Page 1 of 1

Not able to access internal application

Posted: Mon Sep 20, 2021 12:54 pm
by nitinyjadhav7
Hi Softether team,
This is an awesome app and very easy to use. I have query regarding my vpn connection.
I have a very simple setup as below:
Screenshot 2021-09-20 175954.jpg
I am able to connect to VPN server and getting IP address assigned from (192.168.1.2 - 192.168.2.250) but I am not able to access any application which is running on 192.168.1.25 which is http://192.168.1.25:8080.
I already ensured that soft firewall is not blocking that.
It would be really great if someone could help me with this or any suggestion regarding setup will be appreciated.

Please let me know if you need more information.

Re: Not able to access internal application

Posted: Mon Sep 20, 2021 6:40 pm
by nobody12
The problem might be related to the Softether server not beeing able to add the Mac of the virtual cetwork card to its Ethernet interface.
If the Softether server is running on hyper-V check if in the settings on the hyper-V guest under advanced features of the Network card "Enable MAC address spoofing" is ticket. If using VMWare, check if promiscous mode is enabled for the network interface.
Also, check if for whatever reason a local bridge is present in the Softether Servers setup.

Re: Not able to access internal application

Posted: Tue Sep 21, 2021 9:21 am
by nitinyjadhav7
Hi nobody12,
Thank you for your reply.
But I have installed Softether VPN on Physical machine, there is no Vmware or Hyper-v. and still no luck with application URL access once I am on VPN.

Re: Not able to access internal application

Posted: Tue Sep 21, 2021 9:32 am
by nobody12
Have you checked for the presence of the local bridge?
Did you accidentally enable "Secure Nat"?
Are you able to ping A host on the LAN/Are you able to ping the 192.168.1.25?

Re: Not able to access internal application

Posted: Tue Sep 21, 2021 10:23 am
by nitinyjadhav7
Yes I could see local bridge and there is not NAT.
also I am able to ping 192.168.1.25 it just port no. not able to connect.

Re: Not able to access internal application

Posted: Tue Sep 21, 2021 11:40 am
by nobody12
if you are able to do a ping to this host using VPN
get the hosts MAC Address by using arp -a
now again try this from the internal network using any other client.
compare the MAC. Is it identical?

I just want to find out if this is really the same host you are trying to reach.

Re: Not able to access internal application

Posted: Tue Sep 21, 2021 11:28 pm
by solo
The DHCP range on your picture (192.168.1.2 - 192.168.1.250) collides with static IP units on the LAN (eg. 192.168.1.10, 192.168.1.25) and when a VPN client gets a duplicate address, it will not access any application.