Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Another 'can't ping lan from VPN' scenario

    OpenVPN
    2
    6
    453
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      spittlbm
      last edited by

      I've had a working OpenVPN setup for years. Last week access to our LAN stopped. I'm not aware of any changes we've made nor has restoring a previous backup fixed it. Clients are able to connect to the VPN, receive an IP, but cannot connect to our LAN.

      My first guess is firewall, but it looks right to me:
      alt text

      Configs are unchanged:
      alt text
      and
      alt text

      Thanks for the input!

      1 Reply Last reply Reply Quote 1
      • RicoR
        Rico LAYER 8 Rebel Alliance
        last edited by

        Overlapping IPsec eating the traffic?

        -Rico

        S 1 Reply Last reply Reply Quote 0
        • S
          spittlbm @Rico
          last edited by

          @rico No rules are defined under IPsec

          1 Reply Last reply Reply Quote 1
          • RicoR
            Rico LAYER 8 Rebel Alliance
            last edited by Rico

            Uh, you really need to use net30?
            Have you tried in subnet mode?
            I'd wipe away that auth-nocache option, too.

            -Rico

            S 1 Reply Last reply Reply Quote 1
            • S
              spittlbm @Rico
              last edited by

              @rico Net30 was a remnant from years of in-place upgrades.

              I made those two changes, reinstalled OpenVPN (v2.4x), and it fired right up. Thanks for the suggestion!

              1 Reply Last reply Reply Quote 1
              • RicoR
                Rico LAYER 8 Rebel Alliance
                last edited by

                Glad you have it working again. ☺

                -Rico

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.