OPNsense Forum

English Forums => Virtual private networks => Topic started by: danzi on May 14, 2024, 12:24:42 PM

Title: OpenVPN connected / no network access
Post by: danzi on May 14, 2024, 12:24:42 PM
Hi everybody,

i am new to the opnsense game. I read a lot of tutorials und official step-by-step guides even from opnsense direct. But i am lost and hope that you can help me here.

I have a UDM Router with an OpenVPN Server running. What i want is that my OpnSense connects to that Server and sends all their traffic trough that tunnel so that only my homenetwork is registering the traffic. Also that i can access my local smart home for example.

So what i did was that i took the information from https://docs.opnsense.org/manual/vpnet.html#legacy-vpn-openvpn-client-server (https://docs.opnsense.org/manual/vpnet.html#legacy-vpn-openvpn-client-server) and from here https://www.comparitech.com/blog/vpn-privacy/openvpn-client-opnsense/ (https://www.comparitech.com/blog/vpn-privacy/openvpn-client-opnsense/) and tried to set it up.

At first glance it worked. When i go to "VPN"-"OpenVPN"-ConnctionStatus" it tells me connected. Also when i look into my UDM, i see thet the Opnsense is connected. But from there on nothing is working. I cannot access the local LAN sites in my Home network even though that my "Live View Log Files" on the Opnsense tells me "et out anything from firewall host itself (force gw)" that everything is going through.

What am i missing here?

I have the Authorities and the Certificate set up. [check]
I have the interface set up [check]
I have the NAT set up [check]
I have the Ruleset set up [check] -> only difference to the how-to guides i set it up as floating

I upload the VPN Legacy Settings in this post too for review.

After a few trial an error moves, i thought i will set up the same thing on my phone with the same credentials ans the same keys and it worked directly with no hesitation.
So it must be something on opnsense.

Anybody any clue where my mistake ist?

Greetings Andreas
Title: Re: OpenVPN connected / no network access
Post by: Saarbremer on May 14, 2024, 02:14:02 PM
Hi,

according to the second link you provided I am confused why don't pull routes and Don't add/remove routes are enabled. No routes to VPN means no route to what you wanted.

Why did you enable them?
Title: Re: OpenVPN connected / no network access
Post by: danzi on May 14, 2024, 03:23:54 PM
Quote from: Saarbremer on May 14, 2024, 02:14:02 PM
Hi,

according to the second link you provided I am confused why don't pull routes and Don't add/remove routes are enabled. No routes to VPN means no route to what you wanted.

Why did you enable them?

To be honest, i have no idea, i just followed the how-to in that situation.
I unchecked these two options now. But still same problem.

In the Live View, i see the NAT rules etc but still i can not access anything.
Title: Re: OpenVPN connected / no network access
Post by: danzi on May 14, 2024, 03:36:30 PM
I found my error....

The encription cipher AES-256-CBC was set to "none". After changing that, it worked.
Topic can be closed