Hi,
i have set up openvpn server on my opensuse machine in lan…
The router forwards to the lan ip and should work because i have running it on a debian machine.
But on opensuse it doesent work at all… If i nmap from lan the vpn ports it shows them filtered, same whit vnc… Only ssh and samba are accessible… Than i have tried to switch off the firewall but nothing changes… Iptables reports all rules unloaded…
I have set up the vpn according to this tutorail.
I know that masquerading needs the firewall but why the ports are filtered even if the firewall is disabled.
# Generated by iptables-save v1.4.21 on Tue Feb 21 10:47:28 2017*nat
:PREROUTING ACCEPT [32:4478]
:INPUT ACCEPT [19:2189]
:OUTPUT ACCEPT [3:421]
:POSTROUTING ACCEPT [3:421]
COMMIT
# Completed on Tue Feb 21 10:47:28 2017
# Generated by iptables-save v1.4.21 on Tue Feb 21 10:47:28 2017
*raw
:PREROUTING ACCEPT [1048:65498]
:OUTPUT ACCEPT [1018:367305]
COMMIT
# Completed on Tue Feb 21 10:47:28 2017
# Generated by iptables-save v1.4.21 on Tue Feb 21 10:47:28 2017
*filter
:INPUT ACCEPT [1030:63069]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [1018:367305]
COMMIT
netstat
Active Internet connections (only servers)Proto Recv-Q Send-Q Local Address Foreign Address State User Inode PID/Program name
tcp 0 0 127.0.0.1:631 0.0.0.0:* LISTEN 0 19987 1656/cupsd
tcp 0 0 0.0.0.0:445 0.0.0.0:* LISTEN 0 22179 1936/smbd
tcp 0 0 0.0.0.0:139 0.0.0.0:* LISTEN 0 22180 1936/smbd
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 0 20911 1778/sshd
tcp 0 0 :::445 :::* LISTEN 0 22177 1936/smbd
tcp 0 0 :::139 :::* LISTEN 0 22178 1936/smbd
tcp 0 0 :::1716 :::* LISTEN 1000 29796 2842/kdeconnectd
tcp 0 0 :::22 :::* LISTEN 0 20913 1778/sshd
udp 0 0 0.0.0.0:36540 0.0.0.0:* 483 19060 1178/avahi-daemon:
udp 0 0 10.0.0.1:123 0.0.0.0:* 74 21959 1784/ntpd
udp 0 0 192.168.1.10:123 0.0.0.0:* 0 20921 1784/ntpd
udp 0 0 127.0.0.1:123 0.0.0.0:* 0 20919 1784/ntpd
udp 0 0 0.0.0.0:123 0.0.0.0:* 0 20915 1784/ntpd
udp 0 0 192.168.1.255:137 0.0.0.0:* 0 23163 1886/nmbd
udp 0 0 192.168.1.10:137 0.0.0.0:* 0 23162 1886/nmbd
udp 0 0 0.0.0.0:137 0.0.0.0:* 0 23152 1886/nmbd
udp 0 0 192.168.1.255:138 0.0.0.0:* 0 23165 1886/nmbd
udp 0 0 192.168.1.10:138 0.0.0.0:* 0 23164 1886/nmbd
udp 0 0 0.0.0.0:138 0.0.0.0:* 0 23153 1886/nmbd
udp 0 0 0.0.0.0:1194 0.0.0.0:* 0 22979 1781/openvpn
udp 0 0 0.0.0.0:5353 0.0.0.0:* 483 19058 1178/avahi-daemon:
udp 0 0 :::1716 :::* 1000 29795 2842/kdeconnectd
udp 0 0 :::52956 :::* 483 19061 1178/avahi-daemon:
udp 0 0 :::123 :::* 0 22989 1784/ntpd
udp 0 0 :::5353 :::* 483 19059 1178/avahi-daemon:
ip addr
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1 link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
2: em1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast master br0 state UP group default qlen 1000
link/ether 18:66:da:38:76:61 brd ff:ff:ff:ff:ff:ff
3: p1p1: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc pfifo_fast master br0 state DOWN group default qlen 1000
link/ether 00:15:17:90:1d:6f brd ff:ff:ff:ff:ff:ff
4: p2p1: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc pfifo_fast master br0 state DOWN group default qlen 1000
link/ether 00:15:17:70:19:a4 brd ff:ff:ff:ff:ff:ff
5: br0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UP group default qlen 1000
link/ether 00:15:17:70:19:a4 brd ff:ff:ff:ff:ff:ff
inet 192.168.1.10/24 brd 192.168.1.255 scope global br0
valid_lft forever preferred_lft forever
6: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UNKNOWN group default qlen 100
link/none
inet 10.0.0.1 peer 10.0.0.2/32 scope global tun0
valid_lft forever preferred_lft forever