You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I configured a new openVPN instance with DCO on a 24.7.9_1 single node test system. After all tests I configured the same vpn instance on our productive 24.10.1 cluster. Client can connect, but there is no data traffic and the client reconnect after ping-restart timeout.
Further tests:
Switching to TUN on client/server works
changeing the server IP in the client config to the WAN IP of the active node works (with DCO)
changeing the server IP in the client config to the Cluster IP of the active node fails as described above (with DCO)
I see ACK network pakets in the opnSense firewall from the servers the client tries to connect, but it seems they don't leave the server through the vpn data tunnel.
To Reproduce
Steps to reproduce the behavior:
Setup opnSense cluster with two network ports each and CARP IP for WAN/LAN
Create opnVPN instance with DCO
Make client export
connect from a client
Expected behavior
Access from client to LAN.
Stable client connection without VPN restart after every ping-restart timeout.
Describe alternatives you considered
Workarounds (with loss of throughput or functional degration):
Switching the client configuration to the WAN IP of the active node.
Switching the server to non-DCO.
Environment
OPNsense 24.10.1 (amd64).
The text was updated successfully, but these errors were encountered:
Important notices
Before you add a new report, we ask you kindly to acknowledge the following:
Describe the bug
I configured a new openVPN instance with DCO on a 24.7.9_1 single node test system. After all tests I configured the same vpn instance on our productive 24.10.1 cluster. Client can connect, but there is no data traffic and the client reconnect after ping-restart timeout.
Further tests:
I see ACK network pakets in the opnSense firewall from the servers the client tries to connect, but it seems they don't leave the server through the vpn data tunnel.
To Reproduce
Steps to reproduce the behavior:
Expected behavior
Describe alternatives you considered
Workarounds (with loss of throughput or functional degration):
Environment
OPNsense 24.10.1 (amd64).
The text was updated successfully, but these errors were encountered: