NetExtender VPN getting killed by Firewalla
When using Firewalla Blue and enabling an employer-provided NetExtender VPN connection, Firewalla appears to kill the VPN every few minutes. When I disconnect Firewalla, I can stay on the VPN forever. Is there a way to tell Firewalla that the VPN connection ought not be messed with?
-
Please check a few things
- do you have the family protect on? if you do, make sure it is not applied to the host that's doing the VPN.
- look at your rules button and see if there anything blocking ports ... that may be related to the VPN
Next, a few more things to try
- try to turn monitoring off the host that's doing VPN. see if it works.
- try to give the host a static IP that's on the firewalla overlay network 192.168.218.x network
If (1)(2) works, likely something is interrupting the TCP session. (I assume you are doing SSL VPN). Then please send help@firewalla.com a email with your router/make/model and also if you are running in simple or dhcp mode
-
I had the client's OpenVPN create a verbose listing and the reason VPN is disconnecting is an 'inactivity-timeout'. I added an option to the VPN profile increasing the default to 1000 ms and this made no difference. I can send you guys the logs.
I am interested in helping you fix these kinds of issues. I am retired IT and know my way around most network issues.
-
I simply cannot use my Blue on devices with 3rd party VPN (SlickVPN).
My Blue is setup in Simple mode on an ASUS RT-AC66U-B1 which is compatible.with Simple Mode. I added to my OpenVPN profiles the following parameters:
keepalive 100 1200
Inactive 1000
I still keep getting disconnected every few minutes. I can send you guys logs, configuration, Etc.
I assume that I need to put the default IP back in the Overlay Network settings.
-
Looking deeper into some of the OpenVPN logs I am seeing this often when Blue is monitoring.
2020-10-17 12:15:12 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2020-10-17 12:15:12 TLS Error: TLS handshake failedIn fairness to your staff, OpenVPN does occasionally disconnect without Blue monitoring. Not as often, with the same timeout.
2020-10-16 12:49:34 official build 0.7.21 running on NVIDIA SHIELD Android TV (darcy), Android 9 (PPR1.180610.011) API 28, ABI arm64-v8a, (NVIDIA/darcy/darcy:9/PPR1.180610.011/4086636_1697.8089:userdebug/test-keys)
2020-10-16 12:49:34 Log cleared.
2020-10-16 12:55:26 [VPN] Inactivity timeout (--ping-restart), restarting
2020-10-16 12:55:26 TCP/UDP: Closing socket
2020-10-16 12:55:26 SIGUSR1[soft,ping-restart] received, process restarting
Please sign in to leave a comment.
Comments
16 comments