republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » [Kerio 4.x] Openvpn and 4.3
Search Topic:
Uniqs:
325
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies


dpocoroba
Premium
join:2000-11-14
224.0.0.5

[Kerio 4.x] Openvpn and 4.3

Anyone here run Kerio and openvpn ? I recently switched to this firewall after I installed the latest version of ZoneAlarm and watched it bloat my system. I got all my apps working like a champ except openvpn.

It only seems to allow me to connect if I disable the firewall completely as in "shut it down" It used to work fine with ZA however I like the idea of having control of everything using the packet filter. I know the rules are correct since my sniffer confirms the ports used.

I am assuming software firewalls such as these have the default "deny all" inbound if there is no rule for it?

DP
--
"Knowledge is contagious, infect"


madirish
Premium
join:2003-08-04
Cleveland, OH


2 edits
you could make an allow all rule for openvpn (I don't use this) set the rule up to the top of your rule set and set it to log and see what it needs-you can adjust it from there

It's also a good idea if you have a block all rule to to set it to log and alert.I like to use a block all "in" only,that way anything that tries to "get out" I get an alert from Kerio.

If this doesn't work try disabling all modules except Network Security and see what happens.


gwwalks

@airtelbroadband.in

reply to dpocoroba
If you are running XPSP2 + OpenVPN + Kerio, there is a known problem with this combo, see:

»openvpn.se/xpsp2_problem.html

XPSP2 + OpenVPN + ZoneAlarm as also W2K + OpenVPN + Kerio works fine.


dpocoroba
Premium
join:2000-11-14
224.0.0.5
That about sums up my problem thanks, looks like its back to an older version of ZA.
--
"Knowledge is contagious, infect"


Bill_MI
Bill In Michigan
Premium,MVM
join:2001-01-03
Royal Oak, MI
·Comcast

I know you have the answer but your subject made me look closer. I am successfully running exactly your combo except for the all-important XP/SP2 (I'm Win2K/SP4).

Thanks, you put another nail to never upgrade to XP.


dpocoroba
Premium
join:2000-11-14
224.0.0.5

I didn't run SP2 for the longest time. till the tech desk at my work installed it as part of a new image for other software to function properly. I really would like to keep Kerio since it gives me that much more control by using the packet filter compared to ZA.
--
"Knowledge is contagious, infect"
Forums » The Site » Old Forums » Kerio - Tiny Support


Wednesday, 02-Dec 13:21:50 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [159] Comcast Releasing Promised Usage Meter
· [74] Latest Consumer Reports Survey Not Kind To AT&T
· [69] Baltimore To Ban Lazy Cable Installs
· [60] Broadband Killed The Game Console
· [54] Rogers Unveils The ISP Dream Model
· [51] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [46] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [36] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
Most people now reading
· MS admits Windows Updates principally created to annoy [Security]
· LFM Overkill [World of Warcraft]
· Am I the only one that loves to work in IT? [No, I Will Not Fix Your #@$!! Computer]
· So I found a gold mine... [World of Warcraft]
· UBB round 2 at the CRTC [Canadian Broadband]
· Data Usage Meter Launched [Comcast HSI]
· [Newsgroups] Newzleech down? [Filesharing Software]
· cleaning LCD [General Questions]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· Windows 7 boot manager editing questions [Microsoft Help]