[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] Packets Being Dropped


  • Subject: Re: [Openvpn-users] Packets Being Dropped
  • From: Kevin Keane <ingosdlug@xxxxxxxxxx>
  • Date: Fri, 01 Dec 2006 02:47:41 -0800

I had the exact same issue, and couldn't find the solution with googling
either. Eventually, it turned out that I hadn't added the route to the
gateway on the subnet the VPN server is on. This is actually documented,
but I had missed it, and the error message does not appear to be related
to it.

In your case, it appears that this is probably the router at 75.126.18.1
(or whatever the OpenVPN server's default gateway is).

You need to tell that router to send all traffic to the 192.168.0.0/24
subnet to 75.126.18.55 for forwarding back through the VPN tunnel.

On Thu, 2006-11-30 at 20:31 -0700, Jon wrote:

> Hi All,
> 
> I see from the archives that this is a common problem, but I simply
> cannot figure out how to fix it. I've been Googling for two days and
> while the solution is pretty clear, I seem unable to implement it.
> 
> My OpenVPN server is on a VPS on the Internet. I want to connect to it
> from my laptop from wherever I am and when connected I want *all* of my
> Internet traffic to go through it. Gives me a small feeling of
> protection when using public Internet connections.
> 
> Here's my current set up:
> 
> Me (192.168.0.103) -> (192.168.0.1) Router (68.145.41.64) -> OpenVPN
> server (75.126.18.55)
> 
> I can successfully connect to the server and ping the 10.8.0.1 address
> that it's given itself.
> 
> I have the following relevant items enabled in my server.conf file:
> 
> server 10.8.0.0 255.255.255.0
> client-config-dir ccd
> route 192.168.0.0. 255.255.255.0
> push "redirect-gateway"
> 
> In /etc/OpenVPN/ccd I have a file called jonzlaptop (which is the name
> of my laptop client). In it is the line:
> 
> iroute 192.168.0.0 255.255.255.0
> 
> My initial connect looks to be normal:
> 
> Thu Nov 30 21:28:00 2006 68.145.41.64:34344 [jonzlaptop] Peer Connection
> Initiated with 68.145.41.64:34344
> Thu Nov 30 21:28:00 2006 jonzlaptop/68.145.41.64:34344 MULTI: Learn:
> 10.8.0.6 -> jonzlaptop/68.145.41.64:34344
> Thu Nov 30 21:28:00 2006 jonzlaptop/68.145.41.64:34344 MULTI: primary
> virtual IP for jonzlaptop/68.145.41.64:34344: 10.8.0.6
> Thu Nov 30 21:28:03 2006 jonzlaptop/68.145.41.64:34344 PUSH: Received
> control message: 'PUSH_REQUEST'
> Thu Nov 30 21:28:03 2006 jonzlaptop/68.145.41.64:34344 SENT CONTROL
> [jonzlaptop]: 'PUSH_REPLY,redirect-gateway,route 10.8.0.1,ping
> 10,ping-restart 120,ifconfig 10.8.0.6 10.8.0.5' (status=1)
> 
> 
> But as soon as I try to do something, I get a slew of these from the server:
> 
> Thu Nov 30 21:28:04 2006 jonzlaptop/68.145.41.64:34344 MULTI: bad source
> address from client [192.168.0.103], packet dropped
> Thu Nov 30 21:28:05 2006 jonzlaptop/68.145.41.64:34344 MULTI: bad source
> address from client [192.168.0.103], packet dropped
> Thu Nov 30 21:28:05 2006 jonzlaptop/68.145.41.64:34344 MULTI: bad source
> address from client [192.168.0.103], packet dropped
> Thu Nov 30 21:28:06 2006 jonzlaptop/68.145.41.64:34344 MULTI: bad source
> address from client [192.168.0.103], packet dropped
> 
> 
> I feel kind of dumb coming to the mailing list with a question that so
> clearly has been solved a million times over, but I've exhausted all of
> my other options.
> 
> Any help would be massively appreciated.
> 
> Thanks!
> 
> Jon

-- 
This e-mail and attachments, if any, may contain confidential and/or
proprietary information. Please be advised that the unauthorized use
or disclosure of the information is strictly prohibited. The information
herein is intended only for use by the intended recipient(s) named
above. If you have received this transmission in error, please notify
the sender immediately and permanently delete the e-mail and any
copies, printouts or attachments thereof.

Attachment: signature.asc
Description: This is a digitally signed message part

-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys - and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-12/msg00006.html on line 271

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-12/msg00006.html on line 271