Recent content by janedoe

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. J

    Router web accessibility from WAN/internet when an openvpn client is running

    One thousand Thank You coldwizard, your script is working very well and it should be useful to anyone using a VPN service as a secondery ISP. By reading several threads here I'm sure it is a quite common usage, may be people are not aware that their LAN port are then exposed. Moreover by...
  2. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Hello coldwizard From the syslog.log file I can see that : the firewall-start script happen before the openvpn-event script_type=up at boot time the firewall-start script does not happen again between the down and up of the vpn Also I have tested your openvpn-event B file and it seems to work...
  3. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Hello coldwizard, I apologize for the late reply but I was far from home this week. So I tried what you suggest and here is the lines I got from the log. The connection is fairly stable so I had to close the vpn client connection and restart it through the Merlin web interface. Also for security...
  4. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Hello coldwizard, I just test those rules so here are the results : - after manually deleting the existing tap11 rule #1 in the INPUT chain, things works fine the GUI interface access from outside is blocked and all ports appear as stealth when tested through https://www.grc.com - then after...
  5. J

    Router web accessibility from WAN/internet when an openvpn client is running

    You are probably right about VPN and for what usage it was designed originally, but you know that nowadays there is a lot of commercial services offering internet access through a VPN in order to circumvent access limitation by their ISP or country policy. So using a VPN for accessing the...
  6. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Thank you coldwizard, at least now I'm I have an issue. By the way a lot of VPN service advise to set asus merlin openvpn client this way, see for instance https://support.hidemyass.com/hc/en-us/articles/203722848-AsusWRT-OpenVPN-Client-Setup-Merlin-firmware- so in case they are not firewalling...
  7. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Probably I was not clear at all : - The RT-AC68U with Asus merlin is running an openvn client which connect to an external vpn service which does not not firewall anything have all ports open and attribute a unique ip to each client. - The Asus merlin "Enable Web Access from WAN" is selected...
  8. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Thank you for the reply coldwizard, in fact I can access the administrative page from the general internet using my phone on 3G (no wifi lan connection running, I swear) and sending an http request to the IP address attributed to my RT-AC68U by the VPN service. The OpenVPN client is running in...
  9. J

    Router web accessibility from WAN/internet when an openvpn client is running

    Hello I'm fairly new with Merlin setting but I noticed that when I have an openvpn client running and having my internet traffic going through it, the router administrative log page is then accessible from the internet by http on the public ip that my vpn service has given to me. It is not...
Top