Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN does not connect through WAN

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 1 Posters 823 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JKnottJ
      JKnott
      last edited by

      I have set up OpenVPN and it works when I connect through the LAN port. However, when I try to connect via the WAN, I can't. Packet Capture shows the attempts, but no response. I get 5 lines of "0011 1... = Opcode: P_CONTROL_HARD_RESET_CLIENT_V2 (0x07)"

      There is no indication of the attempt in either OpenVPN status or the OpenVPN logs. It's as though the firewall rules aren't letting the packets through. Here is the rule:

      e4a1a4f7-962d-4baa-80c4-8e701cdb8b5b-image.png

      This is with pfSense 2.6.0.

      PfSense running on Qotom mini PC
      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
      UniFi AC-Lite access point

      I haven't lost my mind. It's around here...somewhere...

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @JKnott
        last edited by JKnott

        @jknott

        Weird. I have a rule to block ULA (fc::/7) on WAN. As an experiment, I disabled it. I was able to connect. I enabled it again and can still connect. So, something strange was happening with that rule that disabling/enabling it cleared. I'll have to try some more later on, to ensure it's still working. Also, why would an IPv6 rule affect an IPv4 connection?

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        JKnottJ 1 Reply Last reply Reply Quote 0
        • JKnottJ
          JKnott @JKnott
          last edited by

          @jknott

          I just noticed ULA is covered by the RFC 1918 rule, so I deleted my ULA rule.

          PfSense running on Qotom mini PC
          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
          UniFi AC-Lite access point

          I haven't lost my mind. It's around here...somewhere...

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.