NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

andy_'s avatar
andy_
Aspirant
Oct 11, 2016
Solved

PR2000 VPN issues from iphone (openvpn client)

 

Hi!

 

I recently purhased the N300 Trek Travel Router and Range Extender 802.11n.

 

When using an IOS (eg iPhone, iPad, etc.) device behind the PR2000, I cannot connect to my VPN server. I have tested this using multiple IOS devices.

 

I use OpenVPN client app on my IOS devices.

 

Errors, logs and trouble-shooting:

- OpenVPN client stalls at "Looking up DNS name"

- Checked my VPN server logs and it looks like IOS devices are not even connecting

 

Therefore, from what I can tell the router is not passing (blocking) the DNS traffic outbound/ inbound traffic.

 

Notes - behind same PR2000:

- Firmware update indicates that latest firmware is installed (v1.0.0.15_1.0.1)

- all other browsing, email IMAPS/POPS traffic, etc works fine

- PR2000 settings: All 3 VPN passthrough settings (IPSec, PPTP, and L2TP) are enabled on the PR2000 control panel
- VPN connectiong successful through OSX laptop: My OSX laptop successfull connects behind PR2000 to VPN server using tunnelblick vpn client

- VPN connecting succuessful through windows box: My windows system successfully connects to a entirely different VPN server using IPSec

 

Notes - not behind PR2000:

- IOS devices successfull connect to VPN server when using 3G/LTE and other wireless routers

 

Does anyone have an idea of why this is the case? And perhaps a solution?

 

Thank you in advance!

  • Great points and very well said AFNYC84!

     

    From a customer perspective, stating "EOL" clearly is critically important for any purchase.  Pass through for all major VPN types should be tested/ included by default regardless of EOL (IMO).

     

    FYI: After a fair amount of work, I did get IPSec to work through the PR2000. Although, now I need to support 2 VPN options instead of just 1 - which means extra (unnecessary) work.

10 Replies

  • ElaineM's avatar
    ElaineM
    NETGEAR Employee Retired

    Hello andy_

     

    Welcome to the community!

     

    Can you try it on Android? Just to confirm if this only happens on mobile devices.

    • andy_'s avatar
      andy_
      Aspirant

      Hi Elain,

       

      Thanks for your reply.

       

      I finally tested this on my Galaxy 7.

       

      Same issue with Android as with IOS.

       

      Getting "stuck" during the DNS lookup process.

       

      Any ideas / solution thoughts?

       

      Thank you in advance!

      • ElaineM's avatar
        ElaineM
        NETGEAR Employee Retired

        Let me check this with our engineering team.

        Will get back to you as soon as I have response. 

  • Thank you for the reply Elaine.

    I agree with andy_, the response is very disappointing.

    The item is not listed on your own website as being "EOL" and retailers who are selling the product have no idea that the product is EOL.

    In short, basically what you are telling us is the product does not work as advertised and Netgear is refusing to provide support.

    Had I know all of this in advance, I would not have purchased this product, but now I am stuck with it.

    When you purchase a product, you expect the manufacturer to provide technical support or to indicate ahead of time that the product is no longer supported. Neither of these things happened.

    I am very disappointed with Netgear. I am sorry I purchased this product and another router model of yours which I am sure you would also decline to support if I run into problems.
    • andy_'s avatar
      andy_
      Aspirant

      Great points and very well said AFNYC84!

       

      From a customer perspective, stating "EOL" clearly is critically important for any purchase.  Pass through for all major VPN types should be tested/ included by default regardless of EOL (IMO).

       

      FYI: After a fair amount of work, I did get IPSec to work through the PR2000. Although, now I need to support 2 VPN options instead of just 1 - which means extra (unnecessary) work.