NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

fabraga's avatar
fabraga
Tutor
Jan 19, 2016
Solved

R7000 V1.0.6.28_1.1.8 "OpenVPN connection timeout"

Bought this router with support for VPN a week ago (Jan 12, 2016) after lots of researches, believing that would be one of the best choices for someone who wants to setup VPN at home. VPN was the main reason why I bought this router, and yet it seems to be the only thing in the router that is not working. During this week I read the whole manual (and forums online) and learned pretty much everything about networking and router features. Only the VPN is not working. 

 

I configured Dynamic DNS Service with NETGEAR and directly with no-ip.com. Both seems to work when I hit "Show Status" buttom, but none connects when I try to connect with OpenVPN from my laptop or my android phone ("VPN configuration package download for Windows" and "VPN configuration package download for Smart Phone"). Every configuration on the way is been reviewed thoroughly. I followed every single step on the Netgear manual and reviewed them with online tutorials. Everything should be perfect. But yet it seems there is something missing. I also tried to reboot the router many times as I read it somewhere but no success.

 

I am using a Laptop HP Envy 7 with Windows 10, a Smart Phone Samsung Galaxy Note 3 (Android), and a Tablet HTC Nexus (Android).

 

Follows what it shows while I am trying to connect with OpenVPN from my laptop: 

 

Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_cert_private = DISABLED
Tue Jan 19 16:15:41 2016 pkcs11_pin_cache_period = -1
Tue Jan 19 16:15:41 2016 pkcs11_id = '[UNDEF]'
Tue Jan 19 16:15:41 2016 pkcs11_id_management = DISABLED
Tue Jan 19 16:15:41 2016 server_network = 0.0.0.0
Tue Jan 19 16:15:41 2016 server_netmask = 0.0.0.0
Tue Jan 19 16:15:41 2016 server_network_ipv6 = ::
Tue Jan 19 16:15:41 2016 server_netbits_ipv6 = 0
Tue Jan 19 16:15:41 2016 server_bridge_ip = 0.0.0.0
Tue Jan 19 16:15:41 2016 server_bridge_netmask = 0.0.0.0
Tue Jan 19 16:15:41 2016 server_bridge_pool_start = 0.0.0.0
Tue Jan 19 16:15:41 2016 server_bridge_pool_end = 0.0.0.0
Tue Jan 19 16:15:41 2016 ifconfig_pool_defined = DISABLED
Tue Jan 19 16:15:41 2016 ifconfig_pool_start = 0.0.0.0
Tue Jan 19 16:15:41 2016 ifconfig_pool_end = 0.0.0.0
Tue Jan 19 16:15:41 2016 ifconfig_pool_netmask = 0.0.0.0
Tue Jan 19 16:15:41 2016 ifconfig_pool_persist_filename = '[UNDEF]'
Tue Jan 19 16:15:41 2016 ifconfig_pool_persist_refresh_freq = 600
Tue Jan 19 16:15:41 2016 ifconfig_ipv6_pool_defined = DISABLED
Tue Jan 19 16:15:41 2016 ifconfig_ipv6_pool_base = ::
Tue Jan 19 16:15:41 2016 ifconfig_ipv6_pool_netbits = 0
Tue Jan 19 16:15:41 2016 n_bcast_buf = 256
Tue Jan 19 16:15:41 2016 tcp_queue_limit = 64
Tue Jan 19 16:15:41 2016 real_hash_size = 256
Tue Jan 19 16:15:41 2016 virtual_hash_size = 256
Tue Jan 19 16:15:41 2016 client_connect_script = '[UNDEF]'
Tue Jan 19 16:15:41 2016 learn_address_script = '[UNDEF]'
Tue Jan 19 16:15:41 2016 client_disconnect_script = '[UNDEF]'
Tue Jan 19 16:15:41 2016 client_config_dir = '[UNDEF]'
Tue Jan 19 16:15:41 2016 ccd_exclusive = DISABLED
Tue Jan 19 16:15:41 2016 tmp_dir = 'C:\Users\Fabricio\AppData\Local\Temp\'
Tue Jan 19 16:15:41 2016 push_ifconfig_defined = DISABLED
Tue Jan 19 16:15:41 2016 push_ifconfig_local = 0.0.0.0
Tue Jan 19 16:15:41 2016 push_ifconfig_remote_netmask = 0.0.0.0
Tue Jan 19 16:15:41 2016 push_ifconfig_ipv6_defined = DISABLED
Tue Jan 19 16:15:41 2016 push_ifconfig_ipv6_local = ::/0
Tue Jan 19 16:15:41 2016 push_ifconfig_ipv6_remote = ::
Tue Jan 19 16:15:41 2016 enable_c2c = DISABLED
Tue Jan 19 16:15:41 2016 duplicate_cn = DISABLED
Tue Jan 19 16:15:41 2016 cf_max = 0
Tue Jan 19 16:15:41 2016 cf_per = 0
Tue Jan 19 16:15:41 2016 max_clients = 1024
Tue Jan 19 16:15:41 2016 max_routes_per_client = 256
Tue Jan 19 16:15:41 2016 auth_user_pass_verify_script = '[UNDEF]'
Tue Jan 19 16:15:41 2016 auth_user_pass_verify_script_via_file = DISABLED
Tue Jan 19 16:15:41 2016 client = ENABLED
Tue Jan 19 16:15:41 2016 pull = ENABLED
Tue Jan 19 16:15:41 2016 auth_user_pass_file = '[UNDEF]'
Tue Jan 19 16:15:41 2016 show_net_up = DISABLED
Tue Jan 19 16:15:41 2016 route_method = 0
Tue Jan 19 16:15:41 2016 block_outside_dns = DISABLED
Tue Jan 19 16:15:41 2016 ip_win32_defined = DISABLED
Tue Jan 19 16:15:41 2016 ip_win32_type = 3
Tue Jan 19 16:15:41 2016 dhcp_masq_offset = 0
Tue Jan 19 16:15:41 2016 dhcp_lease_time = 31536000
Tue Jan 19 16:15:41 2016 tap_sleep = 0
Tue Jan 19 16:15:41 2016 dhcp_options = DISABLED
Tue Jan 19 16:15:41 2016 dhcp_renew = DISABLED
Tue Jan 19 16:15:41 2016 dhcp_pre_release = DISABLED
Tue Jan 19 16:15:41 2016 dhcp_release = DISABLED
Tue Jan 19 16:15:41 2016 domain = '[UNDEF]'
Tue Jan 19 16:15:41 2016 netbios_scope = '[UNDEF]'
Tue Jan 19 16:15:41 2016 netbios_node_type = 0
Tue Jan 19 16:15:41 2016 disable_nbt = DISABLED
Tue Jan 19 16:15:41 2016 OpenVPN 2.3.10 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Jan 4 2016
Tue Jan 19 16:15:41 2016 Windows version 6.2 (Windows 8 or greater)
Tue Jan 19 16:15:41 2016 library versions: OpenSSL 1.0.1q 3 Dec 2015, LZO 2.09
Tue Jan 19 16:15:41 2016 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Tue Jan 19 16:15:41 2016 Need hold release from management interface, waiting...
Tue Jan 19 16:15:41 2016 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Tue Jan 19 16:15:41 2016 MANAGEMENT: CMD 'state on'
Tue Jan 19 16:15:41 2016 MANAGEMENT: CMD 'log all on'
Tue Jan 19 16:15:41 2016 MANAGEMENT: CMD 'hold off'
Tue Jan 19 16:15:41 2016 MANAGEMENT: CMD 'hold release'
Tue Jan 19 16:15:41 2016 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info.
Tue Jan 19 16:15:41 2016 LZO compression initialized
Tue Jan 19 16:15:41 2016 Control Channel MTU parms [ L:1592 D:1210 EF:40 EB:0 ET:0 EL:3 ]
Tue Jan 19 16:15:41 2016 Socket Buffers: R=[65536->65536] S=[65536->65536]
Tue Jan 19 16:15:41 2016 MANAGEMENT: >STATE:1453220141,RESOLVE,,,
Tue Jan 19 16:15:41 2016 Data Channel MTU parms [ L:1592 D:1450 EF:60 EB:143 ET:32 EL:3 AF:3/1 ]
Tue Jan 19 16:15:41 2016 Local Options String: 'V4,dev-type tap,link-mtu 1592,tun-mtu 1532,proto TCPv4_CLIENT,comp-lzo,cipher AES-128-CBC,auth SHA1,keysize 128,key-method 2,tls-client'
Tue Jan 19 16:15:41 2016 Expected Remote Options String: 'V4,dev-type tap,link-mtu 1592,tun-mtu 1532,proto TCPv4_SERVER,comp-lzo,cipher AES-128-CBC,auth SHA1,keysize 128,key-method 2,tls-server'
Tue Jan 19 16:15:41 2016 Local Options hash (VER=V4): '39ac68d4'
Tue Jan 19 16:15:41 2016 Expected Remote Options hash (VER=V4): 'de0ebdfe'
Tue Jan 19 16:15:41 2016 Attempting to establish TCP connection with [AF_INET]80.111.101.69:8426 [nonblock]
Tue Jan 19 16:15:41 2016 MANAGEMENT: >STATE:1453220141,TCP_CONNECT,,,
Tue Jan 19 16:15:51 2016 TCP: connect to [AF_INET]80.111.101.69:8426 failed, will try again in 5 seconds: The system tried to join a drive to a directory on a joined drive.
Tue Jan 19 16:15:56 2016 MANAGEMENT: >STATE:1453220156,RESOLVE,,,
Tue Jan 19 16:15:56 2016 MANAGEMENT: >STATE:1453220156,TCP_CONNECT,,,
Tue Jan 19 16:16:06 2016 TCP: connect to [AF_INET]80.111.101.69:8426 failed, will try again in 5 seconds: The system tried to join a drive to a directory on a joined drive.
Tue Jan 19 16:16:11 2016 MANAGEMENT: >STATE:1453220171,RESOLVE,,,
Tue Jan 19 16:16:11 2016 MANAGEMENT: >STATE:1453220171,TCP_CONNECT,,,

 

I appreciate any help I could get. Thanks a lot in advance! 

 

 

 

  • I had the same problem, and of course I also could not figure out the problem. until now.....

     

    The problem was a factory reset. My R7000 is connected to the router of my ISP, on that ISP-router I configured a port-redirect to a specific IP adress (that of my R7000). Due to this factory reset, my R7000's IP adress changed, so the solution was quite simple, change the redirect to the new IP adress and it worked again.

     

    I hope this information helps.

7 Replies

  • Hi everyone again,

     

    I have now managed to connect but without DDNS. This shows everything else is correctly configured but DDNS. This is not ideal because whenever my ISP changes my IP address I will have to reconfigure to use VPN again. Does anyone know whether there is still an issue with NETGEAR Nighthawk R7000 router in relation to Dynamic DNS settings, and how to go around the issue if possible? 

     

    Thanks

  • I had the same problem, and of course I also could not figure out the problem. until now.....

     

    The problem was a factory reset. My R7000 is connected to the router of my ISP, on that ISP-router I configured a port-redirect to a specific IP adress (that of my R7000). Due to this factory reset, my R7000's IP adress changed, so the solution was quite simple, change the redirect to the new IP adress and it worked again.

     

    I hope this information helps.

    • fabraga's avatar
      fabraga
      Tutor

      Thanks "2nafish2"! 

       

      That makes a lot of sense. If you don't mind me to ask (because although I have learned a lot about networking in the past few days - I'm more like a software developer), in the ISP-router you are talking about FORWARDING, right (not PORT FILTERS and not PORT TRIGGERS)? Because I am looking into my ISP-router ADVANCED tab trying to figure out where exactly to set that redirection. 

       

      If it is the "Forwarding" option, I have a few things to set: "Public Port Range" (?-?), "Target IP Address" (I already know), "Target Port Range" (another ?-?), and "Protocol" (I selected "Both" for UDP and TCP). So, my confusion is only with the first and third ones (Public and Target Port ranges). What would be the range? I guess I need to do it for all ports but which are the minimum and maximum values? Would that be safe? 

       

      Many thanks anyways! You already pointed where the problem is located. 

       

      Fabricio Braga

      • fabraga's avatar
        fabraga
        Tutor

        Never mind! I finally figured it out. Working now! :)