OPNsense Forum

English Forums => General Discussion => Topic started by: litusbdn on June 07, 2018, 03:02:28 pm

Title: Open ports openvpn (Road warrior)
Post by: litusbdn on June 07, 2018, 03:02:28 pm
Good afternoon,

On my opnsense device, I have configured a VPN for a user that connects externally. On other occasions, the vpn has worked perfectly for me.

Now I find myself, that I can not connect from outside (It's a new router).

-If I ping the public IP, I get an answer.
-If I realize a telnet to the public ip, with the port 1194, I do not obtain result.

The difference is that this new router has no DMZ, that is, I have to open the ports (NAT) in the router to point to the IP WAN of the opnsense, and the opnsense made a second NAT in the OPNsense device so that can access the local network. If I do it with an RDP protocol, I can connect.

RDP: PUBLIC IP: 9898 ---> (ROUTER) ---> WAN IP OPNSENSE ----> LAN DEVICE - WORKS ---

If I do it with the VPN port, it does not work.

I suspect that the problem lies in the fact that I need to open a port other than 1194.
Can somebody help me?

Thank you.  :D
Title: Re: Open ports openvpn (Road warrior)
Post by: bartjsmit on June 07, 2018, 10:30:31 pm
Can you set the router in bridge mode? That makes OPNsense responsible for the NAT and avoids having two firewalls.

Bart...
Title: Re: Open ports openvpn (Road warrior)
Post by: litusbdn on June 07, 2018, 11:15:08 pm
Hello,

It is not possible to put the router in bridge mode, since the PBX is currently outside the firewall, and the guest wifi itself leaves the router of the internet service provider
Title: Re: Open ports openvpn (Road warrior)
Post by: litusbdn on June 07, 2018, 11:16:07 pm
The ports needed by the VPN server are only 1194 UDP ?, it is not necessary to open any other port, or range of ports?