Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    WAN Interface OpenVPN Bug question..

    Scheduled Pinned Locked Moved OpenVPN
    42 Posts 4 Posters 6.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      comet424
      last edited by comet424

      thats why the 3rd line of my first post states i dealing 2 issues on Pfsense that seem to be a Bug Problem with Pfsense.. since i asked also if its a Check mark that i have to check off on an option etc..

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        If you are screwing around with static source ports you might very well be creating a conflict there.

        There is no set limitation to running simultaneous clients and servers. Look at your client configurations. You should NOT be setting local ports there.

        You should probably check "Use random local port" when you export the remote access client configurations.

        You are going to have to post complete OpenVPN configurations for the server and all of your clients - or at least the ones you are trying to run.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate @comet424
          last edited by

          @comet424 said in WAN Interface OpenVPN Bug question..:

          WAN Interface (DHCP) ------>>> NORDVPN (works) ------>>> OpenVPN Remote Access (Doesnt)
          WAN Interface (PPPOE) ----->>> NORDVPN(doesn work) ----->>> OpenVPN Remote Access (Works)

          I have never seen a wan that you can just switch from PPPoE to DHCP. They are provisioned either one way or the other. So I don't know what you're talking about here either.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • C
            comet424
            last edited by comet424

            it says it right there click it DHCP or PPPOE on the WAN InterFace0_1532811387562_firewall7.jpg

            like i stated
            Set WAN Interface to DHCP 1 works other doesnt
            Set WAN Interface to PPPOE vice versa

            1 Reply Last reply Reply Quote 0
            • C
              comet424
              last edited by comet424

              thats why i asked is this a Bug issue or is a check off a checkbox issue..
              since NordVPN said its a pfsense problem its not there side problem that Nord VPN cant get the ip address

              also if made sense if you watched my youtube video is shows you exactly the problem you click WAN and choose it.. it was all in that video i posted scroll up
              and like i said it doesnt show the OpenVPN Remote Access for the network just the NordVPN

              4th Message from the Top of the article showed you exactly my issues shows you the video i posted

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                No I get that. But the ISP connection is generally provisioned one way or the other. Your setting has to match the provisioning.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  Yeah. Not going to be watching any videos. Sorry.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • C
                    comet424
                    last edited by

                    not sure what you mean match the provisioning.. but thanks anyways

                    so guess back to being i guess a pfsense bug in the software
                    here i was hoping it be a Check this box off if you use PPPOE for VPN Services or uncheck this box if you using DCHP

                    hopefully someone else might have an answer for this frustrating issue

                    1 Reply Last reply Reply Quote 0
                    • DerelictD
                      Derelict LAYER 8 Netgate
                      last edited by

                      @comet424 said in WAN Interface OpenVPN Bug question..:

                      Bell Canada

                      Don't forget that you probably have another device in front of the router that might be causing your problems. Some "Home Hub" or something.

                      Countless people using OpenVPN clients and PPPoE. Not sure what Nord's problem is. They have to blame something I guess.

                      Chattanooga, Tennessee, USA
                      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                      Do Not Chat For Help! NO_WAN_EGRESS(TM)

                      1 Reply Last reply Reply Quote 0
                      • C
                        comet424
                        last edited by

                        before the pfsense router is just the ADSL modem.. and i also disabled the firewall on the modem
                        and all NordVPN says is "it seems that once you are connected with the PPPoE, the VPN cannot get the correct gateway to access the Internet and therefore fails. The only proper way to resolve this issue is to use the DHCP on the WAN interface."
                        after they tried trouble shooting this issue over a week trying this trying that etc

                        jahonixJ 1 Reply Last reply Reply Quote 0
                        • C
                          comet424
                          last edited by

                          i figured it was a firewall issue but OpenVPN Remote access to my network only works when i use PPPOE on pfsense which is directly to the modem.. but then nord doesn/// i disabled what i could in the 2wire Adsl Modem from Bell.. but it didnt help as that be for the DHCP side
                          so im baffled.. i googled report a bug and it sent me to Redmine site but nothing to post and the Development page on netgate forum.. so i repost this topic there is hopes one of the development team knows how to fix it..
                          its probably some port you gotta play with or such
                          as i also want to use my Unraid box for VM to host websites so my dynamic DNS name needs to work too to point to my pfsense and redirect to the Web server.. but thats another subject for a later date lol

                          1 Reply Last reply Reply Quote 0
                          • C
                            comet424
                            last edited by

                            im just frustrated spent over a week different configurations they having me downgrade pfsense to try older version check this off turn that on NAT this Rule that etc.. and i no better off
                            just frustrating

                            1 Reply Last reply Reply Quote 0
                            • DerelictD
                              Derelict LAYER 8 Netgate
                              last edited by

                              They are blaming pfSense when it is probably not pfSense.

                              Chattanooga, Tennessee, USA
                              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                              Do Not Chat For Help! NO_WAN_EGRESS(TM)

                              1 Reply Last reply Reply Quote 0
                              • C
                                comet424
                                last edited by comet424

                                ya i dunno
                                no one trully has an answer for me
                                and then i dont know why Pfsense OpenVPN Remote Access only works in PPPOE on the Wan interface and not DHCP mode.. cuz then both would work..
                                but no one has an answer for that either... i figured its a check box... or its a Bell restrict ports but when PPPOE its open i guess..
                                so no one can answer that either... you just wanna bang your head off the wall

                                ill probably re ask question in OpenVPN how do you get OpenVPN Remote Access to your network work on a DHCP Wan interface.. god knows i asked everything else lol

                                1 Reply Last reply Reply Quote 0
                                • jahonixJ
                                  jahonix @comet424
                                  last edited by

                                  @comet424 said in WAN Interface OpenVPN Bug question..:

                                  before the pfsense router is just the ADSL modem.. and i also disabled the firewall on the modem

                                  Is your ADSL modem in router or in modem mode?

                                  1 Reply Last reply Reply Quote 0
                                  • C
                                    comet424
                                    last edited by comet424

                                    its a combo
                                    its a wireless wired Modem router...
                                    Manufacturer: 2Wire, Inc.
                                    Model: 2701HG-G Gateway
                                    and i set the firewall settiing to dmz 0_1532819206609_modem1.JPG

                                    if it ever works its the time ill have a stiff drink lol

                                    jahonixJ 1 Reply Last reply Reply Quote 0
                                    • jahonixJ
                                      jahonix @comet424
                                      last edited by

                                      @comet424 So you have a shitty ISP router in front of your pfSense and it even says "host must be set to DHCP mode to receive the new IP address..."
                                      Why would you even try setting pfSense's WAN to PPPoE?

                                      Did you set any additional "Allow individual applications" in that 2wire thingy?

                                      1 Reply Last reply Reply Quote 0
                                      • C
                                        comet424
                                        last edited by

                                        this is Bells best modem they offer for ADSL they replace them all with these

                                        ugh like i said
                                        when you set WAN to PPPOE thats the only way OpenVPN-Remote Access to the network when you Setup OpenVPN server so you can access your local network from off site.... like i said it only works in PPPOE mode and then NordVPN doesnt work.

                                        and when i set Pfsense Wan Interface to DHCP.. i get my 192.168.2.10 ip address.
                                        then NordVPN on the Pfsense works and gets a new VPN location IP Address.. but then the Pfsense OpenVPN Server to access the local network is now not accessable. its hangs for TLS negociating.
                                        and i use a dynmaic DNS so i get my phyiscal ISP ip but it still gets stuck

                                        as for allow individual. i not at home right now to test it now
                                        but i going to do it allows port range so i going to try TCP range 1-65550 and UDP 1-65550 and see if that fixs it after that i out of ideas to try

                                        1 Reply Last reply Reply Quote 0
                                        • C
                                          comet424
                                          last edited by

                                          forgot to post it earlier here is the firewall status.. it should be all ports open
                                          0_1532821432587_firewall8.JPG

                                          1 Reply Last reply Reply Quote 0
                                          • C
                                            comet424
                                            last edited by

                                            guess ill see if one of my friends who is on Bell has one of the older modems that has no router built in if that fix's both issues

                                            but ya i stumped why 1 works 1 way and not the other. that they should both work both ways..
                                            i appreciate the input least i getting some input

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.