DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

2830 Firware Upgrade Breaks Server SSL Forward

  • stormuk69
  • Topic Author
  • Offline
  • New Member
  • New Member
More
25 Aug 2013 13:40 #77525 by stormuk69
Upgrading to the latest firmware of: 3.6.4_sb_232201 breaks SSL Port forward.

I am not sure whether this is a new feature or it just switches it on.

After upgrading to the latest Firmware my remote email and all remote SSL features of my Server stopped working.

The Certificate was showing as invalid. Upon diagnosing further I found the external IP was stopping at the Router.

After digging deeper I noticed a section named SSL VPN. This is using port 443 and hence the reason the port forward gets stopped.

Drill down to:
SSL VPN > General Setup > SSL VPN General Setup and change this port.

Upon doing that the Remote services are now working fine once again.

This is very annoying and has wasted time trying to diagnose this issue.

When upgrading firmware nothing should change from a working system. I have been very happy with Draytek products but this kind of sloppiness isn't very good to say the least.

I hope this saves someone countless hours of pointless diagnostics.

Please Log in or Create an account to join the conversation.

More
08 Oct 2013 17:44 #77895 by digitalis1
I had the EXACT same issue. Even with that SSL VPN service inactive, the router still seems to run/block port 443 incoming. I had to activate the VPN service, change the port to something else then deactivate before my 443 forward rule worked.

VERY annoying!

Please Log in or Create an account to join the conversation.

More
08 Oct 2013 22:02 #77898 by babis3g
Vigor28x0 Series » Upgrading to 3.6.4
http://www.draytek.net.nz/draytek/support/vigor2830-upgrading-to-3-6-4/

Please Log in or Create an account to join the conversation.

More
09 Oct 2013 00:08 #77902 by digitalis1
Sure but the fact even when SSL VPN inactive/ unticked, it still blocks incoming 443... this must be a design flaw.

Please Log in or Create an account to join the conversation.

More
09 Oct 2013 00:38 #77903 by babis3g

digitalis1 wrote: Sure but the fact even when SSL VPN inactive/ unticked, it still blocks incoming 443... this must be a design flaw.


Must be ... are few other posts around about it
http://www.forum.draytek.co.uk/viewtopic.php?f=2&t=18426&p=76412&hilit=ssl+port+443#p76412

Please Log in or Create an account to join the conversation.

Moderators: Sami