You receive a “tls handshake failed” error message when your BR500 is unable to authenticate the OpenVPN certificate that was generated originally for your VPN client. This can be due to an older certificate or multiple users using the same certificate to connect to your BR500’s OpenVPN. To fix this issue, you must add remote-cert-tls server to the OpenVPN file that is generated from the BR500. Changing this file allows the server to check the certificate again when connecting to the OpenVPN.
To correct a tls handshake error:
- Launch a web browser from a computer or mobile device that is connected to the router network.
- Enter https://www.routerlogin.net.
A login window opens.
- Enter the router user name and password.
Note: The user name is admin. The password is the one that you specified when you set up your router. If you didn’t change the password, enter password.
- Tap or select ADVANCED > Open VPN.
The Open VPN Service page displays.
- Make sure that the Open VPN Service check box is selected.
- In the OpenVPN configuration package download section, click the For Smart Phone button and download the router’s VPN configuration files to your iOS device, Android device, or computer.
- If you download the configuration files to a computer, unzip the configuration files that you downloaded and send the files to your iOS device or Android device.
The configuration files include the .ovpn file.
Note: For more information, see your user manual.
- Launch the OpenVPN Connect app and import the .ovpn file.
- In the task bar, select the openvpn client.
- Select edit config.
A text editor opens.
- Add the line remote-cert-tls server to the file.
- Click Save.
You can now reconnect to the BR500’s OpenVPN.