• TSL Handshake Errors After Months of No Errors

    Moved
    7
    0 Votes
    7 Posts
    721 Views
    jimpJ
    If you connect via SSH you can monitor the log directly and, if you set a large scroll back buffer in the client, can capture more logs. From the shell, run clog -f /var/log/openvpn.log Or setup a syslog server and export the logs there for more/long term storage.
  • OpenVPN with RADIUS via Active Direcotry Authentication failed

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    dotdashD
    One day I'll come here and there won't be someone bumping a three year old thread for some vague, dissatisfied reason. One day.
  • Client Stuck in "Connected" State - TLS keys out of sync

    2
    0 Votes
    2 Posts
    334 Views
    No one has replied
  • Assign static IP for multiple devices with the same user

    1
    0 Votes
    1 Posts
    199 Views
    No one has replied
  • OpenVPN Routes to Remote sites

    4
    0 Votes
    4 Posts
    483 Views
    V
    @heathstiles said in OpenVPN Routes to Remote sites: The sites are connected using IPsec Site to Site VPN tunnels if that makes any difference. You didn't mention above. Of course is that different. So will have to add an additional phase 2 in the IPSec configuration for the respective local network and the OpenVPN tunnel network.
  • best pfsense appliance for openvpn

    4
    0 Votes
    4 Posts
    539 Views
    X
    @JKnott said in best pfsense appliance for openvpn: @akuma1x Also, how much traffic is going off the local network? There's a big difference between mainly using local servers and going to the Internet for everything. I agree with jknott I think its better to plan that out first..
  • OpenVPN Version 2.4.4 - Can't install Windows exported client

    6
    0 Votes
    6 Posts
    785 Views
    RicoR
    Glad you have it working now. -Rico
  • Site-to-Site VPN

    5
    0 Votes
    5 Posts
    675 Views
    jimpJ
    It looks similar there but between the formatting and other info it's hard to say. Compare the actual OpenVPN config file in the profile from the Access Server with the client configuration made by pfSense under /var/etc/openvpn/
  • Help with VPN server to vLan network

    1
    0 Votes
    1 Posts
    201 Views
    No one has replied
  • Config management interface make unable to contact daemon

    1
    0 Votes
    1 Posts
    226 Views
    No one has replied
  • 0 Votes
    4 Posts
    528 Views
    X
    @bingo600 I just added an additional interface for openvpn client. If you want to ask feel free to ask, not starting like that. And the reason I couldn't post anymore because this is a new account, the forum limits my time to post, I was fixing this earlier and I want to post a lot of times.
  • 0 Votes
    6 Posts
    3k Views
    L
    Thanks for the feedback. The MS RADIUS server has no static address specified by default but it does offer the above 172.16.0.0/16 subnet though it's not "user configurable" (I discovered it looking at the logs - there are no such setting in the NAP/RADIUS mmc) unless you probably manually edit the registry (there was no RRAS service previsouly enabled to set them). By removing the 2 above attributes it works as desired using subnet topology without further modifications which is fine for me. Cheers
  • 0 Votes
    8 Posts
    4k Views
    S
    Hi, with pfSense 2.4.4, it's possible to "force" the ip server to connect : In the "Client Export Utility", "Client Connection behavior" heading, select "Other" for "Host Name Resolution". A second field appears "Hostname" and indicate in the hostname (dyndns, etc.) or public ip of the box... The next exe client generated will had the good public ip or hostname !
  • OpenVPN disconnecting when locks in IOS client

    1
    0 Votes
    1 Posts
    357 Views
    No one has replied
  • 0 Votes
    6 Posts
    5k Views
    A
    Hi Rico, Just to update: Since I have two ISP connected to my firewall (1) PPPoE Connection (which is having issue) (2) Static IP Address. I have tried using my secondary ISP by only changing the Interface and created the necessary firewall rules on the interface and the OpenVPN client connects w/out any issue, so it looks like my other ISP is blocking the traffic i still waiting for their feedback. BTW, I have another issue please see the diagram below. [image: 1584354612680-unnamed0.jpg] I also tried this options but no luck. [image: 1584354679947-ipv4.jpg] Appreciate your advice. Thanks, A
  • OpenVPN Radius Client disconnects every hour

    2
    0 Votes
    2 Posts
    866 Views
    B
    This might be helpful. https://forum.netgate.com/topic/150225/user-xxx-could-not-authenticate-every-1-hour
  • Restarting OpenVPN interrupts non-VPN traffic

    14
    0 Votes
    14 Posts
    2k Views
    M
    @mig said in Restarting OpenVPN interrupts non-VPN traffic: I tried to add ping-restart 0 to OpenVPN-Clients-"Advanced configuration"-"Custom options" but it doesn't suppress ping-restarts
  • Using AES-GCM encryption algorithm for OpenVPN site-to-site shared key

    9
    0 Votes
    9 Posts
    1k Views
    J
    @Derelict Ah ok, thanks for investigating, I was just reading through that link you sent me. There are a lot of useful command line options in there
  • 0 Votes
    10 Posts
    2k Views
    X
    @Derelict Thank you, you made my day! I need to learn more about basic networking.
  • 0 Votes
    1 Posts
    319 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.