Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Fresh Install: TLS handshake failed

    Scheduled Pinned Locked Moved OpenVPN
    37 Posts 7 Posters 8.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DerelictD
      Derelict LAYER 8 Netgate
      last edited by

      Have you, by chance, done any searching on network share discovery across subnets?

      What, exactly, are you trying to do that is not working?

      Details matter here. Please be specific.

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • K
        kpa
        last edited by

        What he means is all of the service discovery protocols are broadcast or multicast and almost none of those protocols work across routers because routers can not forward the broadcast/multicast traffic, this is by design. Some more clever protocols such as mDNS do actually support discovery across routers but that is because they implement a proxy that listens for and forwards the service announcements across subnets. The avahi package implements mDNS on FreeBSD and I believe also on pfSense.

        1 Reply Last reply Reply Quote 0
        • D
          darrenyorston
          last edited by

          @Derelict:

          Have you, by chance, done any searching on network share discovery across subnets?

          What, exactly, are you trying to do that is not working?

          Details matter here. Please be specific.

          I am trying to access Unraid SMB shares from my laptop whilst connected via OpenVPN. I cannot do this, I cannot see or access any shared resources.

          I have searched for solutions, people on the unRaid forums said that it isan OpenVPN/Freenas problem.

          1 Reply Last reply Reply Quote 0
          • K
            kpa
            last edited by

            @darrenyorston:

            @Derelict:

            Have you, by chance, done any searching on network share discovery across subnets?

            What, exactly, are you trying to do that is not working?

            Details matter here. Please be specific.

            I am trying to access Unraid SMB shares from my laptop whilst connected via OpenVPN. I cannot do this, I cannot see or access any shared resources.

            I have searched for solutions, people on the unRaid forums said that it isan OpenVPN/Freenas problem.

            SMB is windows file sharing and it uses broadcast based discovery which doesn't traverse routers as already noted. You can access the shares directly by IP address or host name assuming you have DNS set up properly and your client system can resolve the DNS name of the server hosting the shares.

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              people on the unRaid forums said that it isan OpenVPN/Freenas problem.

              And people on the pfSense forum are telling you exactly what the problem is.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • D
                darrenyorston
                last edited by

                @kpa:

                @darrenyorston:

                @Derelict:

                Have you, by chance, done any searching on network share discovery across subnets?

                What, exactly, are you trying to do that is not working?

                Details matter here. Please be specific.

                I am trying to access Unraid SMB shares from my laptop whilst connected via OpenVPN. I cannot do this, I cannot see or access any shared resources.

                I have searched for solutions, people on the unRaid forums said that it isan OpenVPN/Freenas problem.

                SMB is windows file sharing and it uses broadcast based discovery which doesn't traverse routers as already noted. You can access the shares directly by IP address or host name assuming you have DNS set up properly and your client system can resolve the DNS name of the server hosting the shares.

                I am unable to access the shares via IP address. I receive a message 'Access is Denied'.

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  Sounds like there is probably something on the server preventing access from subnets other than the local network.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by

                    I can tell you for sure that I access smb shares from openvpn all the time!!  Every day almost.. I could for sure fire up a freenas instance and access it from the vpn.  So your saying you can access your freenas webgui? Or via ssh but you can not access your shares?

                    edit:  Well I can tell you 1 thing for sure, just fired up freenas and when set to dhcp it does not set a default route??  So yeah going to be impossible to access it from any other network, like a remote vpn user.  You would need to setup default gateway if you want to access it remotely that is for sure.

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      Ok.. So at work and connected to my vpn.. So you can see I can ping my freenas by name, and traceroute shows I am connected via a tunnel.  The latency is high because I have to bounce off a proxy that is in Jax, FL while I am in chicago and then back to chicago where my pfsense is..

                      But as you can see I can access the share off freenas just fine via name, and even create a folder, etc.

                      freenasaccess.jpg
                      freenasaccess.jpg_thumb

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                      1 Reply Last reply Reply Quote 0
                      • rodrigoinfocasper.com.brR
                        rodrigoinfocasper.com.br
                        last edited by

                        Hello,

                        I finished installing openvpn and I did not exactly do it wrong, by chance I managed to solve it.

                        May 2 15:13:15 openvpn 85741 Options error: –server directive network/netmask combination is invalid
                        May 2 15:13:15 openvpn 85741 Use --help for more information.
                        May 2 15:13:24 openvpn 3650 Options error: --server directive network/netmask combination is invalid
                        May 2 15:13:24 openvpn 3650 Use --help for more information.

                        obrigado,
                        Rodrigo

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.