Ian Macdonald
Occasional Visitor
I have an RT-AC88U at home, running Merlin 380.68_4.
The box runs an OpenVPN server. I can remotely connect to and access my LAN, and forward traffic out to the Internet.
The box also runs several concurrent OpenVPN clients with selective routing. From my LAN, traffic is correctly routed to each of these VPNs.
All of the above operates in TUN mode and works as expected.
The only thing that doesn't work is having the server and the clients talk to each other. In other words, if I connect to the OpenVPN server from outside the home and try to access a resource that requires traffic to be routed out through one of the OpenVPN clients, the traffic gets no further than 10.8.0.1, the endpoint of the incoming tunnel.
How do I tell the box to forward traffic between the OpenVPN server and the OpenVPN clients? Clearly, the rules for forwarding traffic out through the client VPNs apply only to traffic coming from the LAN interface, not to traffic coming in through the VPN tunnel on the WAN interface.
How does one go about configuring this on this box?
The box runs an OpenVPN server. I can remotely connect to and access my LAN, and forward traffic out to the Internet.
The box also runs several concurrent OpenVPN clients with selective routing. From my LAN, traffic is correctly routed to each of these VPNs.
All of the above operates in TUN mode and works as expected.
The only thing that doesn't work is having the server and the clients talk to each other. In other words, if I connect to the OpenVPN server from outside the home and try to access a resource that requires traffic to be routed out through one of the OpenVPN clients, the traffic gets no further than 10.8.0.1, the endpoint of the incoming tunnel.
How do I tell the box to forward traffic between the OpenVPN server and the OpenVPN clients? Clearly, the rules for forwarding traffic out through the client VPNs apply only to traffic coming from the LAN interface, not to traffic coming in through the VPN tunnel on the WAN interface.
How does one go about configuring this on this box?