Hi, how should I configure my firewall on a machin...
# client
b
Hi, how should I configure my firewall on a machine that have netclient to connect to a VPN network were UDP hole punching is enabled???
b
You have to allow outgoing udp and 443 TCP.
and incoming to established connections
b
Can’t allow all incoming and outcoming udp on all ports
What is the port range used by netclient ?
And isn’t the hole punching functionality is here to manage the opening port automatically and open only required udp ports ?
b
with hole punching, any udp port could be assigned. The connection is established by the netclient host so only outgoing udp is required. Incomming connections will reuse this port. if this is not acceptable, turn off udp hole punching for the node in questions and port forward the udp port at your firewall.
b
Dosent seem to work: I have udp hole punching enabled and OUTPUT firewall default policy ACCEPT.
b
what kind of ISP are you using.... CGNAT by any chance?
b
No
b
if no NAT is involved, why do you want to use udp holepunching?
b
It enabled by default on the netmaker network. And if I understand well the hole punching will prevent manually opening udp ports on firewall