Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


ackley

9 posts

Wannabe Geek


#269847 11-Apr-2020 00:21
Send private message

Hello,

 

I have just setup a OpenVPN server on a linux machine. I noticed that I cant access the server from outside using any port other than 443. This leads me to believe they (Spark) block all ports except 80 and 443? I looked through my firewall settings and config I just cant find anything that would stop port 1194 from working on my site.

 

I have it working for now but would like to use port 1194.

 

Anyone had similar experiences?

 

 

 

 


Filter this topic showing only the reply marked as answer Create new topic
gehenna
8435 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #2459157 11-Apr-2020 00:24
Send private message

Have you forwarded that port?

 
 
 
 

Shop now for Lenovo laptops and other devices (affiliate link).
cyril7
9050 posts

Uber Geek

ID Verified
Trusted
Subscriber

  #2459175 11-Apr-2020 07:13
Send private message

Spark don't block any ports except 25 as far as I am aware.

Cyril

RunningMan
8879 posts

Uber Geek


  #2459178 11-Apr-2020 07:37
Send private message

The ports Spark block are listed here https://www.geekzone.co.nz/forums.asp?forumid=39&topicid=250712&page_no=1#2243183

 

You can request an unblock of those ports here https://www.spark.co.nz/help/get-more/xtra/port-25/




gehenna
8435 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #2459278 11-Apr-2020 11:00
Send private message

You still need to port forward so the traffic knows where to go.


ackley

9 posts

Wannabe Geek


  #2459286 11-Apr-2020 11:13
Send private message

Thanks. It must be a router issue.

 

I'm doing things a bit non standard. I have a Cisco ASA5505 doing PPPoE and all the router functionality. 

 

As far as I am aware NAT is setup correctly, have setup a access-list for udp 1194 and setup a static route to server. Needs a bit of investigation on my side.

 

 


hio77
'That VDSL Cat'
12999 posts

Uber Geek

ID Verified
Trusted
Lizard Networks
Subscriber

  #2459315 11-Apr-2020 11:54
Send private message

Sounds to me like it's your setup.

All works fine here.




#include <std_disclaimer>

 

Any comments made are personal opinion and do not reflect directly on the position my current or past employers may have.

 

 


ackley

9 posts

Wannabe Geek


  #2459338 11-Apr-2020 13:23
Send private message

My bad. Found I put the wrong port number for the access-list.

 

 

 

If anyone interested in using a ASA5505 or similar for a router I used the following config.

 

 

 

For PPPoE:

 

vpdn group spark_fibre request dialout pppoe
vpdn group spark_fibre localname user@spark.co.nz
vpdn group spark_fibre ppp authentication pap
vpdn username user@spark.co.nz password randompassword
dhcpd auto_config outside

 

interface Vlan1
 nameif inside
 security-level 100
 ip address 192.168.1.1 255.255.255.0

interface Vlan10
 nameif outside
 security-level 0
 pppoe client vpdn group spark_fibre
 ip address pppoe setroute

 

interface Ethernet0/0
 switchport access vlan 10
 switchport trunk allowed vlan 10
 switchport mode trunk

 

global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0

 

DHCP:

 

dhcpd address 192.168.1.20-192.168.1.110 inside
dhcpd dns 8.8.8.8 interface inside
dhcpd enable inside

 

 

 

To allow a port to internal server etc: eg ssh

 

access-list external extended permit tcp any interface outside eq ssh

 

static (inside,outside) tcp interface ssh 192.168.1.69 ssh netmask 255.255.255.255

 

 

 

The ASA needs Security Plus Licence and unlimited inside hosts if you using it as dhcp server and got lots of devices around the house.

 

 

 

 


Filter this topic showing only the reply marked as answer Create new topic





News and reviews »

New Suunto Run Available in Australia and New Zealand
Posted 13-May-2025 21:00


Cricut Maker 4 Review
Posted 12-May-2025 15:18


Dynabook Launches Ultra-Light Portégé Z40L-N Copilot+PC with Self-Replaceable Battery
Posted 8-May-2025 14:08


Shopify Sidekick Gets a Major Reasoning Upgrade, Plus Free Image Generation
Posted 8-May-2025 14:03


Microsoft Introduces New Surface Copilot+ PCs
Posted 8-May-2025 13:56


D-Link A/NZ launches DWR-933M 4G+ LTE Cat6 Wi-Fi 6 Mobile Hotspot
Posted 8-May-2025 13:49


Synology Expands DiskStation Lineup with DS1825+ and DS1525+
Posted 8-May-2025 13:44


JBL Releases Next Generation Flip 7 and Charge 6
Posted 8-May-2025 13:41


Arlo Unveils All-New PoE Adapter With Enhanced Connectivity
Posted 8-May-2025 13:36


Fujifilm Instax Mini 41 Review
Posted 2-May-2025 10:12


Synology DS925+ Review
Posted 23-Apr-2025 15:00


Synology Announces DiskStation DS925+ and DX525 Expansion Unit
Posted 23-Apr-2025 10:34


JBL Tour Pro 3 Review
Posted 22-Apr-2025 16:56


Samsung 9100 Pro NVMe SSD Review
Posted 11-Apr-2025 13:11


Motorola Announces New Mid-tier Phones moto g05 and g15
Posted 4-Apr-2025 00:00









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.







Backblaze unlimited backup