Commit cab30a

2025-05-30 07:06:55 Samuli Seppänen: Add note about source/destination checks
Pages/Easy Windows Guide.md ..
@@ 198,6 198,10 @@
Without this you cannot access any hosts behind the VPN server.
+ ## Enable packet forwarding on the Cloud provider
+
+ Some Cloud providers drop IP packets where the source or destination does not match the virtual machine's network interface. In practice this prevents forwarding traffic to subnets behind the OpenVPN server. In AWS this is called [Source/Destination check](https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/using-eni.html) and on an OpenVPN server (or client with iroutes) you need to disable it.
+
## Starting OpenVPN
On the server we recommend running OpenVPN as a system service:
0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9