Simple VPN routing question deja vu

I had a question sometime ago that you all helped me out with

However, I have the same question again! I have recently changed my fritzbox which in turn also changed the address space of my network (actually I also changed my switch which the nethserver is plugged into from an unmanaged to a managed switch which could be relevant). I believe I have set everything up the same way as previously but I can’t ping/connect to devices in my local network from machines connected to the VPN (which is why I installed the VPN - so I can connect to my hoe network from work).

My nethserver is and the fritzbox is with the latter directly connected to the internet. The VPN network is 192.168.101.*

From my VPN connected device I can’t see the 192.168.188.* network.

If I log in to nethserver as root, I can happily ping the VPN connected device on as well as any machines on the 192.168.188.* network, which I assume means the nethserver VPN is set up properly.

[root@nethserver ~]# netstat -rn
Kernel IP routing table
Destination Gateway Genmask Flags MSS Window irtt Iface UG 0 0 0 br0 U 0 0 0 tunrw U 0 0 0 br0

I have set up the below static route on the fritzbox

(image upload not working)
subnet mask:

and the enabled tickbox is active

Any ideas?

Hi Andrew

You need to change the Gateway here from (The IP of your Fritzbox) to the IP of your NethServer…
Otherwise, any contact from the VPN to another box in your LAN will get replied to. Only your Fritzbox will not send the reply back over the VPN via your NethServer, but send it towards the Internet, and your provider will be discarding private packets…
After all, your boxes have only the gateway of the Fritzbox, not the NethServer as Gateway…

My 2 cents

Thanks @Andy_Wismer

Works perfectly!

Guess my instructions from last time had a mistake in them!


1 Like



Please put in a “solved” to help the next person with a same / similiar issue!