republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » [Kerio 4.x] Openvpn and 4.3
Search Topic:
Uniqs:
285
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies


dpocoroba
Premium
join:2000-11-14
224.0.0.5

[Kerio 4.x] Openvpn and 4.3

Anyone here run Kerio and openvpn ? I recently switched to this firewall after I installed the latest version of ZoneAlarm and watched it bloat my system. I got all my apps working like a champ except openvpn.

It only seems to allow me to connect if I disable the firewall completely as in "shut it down" It used to work fine with ZA however I like the idea of having control of everything using the packet filter. I know the rules are correct since my sniffer confirms the ports used.

I am assuming software firewalls such as these have the default "deny all" inbound if there is no rule for it?

DP
--
"Knowledge is contagious, infect"


madirish
Premium
join:2003-08-04
Cleveland, OH


2 edits
you could make an allow all rule for openvpn (I don't use this) set the rule up to the top of your rule set and set it to log and see what it needs-you can adjust it from there

It's also a good idea if you have a block all rule to to set it to log and alert.I like to use a block all "in" only,that way anything that tries to "get out" I get an alert from Kerio.

If this doesn't work try disabling all modules except Network Security and see what happens.


gwwalks

@airtelbroadband.in

reply to dpocoroba
If you are running XPSP2 + OpenVPN + Kerio, there is a known problem with this combo, see:

»openvpn.se/xpsp2_problem.html

XPSP2 + OpenVPN + ZoneAlarm as also W2K + OpenVPN + Kerio works fine.


dpocoroba
Premium
join:2000-11-14
224.0.0.5
That about sums up my problem thanks, looks like its back to an older version of ZA.
--
"Knowledge is contagious, infect"


Bill_MI
Bill In Michigan
Premium,MVM
join:2001-01-03
Royal Oak, MI
·Comcast

I know you have the answer but your subject made me look closer. I am successfully running exactly your combo except for the all-important XP/SP2 (I'm Win2K/SP4).

Thanks, you put another nail to never upgrade to XP.


dpocoroba
Premium
join:2000-11-14
224.0.0.5

I didn't run SP2 for the longest time. till the tech desk at my work installed it as part of a new image for other software to function properly. I really would like to keep Kerio since it gives me that much more control by using the packet filter compared to ZA.
--
"Knowledge is contagious, infect"
Forums » The Site » Old Forums » Kerio - Tiny Support


Monday, 09-Nov 17:39:49 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [61] VoIP Over 3G Still Not Working For iPhone
· [44] Verizon Keeps Swinging At AT&T
· [26] Bill Would Force ISPs To Block Financial Scams
· [14] Mediacom Hints At 50, 100 Mbps Speeds
· [11] Clearwire To Get Another $1.5 Billion
· [9] 15 States Have Now Gotten Broadband Mapping Money
· [4] AT&T Launching New 7.2 Mbps 3G Modem
Most people now reading
· Google Has Acquired Gizmo5 [VOIP Tech Chat]
· Divorce advice... [General Questions]
· Framed for child porn 151; by a PC virus [Security]
· My cat is reluctant to exercise. [General Questions]
· How in the world am I going to get into college? [General Questions]
· 60 Minutes piece on cyber security last night [Security]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Moore Responds to CRTC BS.... Finally [TekSavvy]
· Your ideal heroic 5-man class comp! [World of Warcraft]
· A fishy CRTC tarriff filed by bell? [TekSavvy]