Page 1 of 1

Can't Connect VPN

Posted: Sun Aug 03, 2014 1:30 pm
by Jafo
I am testing the SoftEther VPN server on a digital ocean droplet using Centos 7. No firewall, no NAT.

On my client end, using Windows 7 behind a Netgear router. I have attached port forwarding rules (set for TCP/UDP). I have no software firewall on client. Using preshared key for auth. CPN server status from windows admin tool shows online.

I have attached screenshot of error message. I am at a loss here..

Re: Can't Connect VPN

Posted: Mon Aug 04, 2014 10:25 am
by qupfer
Hi,

at first. Your second screenshot is useless. Not everybody knows the interface of a netgear router (or from what is this a screenshot?)
So, how we should know, what you have set? Of course, it looks like you have set some "ports" but we can't see, you set it as a forwarding rule, a blacklist, a whitelist, whatever.
Why not post the complete screen? Do you fear somebody could know, on which port you are listen for RDP/FTP/SSH/whatever?

But back to your problem. Mostly L2TP fails because the certificates are wrong/untrusted.

First, create a (self-signed) cert for your Server-Domain. The SoftEther-Sever-GUI has a function for that. But give attention, what the cert contains the domain (as common name), you are using for your connection.
https://www.dropbox.com/s/809nxhwoj80i86z/cert1.PNG

Now, export the cert and save it on your client machine.
Press Ctrl+R and enter mmc.
Press Ctrl+M and look for something called "certificates" or something similar and add it. Now select Computeraccount (NOT Useraccount) and then local computer.

Now find "trusted root certification authorities" and right click on it. Select All Tasks--> Import and select your server certificate.



(all english names are straight forward translations. The real english names can be different. I haven't an english windows)

Re: Can't Connect VPN

Posted: Mon Aug 04, 2014 3:30 pm
by inten
Check your PSK.