  dpocoroba Premium join:2000-11-14 224.0.0.5
| reply to Bill_MI Re: [Kerio 4.x] Openvpn and 4.3
I didn't run SP2 for the longest time. till the tech desk at my work installed it as part of a new image for other software to function properly. I really would like to keep Kerio since it gives me that much more control by using the packet filter compared to ZA. -- "Knowledge is contagious, infect" |
|
  Bill_MI Bill In Michigan Premium,MVM join:2001-01-03 Royal Oak, MI
·Comcast
| reply to dpocoroba I know you have the answer but your subject made me look closer. I am successfully running exactly your combo except for the all-important XP/SP2 (I'm Win2K/SP4).
Thanks, you put another nail to never upgrade to XP.  |
|
  dpocoroba Premium join:2000-11-14 224.0.0.5 | reply to gwwalks That about sums up my problem thanks, looks like its back to an older version of ZA. -- "Knowledge is contagious, infect" |
|
  gwwalks
@airtelbroadband.in
| reply to dpocoroba If you are running XPSP2 + OpenVPN + Kerio, there is a known problem with this combo, see:
»openvpn.se/xpsp2_problem.html
XPSP2 + OpenVPN + ZoneAlarm as also W2K + OpenVPN + Kerio works fine. |
|
  madirish Premium join:2003-08-04 Cleveland, OH
2 edits | reply to dpocoroba you could make an allow all rule for openvpn (I don't use this) set the rule up to the top of your rule set and set it to log and see what it needs-you can adjust it from there
It's also a good idea if you have a block all rule to to set it to log and alert.I like to use a block all "in" only,that way anything that tries to "get out" I get an alert from Kerio.
If this doesn't work try disabling all modules except Network Security and see what happens. |
|
  dpocoroba Premium join:2000-11-14 224.0.0.5
| Anyone here run Kerio and openvpn ? I recently switched to this firewall after I installed the latest version of ZoneAlarm and watched it bloat my system. I got all my apps working like a champ except openvpn.
It only seems to allow me to connect if I disable the firewall completely as in "shut it down" It used to work fine with ZA however I like the idea of having control of everything using the packet filter. I know the rules are correct since my sniffer confirms the ports used.
I am assuming software firewalls such as these have the default "deny all" inbound if there is no rule for it?
DP -- "Knowledge is contagious, infect" |
|