[Tutorial] How to setup a NordVPN OpenVPN client with dd-wrt

Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking
Goto page Previous  1, 2, 3, 4, 5, 6, 7, 8
Author Message
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12917
Location: Netherlands

PostPosted: Tue Nov 28, 2017 15:42    Post subject: Reply with quote
First rule out network problems, disable the OpenVPN client (no worries your settings are preserved), and see if you have internet access from your secondary router.
If that works you rule out network setup issues and the logical conclusion would be a VPN setup problem.

Post your VPN settings (picture)

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
Sponsor
gabrielcr78
DD-WRT Novice


Joined: 03 Jul 2014
Posts: 9

PostPosted: Tue Nov 28, 2017 16:14    Post subject: Reply with quote
egc wrote:
First rule out network problems, disable the OpenVPN client (no worries your settings are preserved), and see if you have internet access from your secondary router.
If that works you rule out network setup issues and the logical conclusion would be a VPN setup problem.

Post your VPN settings (picture)


Alright, I tested it, as soon as I disconnect the OpenVPN Service anythi8ng i connect to that secondary router works like a charm.

Also, when i start again the OpenVPN, i can ping the main router (192.168.2.1) and ping the NordVPN server (185.93.1.93) however, I cannot ping the DNS servers that Im supposed to put in the network configuration (162.242.211.137 and 78.46.223.24) which i can sure ping when the OpenVPN service is down.

also when OpenVPN is up i cnnot ping google.com or any other public servers

any ideas? Smile

thanks!
gabrielcr78
DD-WRT Novice


Joined: 03 Jul 2014
Posts: 9

PostPosted: Wed Nov 29, 2017 3:39    Post subject: Reply with quote
Alrighty.. it is workin now!!!

i followed THESE steps first, and was having the issue described above.

but then i found THIS, from this second link, I only did the part of configuring also the server of

OpenVPN Server/Daemon:

set OpenVPN: Enable
set Start Type: WAN UP


this pretty much resolved the "no internet access" part

now the issue is a bit different, if i check the my own IP in ipleak.net, i can see my IP is the NordVPN ip address, however, among my DNS servers there are shown my Costa Rica ISP provider DNS servers, this means that i have DNS leaks, i changed my firefox and chome configurations, but still same thing, so maybe it is the router with the OpenVPN doing the leaks?

thanks!
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12917
Location: Netherlands

PostPosted: Wed Nov 29, 2017 9:25    Post subject: Reply with quote
Be sure to set all Static DNS 1,2, and 3 to the DNS server of Nord or use an OpenDNS server, leaving it blank (0.0.0.0) will insert your ISP DNS server.

Furthermore tick "Query DNS in strict order" on services/services tab

There could still be a DNS leak which is caused by the fact that in recent builds more than 3 DNS servers are allowed and the ISP DNS server is added to your DNS servers.

The only thing you can do to prevent this is to set your WAN as "static IP"

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
gabrielcr78
DD-WRT Novice


Joined: 03 Jul 2014
Posts: 9

PostPosted: Wed Nov 29, 2017 14:45    Post subject: Reply with quote
thanks alot egc!!! i tested that yesterday and it fixed it.. in fact i put thwe third DNS a a google DNS, but i think I'm just going to repeat the second DNS in the third DNS option and then setup my wan as statip IP.. I use most of my devidces with Static DHCP table to have most of my devices identified by MAC right there..so this secondary router actually does have the statis .40 address assigned to him all the times.

thanks for this advice!!
jfosella
DD-WRT Novice


Joined: 28 Dec 2017
Posts: 3

PostPosted: Thu Dec 28, 2017 14:16    Post subject: Netflix on Roku Reply with quote
I used the instructions at https://nordvpn.com/tutorials/dd-wrt/openvpn-gui/ and am not having any problems except videos will not play on Netfix using the Roku box.

Has anyone else run into this?
jfosella
DD-WRT Novice


Joined: 28 Dec 2017
Posts: 3

PostPosted: Fri Dec 29, 2017 1:23    Post subject: Re: Netflix on Roku Reply with quote
eibgrad wrote:
jfosella wrote:
I used the instructions at https://nordvpn.com/tutorials/dd-wrt/openvpn-gui/ and am not having any problems except videos will not play on Netfix using the Roku box.

Has anyone else run into this?


Netflix now blocks anyone using a VPN. At least for well-known VPN providers. Been this way for quite some time. Most users work around it by making an exception for that device using PBR (policy based routing) to force it back over the WAN.


Somehow Netflix works fine on the my computer on the same vpn. Just doesn't work on the Roku.
jfosella
DD-WRT Novice


Joined: 28 Dec 2017
Posts: 3

PostPosted: Fri Dec 29, 2017 11:26    Post subject: Re: Netflix on Roku Reply with quote
eibgrad wrote:


Netflix now blocks anyone using a VPN. At least for well-known VPN providers. Been this way for quite some time. Most users work around it by making an exception for that device using PBR (policy based routing) to force it back over the WAN.



I did what you said. Thanks for your advice. Smile
Kenji242
DD-WRT Novice


Joined: 12 Feb 2018
Posts: 9

PostPosted: Mon Feb 12, 2018 15:13    Post subject: Problem no Connect? Reply with quote
Hello I tried with the NordVPN manual Openvpn to install. Unfortunately, Openvpn does not want to connect. Does anyone know why? I checked the user data and the certificates. This is right.

----------------

Funny white Nordvpn script works without problems. But I need the manual instructions.

--------------------------------------------

Log
Clientlog:
19700101 01:00:59 I OpenVPN 2.3.12 arm-unknown-linux-gnu [SSL (OpenSSL)] [LZO] [EPOLL] [MH] [IPv6] built on Oct 25 2016
19700101 01:00:59 I library versions: OpenSSL 1.0.2j 26 Sep 2016 LZO 2.09
19700101 01:00:59 W WARNING: file '/tmp/openvpncl/credentials' is group or others accessible
19700101 01:00:59 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:16
19700101 01:00:59 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
19700101 01:00:59 W WARNING: file '/tmp/openvpncl/ta.key' is group or others accessible
19700101 01:00:59 I Control Channel Authentication: using '/tmp/openvpncl/ta.key' as a OpenVPN static key file
19700101 01:00:59 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
19700101 01:00:59 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
19700101 01:00:59 Socket Buffers: R=[180224->180224] S=[180224->180224]
19700101 01:00:59 I UDPv4 link local: [undef]
19700101 01:00:59 I UDPv4 link remote: [AF_INET]185.151.58.112:1194
20180212 16:00:44 I [UNDEF] Inactivity timeout (--ping-restart) restarting
20180212 16:00:44 I SIGUSR1[soft ping-restart] received process restarting
20180212 16:00:44 Restart pause 2 second(s)
20180212 16:00:46 W NOTE: the current --script-security setting may allow this configuration to call user-defined scripts
20180212 16:00:46 Socket Buffers: R=[180224->180224] S=[180224->180224]
20180212 16:00:46 I UDPv4 link local: [undef]
20180212 16:00:46 I UDPv4 link remote: [AF_INET]185.151.58.112:1194
20180212 16:01:23 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20180212 16:01:23 D MANAGEMENT: CMD 'state'
20180212 16:01:23 MANAGEMENT: Client disconnected
20180212 16:01:23 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20180212 16:01:23 D MANAGEMENT: CMD 'state'
20180212 16:01:23 MANAGEMENT: Client disconnected
20180212 16:01:23 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20180212 16:01:23 D MANAGEMENT: CMD 'state'
20180212 16:01:23 MANAGEMENT: Client disconnected
20180212 16:01:23 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20180212 16:01:23 D MANAGEMENT: CMD 'status 2'
20180212 16:01:23 MANAGEMENT: Client disconnected
20180212 16:01:23 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:16
20180212 16:01:23 D MANAGEMENT: CMD 'log 500'
19700101 01:00:00

ca /tmp/openvpncl/ca.crt management 127.0.0.1 16 management-log-cache 100 verb 3 mute 3 syslog writepid /var/run/openvpncl.pid client resolv-retry infinite nobind persist-key persist-tun script-security 2 dev tun1 proto udp cipher aes-256-cbc auth sha512 auth-user-pass /tmp/openvpncl/credentials remote 185.151.58.112 1194 comp-lzo yes tun-mtu 1500 mtu-disc yes fast-io tun-ipv6 tls-auth /tmp/openvpncl/ta.key 1 remote-cert-tls server remote-random nobind tun-mtu 1500 tun-mtu-extra 32 mssfix 1450 persist-key persist-tun ping-timer-rem reneg-sec 0 #log /tmp/vpn.log #Delete `#` in the line below if your router does not have credentials fields and you followed the 3.1 step: #auth-user-pass /tmp/openvpncl/user.conf


https://picload.org/view/dagpidaa/v3.png.html
https://picload.org/view/dagpidal/v4.png.html
https://picload.org/view/dagpidai/v2.png.html
https://picload.org/view/dagpidaw/neu1.png.html



-----------------------
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12917
Location: Netherlands

PostPosted: Mon Feb 12, 2018 16:58    Post subject: Reply with quote
I do not use NordVPN and do not use static keys, but should the OpenVPN static Key not be placed in the Static Key window instead of the TLS Auth Key window?
_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
Goto page Previous  1, 2, 3, 4, 5, 6, 7, 8 Display posts from previous:    Page 8 of 8
Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum