Re: OSX 10.8 mdns support on tun interfaces (routed mode)

510 views
Skip to first unread message

alf...@chaos215bar2.com

unread,
May 4, 2014, 10:31:05 PM5/4/14
to tunnelbli...@googlegroups.com
This never got a response, but I'd also really like to get this working. I have an mDNS reflector running on my router, bound to the correct tun interface. I see mDNS traffic from the router going through the tunnel on both the router and my Mac. Yet, I don't see any evidence that Mac OS is actually using the tun interface for mDNS. Is this just not supported? What was done to make mDNS over tap interfaces work? (I understand tap devices also used to not work with mDNS, but now they do.)

Thanks,
Alfred

On Sunday, September 2, 2012 6:02:19 AM UTC-7, Nigel Roberts wrote:
I have my Openvpn server setup in routed mode with avahi running as a reflector on the same device, and although I can see the reflected mdns packets from my afp (netatalk) file server arriving on tun0 of a Mac OS 10.8 tunnelblick 3.3 beta client, the server doesn't show up in finder and I do not see any mdns packets sent by the mac on tun0 either. In avahi on a linux machine, I actually have to tell it use point to point interfaces "allow-point-to-point" to make it work on a tun0 interface. Is there something similar for Mac OS X?

I'm pretty new to Mac OS X, so I'm not sure how else I can troubleshoot this. 

Thanks,
Nigel

jkbull...gmail.com

unread,
May 4, 2014, 10:51:29 PM5/4/14
to tunnelbli...@googlegroups.com, alf...@chaos215bar2.com
You might want to try the new "utun" device that is used by default in OpenVPN 2.3.3 and higher. (The latest Tunnelblick beta includes OpenVPN version 2.3.4), so it's easy to try it out to see if it makes a difference. However, that could even make it worse: I know Little Snitch has (or had, I don't know if it has been fixed) a problem with the new utun appearing to be a completely different interface each time the VPN was connected using it. That may make it harder to bind to.

Another idea may be to use "Wide Area Bonjour". Take a look at the PDF linked to at the end of http://blog.inig-services.com/archives/337.

Otherwise, I think OpenVPN itself is "filtering" the mDNS requests. I haven't seen anything about how to stop this, but perhaps the OpenVPN people can help:
Reply all
Reply to author
Forward
0 new messages