Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM does not allow Windows OpenVPN client to connect, even with all ports open

Hi Guys,

I am new here and have made a switch from iPfire. I am having a few troubles with Open VPN. I need to connect to my work open vpn server now and then, before with ipfire this worked out of the box. I have created many rules in the firewall to allow udp/tcp 1194 993 443 etc from internal to external or any to any and still i cannot make a connection.

I am running the openvpn client as admin btw so this isn't the issue, below is the log, i have removed the actual ip from it. Is there something i'm missing here? I have looked everywhere and cannot find a solution.

Sun Jul 24 22:27:16 2016 NOTE: --group option is not implemented on Windows
Sun Jul 24 22:27:16 2016 OpenVPN 2.3.8 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [PKCS11] [IPv6] built on Aug 4 2015
Sun Jul 24 22:27:16 2016 library versions: OpenSSL 1.0.1p 9 Jul 2015, LZO 2.08
Sun Jul 24 22:27:16 2016 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Sun Jul 24 22:27:16 2016 Need hold release from management interface, waiting...
Sun Jul 24 22:27:17 2016 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Sun Jul 24 22:27:17 2016 MANAGEMENT: CMD 'state on'
Sun Jul 24 22:27:17 2016 MANAGEMENT: CMD 'log all on'
Sun Jul 24 22:27:17 2016 MANAGEMENT: CMD 'hold off'
Sun Jul 24 22:27:17 2016 MANAGEMENT: CMD 'hold release'
Sun Jul 24 22:27:20 2016 MANAGEMENT: CMD 'password [...]'
Sun Jul 24 22:27:20 2016 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
Sun Jul 24 22:27:20 2016 Socket Buffers: R=[65536->65536] S=[65536->65536]
Sun Jul 24 22:27:20 2016 UDPv4 link local: [undef]
Sun Jul 24 22:27:20 2016 UDPv4 link remote: [AF_INET]83.x.x.x.:1194
Sun Jul 24 22:27:20 2016 MANAGEMENT: >STATE:1469395640,WAIT,,,

I look forward to any replies.

Thanks,

Greg



This thread was automatically locked due to age.
Parents Reply
  • Hi, Greg, and welcome to the UTM Community!

    Sun Jul 24 22:27:20 2016 UDPv4 link remote: [AF_INET]83.x.x.x.:1194
    Sun Jul 24 22:27:20 2016 MANAGEMENT: >STATE:1469395640,WAIT,,,

    If you try #1 in Rulz, I suspect you'll find that you have default drops of UDP 1194 in the firewall log.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children