• Block Open VPN Internally

    2
    0 Votes
    2 Posts
    769 Views
    D
    You might try to turn off NAT reflection on the OpenVPN port forward rule. That should stop internal connections from reaching the external port. Normally I'm fighting this case in the reverse sense (trying to make external rules work for internal traffic)  ;)
  • OpenVPN site-to-site Server can't reach remote network

    Locked
    1
    0 Votes
    1 Posts
    744 Views
    No one has replied
  • Private Internet Access -NAT/Rule issue?

    1
    0 Votes
    1 Posts
    792 Views
    No one has replied
  • OpenVPN with Radius: Is PAP secure?

    1
    0 Votes
    1 Posts
    778 Views
    No one has replied
  • Can't Connect to vpn after following online wizard

    2
    0 Votes
    2 Posts
    693 Views
    X
    OK I got it. Had to setup a simple vpn traffic rule and allow pap authentication on the radius server.
  • Gateway Groups, Routes vs. Rules - What to Use?

    1
    0 Votes
    1 Posts
    609 Views
    No one has replied
  • OpenVPN been very unstable since 2.1.4 upgrade

    6
    0 Votes
    6 Posts
    2k Views
    O
    The problem did turn out to be the provider, just for the record.  2.1.4 is fine at least regarding this issue.
  • Some OpenVPN Question

    1
    0 Votes
    1 Posts
    679 Views
    No one has replied
  • LAN machine can not access internet after configuring OPENVPN

    3
    0 Votes
    3 Posts
    852 Views
    L
    @lokeshjango: hie guys i have configured strong vpn in my pfsense using open vpn setting. i basically want to set up my pfsense machine as a gateway so that all intranet traffic should go through my newly setup vpn interface in pfsense. as of now in system log openvpn showing no error. but after configuring from my intranet/LAN machine i am not able to access internet. i am not finding any solutions. https://forum.pfsense.org/index.php?topic=29944.0 and https://forum.pfsense.org/index.php?topic=59589.0 please help me as i am stuck on this point .. one more doubts i have just come in mind , how will configure my lan machine after configuring vpn in pfsense, i mean gateway?
  • Site to site VPN setup puzzling me

    10
    0 Votes
    10 Posts
    2k Views
    P
    I think I may have solved this with help from Zack__ on IRC. I'll update this when confirmed.
  • TAP super slow

    2
    0 Votes
    2 Posts
    779 Views
    A
    Looks like your PF has difficulties to route from OVPN client to LAN. Check your FW rules ?
  • Check_reload_status goes to 100% then OpenVPN Client restarts

    7
    0 Votes
    7 Posts
    2k Views
    A
    Check this thread for having a smoother GW failure handling for small Alix architecture : https://forum.pfsense.org/index.php?topic=73243.15 Try not to ping Google as the server could response from a far location and produce high pings. Pinging too far can transform a ISP routing failure into a false link failure (seen from PF). So try to ping something close to you (geographically and/or in terms or router hop), but not your ISP GW : some routers (like Cisco does) are known to drop some ICMP ping replies (even if not under heavy load) and thus produce false high response time or false loss.
  • Pinging openvpn endpoints

    2
    0 Votes
    2 Posts
    884 Views
    V
    Is the vpn gateway in the same subnet as the vpn tunnel? Your vpn address is 10.200.5.x, but in the route command you used 10.200.4.0/24. These would be different subnets. What is your OPT1 interface? You have used the LAN address in rules there, but this is the address on LAN interface and will have no effect in these rules.
  • 0 Votes
    1 Posts
    871 Views
    No one has replied
  • Cannot copy files through Site to Site

    4
    0 Votes
    4 Posts
    785 Views
    P
    Strange but I just happened to notice that the vmware router was configured to simulate a slow link. Changed it to unlimited and the copy started to work. Happy for that but it still doesn't explain the firewall logs though. Will have to try and figure that out separately. Thanks for the reply.
  • Sitetosite & remote access

    1
    0 Votes
    1 Posts
    640 Views
    No one has replied
  • Client export without GUI

    1
    0 Votes
    1 Posts
    824 Views
    No one has replied
  • Can't reach the office

    4
    0 Votes
    4 Posts
    1k Views
    J
    Found it!!! Obviously, the office doesn't route my home LAN addresses. So I have to use outbound NAT with the IP address assigned to me. Once I had created a NAT outbound rule for interface OpenVPN, that NATs all my LAN traffic over the "Interface address", things started working like a charm. Nice, happy camper! :) Cheers, Jan
  • Three OpenVPN Pre-Shared Key Site to Site Connections unstable

    5
    0 Votes
    5 Posts
    2k Views
    jimpJ
    Then you'll also have to provide info about your BGP config on each node. That's not a typical VPN configuration and should have been disclosed in the original post.
  • Openvpn site-to-site, ping only from client

    4
    0 Votes
    4 Posts
    1k Views
    M
    If you have any/any on both sides, it's probably a routing issue, but we need the .conf files from both sides to troubleshoot effectively.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.