• OpenVPN Client Export can now export 64-bit Windows Installer

    5
    0 Votes
    5 Posts
    2k Views
    jimpJ
    @phil.davis: Would it be possible to make the defaults configurable? Especially Host Name Resolution is critical. I forgot a couple of times to change it before exporting… I have this brain trouble also - I added a feature request to RedMine - https://redmine.pfsense.org/issues/3478 If the computer can remember for me, that is much better than relying on my memory or a separate doc. It may be possible but it would be quite a significant effort, development-wise. If someone does the work and submits a pull request, we'll consider it, but I don't see it happening unless the code shows up.
  • OpenVPN without NAT

    2
    0 Votes
    2 Posts
    883 Views
    P
    Yes, Firewall->NAT, Outbound. Select Manual Outbound NAT and Save. Then delete all the rules that are automatically put there for you. Then no NAT will happen - you will have just a plain firewall-router - still with load of extra features of course  ;)
  • Can't view Youtube when using PIA VPN connection

    1
    0 Votes
    1 Posts
    770 Views
    No one has replied
  • OpenVPN Client Try Multiple Ports

    5
    0 Votes
    5 Posts
    3k Views
    T
    Look under the Advanced box ;) Enter any additional options you would like to add to the OpenVPN client configuration here, separated by a semicolon EXAMPLE: remote server.mysite.com 1194; or remote 1.2.3.4 1194;
  • Changing OpenVPN password via VPN client- Mac and Linux

    1
    0 Votes
    1 Posts
    744 Views
    No one has replied
  • Can't route through openvpn

    2
    0 Votes
    2 Posts
    735 Views
    C
    Oh woops… they weren't kidding the leave the encryption to bf-cbc, don't use aes
  • Openvpn access server, community version - client login from pfsense?

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • OpenVPN client port forwarding magic

    4
    0 Votes
    4 Posts
    1k Views
    J
    so.. outbound routing is the problem forwarding only works when VPNclient is pfsense's default gateway, doesn't work when WAN is default gateway, or when VPNclient is set as the gateway (via firewall rule )for the network where the port is being forwarded what can i do to fix this?
  • OpenVPN Site-To-Site Firewall/routing issues

    2
    0 Votes
    2 Posts
    1k Views
    P
    Not sure if you still have a problem? Maybe the firewall rule on Colo OpenVPN tab is only allowing traffic to destination LANaddress, and it should be LANnet? Maybe the target servers at Colo have their default gateway something else? so they don't know how to reply back to you through pfSense? or ?
  • 0 Votes
    4 Posts
    6k Views
    P
    site 1 Server (IPv4 Local Network): 192.168.59.0/30 Surprised your local LAN would be "/30" - perhaps you mean 192.168.59.0/24 ? IPv4 Tunnel Network: 192.168.50.0/31 You need to use "/30" mask - that gives 4 IP addresses, top and bottom unused, OpenVPN gives .1 to server and .2 to client. Every peer-to-peer tunnel network server-client pair must use a different subnet. The local LAN at every office must use a different subnet.
  • Routing Problem OpenVPN/Gateway/Rule

    2
    0 Votes
    2 Posts
    996 Views
    B
    Not following entirely with your description… a drawing could help a lot here. pfSense usually just does what you configure it should do. What rules did you configure? (hint: for policy based routing & OpenVPN, use the floating rules)
  • Need clarification on openVPN usage

    3
    0 Votes
    3 Posts
    965 Views
    jimpJ
    You need a tap bridge, but that only works properly on 2.1.x. IIRC there are howtos here on the forum … somewhere, I wrote one of them somewhere. You can do it on 2.0.x with the tap bridge fix package that fixes a few things in 2.0.x for tap VPNs that didn't make it into a 2.0.x release. Basically you setup the VPN in tap mode, no tunnel network, set it to bridge to LAN, set the DHCP options you want, and then you have to assign the VPN interface under Interfaces > (assign), enable that, then setup an actual bridge between the LAN and that new interface.
  • OpenVPN No LAN Access using PIA

    23
    0 Votes
    23 Posts
    10k Views
    P
    You would connect in from OpenVPN client on your laptop, from anywhere on the internet to the OpenVPN server running on pfSense at home. The traffic from your laptop back home to your home network would not be going through PIA. You can set your laptop-to-home OpenVPN connection to "redirect all traffic through the VPN". Then when you browse the internet from your laptop, that traffic will go from laptop to home pfense, then out of home pfSense to the internet by whatever way the rest of your home LAN gets out to the internet. For that, you can have an OpenVPN client on pfSense connected to the OpenVPN server on PIA. And you can send all traffic through that. So you pfSense would have an OpenVPN listening for connects from your remote laptop, and an OpenVPN client connecting out to PIA.
  • Can't get openvpn working

    9
    0 Votes
    9 Posts
    10k Views
    S
    OK, I just exported the config again and and has in fact no tls-auth  now. Sorry, my fault. I got confused after all that testing.
  • MOVED: OpenVPn site-to-site

    Locked
    1
    0 Votes
    1 Posts
    509 Views
    No one has replied
  • Site-Site connected no response

    7
    0 Votes
    7 Posts
    1k Views
    R
    Sorry, yes they do. The pfsense at the house is virtualized on a hyper-v box. Pfsense at condo is an Alix board.
  • Configuration not working

    1
    0 Votes
    1 Posts
    765 Views
    No one has replied
  • No Internet Access when PIA is up

    1
    0 Votes
    1 Posts
    725 Views
    No one has replied
  • Pfsense 2.1 OpenVPN to PIA - Traffic issues

    3
    0 Votes
    3 Posts
    1k Views
    ?
    Were you able to figure this out? I am battling this issue as well
  • MOVED: OpenVPN Performance Degradation on 2.1.1-PRERELEASE from 2.1-RC0

    Locked
    1
    0 Votes
    1 Posts
    470 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.