 openvpn[3738]: Fatal TLS error (check_tls_errors_co), restarting
Sep 11 15:14:39 openvpn[3738]: SIGUSR1[soft,tls-error] received, process restarting

Обновите файл конфигурации

Не помогло