• OpenVPN allows webConfigurator

    12
    0 Votes
    12 Posts
    2k Views
    DerelictD
    Generally, on interface rules that are evaluated top down - first match wins, if you want to limit what the users can do you go from most specific to least specific: Pass what your users need to access - DNS to DNS servers, pings to gateway for troubleshooting/comfort, etc. Block what you do not want your users to access - DMZ to LAN or other local networks, webConfig (don't forget WAN address or This firewall (self)), etc. Pass everything else - (the internet)
  • Seperating VPN Traffic from Non VPN Traffic

    14
    0 Votes
    14 Posts
    3k Views
    T
    @Derelict: Just look at the OpenVPN threads.  There's a really long one about PIA that covers all this.  Sorry, I don't have a bookmark for it. There's a checkbox in the OpenVPN client config that says don't pull routes.  With that checked make an alias for the hosts you want to go out the VPN and set the VPN as a gateway in a matching rule. Appreciate the help. Will look for the post on PIA so I can figure it out.
  • OpenVPN, RADIUS & Client-Specific Overrides

    1
    0 Votes
    1 Posts
    794 Views
    No one has replied
  • Multiple OpenVPN servers

    4
    0 Votes
    4 Posts
    2k Views
    DerelictD
    Meaning all clients get routes to 10.0.0.0 and 10.0.1.0.  The firewall rules control who can actually talk to what. It just lets you standardize the server config for all users.  You can also just push specific routes to local assets to specific users.  OpenVPN will pretty much be able to do anything you can think of.
  • Pfsense OpenVPN Site-to-Site

    1
    0 Votes
    1 Posts
    685 Views
    No one has replied
  • Hub and Spoke OpenVPN routing

    1
    0 Votes
    1 Posts
    731 Views
    No one has replied
  • Possible? Multiple Backend for authentication

    3
    0 Votes
    3 Posts
    830 Views
    iorxI
    ;) "Science bitch!" - Breaking Bad. I would say that it works. I authenticated with two account found in the separate backends  :o. [image: multiselect-auth-works.png] [image: multiselect-auth-works.png_thumb]
  • Issue setting up 2 PIA accounts

    3
    0 Votes
    3 Posts
    873 Views
    B
    I deleted the Server and disabled the working Client for now.  I have pasted the logs to a pic attached. [image: Capture.JPG] [image: Capture.JPG_thumb]
  • Pfsense assigning itself the wrong ip?

    3
    0 Votes
    3 Posts
    762 Views
    J
    On further investigation, it seems that pfsense is doing exactly as it should, it is assigning itself the 42.1 address, it's the dd-wrt router that is insisting on the .5 and .6 addresses. Thank you for the links though, definitely good information that I didn't know before
  • Problem vpn bridge can't ping my lan

    1
    0 Votes
    1 Posts
    654 Views
    No one has replied
  • Route all p2p traffic through openvpn?

    1
    0 Votes
    1 Posts
    577 Views
    No one has replied
  • OpenVPN with master/slave setup

    6
    0 Votes
    6 Posts
    2k Views
    V
    Yes, you're right. You have to select "Network" at destination type and enter your alias in the field below. ![2015-05-27 11_34_26Firewall_ NAT_ Outbound_ Edit.png](/public/imported_attachments/1/2015-05-27 11_34_26Firewall_ NAT_ Outbound_ Edit.png) ![2015-05-27 11_34_26Firewall_ NAT_ Outbound_ Edit.png_thumb](/public/imported_attachments/1/2015-05-27 11_34_26Firewall_ NAT_ Outbound_ Edit.png_thumb)
  • Two OpenVPN servers: road warriors cannot contact s2s

    4
    0 Votes
    4 Posts
    1k Views
    D
    Thank you for your response! Sometimes a solution is really simple but you just forget to think about it. Great that a forum like this has other users who are experienced and who can give you the right tips. You made my day, it all works flawlessly! ;D Kind regards, Dennis
  • Private Internet Access - Pfsense 2.2.2 How-to?

    10
    0 Votes
    10 Posts
    2k Views
    T
    Hello. I'm having some issues aswell. What did you do?
  • Routing Problem on Bridged network - Clients ignore route

    8
    0 Votes
    8 Posts
    1k Views
    B
    Thank you! Windows Firewall really blocked the ICMP packages.  ??? How I made ithis beginners failure to not check this?  :-[ Now everything what I need is working. There is still an Item I just can't understand. I can ping now from all clients all other clients in all locations, but my clients coming from outside over OpenVPN can't ping one of the Openvpn servers?!? Also the frontend of pfsense is not accessible from these notebooks if I choose the internal IPs. If I go over WAN, everything is fine?!? Packet captures show, that the echo and the reply is visible in two devices only: The TAP of the server for remoteclients and the server for remoteclients itsself. Nothing in LAN or in the bridge interface…. It is really funny, that a ping goes over two VPN tunnels and two servers without any trouble, but the servers themselfes are stealh devices  ;D
  • Problem with multiple users for Openvpn server

    1
    0 Votes
    1 Posts
    665 Views
    No one has replied
  • Open VPN Firewall Rules

    1
    0 Votes
    1 Posts
    656 Views
    No one has replied
  • Strange behavior with PIA VPN

    3
    0 Votes
    3 Posts
    1k Views
    T
    ?????????????
  • Unable to route traffic with 2.2.2 and Windows 8

    2
    0 Votes
    2 Posts
    647 Views
    D
    @kapara: Also strange that I need to open gui as administrator You need to complain to MS. (There's also this management interface/ OpenVPNManager export option to avoid this.)
  • Error pfSense update 2.1.5 to 2.2.2 openvpn

    8
    0 Votes
    8 Posts
    3k Views
    F
    All you need to do is go into the shell portion and type: 11 to Restart webConfigurator, after that it should restore the openvpn portion. Worked for me just fine.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.