Maybe I'm missing something here but, if the RPI is running an ssh server and 
there are no "blocking" firewall rules, can you not connect to it via the VPN 
IP address it takes on when it establishes the VPN connection?  You may need 
routes on your LAN for the VPN subnet routing traffic to the VPN server.


-----Original Message-----
From: Bo Berglund <bo.bergl...@gmail.com>
To: openvpn-users@lists.sourceforge.net
Sent: Mon, Mar 7, 2022 4:59 pm
Subject: [Openvpn-users] Remote RPi unit connected by VPN, how to SSH to it via 
its tunnel from LAN device?

When I connect an RPi device to a remote network I can have a client VPN
connection to my OpenVPN server opened automatically so the remote RPi is in
contact with my home LAN.

Then the RPi will be able to connect to other devices on my home LAN.

But what I would like to do is to connect by SSH from the home LAN to that
connected RPi device.

Earlier I have tested connecting to such a device by arranging for its VPN
connection to be a dead-end tunnel (no routing into the destination LAN or
further to the Internet). Then I have to also connect myself to the dead-end
tunnel and since the VPN is set up for client-to-client I could then connect to
the RPi device using the tunnel address of the RPi (which I have to know of
course).

This is pretty clumsy in my view and I would rather be able to connect to the
RPi from any device on my LAN without also connecting by VPN from those devices.

Can this be done in some easy to understand way?

Do I need client to client and possibly some ccd settings for he connecting
client to make this happen?

In a way it seems a bit similar to my other thread named "LAN-LAN connection via
ASUS Router OpenVPN?" about connecting two LAN together bidirectionally by using
the router's OpenVPN Client capability on the remote end.

This time there is no remote LAN to communicate with, just the VPN client
itself.

The use case is to monitor a fiber installation comm speed by having only an RPi
device connected  directly to the fiber box so there is no router involved.
The tests are then done via this device and I need to control them via the RPi
SSH connection.


-- 
Bo Berglund
Developer in Sweden



_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to