PDA

View Full Version : [VU+ Solo2] OpenVPN connects but box appears offline remotely



Grinnders
02-02-17, 02:06
Been following this guide to setup OpenVPN http://www.world-of-satellite.com/showthread.php?36336-Guide-to-setting-up-an-OpenVPN-server-on-Vix I've used it before and have managed to get it to work.

I have followed the process several times and can successfully execute OpenVPN connection but when I setup a remote session 4G/VPN (on iOS) I cannot connect to the specific box even though I get the green OpenVPN light on both VIX and the OpenVPN app (iOS VPN is the same) .

Locally (wifi/VPN) it does work but clearly being on the same LAN I'm not sure how much OpenVPN config it's using/I'm proving.

I cannot recall when this started not to work, as I've performed several VIX sw updates and probably not used in the interim, but in recent times I have changed my ISP from Plusnet to BT and I also now have IPTV, which demands at least 1 of the BT recommended DNS servers so my second DNS server is 8.8.4.4. Port forwarding is 1194 and I have a decent Netgear nighthawk router with lots of config capability.

Any ideas?

SpaceRat
03-02-17, 22:08
Provide more detail about your setup.
Preferably the complete server and client profiles, but without CA, Keys, PSKs.

Maybe you just forgot to (re-)enable IPv4 forwarding / masquerading?

Gesendet von meinem Siemens C25 mit Tapatalk

Grinnders
04-02-17, 23:23
Thanks for responding.

Not quite sure what to tell you. As I said I'm following religiously the instructions given in the OP. Therefore Server.conf is pretty generic. Client.ovpn includes my DynDNS server address and port 1194. Using DNS 8.8.4.4 and 208.67.222.222. ISP = BT. Port forwarding is on 1194. Protocol config in setup (by default) on UDP. C
Have a Netgear Nighthawk router. I'm haven't enabled IP v6.
Not sure what to tell you without giving away the trade secrets.
If I run tail -F /media/usb/openvpn.log
I see
Thu Jan 1 01:00:17 1970 MULTI: multi_init called, r=256 v=256
Thu Jan 1 01:00:17 1970 IFCONFIG POOL: base=10.8.0.4 size=62, ipv6=0
Thu Jan 1 01:00:17 1970 ifconfig_pool_read(), in='client1,10.8.0.4', TODO: IPv6
Thu Jan 1 01:00:17 1970 succeeded -> ifconfig_pool_set()
Thu Jan 1 01:00:17 1970 ifconfig_pool_read(), in='client2,10.8.0.8', TODO: IPv6
Thu Jan 1 01:00:17 1970 succeeded -> ifconfig_pool_set()
Thu Jan 1 01:00:17 1970 IFCONFIG POOL LIST
Thu Jan 1 01:00:17 1970 client1,10.8.0.4
Thu Jan 1 01:00:17 1970 client2,10.8.0.8
Thu Jan 1 01:00:17 1970 Initialization Sequence Completed

I start OpenVPN and connect on my iPhone and the log adds;

Sat Feb 4 22:15:33 2017 85.255.232.177:36201 TLS: Initial packet from [AF_INET]85.255.232.177:36201, sid=56085dcd 2b5eaa48
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 VERIFY OK: depth=1, C=**, ST=**, L=*****, O=Grinnders, OU=******, CN=******, name=******, emailAddress=****@********.com
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 VERIFY OK: depth=0, C=##, ST=##, L=#####, O=Grinnders, OU=######, CN=#####, name=######, emailAddress=####@######.com
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_GUI_VER=net.openvpn.connect.ios_1.1.1-212
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_VER=3.1.2
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_PLAT=ios
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_NCP=2
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_TCPNL=1
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_PROTO=2
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_LZO=1
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_AUTO_SESS=1
Sat Feb 4 22:15:33 2017 85.255.232.177:36201 peer info: IV_BS64DL=1
Sat Feb 4 22:15:34 2017 85.255.232.177:36201 Control Channel: TLSv1.2, cipher TLSv1/SSLv3 ECDHE-RSA-AES256-GCM-SHA384, 1024 bit RSA
Sat Feb 4 22:15:34 2017 85.255.232.177:36201 [client1] Peer Connection Initiated with [AF_INET]85.255.232.177:36201
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 MULTI_sva: pool returned IPv4=10.8.0.6, IPv6=(Not enabled)
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 MULTI: Learn: 10.8.0.6 -> client1/85.255.232.177:36201
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 MULTI: primary virtual IP for client1/85.255.232.177:36201: 10.8.0.6
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 PUSH: Received control message: 'PUSH_REQUEST'
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 SENT CONTROL [client1]: 'PUSH_REPLY,route 192.168.1.0 255.255.255.0,route 10.8.0.1,topology net30,ping 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5,peer-id 0,cipher AES-256-GCM' (status=1)
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 Data Channel Encrypt: Cipher 'AES-256-GCM' initialized with 256 bit key
Sat Feb 4 22:15:34 2017 client1/85.255.232.177:36201 Data Channel Decrypt: Cipher 'AES-256-GCM' initialized with 256 bit key

and then when I try to reconnect with e2RemotePro app (fails to 'reconnect') or VU+PlayerHD ('Connecting Connection failed') over 4G.

Or if I type my local IP address into the browser I get 'Forbidden' 403.6 IP address rejected.

DO I need some additional setup on OpenVPN not detailed in the instructions?

SpaceRat
04-02-17, 23:43
It seems the VPN is alright.
For OpenWebif to work across the VPN, you will have to activate "Allow access from VPNs" under Expansions -》OpenWebif.

Gesendet von meinem Siemens C25 mit Tapatalk

Grinnders
06-02-17, 00:20
Hi SpaceRat.

Spot On! For anyone else;

Setup->Plugins->OpenWebif->Enable Access from VPNs->Yes

ghostivv
24-10-17, 23:12
I don't have ^^^ above option on OpenWebif with latest 50031 image. Any other ways to enable remote access via vpn?

Thanks.

Andy_Hazza
25-10-17, 05:27
I don't have ^^^ above option on OpenWebif with latest 50031 image. Any other ways to enable remote access via vpn?

Thanks.

Those settings are in ViX.


Sent from my iPhone using Tapatalk

ghostivv
25-10-17, 11:20
nothing on setup -> VIX.

ccs
25-10-17, 11:28
Try Menu/Plugins/OpenWebif

twol
25-10-17, 11:29
As already mentioned, either Menu,plugins or long press Blue button and select OpenWebIF plugin then change entry

ghostivv
25-10-17, 12:04
Tried all. Can't see anything with "VPN" anywhere.

Ashley69
25-10-17, 12:32
So when you (on the box) press menu/plugins/openwebif what do you see. Post screenshot

ghostivv
25-10-17, 23:10
sorry for late.5517255173

Ashley69
26-10-17, 05:15
Switch http Authentication to no.. you will then see the Vpn menu.

ghostivv
26-10-17, 14:55
Boom!!! Thanks.

Sent from my Nexus 6P using Tapatalk