Hide Location and access SoftEther Server itself

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Hide Location and access SoftEther Server itself

Post by Wurstsalat » Fri Jul 05, 2024 5:38 pm

Hi there,
pretty new to SoftEther and have 2 question

German ARD Livestreaming knows i am not in germany but i wonder how they do it...

Secure NAT is enabled (Server and i use the dhcp server in my network)
Tunnel Crack Protection is enabled
-> https://www.wieistmeineip.de/ (and similar) knows i am not in germany but show my german ip?
-> sky seems to dont know i am not in germany in works
-> ard doesnt think i am in germany
-> client is windows, i turned of location services and set a german address as default

Dont know what to do that those services dont know i am not in germany? Any ideas on this? (i have one about ipv6 but cant disable it entirely cause i have only ipv6 connection here)

Next question, when connected through softether i am unable to rdp (or other services on the same system as softether vpn server) to reach them...in windows events and firewalllogs (with accept logging enabled) show there was nothing which tried to conect. How can i fix this?

solo
Posts: 1614
Joined: Sun Feb 14, 2021 10:31 am

Re: Hide Location and access SoftEther Server itself

Post by solo » Fri Jul 05, 2024 7:52 pm

Wurstsalat wrote:
Fri Jul 05, 2024 5:38 pm
Secure NAT is enabled (Server and i use the dhcp server in my network)
Either use SecureNAT with disabled bridge or vice-versa.

wieistmeineip.de detects only VPN IP if you clear cookies and disable javascript in your browser.

Enable SecureNAT and RDP to the host's LAN IP, not to 192.168.30.1 - more info Client PC unable to reach shared directory on Server PC

Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Re: Hide Location and access SoftEther Server itself

Post by Wurstsalat » Sat Jul 06, 2024 5:02 am

ok so i disabled bridge now, made a static 0.0.0.0 route to 30.1 and the location detection seems to do what i expect, first test with ard also works (dont know if the current program is geo blocked but i assume it is). Only thing is i am unsure if the local dhcp server gets in conflict with the softether one while its the same interface?

To access the server i use the (internal) name of it which resolves to the correct lan ip but no ports are reachable or even icmp (still no logs in the firewall or something similar)

solo
Posts: 1614
Joined: Sun Feb 14, 2021 10:31 am

Re: Hide Location and access SoftEther Server itself

Post by solo » Sat Jul 06, 2024 8:42 am

Wurstsalat wrote:
Sat Jul 06, 2024 5:02 am
made a static 0.0.0.0 route to 30.1
Why? SE client does it automatically.

"...no ports are reachable or even icmp (still no logs in the firewall or something similar)"

Just disable the firewall during these tests. If server and client LANs are on the same subnet, in SecureNAT's "Edit the static routing table to push" add eg: 192.168.0.2/255.255.255.255/192.168.30.1

Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Re: Hide Location and access SoftEther Server itself

Post by Wurstsalat » Sat Jul 06, 2024 11:38 am

Cause there was no hint for 0.0.0.0 route in the config so i added (and of course if just the se Client add it by default i would stick to it to have all clients working in full/force tunnel mode)

Firewall didnt log any hits? Anyway have disabled it, nothing changed. Still can reach other systems in the network in the same subnet

Dont get your last Point
VPN has its own subnet
Server is in another subnet (like the other systems i can reach)

Do you mean i add an extra route to the (real) Server IP through vpn gateway which should be covered by the 0.0.0.0 route? I've added this route but nothing changed 😔

solo
Posts: 1614
Joined: Sun Feb 14, 2021 10:31 am

Re: Hide Location and access SoftEther Server itself

Post by solo » Sat Jul 06, 2024 1:53 pm

Wurstsalat wrote:
Sat Jul 06, 2024 11:38 am
Cause there was no hint for 0.0.0.0 route in the config so i added
Here is a hint - restore SecureNAT's default settings and re-test everything.

Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Re: Hide Location and access SoftEther Server itself

Post by Wurstsalat » Sun Jul 07, 2024 9:06 am

Tried that (only difference was the 0 Routing), No luck

Reinstalled the whole softether server Software, No luck 🫤

solo
Posts: 1614
Joined: Sun Feb 14, 2021 10:31 am

Re: Hide Location and access SoftEther Server itself

Post by solo » Sun Jul 07, 2024 9:36 am

Start the VPN and post AS CODE the output of:

Code: Select all

VPN server:
netstat -r
ipconfig /all
netsh advfirewall show allprofiles state
vpncmd localhost:port /server /password:*** /cmd ServerInfoGet
vpncmd localhost:port /server /password:*** /cmd BridgeDeviceList
vpncmd localhost:port /server /password:*** /cmd BridgeList
vpncmd localhost:port /server /password:*** /adminhub:@@@ /cmd StatusGet
vpncmd localhost:port /server /password:*** /adminhub:@@@ /cmd NatGet
vpncmd localhost:port /server /password:*** /adminhub:@@@ /cmd SecureNatStatusGet
vpncmd localhost:port /server /password:*** /adminhub:@@@ /cmd SecureNatHostGet
vpncmd localhost:port /server /password:*** /adminhub:@@@ /cmd DhcpGet
//replace: 'port' with number; *** with SE admin password; @@@ with VPN hub's name

VPN client:
netstat -r
ipconfig /all
tracert -d -h 3 1.1.1.1

Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Re: Hide Location and access SoftEther Server itself

Post by Wurstsalat » Sun Jul 07, 2024 7:12 pm

Server (lan ip = 192.168.178.69)

Code: Select all

netstat -r
===========================================================================
Schnittstellenliste
 24...84 a9 3e 69 51 95 ......Hyper-V Virtual Ethernet Adapter #3
  1...........................Software Loopback Interface 1
 26...00 15 5d 99 d5 ea ......Hyper-V Virtual Ethernet Adapter
 44...00 15 5d 83 bb 9a ......Hyper-V Virtual Ethernet Adapter #2
===========================================================================

IPv4-Routentabelle
===========================================================================
Aktive Routen:
     Netzwerkziel    Netzwerkmaske          Gateway    Schnittstelle Metrik
          0.0.0.0          0.0.0.0    192.168.178.1   192.168.178.69     25
        127.0.0.0        255.0.0.0   Auf Verbindung         127.0.0.1    331
        127.0.0.1  255.255.255.255   Auf Verbindung         127.0.0.1    331
  127.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    331
     172.27.144.0    255.255.240.0   Auf Verbindung      172.27.144.1   5256
     172.27.144.1  255.255.255.255   Auf Verbindung      172.27.144.1   5256
   172.27.159.255  255.255.255.255   Auf Verbindung      172.27.144.1   5256
     192.168.16.0    255.255.240.0   Auf Verbindung      192.168.16.1   5256
     192.168.16.1  255.255.255.255   Auf Verbindung      192.168.16.1   5256
   192.168.31.255  255.255.255.255   Auf Verbindung      192.168.16.1   5256
    192.168.178.0    255.255.255.0   Auf Verbindung    192.168.178.69    281
   192.168.178.69  255.255.255.255   Auf Verbindung    192.168.178.69    281
  192.168.178.255  255.255.255.255   Auf Verbindung    192.168.178.69    281
        224.0.0.0        240.0.0.0   Auf Verbindung         127.0.0.1    331
        224.0.0.0        240.0.0.0   Auf Verbindung    192.168.178.69    281
        224.0.0.0        240.0.0.0   Auf Verbindung      192.168.16.1   5256
        224.0.0.0        240.0.0.0   Auf Verbindung      172.27.144.1   5256
  255.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    331
  255.255.255.255  255.255.255.255   Auf Verbindung    192.168.178.69    281
  255.255.255.255  255.255.255.255   Auf Verbindung      192.168.16.1   5256
  255.255.255.255  255.255.255.255   Auf Verbindung      172.27.144.1   5256
===========================================================================
Ständige Routen:
  Keine

IPv6-Routentabelle
===========================================================================
Aktive Routen:
 If Metrik Netzwerkziel             Gateway
 24    281 ::/0                     fe80::e228:6dff:fe7f:cbea
  1    331 ::1/128                  Auf Verbindung
 24    281 2001:9e8:2d4c:7100::/56  fe80::e228:6dff:fe7f:cbea
 24    281 2001:9e8:2d4c:7100::/64  Auf Verbindung
 24    281 2001:9e8:2d4c:7100:b695:e355:56c2:b9d3/128
                                    Auf Verbindung
 24    281 2001:9e8:2d4c:7100:f822:a895:c2f9:715b/128
                                    Auf Verbindung
 24    281 fd57:7572:7374::/64      Auf Verbindung
 24    281 fd57:7572:7374::/64      fe80::e228:6dff:fe7f:cbea
 24    281 fd57:7572:7374:0:3d84:1ade:63e5:b476/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:7103:6335:e052:ef39/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:a53c:f340:8ee6:25fc/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:aa19:7191:ff93:e10b/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:b0a0:5abd:f11b:28de/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:d13b:abde:52f2:c7/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:d8c8:57ee:e8c6:8cbb/128
                                    Auf Verbindung
 24    281 fd57:7572:7374:0:f822:a895:c2f9:715b/128
                                    Auf Verbindung
 24    281 fe80::/64                Auf Verbindung
 26   5256 fe80::/64                Auf Verbindung
 44   5256 fe80::/64                Auf Verbindung
 26   5256 fe80::6076:1376:db87:1c36/128
                                    Auf Verbindung
 24    281 fe80::9707:28e:e9b:8c98/128
                                    Auf Verbindung
 44   5256 fe80::d4cf:f61e:4e76:f1ab/128
                                    Auf Verbindung
  1    331 ff00::/8                 Auf Verbindung
 24    281 ff00::/8                 Auf Verbindung
 26   5256 ff00::/8                 Auf Verbindung
 44   5256 ff00::/8                 Auf Verbindung
===========================================================================
Ständige Routen:
  Keine

ipconfig /all
Windows-IP-Konfiguration

   Hostname  . . . . . . . . . . . . : Server01
   Primäres DNS-Suffix . . . . . . . : 
   Knotentyp . . . . . . . . . . . . : Hybrid
   IP-Routing aktiviert  . . . . . . : Nein
   WINS-Proxy aktiviert  . . . . . . : Nein
   DNS-Suffixsuchliste . . . . . . . : fritz.box

Ethernet-Adapter vEthernet (LAN):

   Verbindungsspezifisches DNS-Suffix: fritz.box
   Beschreibung. . . . . . . . . . . : Hyper-V Virtual Ethernet Adapter #3
   Physische Adresse . . . . . . . . : 84-A9-3E-69-51-95
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja
   IPv6-Adresse. . . . . . . . . . . : 2001:9e8:2d4c:7100:b695:e355:56c2:b9d3(Bevorzugt) 
   IPv6-Adresse. . . . . . . . . . . : fd57:7572:7374:0:aa19:7191:ff93:e10b(Bevorzugt) 
   Temporäre IPv6-Adresse. . . . . . : 2001:9e8:2d4c:7100:f822:a895:c2f9:715b(Bevorzugt) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:3d84:1ade:63e5:b476(Verworfen) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:7103:6335:e052:ef39(Verworfen) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:a53c:f340:8ee6:25fc(Verworfen) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:b0a0:5abd:f11b:28de(Bevorzugt) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:d13b:abde:52f2:c7(Verworfen) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:d8c8:57ee:e8c6:8cbb(Verworfen) 
   Temporäre IPv6-Adresse. . . . . . : fd57:7572:7374:0:f822:a895:c2f9:715b(Verworfen) 
   Verbindungslokale IPv6-Adresse  . : fe80::9707:28e:e9b:8c98%24(Bevorzugt) 
   IPv4-Adresse  . . . . . . . . . . : 192.168.178.69(Bevorzugt) 
   Subnetzmaske  . . . . . . . . . . : 255.255.255.0
   Lease erhalten. . . . . . . . . . : Mittwoch, 12. Juni 2024 03:32:08
   Lease läuft ab. . . . . . . . . . : Montag, 15. Juli 2024 16:44:07
   Standardgateway . . . . . . . . . : fe80::e228:6dff:fe7f:cbea%24
                                       192.168.178.1
   DHCP-Server . . . . . . . . . . . : 192.168.178.1
   DHCPv6-IAID . . . . . . . . . . . : 579119422
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-2A-4A-3D-9F-84-A9-3E-69-51-95
   DNS-Server  . . . . . . . . . . . : fd57:7572:7374:0:e228:6dff:fe7f:cbea
                                       192.168.178.1
   NetBIOS über TCP/IP . . . . . . . : Aktiviert

Ethernet-Adapter vEthernet (Default Switch):

   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Hyper-V Virtual Ethernet Adapter
   Physische Adresse . . . . . . . . : 00-15-5D-99-D5-EA
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja
   Verbindungslokale IPv6-Adresse  . : fe80::6076:1376:db87:1c36%26(Bevorzugt) 
   IPv4-Adresse  . . . . . . . . . . : 192.168.16.1(Bevorzugt) 
   Subnetzmaske  . . . . . . . . . . : 255.255.240.0
   Standardgateway . . . . . . . . . : 
   DHCPv6-IAID . . . . . . . . . . . : 436213085
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-2A-4A-3D-9F-84-A9-3E-69-51-95
   NetBIOS über TCP/IP . . . . . . . : Aktiviert

Ethernet-Adapter vEthernet (WSL (Hyper-V firewall)):

   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Hyper-V Virtual Ethernet Adapter #2
   Physische Adresse . . . . . . . . : 00-15-5D-83-BB-9A
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja
   Verbindungslokale IPv6-Adresse  . : fe80::d4cf:f61e:4e76:f1ab%44(Bevorzugt) 
   IPv4-Adresse  . . . . . . . . . . : 172.27.144.1(Bevorzugt) 
   Subnetzmaske  . . . . . . . . . . : 255.255.240.0
   Standardgateway . . . . . . . . . : 
   DHCPv6-IAID . . . . . . . . . . . : 738202973
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-2A-4A-3D-9F-84-A9-3E-69-51-95
   NetBIOS über TCP/IP . . . . . . . : Aktiviert


netsh advfirewall show allprofiles state
Domänenprofil-Einstellungen:
----------------------------------------------------------------------
Status                                   AUS

Privates Profil-Einstellungen:
----------------------------------------------------------------------
Status                                   AUS

Öffentliches Profil-Einstellungen:
----------------------------------------------------------------------
Status                                   AUS
OK.


vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

VPN Server>ServerInfoGet
ServerInfoGet command - Get server information
Item                            |Value
--------------------------------+-----------------------------------------------------------------------
Product Name                    |SoftEther VPN Server (64 bit)
Version                         |Version 4.43 Build 9799   (English)
Build                           |Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Host Name                       |Server01
Server Type                     |Standalone Server
Type of Operating System        |Windows NT
Product Name of Operating System|Windows 11
Operating System Vendor         |Microsoft Corporation
Operating System Version        |Build 22631, Multiprocessor Free (22621.ni_release.220506-1250)
Type of OS Kernel               |NTOS Kernel
Version of OS Kernel            |Build 22631 Multiprocessor Free
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

VPN Server>BridgeDeviceList
BridgeDeviceList command - Get List of Network Adapters Usable as Local Bridge
Intel(R) Ethernet Connection (7) I219-LM (ID=3386227477)
Microsoft Corporation (ID=2543417501)
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

VPN Server>BridgeList
BridgeList command - Get List of Local Bridge Connection
Number|Virtual Hub Name|Network Adapter or Tap Device Name|Status
------+----------------+----------------------------------+------
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

The Virtual Hub "VPN" has been selected.
VPN Server/VPN>StatusGet
StatusGet command - Get Current Status of Virtual Hub
Item                         |Value
-----------------------------+-------------------
Virtual Hub Name             |VPN
Status                       |Online
Type                         |Standalone
SecureNAT                    |Enabled
Sessions                     |2
Sessions (Client)            |0
Sessions (Bridge)            |1
Access Lists                 |0
Users                        |1
Groups                       |0
MAC Tables                   |2
IP Tables                    |5
Num Logins                   |20
Last Login                   |2024-07-07 20:41:24
Last Communication           |2024-07-07 20:41:47
Created at                   |2024-07-05 16:45:20
Outgoing Unicast Packets     |1,013,051 packets
Outgoing Unicast Total Size  |661,153,594 bytes
Outgoing Broadcast Packets   |213,067 packets
Outgoing Broadcast Total Size|29,867,753 bytes
Incoming Unicast Packets     |4,693,731 packets
Incoming Unicast Total Size  |4,317,589,128 bytes
Incoming Broadcast Packets   |267,934 packets
Incoming Broadcast Total Size|32,855,311 bytes
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

The Virtual Hub "VPN" has been selected.
VPN Server/VPN>NatGet
NatGet command - Get Virtual NAT Function Setting of SecureNAT Function
Item                           |Value
-------------------------------+-----
Use Virtual NAT Function       |Yes
MTU Value                      |1500
TCP Session Timeout (Seconds)  |1800
UDP Session Timeout (Seconds)  |60
Save NAT and DHCP Operation Log|Yes
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

The Virtual Hub "VPN" has been selected.
VPN Server/VPN>SecureNatStatusGet
SecureNatStatusGet command - Get the Operating Status of the Virtual NAT and DHCP Server Function (SecureNat Function)
Item                     |Value
-------------------------+----------
Virtual Hub Name         |VPN
NAT TCP/IP Sessions      |15 Session
NAT UDP/IP Sessions      |17 Session
NAT ICMP Sessions        |0 Session
NAT DNS Sessions         |0 Session
Allocated DHCP Clients   |1 Client
Kernel-mode NAT is Active|Yes
Raw IP mode NAT is Active|No
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

The Virtual Hub "VPN" has been selected.
VPN Server/VPN>SecureNatHostGet
SecureNatHostGet command - Get Network Interface Setting of Virtual Host of SecureNAT Function
Item       |Value
-----------+-----------------
MAC Address|5E-07-A9-AA-2D-BF
IP Address |192.168.30.1
Subnet Mask|255.255.255.0
The command completed successfully.

vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.43 Build 9799   (English)
Compiled 2023/08/31 10:50:49 by buildsan at crosswin with OpenSSL 3.0.9
Copyright (c) 2012-2023 SoftEther VPN Project. All Rights Reserved.

Connection has been established with VPN Server "localhost" (port 5555).

You have administrator privileges for the entire VPN Server.

The Virtual Hub "VPN" has been selected.
VPN Server/VPN>DhcpGet
DhcpGet command - Get Virtual DHCP Server Function Setting of SecureNAT Function
Item                           |Value
-------------------------------+-------------------------------------------
Use Virtual DHCP Function      |Yes
Start Distribution Address Band|192.168.30.10
End Distribution Address Band  |192.168.30.200
Subnet Mask                    |255.255.255.0
Lease Limit (Seconds)          |7200
Default Gateway Address        |192.168.30.1
DNS Server Address 1           |192.168.30.1
DNS Server Address 2           |None
Domain Name                    |fritz.box
Save NAT and DHCP Operation Log|Yes
Static Routing Table to Push   |192.168.178.69/255.255.255.255/192.168.30.1
The command completed successfully.
Client

Code: Select all

===========================================================================
Schnittstellenliste
 13...5e 6d 6a 4b a3 23 ......VPN Client Adapter - VPN
 10...7c 50 79 e9 65 66 ......Microsoft Wi-Fi Direct Virtual Adapter
 21...7e 50 79 e9 65 65 ......Microsoft Wi-Fi Direct Virtual Adapter #2
 14...00 09 0f fe 00 01 ......Fortinet Virtual Ethernet Adapter (NDIS 6.30)
  5...7c 50 79 e9 65 65 ......Killer(R) Wi-Fi 6 AX1650i 160MHz Wireless Network Adapter (201NGW)
 15...7c 50 79 e9 65 69 ......Bluetooth Device (Personal Area Network)
  1...........................Software Loopback Interface 1
===========================================================================

IPv4-Routentabelle
===========================================================================
Aktive Routen:
     Netzwerkziel    Netzwerkmaske          Gateway    Schnittstelle Metrik
          0.0.0.0          0.0.0.0     192.168.30.1    192.168.30.10      2
   <my public ip>  255.255.255.255      192.168.0.1    192.168.0.116     35
        127.0.0.0        255.0.0.0   Auf Verbindung         127.0.0.1    331
        127.0.0.1  255.255.255.255   Auf Verbindung         127.0.0.1    331
  127.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    331
    130.158.6.105  255.255.255.255      192.168.0.1    192.168.0.116     35
      192.168.0.0    255.255.255.0   Auf Verbindung     192.168.0.116    291
    192.168.0.116  255.255.255.255   Auf Verbindung     192.168.0.116    291
    192.168.0.255  255.255.255.255   Auf Verbindung     192.168.0.116    291
     192.168.30.0    255.255.255.0   Auf Verbindung     192.168.30.10    257
    192.168.30.10  255.255.255.255   Auf Verbindung     192.168.30.10    257
   192.168.30.255  255.255.255.255   Auf Verbindung     192.168.30.10    257
        224.0.0.0        240.0.0.0   Auf Verbindung         127.0.0.1    331
        224.0.0.0        240.0.0.0   Auf Verbindung     192.168.30.10    257
        224.0.0.0        240.0.0.0   Auf Verbindung     192.168.0.116    291
  255.255.255.255  255.255.255.255   Auf Verbindung         127.0.0.1    331
  255.255.255.255  255.255.255.255   Auf Verbindung     192.168.30.10    257
  255.255.255.255  255.255.255.255   Auf Verbindung     192.168.0.116    291
===========================================================================
Ständige Routen:
  Keine

IPv6-Routentabelle
===========================================================================
Aktive Routen:
 If Metrik Netzwerkziel             Gateway
  5    291 ::/0                     fe80::6c97:fbff:fe85:b836
  1    331 ::1/128                  Auf Verbindung
  5    291 2a02:1388:20f6:7ac6::/64 Auf Verbindung
  5    291 2a02:1388:20f6:7ac6:1409:d080:ff0:cb70/128
                                    Auf Verbindung
  5    291 2a02:1388:20f6:7ac6:b14c:8f58:7aec:dca1/128
                                    Auf Verbindung
 13    291 fe80::/64                Auf Verbindung
  5    291 fe80::/64                Auf Verbindung
  5    291 fe80::6ee7:fa5a:f4a2:6efe/128
                                    Auf Verbindung
 13    291 fe80::7b9e:8a65:c25a:8e88/128
                                    Auf Verbindung
  1    331 ff00::/8                 Auf Verbindung
 13    291 ff00::/8                 Auf Verbindung
  5    291 ff00::/8                 Auf Verbindung
===========================================================================
Ständige Routen:
  Keine

Windows-IP-Konfiguration

   Hostname  . . . . . . . . . . . . : Wurstspin
   Primäres DNS-Suffix . . . . . . . : 
   Knotentyp . . . . . . . . . . . . : Hybrid
   IP-Routing aktiviert  . . . . . . : Nein
   WINS-Proxy aktiviert  . . . . . . : Nein
   DNS-Suffixsuchliste . . . . . . . : fritz.box

Unbekannter Adapter VPN - VPN Client:

   Verbindungsspezifisches DNS-Suffix: fritz.box
   Beschreibung. . . . . . . . . . . : VPN Client Adapter - VPN
   Physische Adresse . . . . . . . . : 5E-6D-6A-4B-A3-23
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja
   Verbindungslokale IPv6-Adresse  . : fe80::7b9e:8a65:c25a:8e88%13(Bevorzugt) 
   IPv4-Adresse  . . . . . . . . . . : 192.168.30.10(Bevorzugt) 
   Subnetzmaske  . . . . . . . . . . : 255.255.255.0
   Lease erhalten. . . . . . . . . . : Sonntag, 7. Juli 2024 20:56:16
   Lease läuft ab. . . . . . . . . . : Sonntag, 7. Juli 2024 22:56:16
   Standardgateway . . . . . . . . . : 192.168.30.1
   DHCP-Server . . . . . . . . . . . : 192.168.30.1
   DHCPv6-IAID . . . . . . . . . . . : 996044138
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-28-B7-37-68-7C-50-79-E9-65-65
   DNS-Server  . . . . . . . . . . . : 192.168.30.1
   NetBIOS über TCP/IP . . . . . . . : Aktiviert

Drahtlos-LAN-Adapter LAN-Verbindung* 1:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Physische Adresse . . . . . . . . : 7C-50-79-E9-65-66
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Drahtlos-LAN-Adapter LAN-Verbindung* 2:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
   Physische Adresse . . . . . . . . : 7E-50-79-E9-65-65
   DHCP aktiviert. . . . . . . . . . : Nein
   Autokonfiguration aktiviert . . . : Ja

Ethernet-Adapter Ethernet:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Fortinet Virtual Ethernet Adapter (NDIS 6.30)
   Physische Adresse . . . . . . . . : 00-09-0F-FE-00-01
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Drahtlos-LAN-Adapter WLAN:

   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Killer(R) Wi-Fi 6 AX1650i 160MHz Wireless Network Adapter (201NGW)
   Physische Adresse . . . . . . . . : 7C-50-79-E9-65-65
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja
   IPv6-Adresse. . . . . . . . . . . : 2a02:1388:20f6:7ac6:b14c:8f58:7aec:dca1(Bevorzugt) 
   Temporäre IPv6-Adresse. . . . . . : 2a02:1388:20f6:7ac6:1409:d080:ff0:cb70(Bevorzugt) 
   Verbindungslokale IPv6-Adresse  . : fe80::6ee7:fa5a:f4a2:6efe%5(Bevorzugt) 
   IPv4-Adresse  . . . . . . . . . . : 192.168.0.116(Bevorzugt) 
   Subnetzmaske  . . . . . . . . . . : 255.255.255.0
   Lease erhalten. . . . . . . . . . : Samstag, 6. Juli 2024 07:10:42
   Lease läuft ab. . . . . . . . . . : Montag, 8. Juli 2024 16:35:05
   Standardgateway . . . . . . . . . : fe80::6c97:fbff:fe85:b836%5
   DHCP-Server . . . . . . . . . . . : 192.168.0.1
   DHCPv6-IAID . . . . . . . . . . . : 75255929
   DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-28-B7-37-68-7C-50-79-E9-65-65
   DNS-Server  . . . . . . . . . . . : 192.168.0.1
   NetBIOS über TCP/IP . . . . . . . : Aktiviert

Ethernet-Adapter Bluetooth-Netzwerkverbindung:

   Medienstatus. . . . . . . . . . . : Medium getrennt
   Verbindungsspezifisches DNS-Suffix: 
   Beschreibung. . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physische Adresse . . . . . . . . : 7C-50-79-E9-65-69
   DHCP aktiviert. . . . . . . . . . : Ja
   Autokonfiguration aktiviert . . . : Ja

Routenverfolgung zu 1.1.1.1 über maximal 3 Hops

  1   253 ms   307 ms   203 ms  192.168.30.1 
  2   216 ms   327 ms   295 ms  192.168.178.1 
  3    96 ms   291 ms   320 ms  94.134.198.219 

Ablaufverfolgung beendet.

solo
Posts: 1614
Joined: Sun Feb 14, 2021 10:31 am

Re: Hide Location and access SoftEther Server itself

Post by solo » Sun Jul 07, 2024 8:15 pm

set DisableKernelModeSecureNAT = 1

(since your LANs' subnets differ, remove the "Static Routing Table to Push" value)

Wurstsalat
Posts: 8
Joined: Fri Jul 05, 2024 5:31 pm

Re: Hide Location and access SoftEther Server itself

Post by Wurstsalat » Mon Jul 08, 2024 7:15 pm

thanks, this did the trick

Post Reply