PureVPN Protocol-discontinuation, Mikrotik router useless?!

Hi, I cant connect to my preferred servers anymore with a mikrotik router because purevpn went into “Discontinuing PPTP, L2TP, and SSTP Protocols” mode
…anyone else having this issue?

https://support.purevpn.com/protocol-discontinuation
What protocols are we supporting?
PureVPN will support IKEv2, IPSec and OpenVPN (TCP & UDP) as primary protocols on all vpn locations.

Why can’t Mikrotik not connect via OpenVPN??? but almost any other device can!!! :open_mouth: :confused:
https://support.purevpn.com/article-categories/getting-started/router

You are owning one of the shittiest VPNs now and crying that Mikrotik doesn’t support specific VPN protocol? How about NordVPN/Surfshark? They do support lots of them, including OpenVPN TCP and IPSEC/IKE2 which works incredibly well and there is a guide too. http://forum.mikrotik.com/t/nordvpn-ipsec-ikev2-killswitch-for-ros6/144817/1

What’s wrong with IKEv2 and IPsec? Use that.

…I’ve got no idea how to implement it on the router and I’m not familiar with IKEv2 and IPse at all!! :confused:

lol…I’m totally crying about it, I bought a 5 year membership (and it wasent cheap!!! :neutral_face: ) before this nonsense started with PureVPN

But still …Mikrotik need to wake-up… no offense

Time to learn IKEv2 / IPsec then, crying doesn’t help.
How does MikroTik need to wake up if PureVPN supports protocols also supported by RouterOS ?

Just out of curiosity? Is the word “crying” the new trend word lately on this forums, I have to admit, I haven’t been in this forums in ages until today…

Ehman crying.PNG
:confused:

Not even PureVPN themself can connect to a PureVPN vpn account with a mikrotik router using OpenVPN protocol..

PureVPN support told me, they’ve tried it themself, It doesnt work on mikrotik…I tried it… it doesnt work…

with all the other routers it works… mikrotik… nope! .. it even works on DD-WRT .. omw!!
https://support.purevpn.com/article-categories/getting-started/router

OpenVPN in RouterOS should be ditched as it is a flaky proprietary implementation that is only guaranteed to work between RouterOS’s, along the protocols PureVPN deprecated.
PureVPN supports other protocols that you, yourself, mentioned in the first post.
MikroTik supports those protocols, use them.
MikroTik ain’t useless because you don’t know how to set it up.
Also IKEv2/IPsec is hardware offloaded on some MikroTik hardware, it might help with speeds :slight_smile: Other protocols are not hardware offloaded.
Plenty of guides over the internet for IKEv2, search for the presentations done by Nikita Tarikin on MUM regarding IKEv2, there are two of them I think, they provide a good starting point.
Along the documentation on MikroTiks wiki and forum.
Have fun learning!
Cheers.

I would not support anyone using Surfshark. They tried to be Woke and canceled their advertisments with And Ngô based on what one person was telling. It was all a lie.

https://mobile.twitter.com/laralogan/status/1436178873994076162

As others have said the Mikrotik OpenVPN implementation is limited - no UDP, no LZO compression, no TLS authentication, no authentication without username/password, no support for newer encryption and hash algorithms. In particular PureVPN requires TLS authentication so it cannot work.

It seems odd to deprecate SSTP and L2TP/IPsec - they even say “SSTP can be considered as secure as OpenVPN when used in conjunction with robust cipher and ephemeral keys” and “IPSec over L2TP, when properly implemented, has no major known vulnerabilities” (they have misnamed the protocol it is actually L2TP over IPsec).

Only PPTP using MSCHAPv2 authentication and MPPE encryption is well known to be insecure, it also seems odd that the majority of their setup guides are still for PPTP which they no longer support.

IKEv2 should be possible on a Mikrotik if they bothered to state what authentication, encryption and hash algorithms they support for IKEv2.

PureVPN is supporting IKEv2 fine so what is the fuss about? NordVPN has not yet reacted to my support request why since a while some NordVPN servers don’t let ICMP 3-4 through.

IKEv2 works fine and they use LetsEncrypt certificates: DST Root CA X3 (LetsEncryptX3.crt) and USERTrustRSACertificationAuthority.crt Comodo-root.crt

https://crt.sh/?id=3509153 two link on thst page to download the pem/crt
And: https://crt.sh/?q=ptoserver.com

You can use this manual: https://forum.mikrotik.com/viewtopic.php?f=2&t=178452&p=879291#p879265

Yes, it seems stupidly odd to deprecate SSTP mainly…
SSTP worked perfectly and its a quick config on the router, same as PPTP!!! No issues…and no PH.D required to setup SSTP for example to IKEv2!!! :confused:

Are PureVPN out of their minds!!

And I WILL NOT install that PureVPN app on my pc ever again like I’ve done in the past…

I know.. that’s the issue here…Even I myself am saying OpenVPN is limited in mikrotik, that’s why I said, Mikrotik needs to wakeup!

And I refuse to use anything else then Mikrotik!!! :confused:
..

it also seems odd that the majority of their setup guides are still for PPTP which they no longer support.

Yea that’s indeed odd! …I was about to say that aswell…

Stubborn.
If i were PureVPN I’d just give you the money back.
And you can go choose another VPN provider that deprecates SSTP soon, let them deal with you.

I’ve been using PureVPN for many many many years… and like I said, I’m sitting with a fresh 5yr account that I bought like last year or something and its not due to expire anytime soon…

That NordVPN guide link is irrelevant and useless to PureVPN IKEv2 setup
http://forum.mikrotik.com/t/nordvpn-ipsec-ikev2-killswitch-for-ros6/144817/1

PROBLEM…
Preparation
3. Import NordVPN CA to your router:
/tool fetch url=“https://downloads.nordcdn.com/certificates/root.der
/certificate import file-name=root.der name=“NordVPN CA” passphrase=“”

So we all have established now, Here is the problem… Mikrotik OVPN Client is lacking features clearly!!!, perfectly explained by tdw

“As others have said the Mikrotik OpenVPN implementation is limited - no UDP, no LZO compression, no TLS authentication, no authentication without username/password, no support for newer encryption and hash algorithms. In particular PureVPN requires TLS authentication so it cannot work.”

Sigh, the manual is relevant but you have do some extra work to adapt it to other VPN providers.