• How many Site2Sites

    5
    0 Votes
    5 Posts
    573 Views
    E
    @JeGr Thanks. I have a user access vpn on the "server" side now and was thinking of putting the same on the "client" side as well for traveling didn't have to connect to A to get to B. I will be traveling to the other site tomorrow to finish the setup. Thanks all for the info
  • OpenVPn and ExpressVPN

    1
    0 Votes
    1 Posts
    178 Views
    No one has replied
  • Can't access certain clients through openVPN

    1
    0 Votes
    1 Posts
    232 Views
    No one has replied
  • OPENVPN website logs

    4
    0 Votes
    4 Posts
    372 Views
    DaddyGoD
    @yanafig You welcome
  • OpenVPN Credentials Manual Console Input During PFSense Bootup?

    10
    0 Votes
    10 Posts
    2k Views
    DerelictD
    @Strive2Learn said in OpenVPN Credentials Manual Console Input During PFSense Bootup?: creating a rule for Amazon to not go through the VPN! GLWT
  • Get OpenVPN config files from SSH or something else.

    7
    0 Votes
    7 Posts
    705 Views
    C
    @JeGr Thanks a lot! I'll be trying.
  • Microtik as a pfSense OVPN client

    4
    0 Votes
    4 Posts
    394 Views
    C
    Just try to do it as written here: https://medium.com/@gmanual/pfsense-mikrotik-openvpn-site-to-site-b001c105843c
  • OpenVPN client overriding default route

    1
    0 Votes
    1 Posts
    211 Views
    No one has replied
  • Remove routes when tunnel is down

    5
    0 Votes
    5 Posts
    850 Views
    weehooeyW
    OSPF advertises remote network because you redistribute pfSense Kernel Routes. right? if yes try: option1 : uncheck pfSense Kernel Routes to stop redistributing it. Correct, when this is unchecked, OSPF does not learn about the route. It will work when pfsense1 is up and its link works because it is the default gateway. Once it loses its connection, it no longer works because the remote site traffic arrives on pfsense2 over the VPN but tries to return via pfsense1 (the default route). then OSPF in your local network will know about the next hob only which is pfSense 1 or 2 and nothing after them. once the traffic reach one of them it will follow openvpn routes. This is exactly the issue. Somehow, I need the local network to learn that pfsense2 is now the gateway for the remote site VPN traffic. still looking how to stop adding route when openvpn is down This would be great as it would mean everything would work.
  • Setting OpenVPN Ping Interval to 100 crashes OpenVPN server

    2
    0 Votes
    2 Posts
    335 Views
    DerelictD
    Look at the OpenVPN logs they will tell you why it was failing to start.
  • Routing issues with remote users - can't route via site 2 site

    3
    0 Votes
    3 Posts
    326 Views
    N
    resolved by adding the remote client subnets to the remote lan list on each end of the site to site config.
  • Routing between OpenVPN site-to-site and remote access clients

    2
    0 Votes
    2 Posts
    376 Views
    V
    Push all LANs to the remote access client by adding them all to the "Local networks" in the access server settings. Additionally you have to add the remote access tunnel network 10.111.0.0/24 to each remote server by adding it to the "Remote Networks".
  • OpenVPN client - Routing from LAN?

    7
    0 Votes
    7 Posts
    1k Views
    F
    Got it! NAT was the key, vs modifying rules manually. I have now deleted the extra interface and all firewall rules and all is good. The .10 network no longer exists, I changed up the scheme (mentioned that above but probably wasn't clear). Thanks!
  • Setting up OpenVPN on pfSense for my whole network

    5
    0 Votes
    5 Posts
    554 Views
    slkamathS
    Sure. :) Thank you very much Lokesh Kamath
  • Configure VPN behind ISP > USG >pfsense(VPN)

    2
    0 Votes
    2 Posts
    689 Views
    DaddyGoD
    @juanki_hd hi, it seems to me that, you are using pfSense only......., because of the OpenVPN server @juanki_hd "I think it would be double NAT?" - (you already have one) your current system also have dual-NAT configuration (ISP router to USG = double-NAT, because RFC1918 192.168......172.10.......) BTW: pfSense has more serious abilities than a USG and is more customizable. all your problems will be solved, if you put your ISP device in bridge mode and pfSense will replace USG and USG will be listed on eBay (yeah, joke, but possible)
  • Problem with simultaneous connections in OpenVPN-server

    1
    0 Votes
    1 Posts
    144 Views
    No one has replied
  • What's up with OpenVPN and 2.4.5 update?

    4
    0 Votes
    4 Posts
    1k Views
    JeGrJ
    Could have been another case of those SSL problems with one of the Root CAs rotating their CA cert (old one expired). Perhaps working fine without actually "touching" / restarting it but now needed the new certificate chain to reconnect.
  • OpenVPN Access Speed & Internet

    1
    0 Votes
    1 Posts
    269 Views
    No one has replied
  • 0 Votes
    6 Posts
    1k Views
    RicoR
    So your on-prem Webserver is also running as OpenVPN client which is connected to your gcloud pfSense? You are only running this one pfSense? What is your OpenVPN mode? -Rico
  • open VPN and vlans

    7
    0 Votes
    7 Posts
    738 Views
    JeGrJ
    @AdmiralBTech said in open VPN and vlans: I was thinking of trying to use OpenVPN in TAP mode rather than TUN mode. I wouldn't count on that. Even in TAP mode, there are some things better left rather than to open pandora's box ;) I'd think more along the lines of tools like Zerotier or anything alike that aim to make a L2 capable VPN connection. But really, if the soft-/hardware you have deals heavily with local broadcast or multicasts and "autodiscovery" and such "automagic" things rather then plain IP, I'd leave it alone even if I understand the idea.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.