How to Configure OpenVPN on TrueNas 12 - Setup your own Home VPN - Part 1

  Рет қаралды 88,277

Techworks

Techworks

Күн бұрын

Пікірлер: 515
@TrueNAS
@TrueNAS 3 жыл бұрын
Awesome clear and concise tutorial! Thank you for sharing this.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks, Appreciate it !
@alanhiggins2521
@alanhiggins2521 3 жыл бұрын
Thank you for responding, i did apply the rules however i still have no traffic, only access to the truenas GUI. i am providing the rules i applied. There are duplicates in trying to get traffic to flow. ipfw list 00100 allow ip from any to any via lo0 00200 deny ip from any to 127.0.0.0/8 00300 deny ip from 127.0.0.0/8 to any 00400 deny ip from any to ::1 00500 deny ip from ::1 to any 00600 allow ipv6-icmp from :: to ff02::/16 00700 allow ipv6-icmp from fe80::/10 to fe80::/10 00800 allow ipv6-icmp from fe80::/10 to ff02::/16 00900 allow ipv6-icmp from any to any icmp6types 1 00997 allow ip from 172.16.1.0 to 192.168.2.9 445 00997 allow ip from 172.16.1.0/24 to 192.168.2.9 445 00998 allow ip from 172.16.1.0/24 to 192.168.2.0/24 00998 allow ip from 172.16.1.0 to 192.168.2.0 00998 allow ip from 172.16.1.0 to 192.168.2.1 00998 allow ip from 172.16.1.0/24 to 192.168.2.0/24 00998 allow ip from 172.16.1.0/24 to 192.168.2.0/24 01000 allow ipv6-icmp from any to any icmp6types 2,135,136 65535 allow ip from any to any
@артемблизнюк-т1о
@артемблизнюк-т1о 3 жыл бұрын
Help! my clients have different certificates but get the same ip addresses (192.168.1.2) when connecting to openvpn. What to do?
@Novoworks
@Novoworks 3 жыл бұрын
@@alanhiggins2521 - I had similar issue, but was due to using the wrong interface name
@TechworksOnline
@TechworksOnline 3 жыл бұрын
@@артемблизнюк-т1о create a different client certificate with a different Common Name and different subject alternative name
@ThefamousMrcroissant
@ThefamousMrcroissant 2 жыл бұрын
This is by far the highest quality tutorial currently available on setting up an OpenVPN server for TrueNAS. Any bit of doubt I had about parameters I saw in other tutorials was taken away, in particular the IP parameter (which, from my current understanding, just creates another "mini subnet" within the local subnet under the specified prefix).
@sean2881
@sean2881 3 жыл бұрын
How this only has 2400 views is beyond me. This is clear, concise, top quality. One of the best on KZbin. Thank you!!
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks ! I really appreciate it !
@DrCrowtron
@DrCrowtron Жыл бұрын
After wading through forums, blogs, YT channels for days this was the first and only solution I have found to safely access my files remotely through a VPN. Thank you so very much Techworks!
@TechworksOnline
@TechworksOnline Жыл бұрын
Great to hear!
@franksmith3492
@franksmith3492 3 жыл бұрын
I don't know that I've ever felt compelled to comment on a KZbin video before, but I had to on this one. I have spent hours and hours watching videos, looking through forums, and following tutorials to setup OpenVPN on my TrueNas. And I've never gotten it to work how I wanted it to. This video explained exactly what to do and was very detailed and helpful. The only thing I had to change was my natd_interface to em0 like some of the other comments said. Thanks so much for making this video.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks! This means a lot to me!
@jayspek
@jayspek 2 жыл бұрын
This absoulutley saved my bacon. Could not for the life of me get this to work until I found this video. Much appreciated.
@danfan6587
@danfan6587 Жыл бұрын
Dude you have no idea how much time I spent on this, trying to make my nextcloud only accessible by VPN and it was IMPOSSIBLE. But then you appeared and saved the day, thank you so so much
@michelbernier2801
@michelbernier2801 3 жыл бұрын
Take me a day and half to set this up, my first problem is I didn’t watch the complete video. My bad. Then second problem was the Additional Parameters I took the quotation marks as asterisks and def1 as defl. It was hard to see these in video but found the correct parameters in the text. Once I fixed my errors it worked like a charm. So watch the whole video till the end before setting this up and you should have no problems. This one is complete as other videos leaves stuff out. Made notes and added these “Lessons Learned File” for future reference.
@alexgcasals
@alexgcasals 8 ай бұрын
Thank you ❤ I have been trying to do this for several days and couldn't until I found this tutorial. Thanks for explaining the reason for each parameter, this way I could easily change it to the values for my setup
@ArkSkyDragon
@ArkSkyDragon 6 ай бұрын
Seriously man thanks for this video, I got like 80% of this setup on my own but couldn't figure out why I was unable to connect to my locally host services.
@johnwilkerson1511
@johnwilkerson1511 3 жыл бұрын
Took me a few tries, but your tutorial made it possible to connect from the internet. Thanks!
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Glad I could help!
@techtourist7r
@techtourist7r 2 жыл бұрын
You absolutely ripped other VPN tutorials to shreds, this fit my scenario and worked really well, my hero for 2022!
@NirajKapasi
@NirajKapasi 2 жыл бұрын
Amazing step-by-step video for the entire process. Did not falter anywhere. I would never have been able to do this on my own just by reading the manuals and adjusting the settings. Thanks for posting this.
@gregorcutt1199
@gregorcutt1199 2 жыл бұрын
After fighting for weeks, I found this video. Thank you for using your covid time so helpfully!!!
@miked5487
@miked5487 2 жыл бұрын
Huge thanks dude. I finaly got it working. I tried so many other tutorials and they confused me. Yours was straight forward and Thorough!
@joee14216
@joee14216 3 жыл бұрын
if anyones having any issues connecting to the other servers outside of truenas's ip make sure that the 'natd_interface' tunable matches your config. Mine was 're0' instead of 'le0' so I had to change the value inside of that to get it to work.
@Xworkofme
@Xworkofme 2 жыл бұрын
Hi, where i can find this information on my Truenas Dashboard ?
@muhammadaamer7261
@muhammadaamer7261 Жыл бұрын
@@Xworkofme hey, don't know if you're still tryna figure this out but you can find it on the 'interfaces' tile on the dashboard above your network traffic speed indicator
@dedebenui
@dedebenui Жыл бұрын
Thank you so much!!! the bit from 16:00 was missing from other tutorials. Great stuff!
@jacekhajnrych6937
@jacekhajnrych6937 3 жыл бұрын
This is the best OpenVPN tutorial for TrueNAS I've found. Thank you!
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks for the comment ! Appreciate it.
@VicTimes
@VicTimes 3 жыл бұрын
This video helped me resolved the issue I had struggled for a week. Thanks!
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Amazing, glad It helped !
@XxxGuitarMadnessxxX
@XxxGuitarMadnessxxX 2 жыл бұрын
As an absolute novice to this kind of stuff, thank you for providing a very clear and concise walk-through of adding a vpn service here. I was struggling trying to figure out why the config file wasn't enough for trueNas charts and it seems I totally skipped the whole certificate step 😅
@PovGRide742
@PovGRide742 Жыл бұрын
Thank you so much for this! This got OpenVPN working on my machine with the ability to access my files remotely without fail. That being said, I, like some other users on here and on your website, experienced issues with jails (Plex in my case), not working properly. Oddly, it took a day for it to break (all was working fine when I first set it up). The ONLY way I could access my Plex remotely was when connected to the VPN. Originally I could connect to Plex without connecting to the VPN. Again... it took about a day for this to break. I did see your description comment about adding a jail with NAT selected. This fixed it! However, I read on a thread on Reddit of someone having an issue as well, and they were able to fix it instead by changing out their network interface identifier in the natd_interface tunable for vnetO. I disabled the added jail and tried this, and everything is still working properly. Now it's been less than a day, so I'll update here if it breaks again, but I figured I'd bring to your attention. Reddit post from TheRealStiffCookie below. "I had an extremely similar issue, in that I couldn't have OpenVPN and Plex set up on my Truenas at the same time. First step I tried was deleting the natd_interface tunable (mentioned on another site), which fixed Plex, but of course broke OpenVPN. I then re-added the tunable, but instead of setting the value to my physical interface (em0 - which I followed from a guide), I set it to vnet0 instead. All of my plugins, and OpenVPN have been working alongside each other since! Hope that helps anyone else that may stumble across this issue."
@rubenhernandezgarcia303
@rubenhernandezgarcia303 Жыл бұрын
This has been working for me at the moment. I am not 100 percent sure what this does to the networking layout of the config, but hopefully its a stable solution. Thanks.
@TechworksOnline
@TechworksOnline Жыл бұрын
Amazing thanks for the great find !! I will add this to the description!
@thatnerdgui3496
@thatnerdgui3496 6 ай бұрын
I changed mine to vnet0 and although I can access my network drives and truenas I can't access the plug-ins. I guess I have some digging to do.
@nils1953
@nils1953 2 жыл бұрын
Thank you! Just watched a different tutorial before and while it did work, this worked in every aspect! Plus, your video was much easier to follow, better explained and a lot nicer to listen to.
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Glad it helped!
@desertlightning7335
@desertlightning7335 3 жыл бұрын
Thank you so much! Worked the first time from this tutorial, I never got it to work before,
@ryanbattersby2259
@ryanbattersby2259 2 жыл бұрын
mate this tutorial has been an absolute god send, very detailed and precise EVERY step of the way, and bous points for having the additional params in the bottom becuase I couldn't tell if it was a 1,l or i. this has made the whole experince of being able to get access to my NAS to edit my photos on the go abosoltely painless. you get a 15/10 rating from me.
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Awesome! Glad it helped you.
@ryanbattersby2259
@ryanbattersby2259 2 жыл бұрын
@@TechworksOnline I followed like 3 other tutorials and nothing worked after following them, then after watching yours it worked first go 👌 brilliant work you earnt a sub haha
@jbrasmartins
@jbrasmartins 2 жыл бұрын
Clear and understable! Thank you very much! By far one of the best tutorials!
@Aesir5
@Aesir5 Жыл бұрын
It's a great tutorial
@Mysticpete
@Mysticpete 3 жыл бұрын
Very good tutorial, very concise, thank you for all your efforts, much appreciated.
@cango5679
@cango5679 3 жыл бұрын
agree fully.
@AdamcNz
@AdamcNz 3 жыл бұрын
wow thanks so much. this was the best one around that made the process a hell of a lot easier to understand and get working.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks !
@THEACERASPIREMAN
@THEACERASPIREMAN Жыл бұрын
Thanks so much man, I always struggle with networking stuff since I rarely do it. This was very clear and concise.
@damienretro4416
@damienretro4416 Жыл бұрын
Awesome tutorial. Very clear and concise. Unfortunately I can only access the Truenas server. SMB etc works but I can't access and other network devices including jails. I set the NAT tunable to bridge0 which is the name of my Truenas NIC but no dice.
@InversionesAlfadan
@InversionesAlfadan 3 жыл бұрын
Es el video mas detallado y completo que he visto para configurar la VPN en treuenas. Gracias por el aporte
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Gracias! tu comentario significa mucho
@randomnoobpt
@randomnoobpt 3 жыл бұрын
Thanks for the detailed tutorial! Though after having the OpenVPN server and the firewall rules applied as shown in the video I'm having issues with the jails (plugin installation fails when getting "pkg" (No address record error) and I can't even ping 1.1.1.1 with success). Is there a workaround for this? Or it ends up being a tradeoff for setting up OpenVPN this way? Also what's the difference and advantages/disadvantages of setting up the OpenVPN server from TrueNAS natively or inside a Jail?
@michelfreund
@michelfreund 2 жыл бұрын
Hi, same issue here. @Techworks, any clue?
@bartatgier2453
@bartatgier2453 2 жыл бұрын
Same issue!
@123miekkonen
@123miekkonen 3 жыл бұрын
Great tutorial, thanks! VPN works nicely, but alas, a virtual machine runnin on Truenas completely lost network. So removed the tunables and VM's network works again. Something about those tunables seems to screw the VM - host bridge big time
@TechworksOnline
@TechworksOnline 3 жыл бұрын
I think if you just reapply the network with the tunables in place it will start to work again
@123miekkonen
@123miekkonen 3 жыл бұрын
@@TechworksOnline hmm not sure how to do that, AFAIK Truenas handles the VM network automatically. I did try re-creating the VM's NIC but that didn't help
@123miekkonen
@123miekkonen 3 жыл бұрын
Well can't get this to work. DHCP inside the VM doesn't work and when I set the VM to use static IP, I can connect to the VM from other machines BUT the VM cannot communicate with any other IP that the host. I'll have to set up another VM to run the OpenVPN because this just doesn't work
@ethanpawelski
@ethanpawelski 2 жыл бұрын
Amazing, clear step-by-step process! I wish I had watched this before attempting it on my own.
@RaduGiurgiu23
@RaduGiurgiu23 2 ай бұрын
Clear and simply, thanks for sharing! LOL @TrueNAS comented also, that's god sign!
@SkyRex23
@SkyRex23 3 жыл бұрын
Thank you so much for the tuorial ! At 16:30 is it : push "redirect-gateway def1 bypass-dhcp" or push "redirect-gateway defl bypass-dhcp" with lowercase "L" ?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
One 1
@PrivatePaul
@PrivatePaul 3 жыл бұрын
@@TechworksOnline might wanna have said that.... i had to google it too. that's THE single point where it's very likely people will misread, and it's the one point where you don't say what you're typing :/
@TechworksOnline
@TechworksOnline 3 жыл бұрын
@@PrivatePaul I will enter the details into the Description of the video.
@formulafanaticDB
@formulafanaticDB Жыл бұрын
People like you are what make this world great!
@Al-mo6tw
@Al-mo6tw 2 жыл бұрын
Hi, this was nearly perfect, the vpn setup certainly works. However something to do with the tuneables breaks network acess to any virtual machines I have installed on the freenas box. They wont assign dhcp, i can acess them via ssh when setting a manual ip in the vm's however they do not get internet access. Just wont ping google, it will however ping local lan machines So i think something is blocking them/ firewall related I imagine. It seems similar to some issues others are having on here with jails breaking. As soon as I remove the tuneables, dhcp is back and the vm's have full internet acess. it would be great if you could help / advise on this, thanks
@PhotosByJJA
@PhotosByJJA 2 жыл бұрын
Same issue with the tunables. Solution I found was adding second NIC and setting one to auto DHCP, then use that for plex and other plugins. The other using a static IP and setting the natd_interface to it for VPN. Depending on setup you might need a switch to add the second cable to your router. Not sure if there is a setting to get around this but this was an easy/quick solution.
@firefox8810
@firefox8810 Жыл бұрын
Awesome clear and concise tutorial ! Thank you so much for sharing this. I can now access all my files (even from my iphone) when travelling ;) Just a point, when configuring System/Tunables/natd_interface, of course enter your interface (not necessary le0, you should have shown that we must check in Network/interfaces for the right name) ;)
@Baum_0000
@Baum_0000 2 жыл бұрын
Its the best Video i have Sean for this toppig👍👍👍👍
@bindestrek
@bindestrek 2 жыл бұрын
i've done everything you did, and can connect to my samba share, but nothing else... no internet through the server or internet outside of the server... no connections to other jails on the server or other computers on the network. any idea what i might have done wrong?
@FrankZambaras
@FrankZambaras 2 жыл бұрын
Thank you for this excellent tutorial. Great work here.
@50charactersonly61
@50charactersonly61 Жыл бұрын
Do I need to do the steps in Part 2? My goal was to access my TrueNAS outside of my local network and this worked like a charm!
@fedshaker
@fedshaker 3 жыл бұрын
Thanks for the tutorial! I'm surprised there are not more likes on this video.
@ttownnife
@ttownnife 3 жыл бұрын
Any advice on why when I try to put anything in the additional parameters under openVPN under Services it crashes when I go to save?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
You can manually add the options to the openvpn.conf file in a Shell on Truenas Navigate to /usr/local/etc/openvpn/server/openvpn_server.conf Add the options as is to the bottom of the file. Save, and restart the openvpn service in truenas
@BogdanAlexeTV
@BogdanAlexeTV 3 жыл бұрын
thanks man, keep the tutorials coming. They are super useful
@julkkis666
@julkkis666 2 жыл бұрын
this is a really good tutorial. my usecase would be to have a work-arround for a ISP level port-forwarding block, so i can forward a specific service to possible clients without giving full access to my entire local network with a VPN (which works even with the ISP block). :^) gonna try this when i get the time to try it! thanks for the video!
@gaso636
@gaso636 3 жыл бұрын
Bravo majstore puno si pomogai i sve radi bezprijekorno.....
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Odlično, drago mi je da vam je pomoglo.
@PeterCulka
@PeterCulka 2 жыл бұрын
I don't understand why this cannot be written in TrueNAS documentation. I was struggling with RootCA, as I always wanted to use the NAS root CA (cause ... why the hell not?) And I didn't understand why it wasn't working...
@ezip916
@ezip916 Жыл бұрын
Great video. I was able to get the VPN working to the server only. Got any thoughts on how to get access to other local resources and the internet? I am sure it is an easy fix but I been searching around and trying things for a while now.
@123dillerfar
@123dillerfar 3 жыл бұрын
Thanks a lot for this tutorial I will try this with my own true as later this week
@murgh7682
@murgh7682 3 жыл бұрын
Could you make a little video about how to revoke a client certificate? Simply deleting it won't stop the user from being able to connect to the vpn service. BTW it's important to use an uncommon ip range for the local network, so avoid 192.168.0 and 192.168.1 since this could give routing issues when a user is tyring to log in from home or internet cafe if that location also uses this common ip range.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Thanks for the info! I will create a video of how to revoke a cert, as it is not very straight forward and will need some command line stuff as well!
@murgh7682
@murgh7682 3 жыл бұрын
@@TechworksOnline Thanks in advance! Looking forward to it.
@canadatransistor
@canadatransistor 2 жыл бұрын
Thanks man, you helped me fix 90% of my issues. Super awesome! ++ subscribed
@jackscan4358
@jackscan4358 3 жыл бұрын
Thanks for the very clear tutorial. However there is one major issue with the tunables in this setup: The option 'natd_interface' breaks the DNS access of the jails. That's why there are plenty of people having issues with their jails after configuring the openvpn service. Should the interface be set to the physical network connection or should we use a virtual interface in this tunable? It's not really clear and if you select the physical interface, the openvpn service runs but the jails lose the DNS access.
@Catalyph
@Catalyph 3 жыл бұрын
You will want to use the interface your TrueNAS is connected to physically. In the TrueNAS dashboard.
@jackscan4358
@jackscan4358 3 жыл бұрын
@@Catalyph that is what's being used in my case, but as said this causes and issue with the name resolution in the jails (see numerous posts with jail issues)
@Catalyph
@Catalyph 3 жыл бұрын
@@jackscan4358 I set my Jails up after setting up the VPN, and they work fine, I wonder if deploying a new jail after the setting the tunables will work ?
@sergiogustavo13
@sergiogustavo13 3 жыл бұрын
Same issue, with vpn working i loss jail access, is like the ports are not redirected
@sergiogustavo13
@sergiogustavo13 3 жыл бұрын
I finally managed to resolve it if anyone want the solution: Go to jail > Edit > and activate the following options: - DHCP Autoconfigure IPv4 - VNET - Berkeley Packet Filter Check configurations: - Venet_default_interface = auto - IPv4 Interface = empty - Ipv4 Address = assigned automatically when you chose DHCP Autoconfigure Ipv4. This will be your Nextcloud management IP - Ipv4 Default router = it will have your last IPv4 default router ip, but it will not be used... - IPv6 = all options disabled Now go to your router and assign to the DHCP the Ipv4 IP address in order to be sure that it will not change on nextcloud restarts. Finally, if you go to the IP address it will probably show that you need to add it to the Nextcloud trusted_domains. From TrueNas shell or SSH to TrueNas perform the following actions: vi /usr/local/www/nextcloud/config/config.php go to the line: 'trusted_domains' => array ( 0 => 'localhost', 1 => 'old nextcloud ip', Update the 1 => with the new ip address, or add a new line 2 => with the new ip address
@Ashwekar
@Ashwekar 3 жыл бұрын
Followed everything till 14:33, just like I did with Spacerex's tutorial. Still not able to connect. The connection gets timed out. No logs either. What am I doing wrong?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Did you get port forwarding on your home router completed? That is usually the first thing I would check
@Ashwekar
@Ashwekar 3 жыл бұрын
@@TechworksOnline yes I did
@pratikashwekar7783
@pratikashwekar7783 3 жыл бұрын
@@TechworksOnline ​ I figured out what the issue was. I was actually trying to check if there are any updates available for truenas. But that was failing. Then I checked the network settings. For some reason gateway and nameservers were empty. I added those two things and now I can connect with openvpn. Feel like a huge load lifted from my head.
@mariohrkac2238
@mariohrkac2238 3 жыл бұрын
Thank you very much for this amazing tutorial. So clear and understandably
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Awesome, Glad I could help!, Part 2 will be coming this Sunday!
@mariohrkac2238
@mariohrkac2238 3 жыл бұрын
@@TechworksOnline you mean part 2 😁💪🏽
@TechworksOnline
@TechworksOnline 3 жыл бұрын
@@mariohrkac2238 Yes, Fixed!
@АндрейНиколаев-т4с
@АндрейНиколаев-т4с 2 жыл бұрын
The best tutorial for customize OpenVPN on TrueNAS - thanx! But I have no understanding how to set up tunable parameters on TrueNAS SCALE. Could you update tutorial with SCALE settings?
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Try with no tunables.
@marioumazul
@marioumazul 2 жыл бұрын
@@TechworksOnline I tried without tunables (could not find them on Truenas Scale) but it can't access my network devices by their ip adress. I can only connect to my truenas scale ip address. Would love some help as well. Anyway, thanks for the great tutorial! EDIT: I found on Truenas forum that in Truenas Scale on System Settings - Advanced there is a Sysctl setting that should be equivalente to tunables on core, but we can only enter 'Variable' and ''Value' fields and not 'type', I'm afraid to mess with this since there's a waring before I enter something.
@askwong
@askwong Жыл бұрын
On Truenas Scale, where can I setup the tunables? Please advise. By the way, your tutorial is the best so far I have found on KZbin. Thanks a lot for your sharing.
@robink.1475
@robink.1475 Жыл бұрын
I got the same problem. Do you found out, how to do it?
@askwong
@askwong Жыл бұрын
@@robink.1475 no
@VeryTutos
@VeryTutos 3 жыл бұрын
Best Tutorial about this!!
@BHuck67
@BHuck67 Жыл бұрын
Thank you so much for this great tutorial, really well done. However, I've spent a lot of time trying to get it to work without success. Well, it works, but either NAS subnet IPs are reachable and jails lost access to the Internet, either jails have access but no way to reach other LAN IPs. I give up. Note: the workaround with creating a jail to generate a NAT interface did not work.
@TortoiseBlog
@TortoiseBlog 3 жыл бұрын
Worked perfectly. Thank you very much.
@markmcgranaghan1038
@markmcgranaghan1038 3 жыл бұрын
Great video tutorial! Following this and trying myself, however, at around 16:15 in text is added. What are the quotations? " or ' ? Many thanks
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Double quote - Please check the link to my website in the description or in the description itself, that will have all the text copy and paste-able
@markmcgranaghan1038
@markmcgranaghan1038 3 жыл бұрын
@@TechworksOnline Hi, many thanks for the quick response...Just 'viewed' the Description (should've done this before posting...doh!). Long time since I clicked on, 'Show more' :-D
@rafalcebula
@rafalcebula 3 жыл бұрын
I really liked your tutorial. It's really detailed. So followed it, I also have DDNS setup on google domains from my NAS. I opened the port for the OpenVPN, but still can't connect from a remote computer :/ any ideas?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Make sure you are using the correct ethernet port you see on the dashboard of the TrueNAS, mine was le0, yours may be different.
@4_da_bratwurst_a
@4_da_bratwurst_a 2 жыл бұрын
@@TechworksOnline I am having the same issue. I followed everything up to where we connected. It keeps timing out. Any suggestions? How do you check if you are using the correct ethernet port? On my dashboard, mine is saying re0.
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Then you should reference re0 in all of the settings that I used le0 in the video. You can test your routers port forwarding by also forwarding port 22 temporarily and just try to ssh to your public IP address . If you get in. Then you know your port forwarding is correct. Make sure to disable it afterwards
@buddhasworkshop3894
@buddhasworkshop3894 3 жыл бұрын
Many thanks for this very very good tutorial, it worked almost on the spot. Almost, because my knowledge in this subject is "almost" not perfect... :-) (but getting better). You might have gone perhaps in 2-3 places slightly deeper in the explanation, so that an even larger audience would be able to follow. I mean by that explaining a little bit more for example what the different IP addresses mean that are being used throughout the installation (subnet etc.). Or why we can only use the config file to securely access our server in the end, without using the certificate as such, given that there is the option to download it. (I hope I understood correctly, that it is already included in the config file and not that all my secret cute-cat-videos are not open to the internet... :-) ). Of course I know, that it is also our responsibility to dig deeper, if something is not understood! It would have just kept the otherwise perfect flow of information. Oh, and your voice is just perfect for tutorials!!!
@CarstenBauer
@CarstenBauer Жыл бұрын
A very thorough walkthrough, thank you. Every time I setup OpenVPN I have issues accessing my internal network. One thing, le0 was bge0 on my system. I'm not sure if you mentioned it may be different on other systems.
@nestorsarmiento3155
@nestorsarmiento3155 Жыл бұрын
Same problem here
@TechworksOnline
@TechworksOnline Жыл бұрын
Try part 2 it may help kzbin.info/www/bejne/n6WTeZd6ntqnf6c
@erosion01
@erosion01 2 жыл бұрын
Is there a way to preserve my home connection while accessing the remote server through the VPN? Because when using the VPN my internet access becomes only what is at the end of the tunnel.
@TheGabobonilla
@TheGabobonilla 2 жыл бұрын
This is excellent, but I have a problem, mi internet provider put me in a NAT and I Don have a public IP, is there a solution for my issue?
@lolo90627
@lolo90627 2 жыл бұрын
Many Thanks. Great tutorial and excellent work !
@petmic202
@petmic202 3 жыл бұрын
very very goOOod tuto, now i untherstand more what to do, and what i do
@nerdkidleo
@nerdkidleo 2 жыл бұрын
Hi enabling natd is preventing me from getting dhcp for my plugins, anyway around that?
@InversionesAlfadan
@InversionesAlfadan 3 жыл бұрын
Hello. In the common name should I put my public ip address? (in my case it is static) or should I associate the ip to a service like dyndns or noIP?
@Catalyph
@Catalyph 3 жыл бұрын
You can put what ever you want. BUT wait for tomorrow's video ! It has something for you !
@InversionesAlfadan
@InversionesAlfadan 3 жыл бұрын
@@Catalyph Thanks
@SuspiciousCrow
@SuspiciousCrow 2 жыл бұрын
Awesome guide works like a charm. Thank you
@_barzak_3799
@_barzak_3799 3 жыл бұрын
I followed this step by step and got the connection established perfectly. Only problem is as soon as i apply the changes to the tunables, my pi hole wich i run in an VM on the TrueNas stopps working. The vm has a static IP. After tunables changes i cannot use it as a nameserver and the VM itself cannot resolve anymore. any help is welcome, im really stuck at this :/
@jordanthompson
@jordanthompson 2 жыл бұрын
I am having the same problem. I did find that if I disable "firewall_enable" -> "yes", I am able to access my truenas's gui, but my IP address doesn't change when I connect
@djmysz
@djmysz Жыл бұрын
Thanks you for this amazing guide. Everything works. I have problems with setting up DDNS but turned out I gave my LAN mac address instead of WAN mac address. Thanks again my master! BTW any idea how to add password requirement for openvpn? Is it secure without password?
@asimshouket
@asimshouket 3 жыл бұрын
hi, i am trying to follow your instructions. however i am unable to start the OPENVPN server like you did at 8:05 .. it gives me error "OPENVPN Server service failed to start" .. not sure what is wrong and how to fix this. Would you be able to help me with this please?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Usually means that one of the configuration items is incorrectly set.
@markmcgranaghan1038
@markmcgranaghan1038 2 жыл бұрын
Great got it working, many thanks for your video (though I had to put the same entry in to 'Common Name' and 'Subject Alternate Names' :-) Last question...To access through an Android phone...do you just install Openvpn app and drop a ovpn file?
@markmcgranaghan1038
@markmcgranaghan1038 2 жыл бұрын
Hi...Got it all working including remote access from phone and a laptop! 👍 Just did what I suggested above. 😁
@valmicio
@valmicio 9 ай бұрын
Quero agradecer pelo excelente material. E também pela resposta rápida a uma duvida técnica minha. O detalhe que ele sempre atribuía o mesmo ip para qualquer conexão.
@TechworksOnline
@TechworksOnline 9 ай бұрын
Create another client certificate with a new different common name and subject alternative name for each new client and they should get different IP
@valmicio
@valmicio 9 ай бұрын
Muito obrigado. Funcionando perfeitamente
@justinrussell3495
@justinrussell3495 Жыл бұрын
I think it was done on purpose, but what is the public IP address shown in the OpenVPN connect software. I’ve been struggling to get this to work and while I am in a unique double NAT scenario (so port forward on both router and router/modem combo) I am wondering if this setup will work if you are connect from an IP outside of the 192.168.x.x range. I was able to connect to my trueNAS remotely using openVPN configured on my router, but I want to figure out how to use the trueNAS service. To clarify, I no longer am running the openVPN configuration on my router, so that is not the problem. Furthermore, does having uPNP enabled or disabled have any bearing on if this setup will work?
@巨門影視直播
@巨門影視直播 2 жыл бұрын
in 24:04, what means allow the client to connect to the entire subnet
@PrivatePaul
@PrivatePaul 3 жыл бұрын
i can connect to the network (with correct IP), can open the truenas UI in browser on the remote machine, i can kind of access truenas with its IP, but i can't access the shares via win explorer, all accounts return "wrong credentials".... what could be the problem?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Make sure the user you are using has permissions on thr directories is TrueNAS shares
@OzSigns
@OzSigns 2 жыл бұрын
Would you have a dns step by step tutorial for this exact video?
@TheDeathlyG
@TheDeathlyG 2 жыл бұрын
Thanks for this tutorial! I hit a bit of a snag during it however. Around 18:10 I added the Static Route, and immediately my web UI crashed. I am now unable to connect to it through the web, and my previously working OpenVPN connection is now down as well. Interestingly, my SMB share and FTP processes are still functioning. I've been looking for a few hours on a fix besides connecting a monitor and keyboard straight to the server. Anyone have advice on how to fix it?
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Are you able to ssh to the machine, if your static route took down the webUI. You may have input the incorrect network in the correct order. You might have to keyboard and monitor to resolve.
@TheDeathlyG
@TheDeathlyG 2 жыл бұрын
@@TechworksOnline Yes, I am able to SSH to the machine. It seems just the web GUI is unresponsive.
@TechworksOnline
@TechworksOnline 2 жыл бұрын
Try rebooting the trunas if the website is unresponsive
@TheDeathlyG
@TheDeathlyG 2 жыл бұрын
@@TechworksOnline Did that and got nothing. Weirdly, I DNS flushed my remote machine for an unrelated reason, and I was able to access the server again despite it being on my local net. Thank you for the advice, and the really useful tutorial!
@fxk44
@fxk44 3 жыл бұрын
Thank you for the tuturial! Works like a charm..but I’m now having problems with installed plugins (Plex and qbittorrent) - it seems both services cannot access the internet anymore. Can it be because of added static route / tunnables entries?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
you can try to add the subnet the jails are on to the static routes. so if your jails are on subnet 172.168.0.1 add that Subnet just like you did with the VPN subnet.
@fxk44
@fxk44 3 жыл бұрын
@@TechworksOnline I’ll give it a try, although my jails use the same subnet as the host. All my network is on 10.42.10.0 and my openvpn server is on 10.42.11.0
@TechworksOnline
@TechworksOnline 3 жыл бұрын
@@fxk44 is this a /16 or /24 network ?
@fxk44
@fxk44 3 жыл бұрын
@@TechworksOnline it’s a /24 network
@TechworksOnline
@TechworksOnline 3 жыл бұрын
In a shell prompt. ipfw list See if enabling the firewall blocked something. If not I will need to test it out.
@OrganGrinderEleven
@OrganGrinderEleven 2 жыл бұрын
This is a great tutorial, saved me much hair pulling. Now, not to be greedy, but do you have any idea how to add 2FA to the mix? I have some users who can't help themselves and keep getting spyware on their personal computers, so I don't feel at all comfortable about govong ANY of them access to the file server without 2FA of some sort. Any advice you (or anyone else reading this) could give would be greatly appreciated.
@davidmair2679
@davidmair2679 2 жыл бұрын
Many thanks for the video, this worked perfectly once I worked out a network peculiarity out with our wireless network provider. I found there IP address not my address inside there network.
@larryroyovitz7829
@larryroyovitz7829 Жыл бұрын
I have a VPN at home, and my TrueNAS is remote. I want TrueNAS to connect as a client to my already existing VPN here. Is this possible? Every video and tutorial seem to want the truenas side to have the VPN.
@marcoreuter8530
@marcoreuter8530 3 жыл бұрын
Nicely done! I followed the steps and got it working. But i cannot seem to connect to the internet while connected to the VPN. How do i make that happen? I have a pihole as my DNS set up and i would like to use it "on the got". Also i would not like to have to switch between network access and internet access.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
If you are connected to the VPN as per my setup, Make sure you are connected remotely. Most providers will not redirect public IP from inside the LAN. Subscribe I have a video coming on Sunday that has more setups including client and server internet access options.
@TechworksOnline
@TechworksOnline 3 жыл бұрын
Also make sure your syntax is correct in the additional Parameters, the syntax could be incorrect and not give an error, it just wont works for those options. push "route 192.168.0.0 255.255.255.0" push "redirect-gateway def1 bypass-dhcp" push "dhcp-options DNS 8.8.8.8" push "dhcp-options DNS 1.1.1.1"
@marcoreuter8530
@marcoreuter8530 3 жыл бұрын
@@TechworksOnline Thanks for your reply! My provider does actually let me connect from inside my LAN to the public IP. But I can confirm that my smartphone (via cellular service) ist able to connect to the VPN and reach my SMB shares on the other subnet. But it is unable to reach any internet services while connected to the VPN. I copied your settings to the letter with the exeption, that 192.168.1.0 is the subnet for my regular LAN and 192.168.0.0 is used for VPN devices. I have set up a VPN in the past with pivpn wich worked flawlessly but was a bit too slow for my taste. I am currenty paying for 150 Mbit symmetrical via fibre. The TrueNAS box is already running 24/7. So I want to take advantage of the extra horsepower. XD Looking forward to your next video!
@valkar630
@valkar630 Жыл бұрын
MAAAAAN!!! You are Legend. Thank you
@profwalken
@profwalken 3 ай бұрын
Hello, I come back today to try to get an help with cert expiration date is done. So now i tried to remove Old OpenVPn_root _CA and OpenvPN_server certs and it's always impossible even nothing else on TN13 core than Openvpn was using these certs. So how can i manage a clean deletion to restart from scratch your tutorial ? Thanks in advance for your time
@jag5cof
@jag5cof 3 жыл бұрын
on Truenas Scale, what is the Tunable's equivalent? What I found in the system/advance/ is systcl. Any help is apprecicated
@TomK
@TomK 2 жыл бұрын
wow, big kudos!! the only thing i had to change was the network interface. it is igc0 for me (tunable natd_interface) worked out of the box! thank you so much!!! i never ever could make this on my own.
@WolfpactVI
@WolfpactVI 2 жыл бұрын
Thanks so much for the tutorial! Was wondering if you could do one for TrueNas SCALE. I got as far as the tunables, which is not available on SCALE. As a result, in testing this from my office, I can connect to my home TrueNas VPN, and access the TrueNas server itself, but nothing else on my home network. While connected, I have no internet, but can still access all of the devices on my office LAN. Any idea how to fix that on SCALE?
@TechworksOnline
@TechworksOnline 2 жыл бұрын
You may not need the tunable. Just add the options in the openvpn settings from part 2 video
@nestorsarmiento3155
@nestorsarmiento3155 Жыл бұрын
On the client side, allow the port in the firewall. It helped me.
@janekw.6022
@janekw.6022 2 жыл бұрын
I am trying to set it up on Truenas Scale right now. But I do not know where or how to set up the tunables. I am able to connect to the OpenVPN but I am not getting any axess to the network itself. Any ideas?
@richardbennett4365
@richardbennett4365 Жыл бұрын
Quick question: Is this series of steps also what one needs to do if one has chosen the plugin OpenVPN, or is this for a manual installation of an OpenVPN server via panels and webpages in the TrueNAS CORE WebUI? I have set up an OpenVPN server using the plugin that is available. I see how to enter a shell for this OpenVPN that is running in a jail from the plugin I installed. Since this OpenVPN server from the plugin is running in a jail, will I need to do all the configuring by command line in that shell?
@TechworksOnline
@TechworksOnline Жыл бұрын
No, the jail is different amd dhould not need these steps. The jail is like a container.
@richardbennett4365
@richardbennett4365 Жыл бұрын
​@@TechworksOnlineit must need other steps, certainly.
@TechworksOnline
@TechworksOnline Жыл бұрын
@richardbennett4365 yes there is. You would need to connect to the jail to configure it just as you would from the openvpn config guide on the openvpn site
@richardbennett4365
@richardbennett4365 Жыл бұрын
@@TechworksOnline Hello! I could not get the jail-ed (i.e., OpenVPN Community plugin) to work on TrueNAS CORE. It just is difficult to work with a FreeBSD-based system when so much of the "world" is linux-based. No matter. Your excellent instructions helped me to set up an OpenVPN server, and I even got an intermediate network set up behind a NAT translation for use by the client. Amazing. I almost gave up, but with some careful thinking about all the steps, I realized the reason why things weren't working at the very end was due to my having forgotten to start the OpenVPN server as a service in TrueNAS CORE. Duh! Then, it worked. Perfectly. I am heading out with a laptop to test it on a network off my home network as that will be the true test. But, thank you so much for your words of encouragement and this fine tutorial and demonstration. Now, I don't need to set up a Cloudron-based OpenVPN on some paid Virtual Private Server. I have my own right here now on my own networked attached server.
@jsamusicsociety
@jsamusicsociety Жыл бұрын
Could you tell me where can I find this tunable on Truenas Scale please?
@Cloecher11
@Cloecher11 3 жыл бұрын
Thanks for this video. I am having an issue though. When I set up the additional parameters in OpenVPN server, add the static route and the tuneables as you describe them in the video i'm able to access everything in my network flawlessly. The issue, though, is when I'm back on my LAN the TrueNAS server becomes completely unstable. I mostly can write to the samba fine, but can't read files and the GUI takes minutes to load if it will load at all. I do video editing from the TrueNAS and Final Cut Pro will lock up for several minutes and then crash. If I can get the GUI to load long enough to let me disable the Tuneables and reboot things recover and work as expected but then I'm no longer able to reach other services in my network have you experienced something like this before?
@TheErilaz
@TheErilaz 3 жыл бұрын
Have you tried to update to a newer version?
@brierepooc8987
@brierepooc8987 3 жыл бұрын
Also make sure your MTU settings match on both sides.
@fernandoferrari3477
@fernandoferrari3477 2 жыл бұрын
Hi Christopher! have you found the solution? i had this issue as well
@Cloecher11
@Cloecher11 2 жыл бұрын
@@fernandoferrari3477 I never did. I ended up setting two different types of VPNs. One on Truenas for others to connect to gain access to share drives on that, and a wireguard VPN on m pfsense box for me to connect to my whole network with.
@fernandoferrari3477
@fernandoferrari3477 2 жыл бұрын
​@@Cloecher11 i had this problem too, lets hope the can fix it someday, i will try a pritunl server with bhyve in the truenas​
@артемблизнюк-т1о
@артемблизнюк-т1о 3 жыл бұрын
Help! my clients have different certificates but get the same ip addresses (192.168.1.2) when connecting to openvpn. What to do?
@Catge
@Catge 3 жыл бұрын
Would this only route traffic to the local network or would the public ip of the remote device also change?
@TechworksOnline
@TechworksOnline 3 жыл бұрын
If you watch part 2, you can do it either way, it is kind of both. The remote machine will use it's public IP to access the VPN connection to the truenas. And you can set it up to either have internet access from the truenas VPN which to the internet would look like your IP is coming from the public IP of the Truenas or you can have your remote machine access the internet from its own public IP and only access the TrueNAS' files and services over the VPN.
@Catge
@Catge 3 жыл бұрын
@@TechworksOnline Thank you. I will check out Part 2. ~
@brunofey5142
@brunofey5142 Жыл бұрын
Just to add: i followed you tutorial and i went well, i was able to rdp in to my pc and acess my nas, but, after a reboot, my webui completly broke and truenas froze from inside out (like, literally, not even the console responded correctly). I managed to follow the problem to tunables, not sure what, but one of those configs caused the issue. Reinstalled and didnt put those in, i can acess the nas over vpn, but not the rest of local network, too afraid to brick stuck again.
@TechworksOnline
@TechworksOnline Жыл бұрын
Be sure you used the correct interface name in the tuneables. Mine was re0 but yours might be bn0 or le0 or something else
@DariuszMakowski
@DariuszMakowski 3 жыл бұрын
If you have more than 1 nics, say 2 nics 1 for internet, 1 for lan only... in tunables, do you make 2 entries 1 for each nic? I want to pass vpn access to my private non-internet network.
@JimoJimParedes
@JimoJimParedes 5 ай бұрын
Can I use OpenVPN client on my phone and access the TrueNAS?
How To Lock Down And Secure TrueNAS
13:44
Lawrence Systems
Рет қаралды 61 М.
УЛИЧНЫЕ МУЗЫКАНТЫ В СОЧИ 🤘🏻
0:33
РОК ЗАВОД
Рет қаралды 7 МЛН
Непосредственно Каха: сумка
0:53
К-Media
Рет қаралды 12 МЛН
TrueNAS Core: Configuring Shares, Permissions, Snapshots & Shadow Copies
18:21
TrueNAS Scale VPN - Get Connected with WireGuard
22:26
Techworks
Рет қаралды 27 М.
This blows away the competition - JONSBO N1 NAS Build
17:35
Linus Tech Tips
Рет қаралды 3,7 МЛН
Setting Up Your Own Cloud: A Guide to Nextcloud on TrueNAS SCALE
9:51
Lawrence Systems
Рет қаралды 176 М.
Setup Synology OpenVPN Server (easy, secure, remote access)
24:24
TrueNAS Scale Share Your Files with SMB - SO EASY!
19:40
Techworks
Рет қаралды 65 М.
Truenas Scale - EXTERNAL Nextcloud Access! 2024
18:47
Randyisanerd
Рет қаралды 17 М.
My Proxmox Home Server Walk-Through: Part 1 (TrueNAS, Portainer, Wireguard)
54:28
Building A Budget NAS  with TrueNAS Scale
21:22
Hardware Haven
Рет қаралды 477 М.
УЛИЧНЫЕ МУЗЫКАНТЫ В СОЧИ 🤘🏻
0:33
РОК ЗАВОД
Рет қаралды 7 МЛН