FireWalla OpenVPN issue

Comments

9 comments

  • Avatar
    Firewalla

    Try to ping the IP addresses of the inside devices and see if they respond. If the don't respond, then please check if you have any rules on your LAN segment that blocks traffic. 

     

    0
    Comment actions Permalink
  • Avatar
    Seif Tlili

    Oh i tried, i can only ping my Inside firewalla IP address, there are no rules that block traffic, any other devices doesnt respond to ping.

    This is a VPN issue

    0
    Comment actions Permalink
  • Avatar
    Seif Tlili

    0
    Comment actions Permalink
  • Avatar
    Seif Tlili

    you can see from the screenshot that i can only ping the inside interface of firewalla and nothing else, also 0Bytes of traffic received when testing !

    0
    Comment actions Permalink
  • Avatar
    David Rothenberger

    The OpenVPN clients are in their own network on the Firewalla. Make sure you have rules that allow that network to talk to your main LAN.

    Also, note that pings can be blocked per network, so if they are blocked for your LAN, that would explain why you can't ping anything when connected to the VPN. This setting is under Settings (gear icon at top right) / Advanced / Configurations / Block ICMP (Ping). Make sure it is disabled for your LAN.

    0
    Comment actions Permalink
  • Avatar
    Seif Tlili

    This is not my first time setting up VPN, is there any chance i can get proper support ? Firewalla is setup properly, VPN is sitting on its own network that i have setup, there are no rules at all !

    This is a bug, a functionality issue ... honestly it`s frustrating

    0
    Comment actions Permalink
  • Avatar
    David Rothenberger

    Open a support ticket in the app or send an email to help@firewalla.com. They are very responsive in my experience.

    0
    Comment actions Permalink
  • Avatar
    Seif Tlili

    They are indeed, the issue was related to overlapping route, i would`ve imagined that the router will use a longest match wildcard when performing routes, i had a route for 10.0.0.0/8 as a static route for my internal lab which was overlapping with the VPN subnet so i moved the vpn subnet to 172.16.X.X/24 to fix it

    Thanks

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    Couple more things

    Where are you VPN from? is it the same network as your VPN server is at? Also, what's the LAN address, is it the same as the one you are VPN to? both of these may cause LAN device not able to reply

    0
    Comment actions Permalink

Please sign in to leave a comment.