Discussion:
[Openvpn-users] Connection of a roadwarrior behind nat.
Claudio Veronese
2006-05-29 16:21:08 UTC
Permalink
Hi folks!
I have a problem connecting a roadwarrior to an Ipcop 1.4.10 using
openvpn/zerina 0.9.3b on the server and OpenVPN 2.0.5-gui-1.0.3 on the
roadwarrior client.
The system has the following structure:

internal lan <-> ipcop <-> router <-> internet <-> router/firewall <->
roadwarrior lan

The final goal is to reach any computer on the internal lan from a
client in the roadwarrior lan.

Installation went fine and the roadwarrior can connect to the Opevpn
server without any problem but I can only reach the ipcop box.
Once finished installation the log on the server reports always

esterno1/<roadwarrior_public_ip>:1194 MULTI: bad source address from
client [192.168.1.234 ], packet dropped

(where 192.168.1.234 is the address of the client on the roadwarrior lan)

Any suggestion ?
Thanks in advance
Daniel L. Miller
2006-05-29 16:33:01 UTC
Permalink
Not knowing ipcop, my first guess is a routing problem. If ipcop has
been configured that you LAN exists on interface 'A', and it receives
packets from your LAN network on interface 'B', it will assume a hack
attempt and block them.

<Group - pitch in here if I'm wrong>. Assuming a non-bridged setup, you
need to have OpenVPN server installed inside the ipcop, i.e. on the LAN
side. If bridged on the ipcop server, then it needs to be bridged with
the LAN interface - NOT the Internet interface. Then the roadwarrior
will appear to be within the LAN, and ipcop won't complain.
Post by Claudio Veronese
Hi folks!
I have a problem connecting a roadwarrior to an Ipcop 1.4.10 using
openvpn/zerina 0.9.3b on the server and OpenVPN 2.0.5-gui-1.0.3 on the
roadwarrior client.
internal lan <-> ipcop <-> router <-> internet <-> router/firewall <->
roadwarrior lan
The final goal is to reach any computer on the internal lan from a
client in the roadwarrior lan.
Installation went fine and the roadwarrior can connect to the Opevpn
server without any problem but I can only reach the ipcop box.
Once finished installation the log on the server reports always
esterno1/<roadwarrior_public_ip>:1194 MULTI: bad source address from
client [192.168.1.234 ], packet dropped
(where 192.168.1.234 is the address of the client on the roadwarrior lan)
Any suggestion ?
Thanks in advance
--
Daniel
Continue reading on narkive:
Search results for '[Openvpn-users] Connection of a roadwarrior behind nat.' (Questions and Answers)
7
replies
wan configuration?
started 2006-03-22 19:40:10 UTC
internet
Loading...