Pinging from one client machine to another client machine
-
Hi
I have setup OpenVPN server and is working fine. Just curious to know why the clients of OpenVPN servers are not able to ping to their respective tunneled IP address ?Client 1 IP: 10.0.8.2
Client 2 IP: 10.0.8.3Client 1> ping 10.0.8.3
Pinging 10.0.8.3 with 32 bytes of data:
Request timed out.
Request timed out.Regards
-
Hi,
?!
edit :
The firewall accepts ICMP packets ? For the correct destination ?
-
Hi
@Gertjan
Thanks for the reply. The options are set/checked. I have setup pfsense on its LAN interface only without firewall.So i think ICMP packets are already allowed.
Regards
-
@DD11 said in Pinging from one client machine to another client machine:
So i think ICMP packets are already allowed.
OpenVPN clients are not connected to the LAN interface, so the firewall rules on the LAN interface are not used.
The OpenVPN is different way of connecting to the router/vpn server pfSense, so a special interface is connected. I guess you already saw it : OpenVPN.
Check out the OpenVPN "server" video from Netgate on Youtube. Several exist, as OpenVPN became a popular subject since March 2020.
-
If the --client-to-client option (Inter-client communication) is active, these packets are not exposed to the server host (pfSense in this case).
Firewall rules will therefore not have any effect.
https://community.openvpn.net/openvpn/wiki/HowPacketsFlowCheck the client(s) firewall.