VPN behind NAT/FW

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
b_soft
Posts: 5
Joined: Thu Oct 02, 2014 7:26 am

VPN behind NAT/FW

Post by b_soft » Thu Oct 02, 2014 9:18 am

Hi

I have a Network (192.168.15.0) behind NAT and Firewall.

I Need to connect a single Client to this Network (192.168.1.0).

The Problem is, I cannot do portforwarding or something else on the SERVER side. On Client side, it is possible to open ports.

VPN Azure works but the latency is to high from europe (700ms)...

I Need a vpn Setup in which i not must Open ports on Server side.

Ideas?

Thanks

redbean
Posts: 8
Joined: Tue Sep 30, 2014 12:33 pm

Re: VPN behind NAT/FW

Post by redbean » Fri Oct 03, 2014 12:05 am

If I understand correctly, this is one of the key features of SoftEther VPN: "SoftEther VPN uses HTTPS protocol in order to establish a VPN tunnel. HTTPS (HTTP over SSL) protocol uses the 443 of TCP/IP port as destination. This port is well-know and almost all firewalls, proxy servers and NATs can pass the packet which are consisted in HTTPS protocol."
Please view http://www.softether.org/1-features/1._ ... nnectivity for more.
If you are able to use SoftEther client software on the device, you're set.

b_soft
Posts: 5
Joined: Thu Oct 02, 2014 7:26 am

Re: VPN behind NAT/FW

Post by b_soft » Fri Oct 03, 2014 6:15 am

Hi

I think you missunderstand me. I can't connect to Server in any way, no portforwarding is possible.

Or another question: I can only do portforwarding on Client side. Is it possible to connect from the Client to the Server and see from the "Server" side the net behind the "Client" side?



Thanks
Benjamin

redbean
Posts: 8
Joined: Tue Sep 30, 2014 12:33 pm

Re: VPN behind NAT/FW

Post by redbean » Fri Oct 03, 2014 10:09 am

b_soft wrote:
> I think you missunderstand me. I can't connect to Server in any way, no
> portforwarding is possible.

I also fear I misunderstand. So you are saying that even port 443 is blocked? This port should be open by default without port forwarding, even behind a firewall. Have you tried?

> Or another question: I can only do portforwarding on Client side. Is it
> possible to connect from the Client to the Server and see from the
> "Server" side the net behind the "Client" side?

What if you install the server software on the client device?

b_soft
Posts: 5
Joined: Thu Oct 02, 2014 7:26 am

Re: VPN behind NAT/FW

Post by b_soft » Fri Oct 03, 2014 10:29 am

> I also fear I misunderstand. So you are saying that even port 443 is blocked? This
> port should be open by default without port forwarding, even behind a firewall.
> Have you tried?

No, the port is not open (why should be open by Default??) i have tried....


> What if you install the server software on the client device?

Yes, thats my idea but if i connect this way, i can't Access the devices from the "Server" i think?!
Normaly its only possible to see to the Server subnet and not the Client subnet?! Or not?

Thanks

b_soft
Posts: 5
Joined: Thu Oct 02, 2014 7:26 am

Re: VPN behind NAT/FW

Post by b_soft » Mon Oct 06, 2014 5:56 am

The Server is a gsm device. The Providers blocks all incoming traffic...

But I found another solution. I use Teamviewer VPN to get a "vpn" to the server and then I use softether in the normal Client Server Scenario.

Thanks

thisjun
Posts: 2458
Joined: Mon Feb 24, 2014 11:03 am

Re: VPN behind NAT/FW

Post by thisjun » Thu Oct 16, 2014 7:50 am

There is a way to solve this problem.
Setup a VPN server and a VPN client on the network of 192.168.1.0.
Setup a VPN bridge on the network of 192.168.15.0 and create a localbridge.
Create a cascade connection from the bridge to the server.
Connect to the same virtual on the server hub from the client.

I think this document helps you.
http://www.softether.org/4-docs/1-manua ... Permission

b_soft
Posts: 5
Joined: Thu Oct 02, 2014 7:26 am

Re: VPN behind NAT/FW

Post by b_soft » Fri Oct 17, 2014 6:26 am

Ok, thanks for the Information.

Post Reply