OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 20.1 Legacy Series »
  • OpenVPN road warrior error TLS handshake failed
« previous next »
  • Print
Pages: [1]

Author Topic: OpenVPN road warrior error TLS handshake failed  (Read 2552 times)

penley

  • Newbie
  • *
  • Posts: 26
  • Karma: 1
    • View Profile
OpenVPN road warrior error TLS handshake failed
« on: July 14, 2020, 08:10:14 pm »
OPNsense version: 20.1.8_1

I'm trying to setup the OpenVPN road warrior. I've setup 3 different OpenVPN servers, two using the manual method https://docs.opnsense.org/manual/how-tos/sslvpn_client.html, and one using the OpenVPN wizard.

I have setup OpenVPN servers to use a different port than the defualt OpenVPN such as 11941 and the other two VPN servers use a different port as well. I've set this up before doing that same thing and never had an issue.
However, with this setup I am unable to VPN successfully when hitting the WAN, receive an error TLS Handshake failed. I've checked the TLS keys and they are correct. I also changed one of the VPN server ports to 1194 and when I did that I was able to VPN successfully.

I'll keep researching to try and solve this, but wanted to ask here if anyone had any ideas?

Kind regards,
penley
Logged

penley

  • Newbie
  • *
  • Posts: 26
  • Karma: 1
    • View Profile
Re: OpenVPN road warrior error TLS handshake failed
« Reply #1 on: July 14, 2020, 08:18:04 pm »
Ok, I think I've figured this out.
I have a NAT rule that is port forwarding rtp 10000-20000 for the pbx. I need to change the openvpn ports because they are within that range.

Update:- changing server OpenVPN ports worked.
« Last Edit: July 14, 2020, 09:37:36 pm by penley »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 20.1 Legacy Series »
  • OpenVPN road warrior error TLS handshake failed
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2