fabian,
thank's for your reply.
I changed the port already to 4443. Still no luck.
Here's what I tried so far:
I created a new cert for the TCP-server and the TCP-client. I added a new server with the server wizard. Additional rules are added automatically. I added a new client. As I did this alle before successfully many times on different OPNsense installations with UDP and port 1194, I'm quite sure the config of server and client is corresponding. It might be additional params are needed (like "float", "mssfix", ...) which I overlooked or don't know.
For the test I disabled the openvpn UDP-client and the UDP-server. Only the TCP-server and TCP-client are running. Now trying to connect a laptop as road-warrior from a different location does not work. Trying the same on UDP 1194 does work.
It could also be, that additional rules are needed or the rules aren't in the correct order.
The OPNsense is behind a FritzBox as an exposed host. The openvpn client connects via static ip to the OPNsense - again, working flawless on UDP 1194.
I'd really like to know, what am I missing? Isn't there nobody out there with a similar configuration who could point me in the right direction?
regards,
stefan
thank's for your reply.
I changed the port already to 4443. Still no luck.
Here's what I tried so far:
I created a new cert for the TCP-server and the TCP-client. I added a new server with the server wizard. Additional rules are added automatically. I added a new client. As I did this alle before successfully many times on different OPNsense installations with UDP and port 1194, I'm quite sure the config of server and client is corresponding. It might be additional params are needed (like "float", "mssfix", ...) which I overlooked or don't know.
For the test I disabled the openvpn UDP-client and the UDP-server. Only the TCP-server and TCP-client are running. Now trying to connect a laptop as road-warrior from a different location does not work. Trying the same on UDP 1194 does work.
It could also be, that additional rules are needed or the rules aren't in the correct order.
The OPNsense is behind a FritzBox as an exposed host. The openvpn client connects via static ip to the OPNsense - again, working flawless on UDP 1194.
I'd really like to know, what am I missing? Isn't there nobody out there with a similar configuration who could point me in the right direction?
regards,
stefan
"