Peplink balance 20 + openvpn server on lan side


#1

Hi all, i have a peplink balance 20 (192.168.1.1/24) with 3 WAN connected:
-1adsl modem with static IP
-2 WAN with static IP
-3 WAN with bridge static IP
all works good and peplink make correctly balance on them.

i also have a firewall&VPN server (LAN:192.168.0.254 and WAN 192.168.1.2) on LAN side (192.168.1.1/24) of peplink.
I create forward policy to the IP of WAN side of server (192.168.1.2) and NAT mapping but OPENVPN tunnel doesn’t works.
I tested the firewall with direcxt connetion of WAN and i can do OPENVPn connection.

Some configuration inside peplink blocks tunnel.
Someone can help me ?
thanks


#2

Hi Marco,

You opened a traffic from outside FW to interface FW of OpenVpn Server ?

What type of OpenVpn system use ? ZeroShell or other ?

thanks
Antonio


#3

peplink lan side has an ip: 192.168.1.2 that is WAN address of my firewall.
It is a debian custom based used for VPN server(nethesis)
I need to route traffic form outside peplink (one nic/connection) to that openvpn server


#4

you need add a static route on balance for network of openvpn srv with next hop the ip of wan of firewall .
then you use a port forwarding function of balance to open the tcp port of openvpn srv to external connection .


#5

My openvpn server also works as a proxy server. If
I make a static route from 192.168.1.2 to an external Ip of a NIC that
acts as WAN, the proxy server would not route traffic through the three
nic but only to the nic I chose with the static route. Right?