Router refuses VPN connection

  • Hello everyone

    I have currently configured a Tailscale VPN with an exit node and it works perfectly on all devices in my household -> VPN on all devices can be reached with the same IP as if I were at home.

    However, the Internet box rejects the connection, an HTTP Error: Refused to connect.

    Is it because the VPN devices get a 100.x.x.x IP?

    How could I avoid something like that?

    Create a custom firewall rule?

    Because normally Tailscale doesn’t need a port forward or something similar.

    Show original language (German)
    • @Neliommiosch84

      I don’t know enough about how Tailscale works to estimate exactly how Tailscale’s technology works, but one thing is clear:

      For security reasons, the GUI of the Internet boxes is generally blocked from direct access from the WAN side.

      With classic VPN, access to the web GUI only works because the call is ultimately made via the VPN routes from the internal LAN.

    Hi @Neliommiosch84

    What kind of external IP does your client have? If it is also in a 192.168.1.0/24 subnet with 192.168.1.1 as a gateway in the external network, the traffic cannot go through the tunnel because Tailscale itself connects to the internet via 192.168.1.1. (see an eventual solution)

    LG

    r00t

    Show original language (German)

    4b 65 69 6e 65 20 4d 61 63 68 74 20 64 65 72 20 6c 65 67 61 63 79 20 49 50 21

    @Neliommiosch84

    I don’t know enough about how Tailscale works to estimate exactly how Tailscale’s technology works, but one thing is clear:

    For security reasons, the GUI of the Internet boxes is generally blocked from direct access from the WAN side.

    With classic VPN, access to the web GUI only works because the call is ultimately made via the VPN routes from the internal LAN.

    Show original language (German)

    Hobby-Nerd ohne wirtschaftliche Abhängigkeiten zur Swisscom