• Static OpenVPN IP's/DHCP Reservations

    2
    0 Votes
    2 Posts
    1k Views
    johnpozJ
    create a client override for your specific client and then push out the IP you want them to use [image: clientoverride.jpg] [image: clientoverride.jpg_thumb]
  • Problems with OpenVPN Export utility

    7
    0 Votes
    7 Posts
    2k Views
    J
    Tks… solved... ;D ;D ;D ;D
  • Open VPN authentication with Apple OS X Open Directory Server

    3
    0 Votes
    3 Posts
    1k Views
    A
    Thanks Derelict, the authentication is failing and not sure what the correct settings are to use with OS X 10.11.x Some settings in the Server Settings section: Port value: 636 Peer Certificate Authority: MainCA Internal (Is this where i could be going wrong? Do i have to export the authentication certificate from the authentication server?) The Base DN is: cn=users, dc=abcserver, dc=local Authentication containers: cn=users, dc=abcserver, dc=local Do i need to check the RFC 2307 Groups box? What do i put for Group Object Class? Thanks.
  • Strange VPN Gateway issue

    3
    0 Votes
    3 Posts
    2k Views
    M
    For me this turned out to be a problem with Virgin Media, when I started an Open VPN between 2 of their Static IP connections, Started fine, try and transfer any data and both Virgin modems would disconnect their GRE Tunnel. If the client is on a non static IP Virgin connection it works fine, and does not appear to have issues with any other ISP static IPs…..
  • Site to Site

    2
    0 Votes
    2 Posts
    1k Views
    V
    Have you set a firewall rule on pfSense at OpenVPN interface to allow the access to the other site? Ensure that software firewalls (Windows) at the destination hosts do not block the access.
  • Route via openvpn needs a few hits

    3
    0 Votes
    3 Posts
    1k Views
    L
    no, the tunnel keeps running fine. that's the weird thing. if I ping or ssh from pfSense it has no problems. But from "Local LAN" it works the 3rd try.  ???
  • 0 Votes
    7 Posts
    3k Views
    D
    I took a look at their ovpn files and it doesn't look like there's anything that would make much difference. The guide should work, just skip steps 10, 11 and 12 and enter the username and password in the pfSense gui. If it still doesn't work, you'll have to post your log.
  • Struggling to get traffic over the VPN

    2
    0 Votes
    2 Posts
    1k Views
    johnpozJ
    your route command doesn't look right off the top of my head.. route add -net 172.16.10.0/24 172.16.1.1 Would be proper syntax
  • Openvpn - voip problems

    3
    0 Votes
    3 Posts
    2k Views
    O
    I add vpn subnet to local network in asterisk and everything work ! thanks
  • Cannot communicate with DNS Resolver over OpenVPN tunnel

    6
    0 Votes
    6 Posts
    4k Views
    A
    @jimp Thanks, that worked for me.
  • OpenVPN for select hosts / Squid Issue?

    2
    0 Votes
    2 Posts
    975 Views
    J
    Wound up resetting to default, reinstalled everything as it was, everything worked. No clue what caused the issue. Did not install squid this time however.
  • 0 Votes
    1 Posts
    1k Views
    No one has replied
  • OpenVPN connected device to reach a server farm behind an ASA

    2
    0 Votes
    2 Posts
    1k Views
    C
    regarding point 2, i found the solution in one of the blogs. the following option needs to be selected (Checked) System -> Advanced -> Firewall and NAT -> Bypass firewall rules for traffic on the same interface. any hints for point 1? thank you
  • Bug for route in Custom options ?

    11
    0 Votes
    11 Posts
    2k Views
    PippinP
    Ok, I didnt give up…. yet :) I read that Synology NAS cant do site to site but I guess that goes for being server. I changed port number on NAS config to connect to correct server, so from existing RA to PtP. Using existing config file exported from pfS with inline cert/key/tls Authentication failing. PtP server generated new tls key, I hit my head, I should know... Copy key over but then the server log spits: " TLS Auth Error: --client-config-dir authentication failed for common name 'NAS' file='/var/etc/openvpn-csc/server2/NAS' " " '/var/etc/openvpn-csc/server2/NAS' " here my mistake. So now I know this way it`s not working :) Have to export NAS and not use the existing one. Me trying to take shortcuts but eventually it takes longer :)
  • OpenVPN site-to-site, how to query for common name of connected sites?

    6
    0 Votes
    6 Posts
    1k Views
    B
    Thanks for the succinct answer!
  • OpenVpn - issue to generate client opvn

    9
    0 Votes
    9 Posts
    1k Views
    johnpozJ
    "I wouldn't trust the hardware if it's that old, though." Exactly which is why I would get new hard, do a nice clean install - put in your config, swap them this provides for very short down time.  How ever long it takes to you swap the cables really.  And if something not working because you missed a config, etc.  Then you could swap the cables back. To me this is the safest approach since swapping disks maybe something else fails on the ancient hardware on a reboot.  Shit does that old of hardware even support sata as a disk connection..  You mention soekris, what model number - prob has some soldered CF so can not even swap that.. I would prob go with their net6501-70 if customer wants to stay with same namebrand, etc. But for that price point why not just go with pfsense sg-4860 or Netgate RCC-VE 4860, etc..  Sure that would huge improvement to some soekris system from 9 years ago ;)
  • OpenVPN doesn't seem to get any inbound packets

    4
    0 Votes
    4 Posts
    1k Views
    P
    I found it! For some reason, I had a 1:1 NAT entry pointing the 1st IP of my external address block to the internal IP address of the pfsense box. This kills it of course.
  • OpenVPN IOS9

    Locked
    11
    0 Votes
    11 Posts
    3k Views
    M
    Hi John, First of all thank you for taking this amount of time working with me on this problem. I can report it's solved. I do not know the solution I'm afraid. I just layed it to rest for a while. I then once again compared our configs and added the push routes. I also changed the compression. I think I tried it in the past but suddenly it also works on my iPhone. So the changed parts now look like this: push "redirect-gateway def1";push "redirect-gateway local def1";push "redirect-gateway ipv6";push "route 192.168.20.0 255.255.255.0" and compression is on Enabled with adaptive compression. I'm not sure if any of these fixed my issue, I'm just very glad it's working and I hope it never breaks  8) Once again thanks for taking the time helping me. All the best!
  • Routing issues - multiple clients on one server

    1
    0 Votes
    1 Posts
    687 Views
    No one has replied
  • Openvpn - Pfsense routing behind Sonicwall

    1
    0 Votes
    1 Posts
    711 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.