ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0

ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0

ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-05-31 18:16:42 - last edited 2025-06-02 16:24:39
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.3.0 Build 20250428 Rel.18967

Hello,


I applied the latest update 2.3.0 Build 20250428 Rel.18967 as soon as it was released. After the update, my OpenVPN connects just like before, but I have absolutely no access to any network resources (SMB, VNC... nothing). I generated a new OpenVPN configuration file, but that didn’t help either. I also tested the following solution:

 

https://community.tp-link.com/en/business/forum/topic/653224

 

I kindly ask for your help in resolving this issue — I have already tried everything that came to mind, including creating new ACL rules and disabling Attack Defense...

Before the update, everything was working perfectly.

  0      
  0      
#1
Options
1 Accepted Solution
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0-Solution
2025-06-02 15:37:05 - last edited 2025-06-02 16:24:39

  @MR.S 

 

I managed to solve it!
First, I created an IP Group named OpenVPN_LAN with an address pool matching my OpenVPN subnet. Then, I added a rule allowing WAN IN ➜ LAN traffic for the OpenVPN_LAN group.

It works perfectly now, but I’m wondering if this rule might have slightly weakened my network’s security.
To me, it now seems like there was a mistake before — because OpenVPN was working even though there was a rule blocking all WAN to LAN traffic.

What do you think about this?

 

IP Group:

ACL:

Recommended Solution
  0  
  0  
#16
Options
17 Reply
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-01 07:50:54

 

Maybe the problem is that the subnet mask in the routing table is 255.255.255.255?

 

Caption

  @lukg20 

  0  
  0  
#2
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-01 17:27:12

  @lukg20 

 

I have tested OpenVPN on two ER605 with the same software, no problems at all, I use Omada controller 5.15.24.15

 

  0  
  0  
#3
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 03:49:40

  @lukg20 I don’t use Omada. At home, I only have one device that supports this system (ER605). I configure everything through the web interface, and until now, everything has been working perfectly. I can connect to OpenVPN normally, but I can’t see any network resources. Today I’ll try restoring the default settings and reapplying the backup again. I have no idea what’s going on...

  0  
  0  
#4
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 09:01:40

  @lukg20 

 

Well that sounds strange, if it works on the controller it usually works in stand alone too. How is OpenVPN configured then? You have to make sure that the OpenVPN ip pool does not overlap with any of your other networks or VPN tunnels. Otherwise there is not much else to be careful of.

 

 

  0  
  0  
#5
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 09:41:05

  @MR.S My network pool is 192.168.1.0/24, and the OpenVPN pool is 10.8.0.0/24. I have an ACL allowing incoming traffic on OpenVPN port 1194. Before the update, everything was working perfectly – strange :/. I can't figure this out... I'm connecting using an Android phone and the OpenVPN app, but that's how I've always done it, and it used to work.

  0  
  0  
#6
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 09:49:52 - last edited 2025-06-02 10:21:31

  @lukg20 

 

If you use OpenVPN connect on PC and Android it should work fine. Disable all ACL rules when testing. I have spent several hours troubleshooting and it turns out that it is an ACL that is causing problems.

 

 

  1  
  1  
#7
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 09:52:35
I wouldn't want to disable the rules because I have a poor, unsafe ISP. Would you be able to determine which allow rules I could try adding for testing purposes?
  0  
  0  
#8
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 10:01:54 - last edited 2025-06-02 10:21:36

  @lukg20 

 

There is no problem with disabling the ACL rules, the router blocks everything by default. The only exception is if you have disabled NAT, so if you have not disabled NAT then disable all ACL rules when testing.

  1  
  1  
#9
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 10:06:13
"Thank you very much. I'm currently at work, but I'll check it as soon as I get home. Is this a firmware bug? Do you think there might be a solution that would allow me to go back to my existing ACLs? Maybe I really could add some rules so that what I have keeps working, and OpenVPN works properly too.
  0  
  0  
#10
Options
Re:ER605 v2 - OpenVPN - No access to network resources after firmware update to 2.3.0
2025-06-02 10:11:44

  @lukg20 

 

We don't know if it's ACL, but it's a good idea to disable ACL when troubleshooting a problem. It's mainly WAN/IN rules you need to be aware of. If that doesn't work then maybe @Clive_A  can help further, it could of course be a bug in the new firmware although I don't think so.

  0  
  0  
#11
Options