coolasice1999 Posted July 17, 2019 Share Posted July 17, 2019 Ok, quick background. My isp is very particular regarding sonarr, radarr and the likes, thus i have a VPN susbscription that runs through a seperate mini pc with gateway ip as 192.168.1.1 . My unraid server has an ip of 192.168.1.4 and connects to the internet through the vpn gateway at 192.168.1.1 . My router provides standard access (no vpn) for normal browsing but on a seperate subnet (192.168.5.1) and has dhcp server enabled (192.168.5.2-254). both the vpn gateway and router are on the same switch so I can connect to the unraid box from my 192.168.5.* computers. (this is needed for my kodi shares). now the question. I want to enable an openvpn-as docker to allow me to connect to the unraid box and subsequent shares/dockers when away. Is that possible given the openvpn server would have to have a seperate ip (192.168.5.*) in order to pass the ports from the router to it. I only have a single NIC in the server. Is this only possible if I install a second NIC and connect that to the switch also? Quote Link to comment
ken-ji Posted July 18, 2019 Share Posted July 18, 2019 How many IP address does your Unraid server have? and how are your PC:s on the 192.168.5.x network reaching Unraid? Do they access it directly? or is there another IP not mentioned here? As a quick general point. An OpenVPN-AS container can share IP with the Host (Bridged or Host network mode), so the router can just port forward those ports. However, if the ports you want to use are already in use (80 and 443 comes to mind) or the app dynamically opens ports (thus needing its own IP) a single NIC and a switch without VLAN support, will give you containers running on their own IP, but are blocked from talking to the Host. Quote Link to comment
coolasice1999 Posted July 20, 2019 Author Share Posted July 20, 2019 On 7/18/2019 at 9:48 AM, ken-ji said: How many IP address does your Unraid server have? and how are your PC:s on the 192.168.5.x network reaching Unraid? Do they access it directly? or is there another IP not mentioned here? As a quick general point. An OpenVPN-AS container can share IP with the Host (Bridged or Host network mode), so the router can just port forward those ports. However, if the ports you want to use are already in use (80 and 443 comes to mind) or the app dynamically opens ports (thus needing its own IP) a single NIC and a switch without VLAN support, will give you containers running on their own IP, but are blocked from talking to the Host. I may need to rethink my ip layout. I need the radarr/sonarr/deluge Dockers behind the VPN, but my other devices should not be behind it for streaming access.... Have to think about this... Quote Link to comment
JonathanM Posted July 20, 2019 Share Posted July 20, 2019 19 minutes ago, coolasice1999 said: I may need to rethink my ip layout. I need the radarr/sonarr/deluge Dockers behind the VPN, but my other devices should not be behind it for streaming access.... Have to think about this... Binhex's VPN enabled Deluge container has privoxy built in, so you can accomplish what you want with no extra effort or reorganization needed. Quote Link to comment
coolasice1999 Posted July 20, 2019 Author Share Posted July 20, 2019 (edited) 3 hours ago, jonathanm said: Binhex's VPN enabled Deluge container has privoxy built in, so you can accomplish what you want with no extra effort or reorganization needed. That won't keep radarr/sonarr behind my VPN for indexer traffic Edited July 20, 2019 by coolasice1999 Quote Link to comment
JonathanM Posted July 20, 2019 Share Posted July 20, 2019 8 hours ago, coolasice1999 said: That won't keep radarr/sonarr behind my VPN for indexer traffic It will if you point them to the privoxy port like I said. Quote Link to comment
coolasice1999 Posted July 20, 2019 Author Share Posted July 20, 2019 Ok, I'll give it a go Quote Link to comment
coolasice1999 Posted July 20, 2019 Author Share Posted July 20, 2019 5 hours ago, jonathanm said: It will if you point them to the privoxy port like I said. How do i set up radarr's proxy settings to work? i have it connecting to deluge just fine, but can't get it to use the proxy to access the web? Quote Link to comment
JonathanM Posted July 20, 2019 Share Posted July 20, 2019 1 hour ago, coolasice1999 said: How do i set up radarr's proxy settings to work? i have it connecting to deluge just fine, but can't get it to use the proxy to access the web? Settings, general, proxy settings. This assumes you've tested the privoxy with a browser, when you point the browser to one of the many IP testing sites you should show the same IP as delugevpn is getting for its VPN. Quote Link to comment
coolasice1999 Posted July 21, 2019 Author Share Posted July 21, 2019 18 hours ago, jonathanm said: Settings, general, proxy settings. This assumes you've tested the privoxy with a browser, when you point the browser to one of the many IP testing sites you should show the same IP as delugevpn is getting for its VPN. Got it all working.... delugevpn gets noticeably slower transfer speeds then using regular deluge and my pfsense openvpn client (I am using a port forwarding capable endpoint). Any tips to improve speeds? Quote Link to comment
JonathanM Posted July 21, 2019 Share Posted July 21, 2019 7 hours ago, coolasice1999 said: Got it all working.... delugevpn gets noticeably slower transfer speeds then using regular deluge and my pfsense openvpn client (I am using a port forwarding capable endpoint). Any tips to improve speeds? There are several discussions about that in the delugevpn support thread. Long story short, there may be some settings that could improve things for you, but I don't think they are directly exposed in the interface, and / or you need to make changes in the vpn config file. Quote Link to comment
coolasice1999 Posted July 22, 2019 Author Share Posted July 22, 2019 Okay figured out the slow down. It was a real duh moment when I realized my whole server is still behind my PFsense VPN, so essentially delugevpn was tunneling through an existing VPN tunnel. Quote Link to comment
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.