Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cannot access WIFI hosts on OpenVPN

    Scheduled Pinned Locked Moved OpenVPN
    12 Posts 4 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by

      also what is providing the wifi... Is its some wifi router plugged in via its wan port to your 192.168.0 network and doing nat?

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      J 1 Reply Last reply Reply Quote 0
      • J
        Jin84 @chpalmer
        last edited by Jin84

        @chpalmer that's why i said to not mind the unnecessary rules, I will clean those later :)
        I did add both subnets to the setting IPv4 Local network(s) separated by coma when i created the vpn.
        I also added these rules in the custom options based on some suggestions i found in some other post:
        Screen Shot 2019-06-04 at 12.02.55 PM.png
        It's not a road warrior setup, I'm still testing it for now to get it to work, I left pretty much everything default.

        1 Reply Last reply Reply Quote 0
        • J
          Jin84 @johnpoz
          last edited by

          @johnpoz I plugged an asus GT-AC5300 from the WIFI interface to its wan port, correct.
          I disabled the firewall, left the DHCP but I tried to disable that and was not making much difference.
          NAT I can find only these settings, everything is pretty much default, I just disabled the firewall.
          NAT_Passthrough.jpg

          1 Reply Last reply Reply Quote 0
          • chpalmerC
            chpalmer
            last edited by

            Your WIFI access point is still doing NAT. Can you go to the WAN tab and see what your options are?

            Triggering snowflakes one by one..
            Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

            J 1 Reply Last reply Reply Quote 0
            • J
              Jin84 @chpalmer
              last edited by Jin84

              @chpalmer This is what I have. NAT is enabled, but if I disable I notice I cannot browse online anymore from the wifi hosts.
              WAN.jpg
              Thank you.

              1 Reply Last reply Reply Quote 0
              • chpalmerC
                chpalmer
                last edited by

                Under WAN Connection Type is there an "Access Point Mode" or similar option?

                Once you put it in access mode you will have to reset all your clients behind the WIFI unit..

                https://www.asus.com/us/support/FAQ/1015009/

                Triggering snowflakes one by one..
                Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                1 Reply Last reply Reply Quote 0
                • J
                  Jin84
                  last edited by Jin84

                  So the only way is to set it up in AP Mode? I thought that may do it but wanted to try different options first.

                  GertjanG 1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @Jin84
                    last edited by

                    @Jin84 said in Cannot access WIFI hosts on OpenVPN:

                    I thought that may do it but wanted to try different options first.

                    Like a router after router setup ? No way ...
                    Who is doing DHCP here ? pfSense or your Wifi router ? Should be pfSense.

                    You don't need a router after a router setup, and later on, you don't want a router after pfSense. Just put the Wifi thing in AP mode, and done with it.

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    1 Reply Last reply Reply Quote 0
                    • J
                      Jin84
                      last edited by

                      I set up the router in AP mode, now I am able to ping the hosts, however seems I cannot access anymore the AP webui, I'll try later to assign a static ip.

                      Thank you!

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        To use a wifi router as just an AP.. You don't need to do anything with their nonsense interface... Just turn off its dhcp server - connect it to your network via one of its LAN Ports!!! Set an IP on this lan port to work on your network.

                        Most of these nonsense native firmwares do not even allow you to put a gateway on the lan side interface.. So no you wouldn't be able to get to it remotely from another network.

                        Put some 3rd party on it like ddwrt or openwrt... If that doesn't work an it will not allow you to put a gateway on the lan interface - then source nat it on pfsense so that traffic going to the AP looks like it comes from the pfsense interface IP in that network.

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.