Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Open VPN and new ESXI host

Posted on 2016-07-25
14
Medium Priority
?
55 Views
Last Modified: 2016-08-29
We use a Ubuntu openVPN VM as a VPN server for 3CX - Yealink phone clients. I recently migrated the VM to a new ESXi 5.5 server. Now the clients won't register. All IP configs remained the same. I've re-enabled the original VM on the original host and we are back in operation. However I need to resolve this soon as the hardware on the old host is iffy. I acquired this installation and have limited knowledge of OpenVPN.
 
Is this a MAC address issue in OpenVPN? Do I need to recreate the tar file on the new host? Hoping it's a quick config edit not a re-deployment.
0
Comment
Question by:Member_2_7965582
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 7
  • 4
  • 3
14 Comments
 
LVL 71

Expert Comment

by:Qlemo
ID: 41729306
Are you using bridging (VPN addresses are in the same network as the PBX) or routing (different VPN subnet)? If the latter, you need to change the routing information for the OpenVPN subnet used on either the PBX or your default router, wherever there is a route already (pointing to "old" OpenVPN box).
0
 

Author Comment

by:Member_2_7965582
ID: 41729533
Thanks but it is bridging.
0
 
LVL 12

Expert Comment

by:Mr Tortur
ID: 41729577
Hi,
I know vmware but not openvpn...
I recently migrated the VM to a new ESXi 5.5 server
How did you do that, using which tool or option ?
0
Portable, direct connect server access

The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

 
LVL 71

Expert Comment

by:Qlemo
ID: 41729690
Agree, the way how you migrated is important.

If it is an exact copy without any change, then you did not migrate but copy it over - and there should be no change in behaviour. The new VMware host's virtual switch config might be the culprit, though.

A migration changes the config.
0
 

Author Comment

by:Member_2_7965582
ID: 41730550
I used Veeam's quick migration option. I'll try to copy the VM manually and report back.
0
 
LVL 12

Expert Comment

by:Mr Tortur
ID: 41730724
Hi,
I would advise using export/import option in ESXi. You got to shutdown the VM during this operation, but the VM will be exactly the same.
Or use a backup / restore..
0
 

Author Comment

by:Member_2_7965582
ID: 41749673
I ran a restore on the OpenVPN VM to the new ESXi server. Same results.
0
 
LVL 12

Expert Comment

by:Mr Tortur
ID: 41750108
Hi,
is there a separated network or some particularity with this VM network, or is it in the same vswitch and LAN than other VM ?

Can you check if the MAC address has changed between the old and new one ?

You say you move the VM from some ESXi to another, is the new ESXi configured in the same way than the old one, e.g. about networking ?
0
 

Author Comment

by:Member_2_7965582
ID: 41750559
Both ESXi are in bridging mode and each use a non-vlan'd VM switch.
I checked the VM MAC and they are identical (thought this would be promising but no). Aside from a different hardware underneath the ESXi servers both VM's are identical in config, software and settings.
I'm not aware of a import/export function in the vSphere aside from turning the VM into a OVF template.

My gut tells me this has more to do with the OpenVPN VM not liking a UUID in VMware.
0
 
LVL 71

Expert Comment

by:Qlemo
ID: 41750751
Do you have something to test the OpenVPN outside of the Yealink phones?
As I read it, you only can tell yet that SIP register does not work from the phones if using the new VM. But we do not see if anything is arriving at the OpenVPN server, and that should be the next check - does the OpenVPN connection itself work?
Then we can check for LAN access, and then for SIP.

OpenVPN usually keeps a log and a status file in the CONFIG or LOG folder. That should show something about connection attempts and current connections.

Also note that using the same MAC address on different switches might create issues for a short time, until the change has been learned thru all switches concerned.
0
 
LVL 12

Expert Comment

by:Mr Tortur
ID: 41751686
Hi,
I'm not aware of a import/export function in the vSphere aside from turning the VM into a OVF template.
yes it is the same option, export to an ovf template, and then import  :-)

Both ESXi are in bridging mode and each use a non-vlan'd VM switch.
ok, but I don't know about a bridging mode in ESXi, this is in Vmware workstation AFAIK.
0
 

Author Comment

by:Member_2_7965582
ID: 41764556
We beleive we've found a solution. will post the results as soon as it's implemented.
0
 

Accepted Solution

by:
Member_2_7965582 earned 0 total points
ID: 41768920
Migrated successfully using the following the solution.

Removing the /etc/udev/rules.d/*-persistent-net.rules files in Open VPN VM.
And enabling ‘Promiscuous mode’ in the Networking section of the ESXi host.
0
 

Author Closing Comment

by:Member_2_7965582
ID: 41774458
VM now functions as expected. None of the other proposed solutions were successful.
0

Featured Post

Create the perfect environment for any meeting

You might have a modern environment with all sorts of high-tech equipment, but what makes it worthwhile is how you seamlessly bring together the presentation with audio, video and lighting. The ATEN Control System provides integrated control and system automation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I show you step by step with screenshots to assist you - HOW TO: Deploy and Install the VMware vCenter Server Appliance 6.5 (VCSA 6.5), with some helpful tips along the way.
In the first part of this tutorial we will cover the prerequisites for installing SQL Server vNext on Linux.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.

715 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question