Jump to content

preoblem configuring OpenVPN server on TrueNAS core

Hello to all,

I have managed to configure my openvpn server sccording to this video: 

 

However, i am facing some problems and i am asking for your help.

On my android phone, i can successfully browse the SMB share on the TrueNAS system. But that is all I can do. I cannot access the config webpage of the TrueNAS system, or acccess my plugins/jails or other smb shares on the network.

Please, give me some direction on where is the mistake.

Configs:

   my lan: 192.168.1.0

   OpenVPN IP pool: 10.20.0.0

   static route on Truenas (Network->Static Routes):

      Deestination: 10.20.0.0

      Gateway: 192.168.1.107

   Portforwarding on the router is also configured

   Tuneables are set.

 

Thank you for helping

Link to comment
Share on other sites

Link to post
Share on other sites

Quote

drRodneyMcKay

Stargate fan!
 

9 minutes ago, drRodneyMcKay said:

On my android phone, i can successfully browse the SMB share on the TrueNAS system. But that is all I can do. I cannot access the config webpage of the TrueNAS system, or acccess my plugins/jails or other smb shares on the network.

Please, give me some direction on where is the mistake.

I've tried exactly what you're doing (right down to following that exact video, I think), and for whatever reason, configuring the firewall rules (in TrueNAS) to allow VPN traffic out borks all the IP configs for jails/VMs (for me). I had an open thread here and on the TrueNAS forum and no one responded.

 

On my TODO list is to migrate TrueNAS to a Proxmox VM and run OpenVPN alongside it (instead of inside it) in a separate VM (probably Ubuntu Server); I'm hoping that will organize any routing issues. Haven't gotten around to it (because migrating my existing TrueNAS VMs sounds like a pain that I'll need a whole afternoon to accomplish).

 

The other alternative is to actually learn the natd firewall configurations to find the problem, but I think the issue is actually buried somewhere in the TrueNAS special-sauce internal VM network configuration and not user accessible.

Main System (Byarlant): Ryzen 7 5800X | Asus B550-Creator ProArt | EK 240mm Basic AIO | 16GB G.Skill DDR4 3200MT/s CAS-14 | XFX Speedster SWFT 210 RX 6600 | Samsung 990 PRO 2TB / Samsung 960 PRO 512GB / 4× Crucial MX500 2TB (RAID-0) | Corsair RM750X | a 10G NIC (pending) | Inateck USB 3.0 Card | Hyte Y60 Case | Dell U3415W Monitor | Keychron K4 Brown (white backlight)

 

Laptop (Narrative): Lenovo Flex 5 81X20005US | Ryzen 5 4500U | 16GB RAM (soldered) | Vega 6 Graphics | SKHynix P31 1TB NVMe SSD | Intel AX200 Wifi (all-around awesome machine)

 

Proxmox Server (Veda): Ryzen 7 3800XT | AsRock Rack X470D4U | Corsair H80i v2 | 64GB Micron DDR4 ECC 3200MT/s | 4x 10TB WD Whites / 4x 14TB Seagate Exos / 2× Samsung PM963a 960GB SSD | Seasonic Prime Fanless 500W | Intel X540-T2 10G NIC | LSI 9207-8i HBA | Fractal Design Node 804 Case (side panels swapped to show off drives) | VMs: TrueNAS Scale; Ubuntu Server (PiHole/PiVPN/NGINX?); Windows 10 Pro; Ubuntu Server (Apache/MySQL)


Media Center/Video Capture (Jesta Cannon): Ryzen 5 1600X | ASRock B450M Pro4 R2.0 | Noctua NH-L12S | 16GB Crucial DDR4 3200MT/s CAS-22 | EVGA GTX750Ti SC | UMIS NVMe SSD 256GB / TEAMGROUP MS30 1TB | Corsair CX450M | Viewcast Osprey 260e Video Capture | Mellanox ConnectX-2 10G NIC | LG UH12NS30 BD-ROM | Silverstone Sugo SG-11 Case | Sony XR65A80K

 

Camera: Sony ɑ7II w/ Meike Grip | Sony SEL24240 | Samyang 35mm ƒ/2.8 | Sony SEL50F18F | Sony SEL2870 (kit lens) | PNY Elite Perfomance 512GB SDXC card

 

Network:

Spoiler
                           ┌─────────────── Office/Rack ────────────────────────────────────────────────────────────────────────────┐
Google Fiber Webpass ────── UniFi Security Gateway ─── UniFi Switch 8-60W ─┬─ UniFi Switch Flex XG ═╦═ Veda (Proxmox Virtual Switch)
(500Mbps↑/500Mbps↓)                             UniFi CloudKey Gen2 (PoE) ─┴─ Veda (IPMI)           ╠═ Veda-NAS (HW Passthrough NIC)
╔═══════════════════════════════════════════════════════════════════════════════════════════════════╩═ Narrative (Asus USB 2.5G NIC)
║ ┌────── Closet ──────┐   ┌─────────────── Bedroom ──────────────────────────────────────────────────────┐
╚═ UniFi Switch Flex XG ═╤═ UniFi Switch Flex XG ═╦═ Byarlant
   (PoE)                 │                        ╠═ Narrative (Cable Matters USB-PD 2.5G Ethernet Dongle)
                         │                        ╚═ Jesta Cannon*
                         │ ┌─────────────── Media Center ──────────────────────────────────┐
Notes:                   └─ UniFi Switch 8 ─────────┬─ UniFi Access Point nanoHD (PoE)
═══ is Multi-Gigabit                                ├─ Sony Playstation 4 
─── is Gigabit                                      ├─ Pioneer VSX-S520
* = cable passed to Bedroom from Media Center       ├─ Sony XR65A80K (Google TV)
** = cable passed from Media Center to Bedroom      └─ Work Laptop** (Startech USB-PD Dock)

Retired/Other:

Spoiler

Laptop (Rozen-Zulu): Sony VAIO VPCF13WFX | Core i7-740QM | 8GB Patriot DDR3 | GT 425M | Samsung 850EVO 250GB SSD | Blu-ray Drive | Intel 7260 Wifi (lived a good life, retired with honor)

Testbed/Old Desktop (Kshatriya): Xeon X5470 @ 4.0GHz | ZALMAN CNPS9500 | Gigabyte EP45-UD3L | 8GB Nanya DDR2 400MHz | XFX HD6870 DD | OCZ Vertex 3 Max-IOPS 120GB | Corsair CX430M | HooToo USB 3.0 PCIe Card | Osprey 230 Video Capture | NZXT H230 Case

TrueNAS Server (La Vie en Rose): Xeon E3-1241v3 | Supermicro X10SLL-F | Corsair H60 | 32GB Micron DDR3L ECC 1600MHz | 1x Kingston 16GB SSD / Crucial MX500 500GB

Link to comment
Share on other sites

Link to post
Share on other sites

Quote

Stargate fan!

I have recognised your username too!

 

Well, migrating my TrueNAS installation to a VM is not really an option for me (on my old computer, which runs the server, I only have 4 cores and 4 threads).

 

Quote

but I think the issue is actually buried somewhere in the TrueNAS special-sauce internal VM network configuration

My thought exactly. I have run OpenVPN server earlier with not issues (before Trina's I was using Linux), but this is beyond me.

 

Why can I browse the SMB share of my TrueNAS box (Total commander connects with the IP of the TrueNAS box) yet cannot access the config page (the same IP that Total commander uses)

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×