Host to network virtual interface problem.
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Host to network virtual interface problem.
Hello,
I am having a big problem here, I can not ping the lan interface from server to client, only the virtual interface.
from client to server everything seems to be normal.
my configuration is:
server
port 5000
proto udp
dev tun
ca ca.crt
cert Server.crt
key Server.key
dh dh2048.pem
server 192.168.0.0 255.255.255.0
keepalive 10 120
push "route 192.168.200.0 255.255.255.0"
comp-lzo
persist-key
persist-tun
status /var/log/openvpn-status.log
verb 9
mute 20
client-to-client
client
client
dev tun
proto udp
port 5000
remote XXX.XXX.XXX.XXX
ifconfig 192.168.0.2 192.168.0.1
tls-client
nobind
cd /etc/openvpn
ca ca.crt
cert client.crt
key client.key
keepalive 10 120
comp-lzo
persist-key
persist-tun
status openvpn-status.log
verb 9
mute 20
push "route 192.168.2.0 255.255.255.0"
I am having a big problem here, I can not ping the lan interface from server to client, only the virtual interface.
from client to server everything seems to be normal.
my configuration is:
server
port 5000
proto udp
dev tun
ca ca.crt
cert Server.crt
key Server.key
dh dh2048.pem
server 192.168.0.0 255.255.255.0
keepalive 10 120
push "route 192.168.200.0 255.255.255.0"
comp-lzo
persist-key
persist-tun
status /var/log/openvpn-status.log
verb 9
mute 20
client-to-client
client
client
dev tun
proto udp
port 5000
remote XXX.XXX.XXX.XXX
ifconfig 192.168.0.2 192.168.0.1
tls-client
nobind
cd /etc/openvpn
ca ca.crt
cert client.crt
key client.key
keepalive 10 120
comp-lzo
persist-key
persist-tun
status openvpn-status.log
verb 9
mute 20
push "route 192.168.2.0 255.255.255.0"
- janjust
- Forum Team
- Posts: 2703
- Joined: Fri Aug 20, 2010 2:57 pm
- Location: Amsterdam
- Contact:
Re: Host to network virtual interface problem.
comment out this line
in the client config and reconnect.ifconfig 192.168.0.2 192.168.0.1
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Re: Host to network virtual interface problem.
helo,
I have comment out the configuration and didn't work.
Do you have any more ideas?
I am still trying to ping with no response.
My vpn client is inside the gateway in case help on something.
thanks anyway.
I have comment out the configuration and didn't work.
Do you have any more ideas?
I am still trying to ping with no response.
My vpn client is inside the gateway in case help on something.
thanks anyway.
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Host to network virtual interface problem.
please post a simple diagram of your setup
Michael.
Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
- janjust
- Forum Team
- Posts: 2703
- Joined: Fri Aug 20, 2010 2:57 pm
- Location: Amsterdam
- Contact:
Re: Host to network virtual interface problem.
also, post the client log file when connecting, remove the line
from the client side (it does not do anything) and make sure there is no firewall blocking access from the tun device:push "route 192.168.2.0 255.255.255.0"
Code: Select all
iptables -I INPUT -i tun+ -j ACCEPT
iptables -I OUTPUT -o tun+ -j ACCEPT
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Re: Host to network virtual interface problem.
client------------------------------router---------------- web------------------- server
[] ------------------------------------[]---------------------()---------------------------[]
[] ------------------------------------[]---------------------()---------------------------[]
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Re: Host to network virtual interface problem.
The tun is established, my logs do not point any errors.
I will check the router and I will post back in case I found something wrong.
I will check the router and I will post back in case I found something wrong.
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Host to network virtual interface problem.
>I can not ping the lan interface from server to client
eeem you mean the clients lan ip?
can you please post details about your setup? (lan/vpn ips for BOTH server client)
and what connectivity you are trying to achieve.
Michael.
eeem you mean the clients lan ip?
can you please post details about your setup? (lan/vpn ips for BOTH server client)
and what connectivity you are trying to achieve.
Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Re: Host to network virtual interface problem.
In the client I can not ping the eth0 which is 192.168.2.3, I only can ping the virtual network 192.168.0.0.
my server network is 192.168.200.0 and my server ip is 192.168.200.3
I can ping the client on 192.168.0.0 but I can not ping my lan interface 192.168.2.3.
have you seen something like this?
my server network is 192.168.200.0 and my server ip is 192.168.200.3
I can ping the client on 192.168.0.0 but I can not ping my lan interface 192.168.2.3.
have you seen something like this?
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Host to network virtual interface problem.
if you issue netstat -nr on your client,do you see the static route
for 192.168.200 network?
did you enabled ip forwarding on server?
also for testing disable iptables on server,
what os is your client and which version of openvpn did you used?
Michael.
for 192.168.200 network?
did you enabled ip forwarding on server?
also for testing disable iptables on server,
what os is your client and which version of openvpn did you used?
Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
-
- OpenVPN User
- Posts: 48
- Joined: Sun Oct 03, 2010 4:55 pm
Re: Host to network virtual interface problem.
I didnt enabled ipforward on my sysctl sorry, silly stuff.
Thank you for your pancience.
Thank you for your pancience.
- maikcat
- Forum Team
- Posts: 4200
- Joined: Wed Jan 12, 2011 9:23 am
- Location: Athens,Greece
- Contact:
Re: Host to network virtual interface problem.
ok closing topic.
Michael.
Michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"
Long live Dino Dini (Kick off 2 Creator)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
"objects in mirror are losing"