uci show openvpn
1 openvpn.vpnserver=openvpn
2 openvpn.vpnserver.enabled='1'
3 openvpn.vpnserver.verb='3'
4 openvpn.vpnserver.dev='tun0'
5 openvpn.vpnserver.topology='subnet'
6 openvpn.vpnserver.proto='udp'
7 openvpn.vpnserver.port='1194'
8 openvpn.vpnserver.server='192.168.200.0 255.255.255.0'
9 openvpn.vpnserver.client_to_client='1'
10 openvpn.vpnserver.compress='lzo'
11 openvpn.vpnserver.keepalive='10 120'
12 openvpn.vpnserver.persist_tun='1'
13 openvpn.vpnserver.persist_key='1'
14 openvpn.vpnserver.tls_crypt='/etc/openvpn/tc.psk'
15 openvpn.vpnserver.dh='/etc/openvpn/dh.pem'
16 openvpn.vpnserver.ca='/etc/openvpn/ca.crt'
17 openvpn.vpnserver.cert='/etc/openvpn/my-server.crt'
18 openvpn.vpnserver.key='/etc/openvpn/my-server.key'
19 openvpn.vpnserver.push='redirect-gateway def1' 'route [IP of the LAN]' 'dhcp-option DNS [IP different to the real DNS in LAN]' 'compress lzo' 'persist-tun' 'persist-key' 'dhcp-option DOMAIN [name of the local domain]'
uci show firewall
152 firewall.@rule[11]=rule
153 firewall.@rule[11].name='Allow-OpenVPN-Inbound'
154 firewall.@rule[11].target='ACCEPT'
155 firewall.@rule[11].src='*'
156 firewall.@rule[11].proto='udp'
157 firewall.@rule[11].dest_port='1194'
158 firewall.@rule[12]=rule
159 firewall.@rule[12].name='Allow-OpenVPN'
160 firewall.@rule[12].src='wan'
161 firewall.@rule[12].proto='tcp udp'
162 firewall.@rule[12].dest_port='1194'
163 firewall.@rule[12].target='ACCEPT'
164 firewall.@zone[7]=zone
165 firewall.@zone[7].name='vpnserver'
166 firewall.@zone[7].network='vpnserver'
167 firewall.@zone[7].input='ACCEPT'
168 firewall.@zone[7].output='ACCEPT'
169 firewall.@zone[7].forward='REJECT'
170 firewall.@forwarding[5]=forwarding
171 firewall.@forwarding[5].src='vpnserver'
172 firewall.@forwarding[5].dest='wan'
173 firewall.@forwarding[6]=forwarding
174 firewall.@forwarding[6].src='vpnserver'
175 firewall.@forwarding[6].dest='lan'
uci show network
67 network.vpnserver=interface
68 network.vpnserver.proto='none'
69 network.vpnserver.ifname='tun0'
logread -l 250 -e openvpn
25 Sat Oct 6 10:53:34 2018 daemon.err openvpn(vpnserver)[10446]: tls-crypt unwrap error: packet too short
26 Sat Oct 6 10:53:34 2018 daemon.err openvpn(vpnserver)[10446]: TLS Error: tls-crypt unwrapping failed from [AF_INET][IP of the Client]:1194
27 Sat Oct 6 10:53:49 2018 daemon.err openvpn(vpnserver)[10446]: tls-crypt unwrap error: packet too short
28 Sat Oct 6 10:53:49 2018 daemon.err openvpn(vpnserver)[10446]: TLS Error: tls-crypt unwrapping failed from [AF_INET][IP of the Client]:1194
Log in Client
Sat Oct 06 10:52:15 2018 OpenVPN 2.4.4 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Sep 26 2017
Sat Oct 06 10:52:15 2018 Windows version 6.2 (Windows 8 or greater) 64bit
Sat Oct 06 10:52:15 2018 library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.10
Sat Oct 06 10:52:15 2018 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25347
Sat Oct 06 10:52:15 2018 Need hold release from management interface, waiting...
Sat Oct 06 10:52:16 2018 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25347
Sat Oct 06 10:52:16 2018 MANAGEMENT: CMD 'state on'
Sat Oct 06 10:52:16 2018 MANAGEMENT: CMD 'log all on'
Sat Oct 06 10:52:16 2018 MANAGEMENT: CMD 'echo all on'
Sat Oct 06 10:52:16 2018 MANAGEMENT: CMD 'hold off'
Sat Oct 06 10:52:16 2018 MANAGEMENT: CMD 'hold release'
Sat Oct 06 10:52:16 2018 MANAGEMENT: >STATE:1538815936,RESOLVE,,,,,,
Sat Oct 06 10:52:16 2018 TCP/UDP: Preserving recently used remote address: [AF_INET][IP of the server]:1194
Sat Oct 06 10:52:16 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Sat Oct 06 10:52:16 2018 UDP link local (bound): [AF_INET][undef]:1194
Sat Oct 06 10:52:16 2018 UDP link remote: [AF_INET][IP of the server]:1194
Sat Oct 06 10:52:16 2018 MANAGEMENT: >STATE:1538815936,WAIT,,,,,,
Sat Oct 06 10:53:16 2018 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Sat Oct 06 10:53:16 2018 TLS Error: TLS handshake failed
Sat Oct 06 10:53:16 2018 SIGUSR1[soft,tls-error] received, process restarting
Sat Oct 06 10:53:16 2018 MANAGEMENT: >STATE:1538815996,RECONNECTING,tls-error,,,,,
Sat Oct 06 10:53:16 2018 Restart pause, 5 second(s)
Sat Oct 06 10:53:21 2018 MANAGEMENT: >STATE:1538816001,RESOLVE,,,,,,