jochenthomas
Occasional Visitor
Hi,
While using the first VPN with TAP succesfully I am now forced to use an Apple Tablet together with openVPN client.
With the configuration below I cannot reach or ping the internal IP's.
But can ping the router IP itself: 192.168.x.1 and the VPN server: 10.16.0.1 as well!!
So I am confused; what I have to do now?
A traeroute form the Apple device stops after the first hop:
traceroute: 192.168.x.x., 5 relative hops max, 52 byte packets
1 10.15.0.1 97.056 ms 166.992 ms 170.447 ms
2 * * * *
The system log you can find as well below.
Also a port scan is not possible..
Which other information I have to provide
What should I check now?
SYSTEM LOG:
pr 11 17:27:08 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x.1 LEN=71 TOS=0x00 PREC=0x00 TTL=255 ID=43223 PROTO=UDP SPT=50163 DPT=53 LEN=51
Apr 11 17:27:33 kernel: DROP IN=eth0 OUT= MAC=54:a0:50:e5:96:b0:00:01:5c:58:0e:40:08:00 SRC=149.x.x.188 DST=x.1.5x.82 LEN=48 TOS=0x00 PREC=0x00 TTL=110 ID=57622 DF PROTO=TCP SPT=1247 DPT=445 SEQ=1931097930 ACK=0 WINDOW=65535 RES=0x00 SYN URGP=0 OPT (020405B401010402)
Apr 11 17:29:22 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x.1 LEN=78 TOS=0x00 PREC=0x00 TTL=255 ID=20772 PROTO=UDP SPT=59665 DPT=53 LEN=58
Apr 11 17:29:23 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x7.1 LEN=78 TOS=0x00 PREC=0x00 TTL=255 ID=53873 PROTO=UDP SPT=59665 DPT=53 LEN=58
Apr 11 17:30:01 crond[442]: crond: USER xxxx pid 13348 cmd service start_vpnserver2
Apr 11 17:30:02 rc_service: service 13349:notify_rc start_vpnserver2
Apr 11 17:30:02 syslog: VPN_LOG_NOTE: 647: VPN Server 2 already running...
While using the first VPN with TAP succesfully I am now forced to use an Apple Tablet together with openVPN client.
With the configuration below I cannot reach or ping the internal IP's.
But can ping the router IP itself: 192.168.x.1 and the VPN server: 10.16.0.1 as well!!
So I am confused; what I have to do now?
A traeroute form the Apple device stops after the first hop:
traceroute: 192.168.x.x., 5 relative hops max, 52 byte packets
1 10.15.0.1 97.056 ms 166.992 ms 170.447 ms
2 * * * *
The system log you can find as well below.
Also a port scan is not possible..
Which other information I have to provide
What should I check now?
Interface Type: TUN
Protocol : TCP
Server Port: 1195
Firewall: External o nly
Authorization Mode : TLS
Username/Password Authentication : Yes
Username / Password Auth. Only: No
Extra HMAC authorization: Disable
Auth digest: Default
VPN Subnet / Netmask : 10.16.0.0. 255.255.255.0
Poll Interval: 5
Push LAN to clients: Yes
Direct clients to redirect Internet traffic: No
Respond to DNS: No
Encryption cipher: AES-192-CBC
Compression: None
TLS Renegotiation Time: -1
Global Log verbosity: 3
Manage Client-Specific Options: No
Protocol : TCP
Server Port: 1195
Firewall: External o nly
Authorization Mode : TLS
Username/Password Authentication : Yes
Username / Password Auth. Only: No
Extra HMAC authorization: Disable
Auth digest: Default
VPN Subnet / Netmask : 10.16.0.0. 255.255.255.0
Poll Interval: 5
Push LAN to clients: Yes
Direct clients to redirect Internet traffic: No
Respond to DNS: No
Encryption cipher: AES-192-CBC
Compression: None
TLS Renegotiation Time: -1
Global Log verbosity: 3
Manage Client-Specific Options: No
SYSTEM LOG:
pr 11 17:27:08 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x.1 LEN=71 TOS=0x00 PREC=0x00 TTL=255 ID=43223 PROTO=UDP SPT=50163 DPT=53 LEN=51
Apr 11 17:27:33 kernel: DROP IN=eth0 OUT= MAC=54:a0:50:e5:96:b0:00:01:5c:58:0e:40:08:00 SRC=149.x.x.188 DST=x.1.5x.82 LEN=48 TOS=0x00 PREC=0x00 TTL=110 ID=57622 DF PROTO=TCP SPT=1247 DPT=445 SEQ=1931097930 ACK=0 WINDOW=65535 RES=0x00 SYN URGP=0 OPT (020405B401010402)
Apr 11 17:29:22 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x.1 LEN=78 TOS=0x00 PREC=0x00 TTL=255 ID=20772 PROTO=UDP SPT=59665 DPT=53 LEN=58
Apr 11 17:29:23 kernel: DROP IN=tun22 OUT= MAC= SRC=10.16.0.2 DST=192.x.x7.1 LEN=78 TOS=0x00 PREC=0x00 TTL=255 ID=53873 PROTO=UDP SPT=59665 DPT=53 LEN=58
Apr 11 17:30:01 crond[442]: crond: USER xxxx pid 13348 cmd service start_vpnserver2
Apr 11 17:30:02 rc_service: service 13349:notify_rc start_vpnserver2
Apr 11 17:30:02 syslog: VPN_LOG_NOTE: 647: VPN Server 2 already running...
Last edited: