Untangle Networks [home]


Go Back   Untangle Forums > Application Forums > OpenVPN

Closed Thread
 
LinkBack Thread Tools
Old 06-25-2009, 02:10 PM   #1 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default OpenVPN connects, stays connected, but can't access network resources

Hello,

Untangle 6.2 user here. I've got the OpenVPN system configured for the defaults (172.16.0.0, default network).

It didn't want to connect before, but that turned out to be the DSL combo router/modem crap my ISP gave me (they refuse to give me a straight modem). I did a port forward of 1194 UDP to the internal static IP address of the Untangle server, and bingo: connects great, assigns an IP of 172.16.0.5. At this point it stays connected, however I cannot ping or access anything in the internal network; PC's, NAS, etc. I actually cannot even ping the Untangle server itself.

Any ideas? This is so smooth in how it works for configuration, but obviously a bummer that I cannot connect to anything.

FYI the network behind the Untangle box that I'm attempting to access is a class C 192.168.0.0 network.
polaris20 is offline  
Old 06-25-2009, 03:15 PM   #2 (permalink)
Untangle Junkie
 
dmorris's Avatar
 
Join Date: Nov 2006
Location: San Mateo, CA
URLs submitted: 10
Posts: 6,694
dmorris is on a distinguished road
Default

make sure that your network is in the 'exported hosts' list.

does untangle show that the client is connected?
what does the routing table on the host?
is the remote host on a different ip network than your network?

welcome to the forums
dmorris is online now  
Old 06-25-2009, 09:05 PM   #3 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default

Quote:
Originally Posted by dmorris View Post
make sure that your network is in the 'exported hosts' list.

does untangle show that the client is connected?
what does the routing table on the host?
is the remote host on a different ip network than your network?

welcome to the forums
1. Yes, that network is exported.
2. Yes, it shows as being connected
3. Remote client is on different IP range than local
4. Need to get the routing table

I just thought of something that could be potentially boneheaded of me; do I need a class B, with say a local 192.168.0.0 on the local side with untangle assigning something like a 192.168.2.0 on the remote client?

I think I made a fundamental networking blunder.
polaris20 is offline  
Old 06-26-2009, 01:45 AM   #4 (permalink)
Untangle Ninja

 
WebFooL's Avatar
 
Join Date: Jan 2009
Location: Sweden (Eskilstuna)
URLs submitted: 57
Posts: 2,933
WebFooL is on a distinguished road
Send a message via MSN to WebFooL
Default

Hi,

From a client on the Internel interface tracert the VPN Ip (172.16.0.5)
Post Output.

From the VPN client tracert a internal IP.
Post Output.

On the Untangle go to Config>Networking> Advanced then Route.
Post a Screenshot.
WebFooL is offline  
Old 06-26-2009, 09:20 AM   #5 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default

Here's the route table from the UT box. Need to still get the tracert outputs.
Attached Images
File Type: png Picture 1.png (15.5 KB, 24 views)
polaris20 is offline  
Old 06-26-2009, 10:15 AM   #6 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default

I think I know what the problem is......stupidly high latency. See attached tracert from outside VPN client.

I got access to my NAS on the inside of my network; however it showed the two available shares (in Windows explorer) but when I actually tried to access it, it says it was inaccessible. The tracert leads me to believe the latency is really what's causing the problems.
polaris20 is offline  
Old 06-30-2009, 10:08 AM   #7 (permalink)
Untanglit
 
Join Date: Sep 2007
Posts: 24
dbrine is on a distinguished road
Default

Are you able to access your resources now? I'm having the same problem
dbrine is offline  
Old 06-30-2009, 10:52 AM   #8 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default

No, still having the same issue. It connects just fine, immediately. But everything times out. Very disappointing, because I'm so close!!
polaris20 is offline  
Old 06-30-2009, 11:08 AM   #9 (permalink)
Untangle Ninja
 
sky-knight's Avatar
 
Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 7
Posts: 9,951
sky-knight is on a distinguished road
Default

Polaris...

You are running NAT off the DSL router then forwarding to an Untangle Bridge?

If this is the case, you need a static route in the DSL router to redirect local traffic bound for the VPN segment to the Untangle.

Then, I must ask what you are using for a VPN client, and what OS it is installed on.
__________________
Intouch Technology
Rob Sandling, BS:SWE, MCP
Office: 480-272-9889
rob@intouchtechllc.com
sky-knight is online now  
Old 06-30-2009, 11:20 AM   #10 (permalink)
Untanglit
 
Join Date: Apr 2009
Posts: 10
polaris20 is on a distinguished road
Default

Quote:
Originally Posted by sky-knight View Post
Polaris...

You are running NAT off the DSL router then forwarding to an Untangle Bridge?

If this is the case, you need a static route in the DSL router to redirect local traffic bound for the VPN segment to the Untangle.

Then, I must ask what you are using for a VPN client, and what OS it is installed on.
1. Yes, port forwarded from DSL router/modem to UT box via port 1194, as noted in Wiki. Have not done the static route from DSL to UT though.
2. Prepackaged OpenVPN software downloaded from the UT box; I wanted to get that running before I muck with it on Ubuntu and OS X (w/ Viscosity)
polaris20 is offline  
Closed Thread

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 03:07 PM.


© 2010 Untangle, Inc. All Rights Reserved.   SEO by vBSEO 3.3.2