Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Accessing ONVIF cameras on OpenVPN tunnel

    NAT
    2
    5
    100
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      NinthWave last edited by

      My home network is on 10.0.0.0/24
      All my devices have static IP.

      The OpenVPN Tunnel is on 10.0.8.0/24

      I successfully connect to the VPN server from my Android Phone using OpenVPN apps.

      My actual need is specifically to access the camera feeds but I guess it will be the same for all other devices after that.

      I did some reading on Netgate Docs and am still confused on how to access the devices.

      • One port forward rule for each device ?
      • Outbound NAT?

      Thank you for helping me,

      johnpoz 1 Reply Last reply Reply Quote 0
      • johnpoz
        johnpoz LAYER 8 Global Moderator @NinthWave last edited by johnpoz

        Do your camera's not have gateways set? Once you connect to the vpn - you would be able to connect to anything on your 10.0.0/24 network.. As long as you setup the local network in the vpn configuration.

        If your camera's do not have gateways - or have some filtering that only allow local access then sure you could do an outbound nat on your lan so that your vpn client looks like its coming from your pfsense IP on the lan..

        For example this outbound nat allows my vpn clients to talk to that 192.168.9.101 address, since it has no gateway set.. Traffic looks like it cam from my pfsense lan IP 192.168.9.253

        vpnoutboundnat.png

        1 Reply Last reply Reply Quote 1
        • N
          NinthWave last edited by NinthWave

          @johnpoz said in Accessing ONVIF cameras on OpenVPN tunnel:

          Wow, that was quick. I do have gateway on the cameras:
          723598cc-e2ef-4165-8554-80291b5a75b1-image.png

          If my Android phone is within the LAN, the Onvifer app connects to 10.0.0.40:554.

          While I am on LTE and connected through OpenVPN client, the same Onvifer app keeps saying : unable to connect to 10.0.0.40:554 so either there is something I do not understand or something is not enabled somewhere.

          N 1 Reply Last reply Reply Quote 0
          • N
            NinthWave @NinthWave last edited by

            @ninthwave
            SOLVED

            I changed two things so I don't know which one did it.

            1. I initially set LAN to 10.0.0.1/24 instead of 10.0.0.0/24 which I corrected.

            2. I initially did not give a dns domain name and I corrected by entering the same domain as in General Setup/Domain.

            I can now access the camera feeds.

            johnpoz 1 Reply Last reply Reply Quote 0
            • johnpoz
              johnpoz LAYER 8 Global Moderator @NinthWave last edited by

              Since your accessing via IP, dns had nothing to do with it.

              But a wrong setting for your lan network in openvpn settings yeah that would do it. 10.0.0.1/24 is a host address not a network. So yeah that wouldn't of worked.

              1 Reply Last reply Reply Quote 1
              • First post
                Last post

              Products

              • Platform Overview
              • TNSR
              • pfSense Plus
              • Appliances

              Services

              • Training
              • Professional Services

              Support

              • Subscription Plans
              • Contact Support
              • Product Lifecycle
              • Documentation

              News

              • Media Coverage
              • Press
              • Events

              Resources

              • Blog
              • FAQ
              • Find a Partner
              • Resource Library
              • Security Information

              Company

              • About Us
              • Careers
              • Partners
              • Contact Us
              • Legal
              Our Mission

              We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

              Subscribe to our Newsletter

              Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

              © 2021 Rubicon Communications, LLC | Privacy Policy