Camera/NVR access with OpenVPN not working in tun mode

sunix

n3wb
Joined
Jun 5, 2017
Messages
8
Reaction score
0
I have some cameras (DS-2CD2132-I) and an NVR (DS-7616-i), all plugged on my local network on a PoE switch (nothing behind the NVR). 192.168.0.0 mask 255.255.255.0. Locally I can access everything.

I am currently trying to setup an OpenVPN connection with my router (Asus-merlin) for remote access to my NVR or my Camera.

If I setup the VPN in TAP mode, everything is working well. I can access everything !
Unfortunately, TAP mode is not supported on iphone so I must use TUN mode.

In TUN mode, the cameras and NVR are not accessible via any port (80, 554, 8000), etc.
However, all my others resources on my local network are accessible (NAS, computer, printer) via the VPN.
So I am pretty sure that my VPN configs are correct and that the problem come from the camera blocking the connection.

Is there any kind of internal firewall in the camera ? How can I configure it ?
Or do I need to do a very specific OpenVPN configuration to make camera work in TUN mode ?
-------------
Remarks not directly related to my question:
I notice that in local mode, if the client trying to connect to the camera is not in the exact same subnet, camera will refused the connection.
Example: client 192.168.1.2/255.255.0.0, camera 192.168.0.200/255.255.255.0 -> connection refused.
Example: client 192.168.1.2/255.255.0.0, camera 192.168.0.200/255.255.0.0 -> connection allowed.
So the camera do block some connection with a kind of internal firewall right ?

Thanks for your help.
 
Top