Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Openvpn sometimes not working with different ISP

    Scheduled Pinned Locked Moved OpenVPN
    6 Posts 2 Posters 624 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      sreyas
      last edited by

      Hi,
      I am using PfSense 2.4.5-RELEASE (amd64) built on Tue Mar 24 15:25:50 EDT 2020 FreeBSD 11.3-STABLE, but I am constantly facing issues with some of our clients who are not with the same ISP. But if I check the OpenVPN logs I can't find any relevant info, I strongly believe my ISP is blocking this with a certain threshold. I had configured OpenVPN with DynDNS since I don't have any static IP, but everything works normally if I change the IP on my WAN interface.

      If the users are with the same service provider there are no issues, but if it's different ISP- those users are still connected but there would be serious throttling after a few hours.

      So as a workaround I need to reset the WAN interface to get a new IP for my WAN and it will work normal for all clients irrespective of ISP. Can someone suggest some permanent solution for this?

      Regards
      Sreyas

      S 1 Reply Last reply Reply Quote 0
      • S Offline
        sreyas @sreyas
        last edited by

        @sreyas said in Openvpn sometimes not working with different ISP:

        Hi,
        I am using PfSense 2.4.5-RELEASE (amd64) built on Tue Mar 24 15:25:50 EDT 2020 FreeBSD 11.3-STABLE, but I am constantly facing issues with some of our clients who are not with the same ISP. But if I check the OpenVPN logs I can't find any relevant info, I strongly believe my ISP is blocking this with a certain threshold. I had configured OpenVPN with DynDNS since I don't have any static IP, but everything works normally if I change the IP on my WAN interface.

        If the users are with the same service provider there are no issues, but if it's different ISP- those users are still connected but there would be serious throttling after a few hours.

        So as a workaround I need to reset the WAN interface to get a new IP for my WAN and it will work normally for all clients irrespective of ISP. Can someone suggest some permanent solution for this?

        Regards
        Sreyas

        Have to add one more point, I have multiple site to site VPN this issue will affect those locations too - which are not from the same provider.

        S 1 Reply Last reply Reply Quote 0
        • S Offline
          sreyas @sreyas
          last edited by

          can someone help me with this?

          JKnottJ 1 Reply Last reply Reply Quote 0
          • JKnottJ Offline
            JKnott @sreyas
            last edited by

            @sreyas

            Since you've provided very little info and my crystal ball is busted, it's hard to know what the issue is.

            Try using nmap to port scan the destination. You can install it in pfSense, as well as on computers running Linux, Windows, etc.. You can also try configuring OpenVPN to use http, instead of the default udp port 1194.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • S Offline
              sreyas
              last edited by

              @JKnott said in Openvpn sometimes not working with different ISP:

              You can also try configuring OpenVPN to use http, instead of the default udp port 1194.

              HI JKnott, could you please elaborate "try configuring OpenVPN to use Http, instead of the default UDP port 1194." please, it would be a great help. Since I am struggling with this issue

              JKnottJ 1 Reply Last reply Reply Quote 0
              • JKnottJ Offline
                JKnott @sreyas
                last edited by

                @sreyas

                On the server configuration page, you select the protocol and local port. You'll then have to run client export again.

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.