Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Company OpenVPN doesn't work when portmaster is running #654

Closed
northys opened this issue May 16, 2022 · 12 comments
Closed

Company OpenVPN doesn't work when portmaster is running #654

northys opened this issue May 16, 2022 · 12 comments
Labels
in/compatibility TYPE: a report about in/compatibility needs debug info ATTRIBUTE: this issue requires debug info to continue handling it stale ATTRIBUTE: this issue has not had recent activity

Comments

@northys
Copy link
Contributor

northys commented May 16, 2022

What worked?

OpenVPN which is use to access company's private subnet.

What did not work?

I couldn't connect to domains which resolves to private subnet. I enabled resolving of those domains by turning of enforce public/private split or whatever it is called... I still can't ping IPs on OpenVPN though...

EDIT: this one
image

Debug Information:

I'M RUNNING UBUNTU AGAIN.

https://support.safing.io/privatebin/?ee0ea3dd424b63c8#7LnDp9zYSG47iBYkRzTYnZZxujmuJsXyiKnLimPkpkBU

@northys northys added the in/compatibility TYPE: a report about in/compatibility label May 16, 2022
@ghost ghost assigned dhaavi May 17, 2022
@dhaavi
Copy link
Member

dhaavi commented May 20, 2022

Hey @northys, what did the Portmaster say about these connections? Were you able to find them in the network monitor?

@northys
Copy link
Contributor Author

northys commented May 22, 2022

I was able to see blocked requests before I've enabled resolving of private subnets from public DNS. IIRC I did not see the connections after I've managed the DNS to resolve it.

We use the L2 OpenVpn (I don't know if it's tun or tap, but I'm 100% sure it's the L2 one which doesn't work on Android).

I may install portmaster again to provide you more info when I get to mood of doing so but right now I can't afford to debug random network stuff in my new 9to5 job :(

@northys
Copy link
Contributor Author

northys commented May 23, 2022

Sorry for not showing much but I'm too lazy to grayout company's domain. I can see it resolved to correct IP and it is green / allowed.

Firefox says: Unable to connect

Firefox can’t establish a connection to the server at grafana.xyz.com.

image

@northys
Copy link
Contributor Author

northys commented May 23, 2022

Dafuq, it loads after computer restart.

@dhaavi
Copy link
Member

dhaavi commented May 24, 2022

Hm. That is weird.
Did you upgrade the Portmaster with the reboot?

@northys
Copy link
Contributor Author

northys commented May 24, 2022

I installed the portmaster again on monday around 10:00 ao so I did not install any updates if you didn't release anything that day.

@northys
Copy link
Contributor Author

northys commented May 24, 2022

When I opened the issue the OpenBPN was managed by network manager gnome interface but about 4 days ago I switched to openvpn systemd service... But I dont think thats the case because that would work on monday after the install immediately.

@varunbpatil
Copy link

Hi @dhaavi , I have the same issue with my company openvpn. Private IP's are not resolved.
Looking at the network monitor, I see

Verdict: ReroutetoToNs
Reason: redirecting rogue dns query

How do I make this work on Linux?

@Raphty
Copy link
Member

Raphty commented Oct 6, 2023

@varunbpatil can you send in the debug info for your issue if it still is an issue?

@Raphty Raphty added the needs debug info ATTRIBUTE: this issue requires debug info to continue handling it label Oct 6, 2023
@github-actions
Copy link

github-actions bot commented Oct 6, 2023

Hey @northys, thank you for raising this issue with us.

After a first review we noticed that we will require the Debug Info for further investigation. However, you haven't supplied any Debug Info in your report.

Please collect Debug Info from Portmaster while the reported issue is present.

Copy link

This issue has been automatically marked as inactive because it has not had activity in the past two months.

If no further activity occurs, this issue will be automatically closed in one week in order to increase our focus on active topics.

@github-actions github-actions bot added the stale ATTRIBUTE: this issue has not had recent activity label Dec 11, 2023
Copy link

This issue has been automatically closed because it has not had recent activity. Thank you for your contributions.

If the issue has not been resolved, you can find more information in our Wiki or continue the conversation on our Discord.

@github-actions github-actions bot closed this as not planned Won't fix, can't repro, duplicate, stale Dec 18, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
in/compatibility TYPE: a report about in/compatibility needs debug info ATTRIBUTE: this issue requires debug info to continue handling it stale ATTRIBUTE: this issue has not had recent activity
Projects
None yet
Development

No branches or pull requests

4 participants