EFW Support

Support => VPN Support => Topic started by: zkaesberg on Monday 01 April 2013, 08:54:23 am



Title: Simple Endian to Endian Open VPN Problem
Post by: zkaesberg on Monday 01 April 2013, 08:54:23 am
First here is my setup.


192.168.1.0/24 --->Endian Firewall Open VPN Server ---->Internet--->Endian Firewall GW2GW Client --->192.168.2.0/24

I am running 2.5 on both machines.

On the host server side it is set to 192.168.1.254 it is running a DHCP Service from address 192.168.1.100-192.168.1.253.
On the OpenVPNServer I am enabled checked, Bridged Checked, Bridged to Green, Dynamic start 192.168.1.90, Dynamic stop 192.168.1.99. Under account I made an account and the only thing I filled in is Networks Behind Client - 192.168.2.0/24.

On the remote server side it is set to 192.168.2.254 it is running a DHCP Service from address 192.168.2.100 - 192.168.2.253.  On the OpenVPN Client (GW2GW) I added my username host password certificate etc... and left the advanced setting alone.

I saved the connection and it says on both servers established. 

From a machine on the 192.168.1.0/24 Host network I can ping machines on the 192.168.2./0 with no problems.

From a machine on the 192.168.2.0/24 Client network I can ping any machine on the 192.168.1.0/24 network.  I can ping 192.168.1.4 which is outside the DHCP scope I can ping 192.168.1.137 inside the scope. 

I can remote desktop access server shares I can do pretty much anything that I want to do from any side of the network to the other side.

The only thing I cannot do is ping 192.168.1.9 (Shoretel Phone Server) from the 192.168.2.0/24 network.  I can ping it from the 192.168.1.0/24 network with no problems.

The weird thing is if I use a laptop windows 7 with the OpenVPN Client software and log into Open VPN Server I can ping 192.168.1.9 from the laptop with no problem.  It gives the laptop an IP of 192.168.1.91.

From the remote endian firewall client machine if I go into the web console I can ping the 192.168.1.9 with no problems. The server has an IP of 192.168.1.90.  But from a machine with a 192.168.2.100 ip I can't ping 192.168.1.9.  I can ping every other address but not the .9


What am I over looking.
Thanks in advance for the help.


Title: Re: Simple Endian to Endian Open VPN Problem
Post by: foxconcept on Thursday 18 July 2013, 07:42:44 am
Hi,

I meet exactly the same problem.
site 1 is behind 192.168.1.0/24
site 2 is behind 192.168.2.0/24
VPN Server is running on site 1

from site 2, I'm able to to ping everything except .1.9
if I do a ping from the Webconsole, it respond
if I use VPN credentials as roadwarrior, it respond ...

Seems problem is only in Site to Site configuration

Does any one had an idea to solve this ?

Thanks