Running SoftEther Server on Windows 2008R2 VMWare

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Fri Jun 26, 2015 9:18 pm

I recently ran a P2V conversion on a server running SoftEther Server. Once I made that conversion and moved the machine on to a VSphere server, the VPN has stopped working. I can get connected and get an IP on the network, but I can neither browse the network nor the internet once connected.

Anyone else with a similar experience?

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Sat Jun 27, 2015 1:13 pm

I never tried that before but MAC spoofing required by local bridge usually may not work on datacenters.

Are you using local bridge?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Sat Jun 27, 2015 1:17 pm

Yes I'm using local bridging.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Sat Jun 27, 2015 1:18 pm

Do you allow it in VMWare?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 12:48 pm

That's where I'm at a loss. I am new to the VMWare environment so I am not sure if/how to allow it.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 1:18 pm

I have no idea about whether VMWare allows MAC Spoofing.
However, do you have a DHCP server in the virtual switch?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 1:28 pm

I switched the controller in to allow promiscuous on the Vsphere Client. I was able to successfully test it within my own network, but when I tried using my phone's hotspot, I couldn't connect.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 1:38 pm

However, are you able to connect to the virtual switch in other places other than your phone's hotspot and your own network with the virtual switch? Also, which VPN protocol(s) do you use?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 1:52 pm

I had my laptop connected via the hotspot then tried to use the VPN. I am just using the default set up of SoftEther. None of this is in my wheelhouse

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 1:58 pm

How do you do your successful test in your network?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 2:01 pm

The only successful test I've done is when running on the same network that the server is running on. I was able to connect and get a new IP and browse the network.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 2:03 pm

What do you see when the client fail to connect using your phone's hotspot?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 2:22 pm

It doesn't resolve the IP to the server, it seems.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 2:24 pm

You should use the public IP(or a domain pointing at that IP) of the server to connect. In the firewall, you need to allow the incoming TCP ports that the server listens.

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 2:28 pm

I am doing so and the IP is allowed through the firewall.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 2:32 pm

Can you take a screenshot?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 2:42 pm

This is what I see when trying to connect while on my hotspot.
You do not have the required permissions to view the files attached to this post.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 2:56 pm

Can you make a screenshot of the virtual switch settings?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 3:26 pm

This is the switch's properties on VSphere
You do not have the required permissions to view the files attached to this post.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 3:51 pm

I can't see anything wrong here. Can the Windows Server browse the internet itself? If yes, can you try if VPN Azure works?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 4:01 pm

I can browse the internet on the box itself and the vpn azure does say it is connected

vpn745110264.vpnazure.net

response says that the connection is refused.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 4:31 pm

You softether vpn server seems to be listening to port 443 correctly(changing the domain to softether.net will know your public IP), and the virtual hub can be detected when using VPN Azure.

Are you having something wrong with your Virtual Hub or vpn user configurations?
You do not have the required permissions to view the files attached to this post.

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 4:35 pm

I have no idea. Before I changed the setting on VMWare, I could get connected and get an IP on the network, but I wasn't able to communicate with any of the machines on the network nor the internet. I've made the change now on the VMWare and I can't connect at all unless I am already inside my network.

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 4:36 pm

One more thing, this public IP is directly assigned to the VM or the VM is behind NAT?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 4:38 pm

The IP is assigned to the router and all traffic is directed to the VM (NAT)

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 4:42 pm

Where is the DHCP Server located? Inside/Outside the virtual switch?

Also, are the hosts you want to communicate in the same subnet as your client?

bfsinc
Posts: 14
Joined: Fri Jun 26, 2015 8:25 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by bfsinc » Mon Jun 29, 2015 4:48 pm

I went back on my router and noted that 444 was open, but not 443. I opened this port and was able to get everything to work in a good test. Thanks for the help!

kh_tsang
Posts: 551
Joined: Wed Jul 24, 2013 12:09 pm

Re: Running SoftEther Server on Windows 2008R2 VMWare

Post by kh_tsang » Mon Jun 29, 2015 4:51 pm

So my test works because of NAT-T......
The client should connect using NAT-T if you have configured the wrong port from my past experience.

Post Reply