UDP problem…



I found a peculiar problem while I was setting up an openvpn link the other day. The goal was a simple shared key setup and I started with the sample configuration and modified it a bit to fit the circumstances, I allowed the correct UDP port through the firewall (I think 1194 if I recall correctly) and … it didn’t work. So…. I started over and worked from empty config files and put in the bare minimums… it still didn’t work – no appearance that it was making the connection at all to negotiate the link. I double and triple checked the firewall config/restarted it… nothing Then I decided to try TCP instead of a UDP port. Changed the firewall config to allow the TCP traffic on 1194, adjusted the server and client config and lo and behold it worked. The firewall in question….


Is a VERY old and due for software rebuild Mandrake SNF (Single Network Firewall). I had hoped to be able to go the upgrade route to the MNF series, but license changes there have made the price for them out of reason. (And if I were to do it, I’d have to make too many modifications to make it worth doing). Of course, MNF2 isn’t freely available at all (as per my last check.) So… IPcop may be in the future for that setup.

The bottom line is that there seems to be something funky with UDP and this Mandrake SNF install. The moral of the story may be to consider TCP if you run into problems with a UDP connection over a firewall (and can choose the protocol.)

Related Posts

Blog Traffic Exchange Related Posts
  • Computer security software nets $2.6 Billion over last two years. SecurityFix is talking about the computer security industry. Further, computer users spend $9 billion a year on computers repairs from spyware and antivirus. This reminds me of a recent story of a man that threw out a perfectly good machine because it was infested with spyware. For starters, I do......
  • IPtables magic, or... Blocking Aggressive Outbound Traffic with IPtables Blocking Aggressive Outbound Traffic with IPtables. For starters, I've tested this on a test system that started out with NO iptables rules, and then moved on to an IPCop install (the vmware download from vmwarez.com...) I've detailed previously one dilemma that I had with regard to my own cable connection......
  • Ultravnc for remote computer support A little while back I talked some about TightVNC which for a long time has been my favorite implementation of a remote framebuffer, or remote desktop viewing protocol known as VNC (Virtual Network Computing.) The original VNC (now realvnc) came out of AT&T research labs in the UK and has......
Blog Traffic Exchange Related Websites
  • Why the Google Admob Acquisition is Important to Me Earlier this week Google made a $750 Million purchase of Admob a company specializing in mobile advertising. It surprised the market in two ways. It was Google's 3rd largest acquisition (behind DoubleClick and YouTube) ever. The mobile advertising industry is fairly small at this time. However, Google is moving into......
  • Network Marketing Blog - It's Time To Take It Up A Notch! Network Marketing Blog - Why Blogging Is Stupid Easy   [/caption] On a regular basis I see sites that are starting to tell people how important blogging is to their business.  I made a huge mistake when I first started telling people they should blog back in 2006. That mistake......
  • Understanding How Social Networking Works for Blogs By now, the phrase social networking has been emblazoned on most of our minds. The problem is, not a lot of people understand how it really works or how to use it to promote their sites and their blogs. When used properly, social networking can be very beneficial and can......
www.pdf24.org    Send article as PDF   

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

Comments are closed.


Switch to our mobile site