• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Remote Access VPN Service Won't Start

OpenVPN
2
8
862
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    DeathGrin
    last edited by Aug 2, 2018, 4:47 PM

    Hello all,

    I have tried to create a remote VPN access tunnel with openvpn wizard in pfsense 2.4.3.

    It just stays at Service not running, Unable to contact Daemon. I try to start it but it won't start. I even have site to site vpn's up and running.

    Thank you for any help

    1 Reply Last reply Reply Quote 0
    • D
      DeathGrin
      last edited by Aug 3, 2018, 3:00 AM

      So i was finally able to get the service to start. It was because I had a /30 for subnet in vpn tunnel. Changed it to a /29 and it worked fine. But now I still can't get ovpn to connect. I have a firewall rule for WAN and OpenVPN for port 1194. Any ideas?

      1 Reply Last reply Reply Quote 0
      • D
        Derelict LAYER 8 Netgate
        last edited by Aug 4, 2018, 2:11 PM

        Maybe post more information instead of "won't connect." Logs or something.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • D
          DeathGrin
          last edited by Oct 12, 2018, 11:18 PM

          Hey so I was finally able to successfully connect while on my LAN but as soon as I am outside my network. I just continue to get a timeout. What and where do I get the logs that will help? (sorry newb with pfsense)

          1 Reply Last reply Reply Quote 0
          • D
            Derelict LAYER 8 Netgate
            last edited by Oct 12, 2018, 11:43 PM

            Did you add a pass rule on WAN for the UDP port from source any to WAN address?

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • D
              DeathGrin
              last edited by Oct 13, 2018, 12:10 AM

              Yep. Have rule to allow 1194 from any in WAN. And any any for OpenVPN

              1 Reply Last reply Reply Quote 0
              • D
                Derelict LAYER 8 Netgate
                last edited by Oct 13, 2018, 2:58 AM

                Well, it sounds like the connections aren't making it for some reason. Packet capture on the WAN for that traffic and see if it's arriving. If not, figure out why.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • D
                  DeathGrin
                  last edited by Oct 13, 2018, 6:15 PM

                  Thanks for the help. Finally figured out (after doing tcpdump on my lan port) that the connection request was being forwarded to one of my internal systems. I forgot I had port forwarded a range of ports to a system and 1194 was one of them. Specified the ports exactly instead of port range and was able to connect right away. So for anyone facing similar issue, check your port forwarding and make sure you don't have the openvpn port you're using in a port forward to a different system.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.