Webgui empty response through vpn
topperblues last edited by topperblues
Hi to all,
I have configured pfsense as openvpn client.
I use this VPN to access pfsense console and pfsense webgui, i can access to pfsense via ssh but when i try to access webconfig i get redirect from http to https, the browser alert for my fake ssl certificate and then empty response.
If i change the protocol from https to http i can open web config but it's really really slow (sometimes i get timeout) when other sites on the same vpn are not slow.
curl https://18.104.22.168/ -Lvk * Trying 22.214.171.124... * TCP_NODELAY set * Connected to 126.96.36.199 (188.8.131.52) port 443 (#0) * ALPN, offering h2 * ALPN, offering http/1.1 * Cipher selection: ALL:!EXPORT:!EXPORT40:!EXPORT56:!aNULL:!LOW:!RC4:@STRENGTH * successfully set certificate verify locations: * CAfile: /etc/ssl/cert.pem CApath: none * TLSv1.2 (OUT), TLS handshake, Client hello (1): * TLSv1.2 (IN), TLS handshake, Server hello (2): * NPN, negotiated HTTP1.1 * TLSv1.2 (IN), TLS handshake, Certificate (11): * TLSv1.2 (IN), TLS handshake, Server key exchange (12): * TLSv1.2 (IN), TLS handshake, Server finished (14): * TLSv1.2 (OUT), TLS handshake, Client key exchange (16): * TLSv1.2 (OUT), TLS change cipher, Client hello (1): * TLSv1.2 (OUT), TLS handshake, Unknown (67): * TLSv1.2 (OUT), TLS handshake, Finished (20): * LibreSSL SSL_connect: SSL_ERROR_SYSCALL in connection to 184.108.40.206:443 * stopped the pause stream! * Closing connection 0 curl: (35) LibreSSL SSL_connect: SSL_ERROR_SYSCALL in connection to 220.127.116.11:443
... 18.104.22.168/24 22.214.171.124 UGS 220 1500 ovpnc2 126.96.36.199 link#12 UH 0 1500 ovpnc2 188.8.131.52 link#12 UHS 0 16384 lo0 ...
OpenVpn firewall rules:
Protocol SourcePort DestinationPort Gateway Queue IPv4 TCP * * * * WANFIBRA none
server 184.108.40.206 network 220.127.116.11/24 pfsense ip 18.104.22.168 client used for testing 22.214.171.124
Do you have any idea why I can not access the web config and why is it so slow?
Thanks, bye bye!
topperblues last edited by
The problem was the MTU of VPN!
I had MTU 1500 but max of my openvpn machine was 1472.
to openvpn client config and all works!