Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » [Kerio 4.x] Openvpn and 4.3
Search Topic:
Uniqs:
148
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies


dpocoroba
Premium
join:2000-11-14
224.0.0.5

[Kerio 4.x] Openvpn and 4.3

Anyone here run Kerio and openvpn ? I recently switched to this firewall after I installed the latest version of ZoneAlarm and watched it bloat my system. I got all my apps working like a champ except openvpn.

It only seems to allow me to connect if I disable the firewall completely as in "shut it down" It used to work fine with ZA however I like the idea of having control of everything using the packet filter. I know the rules are correct since my sniffer confirms the ports used.

I am assuming software firewalls such as these have the default "deny all" inbound if there is no rule for it?

DP
--
"Knowledge is contagious, infect"


madirish
Premium
join:2003-08-04
Cleveland, OH


edit:
April 12th, @09:57PM

you could make an allow all rule for openvpn (I don't use this) set the rule up to the top of your rule set and set it to log and see what it needs-you can adjust it from there

It's also a good idea if you have a block all rule to to set it to log and alert.I like to use a block all "in" only,that way anything that tries to "get out" I get an alert from Kerio.

If this doesn't work try disabling all modules except Network Security and see what happens.


gwwalks

@airtelbroadband.in

reply to dpocoroba
If you are running XPSP2 + OpenVPN + Kerio, there is a known problem with this combo, see:

»openvpn.se/xpsp2_problem.html

XPSP2 + OpenVPN + ZoneAlarm as also W2K + OpenVPN + Kerio works fine.


dpocoroba
Premium
join:2000-11-14
224.0.0.5
That about sums up my problem thanks, looks like its back to an older version of ZA.
--
"Knowledge is contagious, infect"


Bill_MI
Bill In Michigan
Premium,MVM
join:2001-01-03
Royal Oak, MI
·EarthLink

I know you have the answer but your subject made me look closer. I am successfully running exactly your combo except for the all-important XP/SP2 (I'm Win2K/SP4).

Thanks, you put another nail to never upgrade to XP.


dpocoroba
Premium
join:2000-11-14
224.0.0.5

I didn't run SP2 for the longest time. till the tech desk at my work installed it as part of a new image for other software to function properly. I really would like to keep Kerio since it gives me that much more control by using the packet filter compared to ZA.
--
"Knowledge is contagious, infect"
Forums » The Site » Old Forums » Kerio - Tiny Support


Friday, 21-Nov 18:57:19 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [198] Obama FCC Selection Team Won't Make AT&T Happy
· [106] DSL's Not Dead Yet
· [84] Zone Alarm Pro Free Just For Today
· [80] Harvard Law Professor Sues RIAA
· [74] Storm Reviews Come Rolling In
· [67] New Xbox 360 'Experience' Goes Live
· [67] CRTC Rules Against Indie ISPs In Throttling Dispute
· [51] Cable Grabbing 71% Of New Broadband Customers
· [50] Just 26% of U.S. Broadband Users Faster Than 5Mbps
· [48] Comcast DOCSIS 3.0 Hits Pacific Northwest In December
Most people now reading
· Pentagon Hit by Unprecedented Cyber Attack [Security]
· [Scam] Colbert & Johnson [Spam, Scam and Phishbusters]
· CRTC ruling coming Thursday Nov 20 [TekSavvy]
· Appliance repair bill question. [Home Repair & Improvement]
· Upgrades... What's next... [TekSavvy]
· [iPhone] 2.2 out now [All things Macintosh]
· wow account hacked [World of Warcraft]
· [Business] how to bridge a smc 8014 business class modem [Comcast HSI]
· [Connectivity] 4 brilliant techs came out and I Still have issue [Comcast HSI]