Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't connect to my own OpenVPN server now

    Scheduled Pinned Locked Moved OpenVPN
    25 Posts 8 Posters 10.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sos
      last edited by

      @TechnologicalLiving:

      I think that you're trying this via celluar, correct?  If so, your carrier wouldn't be T-Mobile would it?

      Yes to cellular (3G), but no to T-Mobile… it's 2-degrees/vodafone (NZ)

      1 Reply Last reply Reply Quote 0
      • H
        hp408
        last edited by

        I have exactly the same problem. Tried it with android and surface 4. T-Mobile and Vodafone (both LTE) cellular network: I can't connect to the openvpn-server.

        Server listens to port 1194:

        [2.3.2-RELEASE][root@pfs.local.net]/root: sockstat -L | grep :1194
        root     openvpn    16667 6  udp4   95.88.x.x:1194    *:*
        [2.3.2-RELEASE][root@pfs.local.net]/root:
        
        

        WAN-Rule:
        (red0 = WAN)

        OpenVPN-Rule:

        I deactivated my WAN-failover and all outgoing vpn-connections (all on other ports) for testing but it didn't work.  :-\

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          Packet capture on RED0 for UDP 1194 and try to connect and verify connection attempts are actually arriving on RED0 Address.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • S
            sos
            last edited by

            I've reset my pfSense setup back to factory default, and just re-set up my openVPN server using the wizard, before setting any other services or firewall rules up.

            Glad to report that all is working, using my android phone and linux clients, via a 3G connection.

            As I carefully rebuild the rest of my configs, I'll keep checking functionality and may retrospectively be able to figure out what caused the issue in my case. Perhaps there was some stale firewall rule or state. Will report back if I find anything, but in the meantime, thanks for all the suggestions.

            1 Reply Last reply Reply Quote 0
            • H
              hp408
              last edited by

              @sos:

              I've reset my pfSense setup back to factory default, and just re-set up my openVPN server using the wizard, before setting any other services or firewall rules up.

              Glad to report that all is working, using my android phone and linux clients, via a 3G connection.

              As I carefully rebuild the rest of my configs, I'll keep checking functionality and may retrospectively be able to figure out what caused the issue in my case. Perhaps there was some stale firewall rule or state. Will report back if I find anything, but in the meantime, thanks for all the suggestions.

              Yesterday, I did the same: reset to factory defaults -> start new configuration with openvpn-server first and now it works ???
              After setting up the ovpn-server, I reconfigured all (nat-)rules, snort, webproxy, vpn-clients, outgoing vpn-failover and wan-failover and did a connection test after every single step, without any errors. Now the configuration is exactly the same as before and openvpn-server is reachable. So I
              have no idea what the problem might have been.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.