Wed Jul 12 09:00:00 2023 daemon.notice openvpn(iada01ipvanishcom)[16131]: Exiting due to fatal error
Wed Jul 12 09:00:03 2023 kern.err kernel: [35839.165605] mt798x-wmac 18000000.wifi: Message 00005aed (seq 2) timeout
Wed Jul 12 09:00:05 2023 daemon.warn openvpn(iada01ipvanishcom)[16137]: WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
Wed Jul 12 09:00:05 2023 daemon.warn openvpn(iada01ipvanishcom)[16137]: DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
Wed Jul 12 09:00:05 2023 daemon.warn openvpn(iada01ipvanishcom)[16137]: WARNING: --keysize is DEPRECATED and will be removed in OpenVPN 2.6
Wed Jul 12 09:00:05 2023 daemon.notice openvpn(iada01ipvanishcom)[16137]: OpenVPN 2.5.8 aarch64-openwrt-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [MH/PKTINFO] [AEAD]
Wed Jul 12 09:00:05 2023 daemon.notice openvpn(iada01ipvanishcom)[16137]: library versions: OpenSSL 3.0.9 30 May 2023, LZO 2.10
Wed Jul 12 09:00:05 2023 daemon.err openvpn(iada01ipvanishcom)[16137]: neither stdin nor stderr are a tty device and you have neither a controlling tty nor systemd - can't ask for 'Enter Auth Username:'. If you used --daemon, you need to use --askpass to make passphrase-protected keys work, and you can not use --auth-nocache.
When you simply want to route all Internet usage to a commercial VPN service, don't use policy routing and, at least initially, place the VPN tunnel into the existing wan zone (which already has masquerade).