Loopback or Hairpin NAT
I'm not a networking expert but I am learning.
I have an OC200 managing an ER7206 router. I have OpenVPN running and would like to be able to stay connected to the VPN on my devices while on my home WiFi or on LTE. To do so, I need to enable loopback or hairpin NAT. I don't see an option to do this in the OC200 console. Am I missing something?
If I'm not missing anything, can I enable this through an ACL or port forwarding?
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
Thanks for posting in our business forum.
NAT loopback(hairpin) is supported. And there is no config page or option to toggle on/off for that.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Thanks for posting in our business forum.
CoffeeAndTech wrote
It works as soon as you configure the port forward. No toggle or enable as I wrote earlier.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Thanks for posting in our business forum.
CoffeeAndTech wrote
I did not say this is working on a VPN. Port forwarding a VPN client is not doable now.
It is not a device under the native LAN. Port forward over tunnel or this does not work.
We commonly refer to the NAT Loopback (hairpin) in LAN. Not involving the VPN client or the tunnel. Do not mistake two things together.
- Copy Link
- Report Inappropriate Content
NAT loopback is for NAT, OpenVPN is not NAT so that's why it doesn't work.
I think it worked before but that this option has been removed, I'm a bit unsure. I'm in the same situation and always have VPN on my mobile devices but found other ways to solve it.
- Copy Link
- Report Inappropriate Content
@MR.S Thank you for the helpful response! Just out of curiosity, what is the way in which you solved it?
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
@MR.S Gotcha! Up until recently I was doing the same on a Raspberry Pi 4. I really liked the ease of install and config on the TP-Link router, so that's why I went that route. I guess it's just a minor inconvenience to not be able to connect on my home WiFi.
- Copy Link
- Report Inappropriate Content
yes I agree, I have always on vpn on mobile devices, it's cumbersome to turn off vpn every time you connect to wifi, but there are advantages to having the vpn server on the back of the router, I have several vpn tunnels on the omada router, I also get easy access to remote sites via OpenVPN since it's behind the router. so there are advantages and disadvantages to everything :-)
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 90
Replies: 10
Voters 0
No one has voted for it yet.