We help IT Professionals succeed at work.

Bridging using OpenVPN

Madrilleno
Madrilleno asked
on
1,567 Views
Last Modified: 2008-01-09
I need some help with creating a bridge using OpenVPN.
I am running the server side behind ISA on a windows XP box and the client on a wireless networked laptop, again with XP. I have created tunnels successfully and have been able to ping the server inside the ISA firewall.
Now I am trying to bridge the connection (need to bridge to allow broadcast traffic to reach the client). Looking at the status of OpenVPN on client and server, the client seems to connect to the server, but the connection is reset with the message:-

(On the client status monitor)
SIGUSR1[soft,connection reset] received, process restarting

(On the server status monitor)
SIGUSR1[soft,connection reset] received, clent instance restarting

I have included the .ovpn files below.

Server.ovpn

port 1194
proto tcp
dev tap0
dev-node tap0
ca "C:\\...\\ca.crt"
cert "C:\\...\\C0051XP.crt"
key "C:\\...\\C0051XP.key"  # This file should be kept secret
dh "C:\\...\\dh1024.pem"
server-bridge 10.0.0.9 255.255.255.0 10.0.0.55 10.0.0.57
ifconfig-pool-persist ipp.txt
keepalive 10 120
comp-lzo
persist-key
persist-tun
status openvpn-status.log
verb 3

Client.ovpn

client
dev tap0
dev-node tap0
proto tcp
resolv-retry infinite
nobind
persist-key
persist-tun
ca "C:\\...\\ca.crt"
cert "C:\\...\\C0077.crt"
key "C:\\...\\C0077.key"
comp-lzo
verb 4
Comment
Watch Question

Author

Commented:
Forgot the following drom the Client.ovpn

remote x.y.z.199 1194

Author

Commented:
Solved with some help from Janjust on sourceforge.net

The packets from the client were reaching the server just fine. However, the server did not have a route back to the client to reply (ping the client, destination unreachable). Adding a route (route add [ip of client] mask 255.255.255.240 [ip of ISA server] -p) solved the problem and the two machines connected right away.

Call this one closed.

Madrilleno
Commented:
This one is on us!
(Get your first solution completely free - no credit card required)
UNLOCK SOLUTION

Gain unlimited access to on-demand training courses with an Experts Exchange subscription.

Get Access
Why Experts Exchange?

Experts Exchange always has the answer, or at the least points me in the correct direction! It is like having another employee that is extremely experienced.

Jim Murphy
Programmer at Smart IT Solutions

When asked, what has been your best career decision?

Deciding to stick with EE.

Mohamed Asif
Technical Department Head

Being involved with EE helped me to grow personally and professionally.

Carl Webster
CTP, Sr Infrastructure Consultant
Empower Your Career
Did You Know?

We've partnered with two important charities to provide clean water and computer science education to those who need it most. READ MORE

Ask ANY Question

Connect with Certified Experts to gain insight and support on specific technology challenges including:

  • Troubleshooting
  • Research
  • Professional Opinions
Unlock the solution to this question.
Join our community and discover your potential

Experts Exchange is the only place where you can interact directly with leading experts in the technology field. Become a member today and access the collective knowledge of thousands of technology experts.

*This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

OR

Please enter a first name

Please enter a last name

8+ characters (letters, numbers, and a symbol)

By clicking, you agree to the Terms of Use and Privacy Policy.