1
Votes

OpenVPN connection attempts without any info about source

 
1
Votes

OpenVPN connection attempts without any info about source

OpenVPN connection attempts without any info about source
OpenVPN connection attempts without any info about source
a week ago - last edited Friday

hi all,

 

as I'm recently looking more deeply into logs (see my other posts), I've found following:

  • someone tries repeatedly to connect to my OpenVPN server. in Controller Event logs are only messages about failing TLS handshake without any source IP information:

OpenVPN TLS errors

  • looking into exported running logs - there is the same info without source IP info:
    • 03-06-2026 09:55:01.485 DEBUG [remote-log-event-pool-257] [] c.t.s.o.l.p.c.d.c(): syslog message: <134>1 2026-03-06 09:54:27 Omada Controller ATGE - - - [gateway:atgeogw01 (router):20-23-51-B2-ED-F4]: OpenVPN(ATGE) TLS handshake failed.
    • 03-06-2026 09:55:01.487 DEBUG [remote-log-event-pool-257] [] c.t.s.o.l.p.c.d.c(): syslog message: <134>1 2026-03-06 09:54:27 Omada Controller ATGE - - - [gateway:atgeogw01 (router):20-23-51-B2-ED-F4]: OpenVPN(ATGE) TLS key negotiation timeout.
       

for sure the gateway knows the source IP, why is it not in logs?

 

/BR ZoloNN ----------------------------------------------------------------------- Omada 2x ER605(UN) v2.0 + SG2008P(UN) V3.20 + SG2218 V1.20 + 2x SG2008 V4.20 + 3x EAP615-Wall(EU) V1.0 CET (GMT+1)
#1
Options
3 Reply
Re:OpenVPN connection attempts without any info about source
a week ago - last edited Friday

Hi  @ZoloNN 

 

Thanks for posting here.

 

This is because the ER605 doesn't support reporting this info.

 

We are gradually adding this feature through firmware upgrades. Please stay tuned for future firmware updates.

 

Additionally, if the high number of connections is unexpected, it may be due to public network ovpn scanning attacks.

You can try changing the VPN server’s port to prevent such attacks.

#2
Options
Re:OpenVPN connection attempts without any info about source
a week ago - last edited Friday

Hi @Vincent-TP,

 

is seems the OpenVPN stack has more reporting issues - see my previous post.

I would like to emphasize again the importance of reporting the source IP and/or logged in user in business networks.

 

and changing OpenVPN port means rolling out new config file to all OpenVPN clients..........

 

 

Vincent-TP wrote

Hi  @ZoloNN 

 

Thanks for posting here.

 

This is because the ER605 doesn't support reporting this info.

 

We are gradually adding this feature through firmware upgrades. Please stay tuned for future firmware updates.

 

Additionally, if the high number of connections is unexpected, it may be due to public network ovpn scanning attacks.

You can try changing the VPN server’s port to prevent such attacks.

 

/BR ZoloNN ----------------------------------------------------------------------- Omada 2x ER605(UN) v2.0 + SG2008P(UN) V3.20 + SG2218 V1.20 + 2x SG2008 V4.20 + 3x EAP615-Wall(EU) V1.0 CET (GMT+1)
#3
Options
Re:OpenVPN connection attempts without any info about source
Friday - last edited Friday

Hi  @ZoloNN 

 

I understand your requirements. As I said, we are gradually adding this functionality to gateways.

At this time, we cannot confirm whether or when this feature will be implemented. All requests are carefully evaluated based on technical feasibility, user demand, and development priorities. If approved, the feature would still require time for design, testing, and integration into future firmware releases.

Modifying the port is a temporary solution. Thank you for the understanding.

 

Side Note: I had moved this post to the Requests & Suggestions block to gather more voters. Please don't forget to cast  your vote.

#4
Options