Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unable to establish an OpenVPN connection (bug?)

    OpenVPN
    openvpn config
    2
    3
    727
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      trigg3r
      last edited by

      I had 2 OpenVPN servers up and running for a couple of years. I created a new OpenVPN server and for the first time I tried to assign its interface as an OPT interface. However, this configuration did not work: no errors were reported, but the connection between the OpenVPN client and server did not take place ("TLS key negotiation failed to occur within 60 seconds").

      At the end of the story I found that, for some reason, after assigning an OpenVPN server interface as an OPT interface the servers stop responding to the configured NIC. To solve the problem it is necessary to go into the settings of each server (VPN > OpenVPN > Servers), set a different NIC in "Endpoint Configuration | Interface" (e.g. "Any") and then re-set the correct NIC (typically "WAN").

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan @trigg3r
        last edited by

        @trigg3r

        Your OpenVPN should be listing on a WAN type interface.
        To be more precise : on the interface where the OpenVPN client connections comes in.

        Why should this be a OPT interface ?
        if the OPTx is also a WAN type interface, then ok.

        @trigg3r said in Unable to establish an OpenVPN connection (bug?):

        after assigning an OpenVPN server interface as an OPT interface the servers

        Why would you want do that ?

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        T 1 Reply Last reply Reply Quote 0
        • T
          trigg3r @Gertjan
          last edited by

          Your OpenVPN should be listing on a WAN type interface.

          So it is ... but after a few hours I discovered that pfsense had lost this setting. Set it to "Any", set it back to "WAN" and the problem was solved.

          Why would you want do that ?

          Virtual Private Networks — OpenVPN — Assigning OpenVPN Interfaces | pfSense Documentation

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.