Author | Message |
---|---|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
That rule is to allow attached VPN clients a way out to the internet so actually WAN access.
WireGuard and OpenVPN do that by default. It is a long time ago I used PPtP. It is unsafe to use, a ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
@eibgrad your contributions and advice are as always gratefully accepted.
Will put in on my list to add, Thanks! It is exactly the last situation I am referring to, I give access to family membe ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
So, I contacted my ISP and they can't help but I have requested a pass-thorugh on my modem for WireGuard (and OpenVPN).
In the meantime I have experimented with PPTP, which connects fine. My pro ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Normally you want your ISP modem in bridge mode meaning it hands out the Public IP and it just passes everything on.
This could indicate your modem is not in bridge mode, ask your ISP about it ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Hmm, I found these disturbing settings in my broadband modem.
It would seem that there's some sort of signature for every (incoming) VPN in the world and that there's no setting for WireGuard... ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Hi Eric!
Unfortunately, it did not work - no traffic on 51810. I checked port forwarding and no rule uses port 51810. I disabled VPN and oet1. Used 0.0.0.0/0 for testing. Using cellular co ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Thanks Eric!
Have sent you PB - two in fact. Regarding static leases - I have my setup in a file already, just find it odd that they are deleted on boot. Refresh does not help - they're all gone ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Regarding the use of sport, you should be able to just add in the PBR field :
sport 21 But you have to choose "Route selected sources via WAN" You can add more things like ip addresses ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Yes you can e.g.:
route ipchicken.com 255.255.255.255 net_gateway Note domains only support /32 aka 255.255.255.255 If you read the OpenVPN Client setup guide it is all there Read that in th ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Recent builds (currently 48141) support all ip rules e.g. sport.
To route a specific source port. The Openvpn client setup guide, link in my signature, has a paragraph about that. But all @eibg ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
P.S. A few other options to consider.
1) If you know the public IP(s) from which you'll be accessing the remote device over the WAN (workplace, school, favorite wifi cafe, etc.), you can simply bin ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Given FTP is completely insecure (everything is in the clear, data and username/password), you should never expose it directly to the WAN anyway. You should be using a VPN (e.g., OpenVPN or WireGuard ... | |
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Hmm, all that writing made me actually think.
The device is also an OpenVPN client (policy based routing) which explains why it does not react to the WAN request. The problem remains though (it ... |
|
![]() |
|
![]() |
|
a15995 Replies: 29 Views: 1792 |
![]() |
Hello!
Not sure if this belongs under "advanced" but here goes. I have trouble accessing an FTP server from the WAN side of my router. Accessing the same server locally is no problem. ... |
|
![]() |
|
![]() |
|
a15995 Replies: 41 Views: 10882 |
![]() |
Hello!
Does anyone know what to put in these (see attached) - new in OpenVPN 2.5.0 (DD-WRT r-44809 std)? What is best practice and what do they mean? I have set mine as can be seen. FYI: PIA ... |
|
![]() |
|
All times are GMT |