Sun Sep 15 18:34:47 2019 TCP/UDP: Preserving recently used remote address: [AF_INET][redacted]:1194Sun Sep 15 18:34:47 2019 UDP link local (bound): [AF_INET][undef]:0Sun Sep 15 18:34:47 2019 UDP link remote: [AF_INET][public ip of router at location where VM server is hosted]:1194Sun Sep 15 18:35:48 2019 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)Sun Sep 15 18:35:48 2019 TLS Error: TLS handshake failed
1 0.000000 [The public IP of my router while at home] [VM's IP on LAN interface] OpenVPN 60 MessageType: P_CONTROL_HARD_RESET_CLIENT_V22 2.351956 [The public IP of my router while at home] [VM's IP on LAN interface] OpenVPN 60 MessageType: P_CONTROL_HARD_RESET_CLIENT_V2
Frame 2: 60 bytes on wire (480 bits), 60 bytes captured (480 bits)Ethernet II, Src: [redacted], Dst:[redacted]Internet Protocol Version 4, Src: [The public IP of my router while at home], Dst: [VM's IP on LAN interface]User Datagram Protocol, Src Port: 61713, Dst Port: 1194OpenVPN Protocol
If you use WAN only where do you "exit" OPNSense? Unless you stay inside the appliance ..I have a setup running internally and I use LAN only. I use it for DNS/DHCP and I recently setup OpenVPN as well and I am currently setting up HAProxy with Let's Encrypt as reverse proxy. Works very well. Using the WAN interface means you have to start looking into firewall rules/NAT etc (configure it or disable it) doesn't it? ANd you would have to go out to your LAN network via the WAN interface as well.