Page 1 of 1

The client is located behind the router. Error 1 without port forwarding or DMZ

Posted: Sat Sep 11, 2021 8:15 pm
by gizmo_zx
Have a good day.
The client is located behind the router.
SoftEther VPN Server <-> Internet <- Router (DIR-300) <- Win 8.1 x64 (SoftEther VPN Client)
If I do not enable port forwarding on the Router, I get error 1 (there is no connection).
Experimentally installed the following ports:
TCP 40000
TCP/UDP 9930
TCP/UDP 9983
UDP 49575
UDP 49576
TCP 64169
TCP 64172
UDP 62905
TCP/UDP 50000:62000

How can I shorten the last range? TCP/UDP 50000:62000

Re: The client is located behind the router. Error 1 without port forwarding or DMZ

Posted: Sun Sep 12, 2021 11:07 am
by nobody12
There should be no need to forward a port at the clients router unless you have firewall rules active which forbid outgoing traffic at the clients router.
Where do you got this list from? Why do you think you have to use these?
However, you may need to foward tcp/udp ports 993,443, or whatever ports you have enabled at the servers side for Softether.

Re: The client is located behind the router. Error 1 without port forwarding or DMZ

Posted: Mon Sep 20, 2021 10:23 am
by gizmo_zx
nobody12 wrote:
Sun Sep 12, 2021 11:07 am
All clients are behind routers of different models and manufacturers. For a normal connection, each of them had to be moved to the DMZ zone in the router. Otherwise, error 1 is returned. The list of ports was received by the TCP port scanner on the windows client machine. Without opening these ports, I get error 1. This is not an isolated case. I have several similar situations. There is no such problem with a direct connection (without a router) PPPOE

Re: The client is located behind the router. Error 1 without port forwarding or DMZ

Posted: Mon Sep 20, 2021 10:49 am
by nobody12
Well, I have about 10+ Softether installations. All clients are behind Nat routers of different manufacturers. Even, hotel Wifis are used. There was never the need to make port forwards ff you use port 443 and use the SE native client or SSTP, and your firewall+router combo allows outgoing traffic to port 443 and related incoming traffic (the same as for secure web browsing needed).

Re: The client is located behind the router. Error 1 without port forwarding or DMZ

Posted: Mon Sep 20, 2021 11:00 am
by eddiewu
I have never heard of opening ports to clients, only to servers.