• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Unable to establish an OpenVPN connection (bug?)

Scheduled Pinned Locked Moved OpenVPN
openvpn config
3 Posts 2 Posters 747 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T
    trigg3r
    last edited by Feb 27, 2023, 8:36 AM

    I had 2 OpenVPN servers up and running for a couple of years. I created a new OpenVPN server and for the first time I tried to assign its interface as an OPT interface. However, this configuration did not work: no errors were reported, but the connection between the OpenVPN client and server did not take place ("TLS key negotiation failed to occur within 60 seconds").

    At the end of the story I found that, for some reason, after assigning an OpenVPN server interface as an OPT interface the servers stop responding to the configured NIC. To solve the problem it is necessary to go into the settings of each server (VPN > OpenVPN > Servers), set a different NIC in "Endpoint Configuration | Interface" (e.g. "Any") and then re-set the correct NIC (typically "WAN").

    G 1 Reply Last reply Feb 27, 2023, 9:13 AM Reply Quote 0
    • G
      Gertjan @trigg3r
      last edited by Feb 27, 2023, 9:13 AM

      @trigg3r

      Your OpenVPN should be listing on a WAN type interface.
      To be more precise : on the interface where the OpenVPN client connections comes in.

      Why should this be a OPT interface ?
      if the OPTx is also a WAN type interface, then ok.

      @trigg3r said in Unable to establish an OpenVPN connection (bug?):

      after assigning an OpenVPN server interface as an OPT interface the servers

      Why would you want do that ?

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      T 1 Reply Last reply Feb 27, 2023, 11:01 AM Reply Quote 0
      • T
        trigg3r @Gertjan
        last edited by Feb 27, 2023, 11:01 AM

        Your OpenVPN should be listing on a WAN type interface.

        So it is ... but after a few hours I discovered that pfsense had lost this setting. Set it to "Any", set it back to "WAN" and the problem was solved.

        Why would you want do that ?

        Virtual Private Networks — OpenVPN — Assigning OpenVPN Interfaces | pfSense Documentation

        1 Reply Last reply Reply Quote 0
        3 out of 3
        • First post
          3/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received