All Collections
Router Setup Guides
Tomato
OpenVPN Setup Guide for Tomato (TUN-TCP)
OpenVPN Setup Guide for Tomato (TUN-TCP)
Richard avatar
Written by Richard
Updated over a week ago

Step 1

Login on your Tomato router > VPN Tunneling > OpenVPN Client.


Step 2

Click on Client 1 > Basic. Enter the following values:

Enable Start with WAN
Interface Type: TUN
Protocol: TCP
Server Address: se-sto.pvdata.host
You'll find the server list here.
Port: 443
Firewall: Automatic
Authorization Mode: TLS
Enable Username/Password Authentication
Username: (your PrivateVPN registered email address)
Password: (your password)
Extra HMAC authorization (tls-auth): Disabled
Enable Create NAT on tunnel.


Step 3

Click on Advanced tab and enter the following settings:

Poll Interval: 0
Disable Redirect Internet traffic
Accept DNS configuration: Strict
Encryption Cipher: AES-256-CBC
Compression: Adaptive
Disable Verify server certificate (tls-remote)


Step 4

Enter the following lines for Custom Configuration:

comp-lzo
auth SHA256
remote-cert-tls server
ncp-disable
tls-crypt ta.key
<tls-crypt>
-----BEGIN OpenVPN Static key V1-----
a49082f082ca89d6a6bb4ecc7c047c6d
428a1d3c8254a95206d38a61d7fbe659
84214cd7d56eacc5a60803bffd677fa7
294d4bfe555036339312de2dfb1335bd
9d5fd94b04bba3a15fc5192aeb02fb6d
8dd2ca831fad7509be5eefa8d1eaa689
dc586c831a23b589c512662652ecf1bb
3a4a673816aba434a04f6857b8c2f8bb
265bfe48a7b8112539729d2f7d9734a7
20e1035188118c73fef1824d0237d557
9ca382d703b4bb252acaedc753b12199
f00154d3769efbcf85ef5ad6ee755cbe
aa944cb98e7654286df54c793a8443f5
363078e3da548ba0beed079df633283c
efb256f6a4bcfc4ab2c4affc24955c18
64d5458e84a7c210d0d186269e55dcf6
-----END OpenVPN Static key V1-----
</tls-crypt>

Step 5

Click on Keys tab and enter the following value for Certificate Authority:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Step 6

Scroll down and click on Save and then Start Now.

Wait 10 seconds and after that you should be connected.

Did this answer your question?