• Need clarification on openVPN usage

    3
    0 Votes
    3 Posts
    966 Views
    jimpJ
    You need a tap bridge, but that only works properly on 2.1.x. IIRC there are howtos here on the forum … somewhere, I wrote one of them somewhere. You can do it on 2.0.x with the tap bridge fix package that fixes a few things in 2.0.x for tap VPNs that didn't make it into a 2.0.x release. Basically you setup the VPN in tap mode, no tunnel network, set it to bridge to LAN, set the DHCP options you want, and then you have to assign the VPN interface under Interfaces > (assign), enable that, then setup an actual bridge between the LAN and that new interface.
  • OpenVPN No LAN Access using PIA

    23
    0 Votes
    23 Posts
    10k Views
    P
    You would connect in from OpenVPN client on your laptop, from anywhere on the internet to the OpenVPN server running on pfSense at home. The traffic from your laptop back home to your home network would not be going through PIA. You can set your laptop-to-home OpenVPN connection to "redirect all traffic through the VPN". Then when you browse the internet from your laptop, that traffic will go from laptop to home pfense, then out of home pfSense to the internet by whatever way the rest of your home LAN gets out to the internet. For that, you can have an OpenVPN client on pfSense connected to the OpenVPN server on PIA. And you can send all traffic through that. So you pfSense would have an OpenVPN listening for connects from your remote laptop, and an OpenVPN client connecting out to PIA.
  • Can't get openvpn working

    9
    0 Votes
    9 Posts
    10k Views
    S
    OK, I just exported the config again and and has in fact no tls-auth  now. Sorry, my fault. I got confused after all that testing.
  • MOVED: OpenVPn site-to-site

    Locked
    1
    0 Votes
    1 Posts
    509 Views
    No one has replied
  • Site-Site connected no response

    7
    0 Votes
    7 Posts
    1k Views
    R
    Sorry, yes they do. The pfsense at the house is virtualized on a hyper-v box. Pfsense at condo is an Alix board.
  • Configuration not working

    1
    0 Votes
    1 Posts
    765 Views
    No one has replied
  • No Internet Access when PIA is up

    1
    0 Votes
    1 Posts
    725 Views
    No one has replied
  • Pfsense 2.1 OpenVPN to PIA - Traffic issues

    3
    0 Votes
    3 Posts
    1k Views
    ?
    Were you able to figure this out? I am battling this issue as well
  • MOVED: OpenVPN Performance Degradation on 2.1.1-PRERELEASE from 2.1-RC0

    Locked
    1
    0 Votes
    1 Posts
    470 Views
    No one has replied
  • Redirect OpenVPN remote connection to OpenVPN client gateway

    1
    0 Votes
    1 Posts
    555 Views
    No one has replied
  • VoIP not working over tunnel

    4
    0 Votes
    4 Posts
    1k Views
    O
    Hi, I think you need to add option 66 to your home DHCP Server. So when your IP Phone boot he can find the PBX IP / hostname via option 66. Regards
  • How do I create or copy a file to /etc?

    3
    0 Votes
    3 Posts
    757 Views
    BeerBelliB
    Phil, Thanks for the reply. I found something in the meantime that worked. I was able to SFTP in using root for the username, and just copy the 2 files to /etc I needed to get OpenVPN working again.
  • SERVER OpenVPN not communicate with the network client

    1
    0 Votes
    1 Posts
    624 Views
    No one has replied
  • Open vpn speed using HMA?

    2
    0 Votes
    2 Posts
    820 Views
    G
    If you use the HMA software what speed can you achieve ? I am interested in this myself as I will be upgrading to fibre soon and I use HMA myself.
  • [SOLVED] Open VPN does not connect on the second link

    1
    0 Votes
    1 Posts
    655 Views
    No one has replied
  • OpenVpn - Multi-Wan Access by client

    2
    0 Votes
    2 Posts
    779 Views
    R
    You might want to look at this. https://forum.pfsense.org/index.php?topic=32429.0 Could look at implementing this myself soon. Ricky
  • [Solved] OpenVPN Connected but not complete.

    7
    0 Votes
    7 Posts
    1k Views
    R
    Thanks for replying Phil. You where right about the Failover being the problem. I raised a support ticket and Jim advised adding the following rule before the failover. [image: rupo.png] I also changed my Tunnel network to /30 on advice. Ricky
  • OpenVPN routing problem upon rebooting

    9
    0 Votes
    9 Posts
    2k Views
    T
    @KOM: You're using the 2.1 release? Yes I am. Here's just a screenshot before I edit the settings (Please note that I can connect, but my traffic doesn't get routed to my LAN and thus I can't browse the web) And a screenshot after I edit it without changing anything. And the screenshots of the actual script, which works when I enter it manually… [image: before.png] [image: before.png_thumb] ![the script exec.png](/public/imported_attachments/1/the script exec.png) ![the script exec.png_thumb](/public/imported_attachments/1/the script exec.png_thumb) ![the script.png](/public/imported_attachments/1/the script.png) ![the script.png_thumb](/public/imported_attachments/1/the script.png_thumb) [image: after.png] [image: after.png_thumb]
  • What am I missing? Scratch that… Here is what i WAS missing.. Yeah ME!

    3
    0 Votes
    3 Posts
    925 Views
    B
    That's a good point.  I left that out.  I am setting up DDNS as well.  =)
  • PfSense as OpenVPN Client to VPNExpress

    3
    0 Votes
    3 Posts
    2k Views
    P
    You need your LAN rules the other way around. Rules are matched from the top down, first match wins, so all your traffic will be matched by the "Default allow LAN to any rule". None of it will get to "LAN thru ExpressVPN" - put "LAN thru ExpressVPN" above "Default allow LAN to any rule". On WAN and EXPRESSVPN rule tabs you should not need any pass rules - unless you have a public server or similar, you do not want to allow incoming connections from the big wide internet. Traffic initiated from you (on LAN) is passed by your LAN rules and pfSense recognizes and passes the data flowing back in the reverse direction for that.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.