access webgui on LAN port from openvpn TAP

Started by silent_mastodon, July 02, 2016, 08:17:42 AM

Previous topic - Next topic
July 02, 2016, 08:17:42 AM Last Edit: July 02, 2016, 08:19:44 AM by silent_mastodon
Greetings

I have a TAP-style OpenVPN set up, and I can ping around remotely, access LAN servers, etc. Everything seems good.

The only oddity is that while I can ping the opnsense LAN interface, I can't access the webgui in a browser.

The firewall rules for the OpenVPN server, the bridge interface, and the LAN are all completely open.

It's not really super-necessary (I can access the webgui remotely through a NAT rule) it's weird to me that I can't access it "from inside" the LAN network.

Any ideas? I can access the webgui from a local LAN machine. It's only remote hosts through the TAP that can't.

what are the firewall rules on the WAN side ? are you Nating any ports ?
DEC4240 – OPNsense Owner

The only NAT rule on the WAN is a port redirect for accessing the webgui remotely.

There is a WAN firewall rule for allowing remote machines to access the OpenVPN. That is all.