FOR TIPS, gUIDES & TUTORIALS

subscribe to our Youtube

GO TO YOUTUBE

14455 questions

17168 answers

28195 comments

0 members

We are migrating to our new platform at https://community.teltonika.lt. Moving forward, you can continue discussions on this new platform. This current platform will be temporarily maintained for reference purposes.
0 votes
491 views 4 comments
by anonymous

Following this example https://wiki.teltonika-networks.com/view/OpenVPN_configuration_examples, where a methode is described to reach a client router via "TLS Clients", I can't reach the client Network 192.168.1.1 (RUT955) from the Server 192.168.100.1 (RUTX11).
In the oposit dierection, everything works fine, as long as only one push option "route 192.168.100.0 255.255.255.0" is in use. When I add another push command "route 192.168.1.0 255.255.255.0" as recommended in the example, the connection from Client to Server also breaks!
I even generated Keys and Certificates from scratch, and CN-Name in the Client Certificate matches the File-Name of same certificate. 

From RUTX11 Server, only the virtual network IP 10.0.0.6 (Client Router) can be reached, but not the devices in the client network.
Is there a solution/workaround to establish a connection in both directions? 


 

1 Answer

0 votes
by anonymous

Hello.

On the client side, in the line Remote network IP address specify 192.168.100.0, Remote network IP netmask 255.255.255.0

Regards.

by anonymous

Thank you! As per the Teltonika example, this mothode is not considered as the best option, and "Push Methode" on the server side is recommended instead.
I also tried the setting as suggested by you, but it did not change anything (RUTX11 only has acces to 10.0.0.6 - not to the RT955 Network). In the meantime I spent several hours with the setting on both devices, and also resetteted both devices to factory default to make sure, that configurations are based on clean systems. 

My concludion: RUTX11 Firmware has following serious Firmware Bugs with :

  • "TLS" OpenVPN Routing requires to establish a manual Routing "10.0.0.2 --> target 192.168.1.0/24". But RUTX11 does not recognise this route and/or if it is by chance shown in the routing table, it does not function! (RUTX11=Server, RUT955=Client)
  • It is not possible to operate the RUTX11 as "TLS" OpenVPN-Client. The Trouble shoot file returns a FATAL ERROR if you do so. 

 May I ask you to submit sample config-files for RUTX11/RUT955 which have been sucessfully tested by Teltonika?

by anonymous

Configuration example:

Tested with the latest firmware RUTX11 (RUTX_R_00.02.04.3) and RUT955 (RUT9XX_R_00.06.06.1)

Regards.

by anonymous

Hi!
I agree with your setting and confirm that I had no chance to get access from RUTX11 to the RUT955 Network 192.168.1.0/24 with the same.

You did not mention the following settings on RUTX11 which I had to make:

  • Establish a static route 10.0.0.2 --> 192.168.1.0/24
  • Establish an Network Interface 
Did your configuration work without this two actions?
Regards 
AG
by anonymous

Hi

I'm sorry to be late with the reply.

You are right, for some reason there is no routing when adding entries to the TLS clients table. I will report this to the RnD department.

However, you can use RUT955 as a server.

Best regards!