Contents
Why is tunnelblick not working?
Tunnelblick can get stuck with the status “Resolving domain name” if your computer has invalid DNS configuration, a previous connection was disconnected improperly, or you do not have a working network connection. Verify you have a working internet connection and that the configured DNS resolver works.
Do I need to open ports for OpenVPN?
You should use a port number that is not already used by a network service running on the Access Server host. Note that the Admin Web UI port number need not be given out to VPN client users, so it does not need to be a well-known port number. Next, ovpn-init prompts for TCP port number for VPN connections.
Is it safe to open OpenVPN port?
OpenVPN – Defaults to port 1194 TCP or UDP and OpenVPN Access Server – Defaults to port 443 TCP and 1194 UDP (443 is used if forwarding to Connect Client) While OpenVPN is considered secure, further security hardening is required.
Is there a troubleshooting page for a VPN tunnel?
It does not deal with problems in reaching a target system over the established VPN tunnel once the VPN tunnel is already working. That is handled in a separate page: troubleshooting reaching systems over the VPN tunnel.
Is there a troubleshooting page for OpenVPN?
Therefore we’ve dedicated a section of our website specifically to troubleshooting problems that you can encounter when deploying our OpenVPN Access Server product. As people encounter problems and report them to us, we will expand this website to include any known problems and solutions to these problems.
What are the ports for a VPN tunnel?
Make sure that inbound traffic to UDP ports 500 [IKE], 4500 [NAT-T], and IP 50 [ESP] on the customer gateway allow rekeys for the AWS endpoint. For more information, see Tunnel options for your Site-to-Site VPN connection and Your customer gateway device.
Why does my VPN tunnel have idle timeouts?
Idle timeouts due to low traffic on a VPN tunnel or vendor-specific customer gateway device configuration issues If a VPN peer doesn’t respond to three successive DPDs, then the peer is considered dead and the tunnel is closed. If your customer gateway device has DPD enabled, be sure that: It’s configured to receive and respond to DPD messages.