I'm trying to setup an OpenVPN connection between a RUT240 and a router, in this case a PfSense.
The connection is fine, I can reach the remote network from the RUT and from the computer connected in the RUT:
Computer 192.168.10.20 -> RUT 192.168.10.1 -> OpenVPN tunnel 192.168.93.0 -> PfSense 192.168.2.1 -> Computers in the network
The problem is that I need to be able to reach the computer 192.168.10.20 from the PfSense, and the other computers in 192.168.2.0/24 and obviously, the computer can't get a 192.168.93.x address as it is the tunnel address. So I need to be able to reach any 192.168.10.x address from 192.168.2.x
And for a reason I don't get, it doesn't work.
The RUT obtain the address 192.168.93.2 from the OpenVPN, which is setup with 192.168.93.0 network.
So the 192.168.10.0/24 is supposedly routed to the OpenVPN gateway and the IP of the RUT
But it didn't work either.
I tried a few things on the firewall, but it didn't work. So the config is the one by default provided with the device.
I tried to rename it and restart, and it looks like even without the name update there is a few warnings:
root@device:~# /etc/init.d/firewall restart
Warning: Unable to locate ipset utility, disabling ipset support
Warning: Section @zone[1] (wan) cannot resolve device of network 'tun'
Warning: Section @zone[2] (vpn) cannot resolve device of network 'vpn'
Warning: Section 'l2tp_zone' cannot resolve device of network 'l2tp'
Warning: Section 'pptp_zone' cannot resolve device of network 'pptp'
Warning: Section 'gre_zone' cannot resolve device of network 'gre'
Warning: Option @rule[16]._name is unknown
Warning: Option @rule[17]._name is unknown
Warning: Option @rule[18]._name is unknown
* Flushing IPv4 filter table
* Flushing IPv4 nat table
* Flushing IPv4 mangle table
* Flushing IPv4 raw table
* Flushing IPv6 filter table
* Flushing IPv6 nat table
* Flushing IPv6 mangle table
* Flushing IPv6 raw table
* Flushing conntrack table ...
* Populating IPv4 filter table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Rule 'Allow-DHCP-Renew'
* Rule 'Allow-Ping'
* Rule 'Allow-vpn-traffic'
* Forward 'l2tp' -> 'lan'
* Forward 'pptp' -> 'lan'
* Forward 'gre' -> 'lan'
* Forward 'hotspot' -> 'wan'
* Forward 'vpn' -> 'lan'
* Forward 'vpn' -> 'wan'
* Forward 'wan' -> 'lan'
* Forward 'wan' -> 'vpn'
* Populating IPv4 nat table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Populating IPv4 mangle table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Populating IPv4 raw table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Populating IPv6 filter table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Rule 'Allow-vpn-traffic'
* Rule 'Allow-DHCPv6'
* Rule 'Allow-ICMPv6-Input'
* Rule 'Allow-ICMPv6-Forward'
* Forward 'l2tp' -> 'lan'
* Forward 'pptp' -> 'lan'
* Forward 'gre' -> 'lan'
* Forward 'hotspot' -> 'wan'
* Forward 'vpn' -> 'lan'
* Forward 'vpn' -> 'wan'
* Forward 'wan' -> 'lan'
* Forward 'wan' -> 'vpn'
* Populating IPv6 nat table
* Zone 'lan'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_lan_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_lan_rule'
* Zone 'wan'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_wan_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_wan_rule'
* Zone 'vpn'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_vpn_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_vpn_rule'
* Zone 'l2tp'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_l2tp_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_l2tp_rule'
* Zone 'pptp'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_pptp_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_pptp_rule'
* Zone 'gre'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_gre_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_gre_rule'
* Zone 'hotspot'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_hotspot_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_hotspot_rule'
* Zone 'sstp'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_sstp_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_sstp_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'prerouting_rule'
Warning: fw3_ipt_rule_append(): Can't find target 'postrouting_rule'
* Populating IPv6 mangle table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Populating IPv6 raw table
* Zone 'lan'
* Zone 'wan'
* Zone 'vpn'
* Zone 'l2tp'
* Zone 'pptp'
* Zone 'gre'
* Zone 'hotspot'
* Zone 'sstp'
* Set tcp_ecn to off
* Set tcp_syncookies to on
* Set tcp_window_scaling to on
* Running script '/etc/firewall.user'
* Running script '/tmp/privoxy/firewall'
! Skipping due to path error: No such file or directory
* Running script '/etc/logtrigger/fwblock_wrapper.sh'
* Running script '/etc/add-firewall-rule.sh'
* Running script '/etc/add-rs-rule.sh'
* Running script '/etc/add-port-rule.sh'
iptables: No chain/target/match by that name.
iptables v1.4.21: Couldn't load target `zone_port_scan':No such file or directory
Try `iptables -h' or 'iptables --help' for more information.
iptables v1.4.21: Couldn't load target `zone_port_scan':No such file or directory
Try `iptables -h' or 'iptables --help' for more information.
iptables: No chain/target/match by that name.
iptables: Bad rule (does a matching rule exist in that chain?).
iptables: Bad rule (does a matching rule exist in that chain?).
iptables: Bad rule (does a matching rule exist in that chain?).
iptables: Bad rule (does a matching rule exist in that chain?).
iptables: Bad rule (does a matching rule exist in that chain?).
! Failed with exit code 1
* Running script '/tmp/ipsec/firewall.sh'
! Skipping due to path error: No such file or directory