Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Error TLS

    OpenVPN
    3
    8
    303
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      shubakas last edited by

      Hello,

      I have a 192.168.26.1 modem router with a 192.168.26.10 dmz connected to the pfsense WAN in 192.168.26.10
      I have 2 separate network LAN1 (192.168.27.0) and LAN2 (192.168.28.0)

      I configured openvpn on pfsense as shown on this tutorial to connect to LAN1
      everything went well
      I downloaded the installation package via Client Export
      on the client computer I installed the package and replaced the local ip with the public ip
      but I get an error:
      TLS key negociation failed
      TLS handshake failed

      I have rules that are created automatically in the firewall

      I do not understand what blocks, do you have an idea please?

      thanks

      1 Reply Last reply Reply Quote 0
      • Rico
        Rico LAYER 8 Rebel Alliance last edited by

        What is your pfSense showing in the OpenVPN Server Log? Any notice for the OpenVPN Client connection?
        When your pfSense is not directly connected to the Internet, maybe you need to forward the OpenVPN Ports from your Edge Router 192.168.26.1 to pfSense WAN 192.168.26.10 ?

        -Rico

        2x Netgate XG-7100 | 11x Netgate SG-5100 | 6x Netgate SG-3100 | 2x Netgate SG-1100

        1 Reply Last reply Reply Quote 0
        • S
          shubakas last edited by

          @rico said in Error TLS:

          What is your pfSense showing in the OpenVPN Server Log? Any notice for the OpenVPN Client connection?
          When your pfSense is not directly connected to the Internet, maybe you need to forward the OpenVPN Ports from your Edge Router 192.168.26.1 to pfSense WAN 192.168.26.10 ?

          No nothing to the log
          I don't think then the WAN is configured like a DMZ on the router

          1 Reply Last reply Reply Quote 0
          • V
            viragomann last edited by

            The mentioned error is typical for a client not reaching the server.

            Use Packet capture from the Diagnostic menu to investigate if the vpn packets arrive on the WAN interface to get sure.
            Maybe they are blocked by the ISP or anywhere else.

            1 Reply Last reply Reply Quote 0
            • S
              shubakas last edited by

              Nothing in packet capture 😯

              1 Reply Last reply Reply Quote 0
              • V
                viragomann last edited by

                To check if the DMZ works on the router try to access your public address on other common ports like 80 or 443 while capturing on WAN.

                1 Reply Last reply Reply Quote 0
                • S
                  shubakas last edited by

                  I try but nothing in packet capture
                  the dmz don't working i think
                  i try to configure the modem like a bridge

                  1 Reply Last reply Reply Quote 0
                  • S
                    shubakas last edited by

                    Thank you very much, I configured the modem bridge and pfsense PPPoE and all is ok !!!
                    Thanks

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post