Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN connects but can't ping anything on the inside except for the firewall itself

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 350 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      Kajetan321
      last edited by

      Hello I’m trying to get OpenVPN access setup. I used the wizard to create the configuration and firewall rules. I’m able to connect to the VPN, even ping the firewall itself but that’s it. I Can’t ping anything on the inside.

      Here’s my configuration and firewall rules. What steps can I take forward to troubleshoot the issue? They only thing unusual is I have the High Availability setup with CARP, so I have a second identical firewall on standby.

      68823487-45e8-4223-9108-10ab91999f8f-image.png

      All settings are set to defaults except the following:
      
      General OpenVPN Server Information
      Description:	Org OpenVPN
      
      Cryptographic Settings
      Data Encryption Algorithms:	AES-256-GCM
      Hardware Crypto:		Intel RAND engine
      
      Tunnel Settings
      IPv4 Tunnel Network:	        172.18.0.0/16
      IPv4 Local Network		172.22.0.0/16
      Inter-Client Communication	[v]
      Duplicate Connections		[v]
      Duplicate Connection Limit	[5]
      
      Advanced Client Settings
      DNS Default Domain		lan.org.com
      DNS Server 1			172.22.1.1
      DNS Server 2			172.22.1.2
      
      Traffic from clients to server
      Firewall Rule			[v]
      
      Traffic from clients through VPN
      OpenVPN rule			[v]
      
      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @Kajetan321
        last edited by

        @Kajetan321 said in OpenVPN connects but can't ping anything on the inside except for the firewall itself:

        Here’s my configuration and firewall rules.

        This are the WAN rules, but did you also add a pass rule on the OpenVPN tab? The wizard should have done this automatically though.

        However, most probably the destination device itself is blocking the access from outside of its subnet. So you have to configure its firewall properly.

        K 1 Reply Last reply Reply Quote 0
        • K
          Kajetan321 @viragomann
          last edited by

          @viragomann Here is the OpenVPN tab:

          d73061bc-c188-4aca-951e-d2acca9f8847-image.png

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.