OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 23.7 Legacy Series »
  • OpenVPN Outbound NAT
« previous next »
  • Print
Pages: [1]

Author Topic: OpenVPN Outbound NAT  (Read 5687 times)

allan

  • Newbie
  • *
  • Posts: 45
  • Karma: 11
    • View Profile
OpenVPN Outbound NAT
« on: August 06, 2023, 05:11:15 am »
I just upgraded to 23.7 and migrated my OpenVPN remote access server to the new instance config. I am not completely certain, but I thought "OpenVPN networks" was listed under Outbound NAT automatic rules. Was removing it something intentional or a bug? I created a manual outbound NAT rule which got me going, but I want to mention it here just in case.
Logged

Andi.K

  • Newbie
  • *
  • Posts: 9
  • Karma: 0
    • View Profile
Re: OpenVPN Outbound NAT
« Reply #1 on: August 17, 2023, 03:14:18 pm »
Same here, I think this is a bug.

Version   23.7.1_3

The NAT rule is important when, for example, the default GW is redirected. Without NAT no internet access is possible
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17747
  • Karma: 1620
    • View Profile
Re: OpenVPN Outbound NAT
« Reply #2 on: August 17, 2023, 03:28:28 pm »
NAT rules are manual now with IPsec/OpenVPN MVC pages.


Cheers,
Franco
Logged

RES217AIII

  • Jr. Member
  • **
  • Posts: 69
  • Karma: 2
    • View Profile
Re: OpenVPN Outbound NAT
« Reply #3 on: August 19, 2023, 08:14:00 am »
Good morning,
how does this outgoing NAT rule have to look like?
I'm having problems with my OPN servers: Both the old server configuration and a new instance do not connect.
Thank you
« Last Edit: August 19, 2023, 08:19:30 am by b.unkel »
Logged
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

allan

  • Newbie
  • *
  • Posts: 45
  • Karma: 11
    • View Profile
Re: OpenVPN Outbound NAT
« Reply #4 on: August 19, 2023, 05:57:05 pm »
The NAT rule is only for connecting OpenVPN users to the Internet. Access to internal resources would not go through the NAT.

Here is how I have it set under Firewall > NAT > Outbound:

1. Set the Mode to "Hybrid outbound NAT rule generation"
2. Create a Manual rule and set the following options:
  • Interface = WAN
  • TCP/IP Version = IPv4
  • Protocol = any
  • Source address = OpenVPN net
  • Translation / target = Interface address
  • (optional) Log = checked
Logged

RES217AIII

  • Jr. Member
  • **
  • Posts: 69
  • Karma: 2
    • View Profile
Re: OpenVPN Outbound NAT
« Reply #5 on: August 20, 2023, 11:04:55 am »
Thank you!
Logged
Supermicro M11SDV-4C-LN4F AMD EPYC 3151 4x 2.7GHz RAM 8GB DDR4-2666 SSD 250GB

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 23.7 Legacy Series »
  • OpenVPN Outbound NAT
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2