RMS VPN Hub Routing not working

Hi.

I’m experiencing routing problems within an RMS VPN

It looks similar to this
RMS VPN hub routes not working - NETWORKING SOLUTIONS - Teltonika Community

When I use routes for the device within my VPN, this works perfectly. However adding a route for each device means the VPN needs to be restarted which breaks the connection for all other devices on the VPN.

Instead I would like to have one route which allows my VPN user to talk to all devices on the VPN, like below.

I have tried this approach and there is no 172.16… route pushed to the OpenVPN Client and
route print -4

does not show a 172.16 route

Even when I add a 172.16 route manually into my OpenVPN Client on Windows 11 I still cannot talk to the device.

As soon as I add the below entry and restart the VPN, everything works perfectly, but I do not want to add a route for each device for the reasons mentioned above.

Can I please get some help to try and troubleshoot this?

Thanks,

Andy

This works

Hello Andy,

Thank you for reaching out.

Could you please confirm whether you have tried enabling masquerading on the LAN zone under Network → Firewall → Zones settings as described in the thread here:

Let me know how it goes.

Best regards,

Thank you Martynas for the response.

I was looking for this on the RMS but I think it’s a setting on the device.

So I’ve toggled the top option from OFF to ON and tried Save & Apply.
I will remove the other routes and see if this works.

Hello Martynas,

I have removed the device route so now only one route exists

Device settings are as below

Still facing same issue.

image

Here is my IPv4 routing table showing the route that should be in place.

Please note I’ve had to set this route manually in my ovpn client file because the gateway hasn’t pushed it on connect.

Could we please arrange support call to screen share?

Thanks,

Andy

Good morning,

Thank you for the update. In this case, to troubleshoot this matter effectively and schedule a remote assistance session, we’ll need to continue this process privately, because sensitive/publicly unshareable information, such as the troubleshoot file, public IP addresses, serial numbers, etc., needs to be collected.

You should find a support request form in the inbox of the email address you used for your forum registration. Kindly fill out the form, and please reference Ticket ID: 15802 when submitting it. Once the form is completed, we’ll contact you directly via email to investigate the issue in detail and help work towards a solution.

Best regards,

Hi Martynas,

Hope you are doing well.

I completed the form yesterday and am keen to see if I can get some assistance today please. Unfortunately since making the change requested I am unable to connect as the LAN side DHCP is not working correctly and serving incorrect IPs. Therefore my project is stalled.

Many thanks,

Andy

Hi Martynas,

The support team have been talking with me privately. They have said that it is not possible using RMS VPN to deliver this solution.

To recap, I don’t want to have to setup a new route for every gateway device added to the VPN. To do this requires a VPN Reboot which could cause a production outage for hundreds of devices.

Instead I’m looking to have one route for each VPN user, so I can set these up at the beginning. These VPN users would be able to communicate with any other clients added to the VPN at any point.

You had suggested using masquerading on the LAN zone but this did not resolve it.

Can you please look again and make any alternative suggestions?
If this is not possible with RMS VPN can you suggest how other customers achieve this at scale because I’m sure there is a live solution somewhere!

Thanks,

Andy

This topic was automatically closed after 60 days. New replies are no longer allowed.