What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

FTP server on remote OpenVPN server

thebatfink

Occasional Visitor
Hi,

Quick question. I have OpenVPN setup on a remote server and my AC68U setup as a client. I also use the Policy Rules to forward all traffic from one of my local PC's 198.168.1.253 to destination 0.0.0.0 through the VPN connection. This works well.

However, I have this problem which if Policy = Strict, I can not connect to the FTP server or the webserver on my remote server (the one which is hosting the VPN server). If I remove the strict option, it works fine. I also have Accept DNS configuration to exclusive. I'm worried now that this traffic is not going through the VPN.

Is this normal? I also have the option to block access to the internet for the machine if the connection goes down - I really want all traffic through the VPN and paranoid about leaving it unstrict.

Thanks
Batfink
 
thebatfink; this a hunch/guesstimate, and is not territory I would ordinarily hazard a guess or tread on; have you tried using Wireshark, Paessler PRTG or some similar tool to access the data coming across either end? That's not always definitive, but may reveal something you didn't anticipate. You might try resetting the static IP of that particular PC to conform along the advice re LAN-DHCP range (according to pic attached, and the fine Wiki, the ideal IP range for optimal results with OpenVPN should be above 198.162.1.2 and below 198.168.1.100). If I'm mistaken or if I wind up barking at the moon, I'm certain one of the most excellent and respected, resident wizards will correct this and offer more succinct advice re your situation. I hope this is helpful. Good luck and Cheers.
 

Attachments

  • DHCP Server address.jpg
    DHCP Server address.jpg
    60.4 KB · Views: 560
I forgot to add; Yes, most who go this route aren't paranoid, but you can't take that as a sign that everyone isn't out to get you:) I'd definitely block/drop access if your OpenVPN connection goes down. and would alter your WAN to not automatically not connect to ISP DNS. I don't assume you've run DNS leak tests, ala Doileak.com, etc, and also removed all traces of Flash from the machines in question? Best of Luck:)
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top