• Can a VPN Cause Uncorrectables on Cable Modem Status Page?

    1
    0 Votes
    1 Posts
    489 Views
    No one has replied
  • OpenVPN killswitch, problem with pfctl

    2
    0 Votes
    2 Posts
    611 Views
    R
    What I use as a kill switch is a firewall rule that blocks all traffic on the WAN interface.
  • Openvpn server - client to ipsec routing issue

    1
    0 Votes
    1 Posts
    356 Views
    No one has replied
  • OpenVPN Server takes out Internet connectivity

    3
    0 Votes
    3 Posts
    658 Views
    kb8wfhK
    Will do, thank you. I think I know what I am looking for. Can you give me an idea of what diagnostic to use to see what is happening or where that routing issue might be corrected? I'm not a newbie but I'm no where near a power user yet. Thanks.
  • OpenVPN only allowing traffic on first connection

    2
    0 Votes
    2 Posts
    514 Views
    V
    Are the users sharing the users certificate? Each user should have a unique cert. If you want them to share the cert check "Duplicate Connection" in the server settings.
  • Attempting to route my traffic through OpenVPN

    1
    0 Votes
    1 Posts
    420 Views
    No one has replied
  • [solved] Running OSPF on tun OpenVPN

    2
    0 Votes
    2 Posts
    2k Views
    junicastJ
    I switched to Shard Secret mode and now it's working just fine.
  • Can't browse to computer on client-end of openvpn

    5
    0 Votes
    5 Posts
    899 Views
    M
    @jeffwcollins: No worries at all, remember there are a TON of actual network engineers that couldn't get this far either. Ha!  Thanks, I'm trying :) In my opinion, for what its worth, there are ways to get around it but they get pretty complicated in the long term with sustainment in mind, meaning that there is no easy way to get this working with the configurations that are currently in place. So, we'll be having a bunch of client appliances out at in the field (~20-40) so I'd really like to keep this as simple as possible.  I'm keeping my fingers crossed that we don't run into more locations that happen to use the same network addressing. Out of curiosity, Whats keeping you from changing the IP Scope of your site, instead of asking the remote office to change theirs? The problematic network is our server VLAN :(  So, we've got DCs, VMs, etc that are all hosted on that network, so changing that isn't really an option.  We're actually blocking the client from accessing our server network as we want to limit outside access, but we want to be able to run scheduled tasks and do performance monitoring from that network to the clients in the field. *To offer some transparency, one thing that could be considered is running a one-to-one nat across the VPN, but it could make sustainment a bit tedious in the long run.  Just providing that as a possible fix for your problem. Yeah, like I mentioned above, simplicity is ideal, especially when we're having to maintain a lot of these appliances.  It looks like the easiest approach might be to see if the hosting site is willing to put us on a different network.  We could care less what it is as long as it gives us access to the Internet. thanks!
  • 0 Votes
    2 Posts
    709 Views
    johnpozJ
    You should set your vpn client to not pull routes and then route the devices you want to go to your vpn via policy routing. [image: dontpullroutes.png] [image: dontpullroutes.png_thumb]
  • Can't Connect

    2
    0 Votes
    2 Posts
    560 Views
    J
    Its probably your TLS session being denied.  What logs are you getting on the OpenVPN Server side?
  • OpenVPN Vulnerability!!!

    2
    0 Votes
    2 Posts
    712 Views
    dotdashD
    Please search before posting: https://forum.pfsense.org/index.php?topic=132534.msg728642#msg728642 And take it easy with the exclamation points.
  • Openvpn 2.4 pfsense update to it?

    12
    0 Votes
    12 Posts
    8k Views
    johnpozJ
    That fixed it… But looks like there is some IPv6 issues along with dnssec for netgate.com.. Might want to look into that ;) Looks like you have IPv6 glue - but no AAAA records to match up. ns1.netgate.com (2610:160:11:3:0:0:0:6) ns2.netgate.com (2610:1c1:3:0:0:0:0:108) I am showing these IPv6 glue entries..
  • MOVED: D

    Locked
    1
    0 Votes
    1 Posts
    375 Views
    No one has replied
  • OpenVPN as a Client on OPT1?

    1
    0 Votes
    1 Posts
    422 Views
    No one has replied
  • Site to Site shared key some devices cannot be reached

    5
    0 Votes
    5 Posts
    1k Views
    G
    It definitely was something on pfSense. Since I ran out of time I had to replace both of them with something else. Changed nothing else and it instantly worked. Pretty unsatisfying though. Really would have wanted to know what exactly was causing the problem. Also very unfortunate that paid support by incident is no longer available. Definitely would have been willing to pay for support for that but with the new contracts only system it would have cost me almost $2000 /:
  • No Pings beyond pfS Gateway

    4
    0 Votes
    4 Posts
    802 Views
    V
    Ensure that pfSense is the default gateway on the hosts behind. you have a firewall rule set on the OpenVPN interface which allow the access. the destination hosts system firewalls do not block the access.
  • 2 problems with routing on site2site + failover (carp)

    1
    0 Votes
    1 Posts
    488 Views
    No one has replied
  • Site to Multisite VPN Configuraiton

    2
    0 Votes
    2 Posts
    471 Views
    K
    Dear All, Can you please guide how to configure Site to Multi site VPN Connection. I have Site A (Head Office) +Site B (Water Factory) +Site C ( Steel Factory) + Site D ( Crusher Factory). I have Static ip and dyndns accounts with me Regards kiruba
  • OpenVPN and Socks support

    2
    0 Votes
    2 Posts
    888 Views
    S
    Hello everyone, any thoughts on this issue? I've spent hours already but nothing works unfortunately.
  • Pfsense openvpn client, manual control and logon info

    1
    0 Votes
    1 Posts
    467 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.