LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-25-2021, 05:51 AM   #1
jkcray
Member
 
Registered: Feb 2019
Location: Ireland
Distribution: Ubuntu 20.04 LTS
Posts: 65

Rep: Reputation: Disabled
Firewall (?) problems using Mozilla VPN


Hello.
I've downloaded and installed Mozilla VPN and currently using on 30 day trial.

I'm running Ubuntu 20.04.2 LTS.

The VPN works fine on my Android Tab & phone. And of course on my Ubuntu PC.

Unfortunately I can't connect via ssh (on a high number port, not default port) from my Android boxes to my Ubuntu PC if the Mozilla VPN is running on the PC AND my firewall is ON.

My firewall is Gufw v. 20.04.1.

My firewall works fine when the VPN is OFF - I can connect via ssh to the Ubuntu PC.

And I can connect via ssh to the Ubuntu PC when the VPN is ON but the firewall is OFF!

I should add that Wireguard is installed though not active afaik, could this be an issue?

I'd be very grateful for advice - maybe suggestions as to which log files I should look at.

Or suggestions for change(s) in firewall settings needed to make firewall play nicely with Mozilla VPN.

Many thanks.

Update: (26 Nov. 2021) Mozilla have confirmed to me that

Quote:
Our development team has identified an issue with the current version of the VPN not allowing a connection to the local network, such as printers, even with the Local Network Access option enabled. They are working to have this corrected, possibly on the next update. In the meantime you would need to temporarily turn off the VPN when you need access to the your local network. Once the new update is available, you will be notified.
Output from sudo ufw status (xxxx is my high number port for ssh):

Code:
Status: active

To                         Action      From
--                         ------      ----
993                        ALLOW       Anywhere                  
587                        ALLOW       Anywhere                  
443                        ALLOW       Anywhere                  
80/tcp                     ALLOW       Anywhere                  
22/tcp                     ALLOW       Anywhere                  
xxxx                       ALLOW       Anywhere                   (log)
192.168.1.20 xxxx          ALLOW       Anywhere                   (log)
192.168.1.20 xxxx          ALLOW       192.168.1.6 xxxx           (log)
xxxx (v6)                  ALLOW       Anywhere (v6)              (log)
993 (v6)                   ALLOW       Anywhere (v6)             
587 (v6)                   ALLOW       Anywhere (v6)             
443 (v6)                   ALLOW       Anywhere (v6)             
80/tcp (v6)                ALLOW       Anywhere (v6)             
22/tcp (v6)                ALLOW       Anywhere (v6)             

xxxx                       ALLOW OUT   Anywhere                  
993                        ALLOW OUT   Anywhere                  
587                        ALLOW OUT   Anywhere                  
443                        ALLOW OUT   Anywhere                  
80/tcp                     ALLOW OUT   Anywhere                  
xxxx (v6)                  ALLOW OUT   Anywhere (v6)             
993 (v6)                   ALLOW OUT   Anywhere (v6)             
587 (v6)                   ALLOW OUT   Anywhere (v6)             
443 (v6)                   ALLOW OUT   Anywhere (v6)             
80/tcp (v6)                ALLOW OUT   Anywhere (v6)

Last edited by jkcray; 10-26-2021 at 05:46 AM.
 
Old 10-27-2021, 11:20 AM   #2
jkcray
Member
 
Registered: Feb 2019
Location: Ireland
Distribution: Ubuntu 20.04 LTS
Posts: 65

Original Poster
Rep: Reputation: Disabled
Bump... Anyone?
 
Old 10-27-2021, 01:43 PM   #3
boughtonp
Senior Member
 
Registered: Feb 2007
Location: UK
Distribution: Debian
Posts: 3,616

Rep: Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554
Quote:
Originally Posted by jkcray View Post
Bump... Anyone?
Anyone what?

Seems like you've identified a problem in a paid Mozilla product and asked both LQ and Mozilla about it.
Mozilla confirmed the issue, provided a workaround, and said you will be notified when it's fixed.

What are you expecting from LQ?

 
Old 10-27-2021, 01:55 PM   #4
jkcray
Member
 
Registered: Feb 2019
Location: Ireland
Distribution: Ubuntu 20.04 LTS
Posts: 65

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by boughtonp View Post
Anyone what?

Seems like you've identified a problem in a paid Mozilla product and asked both LQ and Mozilla about it.
Mozilla confirmed the issue, provided a workaround, and said you will be notified when it's fixed.

What are you expecting from LQ?

Mebbe a friendly reply. Or failing that some useful comment.

Turning the VPN off on my Linux box to allow local network SSH access to it isn't exactly a "workaround" given that I had mentioned that option in my emails to Mozilla.

I thought that some people here might have tried the Mozilla VPN, encountered the issue and perhaps found a fix.

Hey ho.
 
Old 10-27-2021, 03:57 PM   #5
boughtonp
Senior Member
 
Registered: Feb 2007
Location: UK
Distribution: Debian
Posts: 3,616

Rep: Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554Reputation: 2554

Well I guess it is possible someone here has found a fix and then decided not to share it with Mozilla.

The chances of anyone outside Mozilla suggesting a better workaround might be increased if the details of the issue identified by the dev team was shared...

 
Old 10-27-2021, 04:23 PM   #6
jkcray
Member
 
Registered: Feb 2019
Location: Ireland
Distribution: Ubuntu 20.04 LTS
Posts: 65

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by boughtonp View Post
Well I guess it is possible someone here has found a fix and then decided not to share it with Mozilla.

The chances of anyone outside Mozilla suggesting a better workaround might be increased if the details of the issue identified by the dev team was shared...

Unfortunately the response from Mozilla (quoted above in the edit to my OP) was rather vague. No tech details.

Here it is again.

Quote:
Our development team has identified an issue with the current version of the VPN not allowing a connection to the local network, such as printers, even with the Local Network Access option enabled. They are working to have this corrected, possibly on the next update. In the meantime you would need to temporarily turn off the VPN when you need access to the your local network. Once the new update is available, you will be notified.
Anyway I'm prepared to wait a bit longer for a fix.

Thanks for the reply.

Last edited by jkcray; 10-27-2021 at 04:25 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Multiple VPN clients to VPN server Proxy for technical support using Pi. nicedreams Linux - Networking 6 07-31-2017 06:22 PM
LXer: Mozilla Thunderbird to Find New Home as Mozilla Foundation Focuses on Mozilla Firefox LXer Syndicated Linux News 0 07-27-2007 09:16 AM
LXer: Mozilla Using Coverity to Scan Mozilla Source Code for Defects LXer Syndicated Linux News 0 08-14-2006 03:21 PM
using a router with firewall, local firewall waste? Michael_aust Linux - General 1 03-26-2006 08:02 AM
Segfaults in Mozilla, Mozilla Firebird, and Mozilla Thunderbird Ninja Cow Linux - Software 2 02-02-2004 01:33 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 06:24 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration