This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| vpn-server [2024/11/06 03:45] – [About IPv6] -Condense, formatting hogwild | vpn-server [2025/11/19 20:32] (current) – [Problem: Traffic Flowing in only one Direction] hogwild | ||
|---|---|---|---|
| Line 13: | Line 13: | ||
| \\ | \\ | ||
| - | However, there are still differences between versions. For example, clients and servers may be configured on different versions. Encryption algorithms may be negotiated differently among versions. FreshTomato | + | However, there are still differences between versions. For example, clients and servers may be configured on different versions. Encryption algorithms may be negotiated differently among versions. FreshTomato |
| \\ | \\ | ||
| Line 351: | Line 351: | ||
| * AES-128-GCM | * AES-128-GCM | ||
| * AES-256-GCM | * AES-256-GCM | ||
| - | * AES-128-CB | + | * AES-128-CBC |
| * AES-256-CBC | * AES-256-CBC | ||
| Line 448: | Line 448: | ||
| Here, you can specify a custom configuration for the OpenVPN server to use. | Here, you can specify a custom configuration for the OpenVPN server to use. | ||
| - | For details about valid custom parameters, please see: \\ [[https:// | + | For details about valid custom parameters, please see: \\ [[https:// |
| Line 534: | Line 534: | ||
| A code commit was entered for Elliptical elliptic curve cryptography on 2024-10-19, and should be included in the next release. If your release doesn' | A code commit was entered for Elliptical elliptic curve cryptography on 2024-10-19, and should be included in the next release. If your release doesn' | ||
| - | Elliptic curve cryptography is also implemented in releases of OpenVPN | + | Elliptic curve cryptography is also implemented in OpenVPN |
| \\ | \\ | ||
| Line 633: | Line 633: | ||
| - | ==== Routing all Traffic | + | ==== Routing all Traffic |
| You can route all network traffic over the VPN. The configuration for this is fairly simple. However, you'll need to learn how to configure NAT on your VPN server for the virtual TUN adapter. | You can route all network traffic over the VPN. The configuration for this is fairly simple. However, you'll need to learn how to configure NAT on your VPN server for the virtual TUN adapter. | ||
| Line 696: | Line 696: | ||
| \\ | \\ | ||
| - | \\ | + | ===== OpenVPN Server - Notes and Troubleshooting ===== |
| - | \\ | + | ==== Problem: Traffic Flowing in only one Direction ==== |
| - | \\ | + | \\ |
| + | Sometimes, it may occur that from one end of your setup (“A)”, you can ping devices and both VPN virtual interfaces at the other end (“B”), however, from end B, you cannot ping the remote router or devices or the client VPN virtual interface at end A. | ||
| + | It this occurs, please check that there are default routes setup from B to A. Also, please check that on the client side, (in this case, end B), the “Inbound firewall” option is disabled. On the server side, make sure to add the client' | ||
| + | \\ | ||
| + | \\ | ||
| + | | ||
| + | | ||