L2TP ReadyNAS 104 - Unable to see devices on network

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
Dotchin
Posts: 8
Joined: Fri Dec 04, 2015 6:01 am

L2TP ReadyNAS 104 - Unable to see devices on network

Post by Dotchin » Sat Dec 05, 2015 5:19 pm

Hi guys,

I currently have a ReadyNAS 104 hosting a VPN softether server which is linked directly to a Virgin Superhub. I have configured the network to a valid public IP address and have opened all the relevant ports.

The connection I am using is L2TP over IPSec and I am successfully able to connect to the VPN via windows and mac to configure the server using softether server manager.

When I use soft ether client, on the windows computer or connect via system preferences on my mac, both computers seem to join the network correctly and select IP addresses which reflect they have VPN'd correctly.

The real problem I have however since doing this is that the whole purpose of doing this was that I could access the computers / NAS across the other network. Both the windows and mac computers although they VPN correctly and can use the internet, do not seem to see the NAS drive or other computers.

What am I missing here? I did have to enable a local bridge on the network to prevent a self assigned IP address on the windows computer but am now currently at a loss.

Any help is greatly appreciated.

Dotchin
Posts: 8
Joined: Fri Dec 04, 2015 6:01 am

Re: L2TP ReadyNAS 104 - Unable to see devices on network

Post by Dotchin » Sun Dec 06, 2015 1:38 pm

Hi All,

I appear to now be on the last stretch of resolving this, but really could do with loaning some of your awesome brain power to see through my potential mistakes.

I have two virgin superhub routers in 2 different houses.

One of the houses has a readynas 104 box attached to its network on IP address 192.168.0.3 which is the VPN server itself. I have enabled port triggering on the superhub in this house to open all the relevant ports and forward data onto the nas drive(see attached). I can confirm I am able to connect to the vpn using the public ip address and am assigned an appropriate internal IP address when connected.

I can connect to both routers home pages as I have one router using 192.168.0.X range and the other using 192.168.10.1. This confirms both LANs have been brought together. The problem I really have is that the nas is not accessible externally when you are not on the local network. If I ping each IP address externally I get a packet response, but if I ping 192.168.0.3 externally when connected to the lan, I get a timeout.

Any ideas? This would make my day if someone can help. Thanks in advance.
You do not have the required permissions to view the files attached to this post.

Dotchin
Posts: 8
Joined: Fri Dec 04, 2015 6:01 am

Re: L2TP ReadyNAS 104 - Unable to see devices on network

Post by Dotchin » Mon Dec 07, 2015 4:55 am

Was pointed in the right direction on the netgear forums to a similar thread on here, sounds quite similar to the situation I am having:

http://www.vpnusers.com/viewtopic.php?p=11204

My server is using a local bridge yet it is being suggested here that I need a TAP device? Not sure why this may be necessary considering all other devices are working fine on the VPN.

I have attached my server config file in the event anyone can shed some light on how I can fix this issue.

# Software Configuration File
# ---------------------------
#
# You may edit this file when the VPN Server / Client / Bridge program is not running.
#
# In prior to edit this file manually by your text editor,
# shutdown the VPN Server / Client / Bridge background service.
# Otherwise, all changes will be lost.
#
declare root
{
uint ConfigRevision 208
bool IPsecMessageDisplayed true
string Region GB
bool VgsMessageDisplayed false

declare DDnsClient
{
bool Disabled false
byte Key g/eOdm0IXoWheg1doSU7FsZTrNc=
string LocalHostname NAS
string ProxyHostName dodgygodgy.softether.net
byte ProxyPassword wdjji63sWrA=
uint ProxyPort 443
uint ProxyType 0
string ProxyUsername Dotchin
}
declare IPsec
{
bool EtherIP_IPsec false
string IPsec_Secret Dotchin
string L2TP_DefaultHub VPN
bool L2TP_IPsec true
bool L2TP_Raw true

declare EtherIP_IDSettingsList
{
}
}
declare ListenerList
{
declare Listener0
{
bool DisableDos false
bool Enabled true
uint Port 992
}
declare Listener1
{
bool DisableDos false
bool Enabled true
uint Port 1194
}
declare Listener2
{
bool DisableDos false
bool Enabled true
uint Port 5555
}
declare Listener3
{
bool DisableDos false
bool Enabled true
uint Port 14443
}
}
declare LocalBridgeList
{
bool DoNotDisableOffloading false

declare LocalBridge0
{
string DeviceName eth0
string HubName VPN
bool LimitBroadcast false
bool MonitorMode false
bool NoPromiscuousMode false
bool TapMode false
}
}
declare ServerConfiguration
{
bool AcceptOnlyTls false
uint64 AutoDeleteCheckDiskFreeSpaceMin 104857600
uint AutoDeleteCheckIntervalSecs 300
uint AutoSaveConfigSpan 300
bool BackupConfigOnlyWhenModified true
string CipherName RC4-MD5
uint CurrentBuild 9514
bool DisableCoreDumpOnUnix false
bool DisableDeadLockCheck false
bool DisableDosProction false
bool DisableGetHostNameWhenAcceptTcp false
bool DisableIntelAesAcceleration false
bool DisableIPv6Listener false
bool DisableNatTraversal false
bool DisableOpenVPNServer false
bool DisableSessionReconnect false
bool DisableSSTPServer false
bool DontBackupConfig false
bool EnableVpnAzure false
bool EnableVpnOverDns false
bool EnableVpnOverIcmp true
byte HashedPassword kgf6+IZYkn+r0aOZGmtovRrK84E=
string KeepConnectHost keepalive.softether.org
uint KeepConnectInterval 50
uint KeepConnectPort 80
uint KeepConnectProtocol 0
uint64 LoggerMaxLogSize 1073741823
uint MaxConcurrentDnsClientThreads 64
uint MaxConnectionsPerIP 256
uint MaxUnestablishedConnections 1000
bool NoHighPriorityProcess false
bool NoLinuxArpFilter false
bool NoSendSignature false
string OpenVPNDefaultClientOption dev-type$20tun,link-mtu$201500,tun-mtu$201500,cipher$20AES-128-CBC,auth$20SHA1,keysize$20128,key-method$202,tls-client
string OpenVPN_UdpPortList 1194
bool SaveDebugLog false
byte ServerCert MIID7jCCAtagAwIBAgIBADANBgkqhkiG9w0BAQsFADB2MSEwHwYDVQQDDBhkb2RneWdvZGd5LnNvZnRldGhlci5uZXQxITAfBgNVBAoMGGRvZGd5Z29kZ3kuc29mdGV0aGVyLm5ldDEhMB8GA1UECwwYZG9kZ3lnb2RneS5zb2Z0ZXRoZXIubmV0MQswCQYDVQQGEwJVUzAeFw0xNTEyMDIyMDA1MjFaFw0zNjEyMzEyMDA1MjFaMHYxITAfBgNVBAMMGGRvZGd5Z29kZ3kuc29mdGV0aGVyLm5ldDEhMB8GA1UECgwYZG9kZ3lnb2RneS5zb2Z0ZXRoZXIubmV0MSEwHwYDVQQLDBhkb2RneWdvZGd5LnNvZnRldGhlci5uZXQxCzAJBgNVBAYTAlVTMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7diwZcflFPkzVR1ms3nnv5W7jgyWjIUZGRbk2ilIddL1foHi/Jvg99fIIzjmrg0a+Z0zzH3pX4XTLn4N5W7/a29a+OhUhIpxUvbzYxXhtuFkOKSM+tOBDJi0gd/1fdQCvHLOz8pVGvr3YAv3kcBLE4XBkIe8osqxQIkvXozWrFUmny/5YM1uYSSP4o30J7bDhFVkxCTq57PazIeSPQrRbgwwpZpPLLVHq1LwFybupO40OU9zY1dN1m28ZxeXr34WB6yaZMGu2ucoA3QYIm18o6ZNzU9Vh6Yrch88Kt+o77OUE7dOsWwucxPi8/gl2jhte3xoQp8yvCBXWbx1Pp0VpQIDAQABo4GGMIGDMA8GA1UdEwEB/wQFMAMBAf8wCwYDVR0PBAQDAgH2MGMGA1UdJQRcMFoGCCsGAQUFBwMBBggrBgEFBQcDAgYIKwYBBQUHAwMGCCsGAQUFBwMEBggrBgEFBQcDBQYIKwYBBQUHAwYGCCsGAQUFBwMHBggrBgEFBQcDCAYIKwYBBQUHAwkwDQYJKoZIhvcNAQELBQADggEBAEkiDpvFpFPHhmKct/28LF+60zreR77bDANDYa0NRlKfDbDxfQFz1xYC/pQFd4d3RzXrtZinbYWXwVlzLGshNup0BzBAakatkzk0AWqYhShEKBWFcn0OiXCmlKcUInGGkDuGeOenlLeVEwWH0+qWR7VUlKYF0DDIicpb2Ec1MEm0Z3vB+WRo/D9ExtyPukAT0qmSehS/qIsWenjOOiyegZHyyxXlD4bmGS1VnZfQGLZ4ARkBMQlEjuMse27ANPtTNhyPTulpNmCG/dDmNrzvpzMjcdE9II3lf4UAtbhBZzyVL2yl2WW+t1bANxV8ZEYsWyj+yIKOmejnET4b87TmebU=
byte ServerKey MIIEpAIBAAKCAQEA7diwZcflFPkzVR1ms3nnv5W7jgyWjIUZGRbk2ilIddL1foHi/Jvg99fIIzjmrg0a+Z0zzH3pX4XTLn4N5W7/a29a+OhUhIpxUvbzYxXhtuFkOKSM+tOBDJi0gd/1fdQCvHLOz8pVGvr3YAv3kcBLE4XBkIe8osqxQIkvXozWrFUmny/5YM1uYSSP4o30J7bDhFVkxCTq57PazIeSPQrRbgwwpZpPLLVHq1LwFybupO40OU9zY1dN1m28ZxeXr34WB6yaZMGu2ucoA3QYIm18o6ZNzU9Vh6Yrch88Kt+o77OUE7dOsWwucxPi8/gl2jhte3xoQp8yvCBXWbx1Pp0VpQIDAQABAoIBAGgQQM2nciGFDuKUpJSuJ6l5V8BE3bHJojuJ+sNBAMUccfDR34BqqzmFHbnbcYKBlWXVVA6KoIr8wHM9D9NshzB4XjM9Y41CDWchSUf3EPS1FOZ7iHtOAs6CGaghVwWgtznAeaAMhMPzPjy1v7HzkmWORix4Vx5a1MbJvwH9WQe4uc/HI+CvbcCoA5uI/g2Ka1miD9N441GrrRfyf5ULNb6Scvre98ws6zKU3QQxD3tU/3eWYvWTuC/Fpzc5PHCiBbHNMnYO7uvWl+/Kmj1uLgXo7pO8Vq+nFMdjgxjB7ijMQD8v7zs/OLDaHgkWwIO/f4fz3FVi1w4Fx7QZ3P4WIhkCgYEA/nd5vir5zLORo2S2eixSg2BsgRccAtyYNbYtgD8lY38o0f1bAQvbGfH0uhK7Uf2TZlAVK8CyHU8A8Dzh7sHsrHDaRAnB9W4hozZr4j7+AJKFDBxWTPuASpx16ZfCQFlzb218TxVVR1xWtwVLTkrP10cY5W0N5Qkqz7eMDwNP5esCgYEA70eTfJ4zWmWCdVNJJpupc7m52Am8eeKnzo1UTplJ/J8fx77IKigGIKh1OxjGgFk/rJGgv/wCCtb5dRwLvLs6ZdK4X1yKOUi5jqv52qT9WshgX3N8nBc/WtJotzCzrPNdiuEeGpjoNcdzmO6LC1sOEFN2oda8UH6m12EJaP/wPq8CgYEAofiEemI6fGx0MC+j4uIhZ1RR3F1MTBoDnHSoQ7Bt6QYAgqEkcucMAFi9ME9KAmdIkmA5CY9vEC7AZyopmWLAdgajN5mKZuFB8fRq+SilXtHkdA/5cqjHQTaT6yrYz0LgsjVbYa8vh+ujmn15MI13/AxaMXaX2IhcQrkPImM2UR8CgYEAjqLRRXkczaczRHM4aP5j3et54FG1e8bkF1niRtRT6XaFwFF3CsI/HNquv2K+eaY6McnB1JAKO6H4pJnqWUAWyLn7VEVa1FkI3Aaic3bk3GgUIvI59uZYyvAgogszIEcWnQIjKuG5ks1pmGGim0tVL+BBGKpkKWvGUx+yN1hSQ1sCgYAVMjkl/hzt1oP+fQdQYcsTACytMfnGD60c89bBZMq3J6cdKoUFI2DCOxD4c2+nrhizn2CCPBxvbztiTQd5Y6jgFZZCbTHEapiEej5Kpn0YC2z8CsfRkP94d0cb/neYOvFDlWtxwtsaOoU05HJwGfGs3bvyI/mNfl+XxyFX47Vm2w==
uint ServerLogSwitchType 4
uint ServerType 0
bool UseKeepConnect true
bool UseWebTimePage false
bool UseWebUI false

declare GlobalParams
{
uint FIFO_BUDGET 1000000
uint HUB_ARP_SEND_INTERVAL 5000
uint IP_TABLE_EXPIRE_TIME 60000
uint IP_TABLE_EXPIRE_TIME_DHCP 300000
uint MAC_TABLE_EXPIRE_TIME 600000
uint MAX_BUFFERING_PACKET_SIZE 480000
uint MAX_HUB_LINKS 1024
uint MAX_IP_TABLES 65536
uint MAX_MAC_TABLES 65536
uint MAX_SEND_SOCKET_QUEUE_NUM 128
uint MAX_SEND_SOCKET_QUEUE_SIZE 320000
uint MAX_STORED_QUEUE_NUM 384
uint MEM_FIFO_REALLOC_MEM_SIZE 65536
uint MIN_SEND_SOCKET_QUEUE_SIZE 80000
uint QUEUE_BUDGET 1024
uint SELECT_TIME 256
uint SELECT_TIME_FOR_NAT 30
uint STORM_CHECK_SPAN 500
uint STORM_DISCARD_VALUE_END 1024
uint STORM_DISCARD_VALUE_START 3
}
declare ServerTraffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 41507764
uint64 BroadcastCount 299364
uint64 UnicastBytes 153302744817
uint64 UnicastCount 140354757
}
declare SendTraffic
{
uint64 BroadcastBytes 8165282
uint64 BroadcastCount 51963
uint64 UnicastBytes 417795697
uint64 UnicastCount 1072012
}
}
declare SyslogSettings
{
string HostName $
uint Port 514
uint SaveType 0
}
}
declare VirtualHUB
{
declare VPN
{
uint64 CreatedTime 1449054138345
byte HashedPassword kgf6+IZYkn+r0aOZGmtovRrK84E=
uint64 LastCommTime 1449431538757
uint64 LastLoginTime 1449431395310
uint NumLogin 52
bool Online true
uint RadiusRetryInterval 0
uint RadiusServerPort 1812
string RadiusSuffixFilter $
byte SecurePassword bwNWPxtdx3vYUH3aNhO7YWcTfHU=
uint Type 0

declare AccessList
{
}
declare AdminOption
{
uint allow_hub_admin_change_option 0
uint deny_bridge 0
uint deny_change_user_password 0
uint deny_empty_password 0
uint deny_hub_admin_change_ext_option 0
uint deny_qos 0
uint deny_routing 0
uint max_accesslists 0
uint max_bitrates_download 0
uint max_bitrates_upload 0
uint max_groups 0
uint max_multilogins_per_user 0
uint max_sessions 0
uint max_sessions_bridge 0
uint max_sessions_client 0
uint max_sessions_client_bridge_apply 0
uint max_users 0
uint no_access_list_include_file 0
uint no_cascade 0
uint no_change_access_control_list 0
uint no_change_access_list 0
uint no_change_admin_password 0
uint no_change_cert_list 0
uint no_change_crl_list 0
uint no_change_groups 0
uint no_change_log_config 0
uint no_change_log_switch_type 0
uint no_change_msg 0
uint no_change_users 0
uint no_delay_jitter_packet_loss 0
uint no_delete_iptable 0
uint no_delete_mactable 0
uint no_disconnect_session 0
uint no_enum_session 0
uint no_offline 0
uint no_online 0
uint no_query_session 0
uint no_read_log_file 0
uint no_securenat 0
uint no_securenat_enabledhcp 0
uint no_securenat_enablenat 0
}
declare CascadeList
{
}
declare LogSetting
{
uint PacketLogSwitchType 4
uint PACKET_LOG_ARP 0
uint PACKET_LOG_DHCP 1
uint PACKET_LOG_ETHERNET 0
uint PACKET_LOG_ICMP 0
uint PACKET_LOG_IP 0
uint PACKET_LOG_TCP 0
uint PACKET_LOG_TCP_CONN 1
uint PACKET_LOG_UDP 0
bool SavePacketLog true
bool SaveSecurityLog true
uint SecurityLogSwitchType 4
}
declare Message
{
string MessageText Welcome$20to$20Dodgy$20NAS.
}
declare Option
{
uint AccessListIncludeFileCacheLifetime 30
uint AdjustTcpMssValue 0
bool ApplyIPv4AccessListOnArpPacket false
bool AssignVLanIdByRadiusAttribute false
bool BroadcastLimiterStrictMode false
uint BroadcastStormDetectionThreshold 0
uint ClientMinimumRequiredBuild 0
bool DisableAdjustTcpMss false
bool DisableCheckMacOnLocalBridge false
bool DisableCorrectIpOffloadChecksum false
bool DisableHttpParsing false
bool DisableIPParsing false
bool DisableKernelModeSecureNAT false
bool DisableUdpAcceleration false
bool DisableUdpFilterForLocalBridgeNic false
bool DisableUserModeSecureNAT false
bool DoNotSaveHeavySecurityLogs false
bool DropArpInPrivacyFilterMode true
bool DropBroadcastsInPrivacyFilterMode true
bool FilterBPDU false
bool FilterIPv4 false
bool FilterIPv6 false
bool FilterNonIP false
bool FilterOSPF false
bool FilterPPPoE false
uint FloodingSendQueueBufferQuota 33554432
bool ManageOnlyLocalUnicastIPv6 true
bool ManageOnlyPrivateIP true
uint MaxLoggedPacketsPerMinute 0
uint MaxSession 0
bool NoArpPolling false
bool NoDhcpPacketLogOutsideHub true
bool NoEnum false
bool NoIpTable false
bool NoIPv4PacketLog false
bool NoIPv6AddrPolling false
bool NoIPv6DefaultRouterInRAWhenIPv6 true
bool NoIPv6PacketLog false
bool NoLookBPDUBridgeId false
bool NoMacAddressLog true
bool NoManageVlanId false
bool NoSpinLockForPacketDelay false
bool RemoveDefGwOnDhcpForLocalhost true
uint RequiredClientId 0
uint SecureNAT_MaxDnsSessionsPerIp 0
uint SecureNAT_MaxIcmpSessionsPerIp 0
uint SecureNAT_MaxTcpSessionsPerIp 0
uint SecureNAT_MaxTcpSynSentPerIp 0
uint SecureNAT_MaxUdpSessionsPerIp 0
bool SuppressClientUpdateNotification false
string VlanTypeId 0x8100
bool YieldAfterStorePacket false
}
declare SecureNAT
{
bool Disabled true
bool SaveLog true

declare VirtualDhcpServer
{
string DhcpDnsServerAddress 192.168.30.1
string DhcpDnsServerAddress2 0.0.0.0
string DhcpDomainName $
bool DhcpEnabled true
uint DhcpExpireTimeSpan 7200
string DhcpGatewayAddress 192.168.30.1
string DhcpLeaseIPEnd 192.168.30.200
string DhcpLeaseIPStart 192.168.30.10
string DhcpPushRoutes $
string DhcpSubnetMask 255.255.255.0
}
declare VirtualHost
{
string VirtualHostIp 192.168.30.1
string VirtualHostIpSubnetMask 255.255.255.0
string VirtualHostMacAddress 00-AC-07-A6-21-D8
}
declare VirtualRouter
{
bool NatEnabled true
uint NatMtu 1500
uint NatTcpTimeout 1800
uint NatUdpTimeout 60
}
}
declare SecurityAccountDatabase
{
declare CertList
{
}
declare CrlList
{
}
declare GroupList
{
}
declare IPAccessControlList
{
}
declare UserList
{
declare Dotchin
{
byte AuthNtLmSecureHash gI8DHN3QFcf+hmiqkyOM5w==
byte AuthPassword xe0wNKf2zj9gYCUIxFpXEom+6EE=
uint AuthType 1
uint64 CreatedTime 1449054425407
uint64 ExpireTime 0
uint64 LastLoginTime 1449431395309
string Note Administrator
uint NumLogin 52
string RealName Scott$20Dotchin
uint64 UpdatedTime 1449258062053

declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 5496038
uint64 BroadcastCount 35963
uint64 UnicastBytes 356498773
uint64 UnicastCount 374506
}
declare SendTraffic
{
uint64 BroadcastBytes 2220776
uint64 BroadcastCount 10988
uint64 UnicastBytes 42426305
uint64 UnicastCount 323243
}
}
}
}
}
declare Traffic
{
declare RecvTraffic
{
uint64 BroadcastBytes 41507764
uint64 BroadcastCount 299364
uint64 UnicastBytes 153302744817
uint64 UnicastCount 140354757
}
declare SendTraffic
{
uint64 BroadcastBytes 8165282
uint64 BroadcastCount 51963
uint64 UnicastBytes 417795697
uint64 UnicastCount 1072012
}
}
}
}
declare VirtualLayer3SwitchList
{
}
}

thisjun
Posts: 2458
Joined: Mon Feb 24, 2014 11:03 am

Re: L2TP ReadyNAS 104 - Unable to see devices on network

Post by thisjun » Fri Dec 18, 2015 8:40 am

Please use both of normal localbridge and tap localbridge.
Because normal localbridge can't access to VPN server itself, so you need tap localbridge.

Dotchin
Posts: 8
Joined: Fri Dec 04, 2015 6:01 am

Re: L2TP ReadyNAS 104 - Unable to see devices on network

Post by Dotchin » Thu Dec 24, 2015 10:05 pm

How would I set up a tap bridge.

So you are saying to leave the local bridge in tact but add a second bridge as tap?

Any guidance on how to do this?

Dotchin
Posts: 8
Joined: Fri Dec 04, 2015 6:01 am

Re: L2TP ReadyNAS 104 - Unable to see devices on network

Post by Dotchin » Sat Dec 26, 2015 9:14 am

https://community.netgear.com/t5/Curren ... 4754#M2566

Resolved by following the last post.

Post Reply