FOR TIPS, gUIDES & TUTORIALS

subscribe to our Youtube

GO TO YOUTUBE

14455 questions

17168 answers

28195 comments

0 members

We are migrating to our new platform at https://community.teltonika.lt. Moving forward, you can continue discussions on this new platform. This current platform will be temporarily maintained for reference purposes.
0 votes
445 views 3 comments
by anonymous

Dear all!

I have one RUT955 and it has configured LAN network with IP: 192.168.2.0/255.255.255.0 and OpenVPN (tun/tcp) with IP: 10.0.0.0/255.255.255.0 on port 1196.

LAN gateway IP: 192.168.2.1

VPN working as well, but they can't communicate each other!

Open VPN client configuration:

client

dev tun

proto tcp

cipher aes-128-cbc 

remote ************.ddns.net 1196

resolv-retry infinite

client-to-client

nobind

persist-key

persist-tun

verb 3

comp-lzo yes

Server Configuration attached!

Thanks for your help and advice!!!

1 Answer

+1 vote
by anonymous

Hello,

I have replicated your configuration, but the tunnel established and devices were successfully able to ping each other, server was reachable from the client as well, thus no issues with the configuration, that is, if certificate options were removed intentionally from provided configurations.

What could be checked are the firewall settings on the server's side. Login to your RUT955, navigate to Network -> Firewall -> General settings. Make sure there is a separate zone for OpenVPN. Also, check the settings for this zone: it must accept input and output traffic, have Masquerading enabled and also allow forwarding to/from LAN zone.

Switch to Traffic rules page, there should be a rule Allow-openvpn-traffic enabled to accept traffic on 1196 port. Though, without it, the tunnel would not be established at all.

You can also try lowering tunnel's MTU value by adding a following push option to either server's or client's configuration:

  • tun-mtu 1380

Otherwise, have you tried disabling firewall on the client's side, to check, if it does not interfere with the communication?

Best regards,

Best answer
by anonymous
Hello, thanks for your response and help!!!

- Firewall -> General settings. - input/output traffic accepting and masquerading enabled (lan->openvpn and openvpn->lan)

- Allow-openvpn-traffic - is enabled on port 1196

- tun-mtu 1380 - inserted in client config.

And now the connection is working between lan and openvpn.

Thank you so much!
by anonymous
I have a similar issue but non of the solutions have worked so far.

Please assist.
by anonymous

Is your issue related to this thread?

Could you please provide the requested details in a private message?

Best regards,